arrow
Return

Generative Perturbation Network for Universal Adversarial Attacks on Brain-Computer Interfaces

delete2023-11-01
delete4
delete
OA
AI
J
Jiyoung Jung
M
Moon, HeeJoon
G
Geunhyeok Yu
H
Hyoseok Hwang *
DOI:10.1109/JBHI.2023.3303494delete
deleteOriginal
deleteOriginal request for help
deleteShare
deleteSave
Abstract

Abstract

En 中文
Deep neural networks (DNNs) have successfully classified EEG-based brain-computer interface (BCI) systems. However, recent studies have found that well-designed input samples, known as adversarial examples, can easily fool well-performed deep neural networks model with minor perturbations undetectable by a human. This paper proposes an efficient generative model named generative perturbation network (GPN), which can generate universal adversarial examples with the same architecture for non-targeted and targeted attacks. Furthermore, the proposed model can be efficiently extended to conditionally or simultaneously generate perturbations for various targets and victim models. Our experimental evaluation demonstrates that perturbations generated by the proposed model outperform previous approaches for crafting signal-agnostic perturbations. We demonstrate that the extended network for signal-specific methods also significantly reduces generation time while performing similarly. The transferability across classification networks of the proposed method is superior to the other methods, which shows our perturbations' high level of generality.
Keywords:
Adversarial attack
brain computer interfaces
EEG classification
universal adversarial perturbation

Journal

IEEE Journal of Biomedical and Health Informatics cover
IEEE Journal of Biomedical and Health Informatics
IF:
6.8
Papers:
4.5K
Citations:
2.0W

Organization

U
University of Seoul
Scholars:
3.5K
Papers: 4.5K
Citations: 4.4K
K
kyung hee university
Scholars:
2.3W
Papers: 2.2W
Citations: 234