Physical-World Attack towards WiFi-based Behavior Recognition
Jianwei Liu, Yinghui He, Chaowei Xiao, Jinsong Han, Le Cheng, Kui Ren
Abstract
Behavior recognition plays an essential role in numerous behavior-driven applications (e.g., virtual reality and smart home) and even in the security-critical applications (e.g., security surveillance and elder healthcare). Recently, WiFi-based behavior recognition (WBR) technique stands out among many behavior recognition techniques due to its advantages of being non-intrusive, device-free, and ubiquitous. However, existing WBR research mainly focuses on improving the recognition precision, while neglecting the security aspects. In this paper, we reveal that WBR systems are vulnerable to manipulating physical signals. For instance, our observation shows that WiFi signals can be changed by jamming signals. By exploiting the vulnerability, we propose two approaches to generate physically online adversarial samples to perform untargeted attack and targeted attack, respectively. The effectiveness of these attacks are extensively evaluated over four real-world WBR systems. The experiment results show that our attack approaches can achieve 80% and 60% success rates for untargeted attack and targeted attack in physical world, respectively. We also propose three methods to mitigate the hazard of such attacks.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext 4c372ce6-09c5-4ef7-a73a-81bde474178dCited by top-tier papers3
- Privacy against Real-Time Speech Emotion Detection via Acoustic Adversarial Evasion of Machine LearningBrian Testa, Yi Xiao, Harshit Sharma, Avery Gump et al.UbiComp 2023 · 12 citations
- RISiren: Wireless Sensing System Attacks via MetasurfaceChenghan Jiang, Jinjiang Yang, Xinyi Li, Qi Li et al.CCS 2024 · 2 citations
- Magmaw: Modality-Agnostic Adversarial Attacks on Machine Learning-Based Wireless Communication SystemsJung-Woo Chang, Ke Sun, Nasimeh Heydaribeni, Seira Hidano et al.NDSS 2025
Builds on4
- Adversarial Sensor Attack on LiDAR-based Perception in Autonomous DrivingYulong Cao, Chaowei Xiao, Benjamin Cyr, Yimeng Zhou et al.CCS 2019 · 626 citations
- When CSI Meets Public WiFi: Inferring Your Mobile Phone Password via WiFi SignalsMengyuan Li, Yan Meng, Junyi Liu, Haojin Zhu et al.CCS 2016 · 213 citations
- Person-in-WiFi: Fine-Grained Person Perception Using WiFiFei Wang, Sanping Zhou, Stanislav Panev, Jinsong Han et al.ICCV 2019 · 199 citations
- Et Tu Alexa? When Commodity WiFi Devices Turn into Adversarial Motion SensorsYanzi Zhu, Zhujun Xiao, Yuxin Chen, Zhijing Li et al.NDSS 2020
Related papers
- WiAdv: Practical and Robust Adversarial Attack against WiFi-based Gesture Recognition SystemYuxuan Zhou, Huangxun Chen, Chenyu Huang, Qian ZhangUbiComp 2022 · 31 citations
- Practical Adversarial Attack on WiFi Sensing Through Unnoticeable Communication Packet PerturbationChangming Li, Mingjing Xu, Yicong Du, Limin Liu et al.MobiCom 2024 · 22 citations
- Secur-Fi: A Secure Wireless Sensing System Based on Commercial Wi-Fi DevicesXuanqi Meng, Jiarun Zhou, Xiulong Liu, Xinyu Tong et al.INFOCOM 2023 · 24 citations
- Universal Targeted Adversarial Attacks Against mmWave-based Human Activity RecognitionYucheng Xie, Ruizhe Jiang, Xiaonan Guo, Yan Wang et al.INFOCOM 2023 · 11 citations
- Attacking mmWave-enabled Chest Vibration Sensing via Actuator-induced MimicryXiaonan Guo, Yi Wei, Yuan Ge, Yucheng Xie et al.INFOCOM 2026
