From tiny pacemaker chips to aircraft collision avoidance systems, the state-of-the-art Cyber-Physical Systems (CPS) have increasingly started to rely on Deep Neural Networks (DNNs). However, as concluded in various studies, DNNs are highly susceptible to security threats, including adversarial attacks. In this paper, we first discuss different vulnerabilities that can be exploited for generating security attacks for neural network-based systems. We then provide an overview of existing adversarial and fault-injection-based attacks on DNNs. We also present a brief analysis to highlight different challenges in the practical implementation of adversarial attacks. Finally, we also discuss various prospective ways to develop robust DNN-based systems that are resilient to adversarial and fault-injection attacks.
@article{arxiv.2105.03251,
title = {Exploiting Vulnerabilities in Deep Neural Networks: Adversarial and Fault-Injection Attacks},
author = {Faiq Khalid and Muhammad Abdullah Hanif and Muhammad Shafique},
journal= {arXiv preprint arXiv:2105.03251},
year = {2021}
}
Comments
CYBER 2020, The Fifth International Conference on Cyber-Technologies and Cyber-Systems