Threats of Adversarial Attacks in DNN-Based Modulation Recognition
Yun Lin, Haojun Zhao, Ya Tu, Shiwen Mao, Zheng Dou
Abstract
With the emergence of the information age, mobile data has become more random, heterogeneous and massive. Thanks to its many advantages, deep learning is increasingly applied in communication fields such as modulation recognition. However, recent studies show that the deep neural networks (DNN) is vulnerable to adversarial examples, where subtle perturbations deliberately designed by an attacker can fool a classifier model into making mistakes. From the perspective of an attacker, this study adds elaborate adversarial examples to the modulation signal, and explores the threats and impacts of adversarial attacks on the DNN-based modulation recognition in different environments. The results show that, regardless of a white-box or a black-box model, the adversarial attack can reduce the accuracy of the target model. Among them, the performance of the iterative attack is superior to the one-step attack in most scenarios. In order to ensure the invisibility of the attack (the waveform being consistent before and after the perturbations), an appropriate perturbation level is found without losing the attack effect. Finally, it is attested that the signal confidence level is inversely proportional to the attack success rate, and several groups of signals with high robustness are obtained.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext 6ed71671-7d10-400e-8064-fe391ed16af5Cited by top-tier papers4
- TileMask: A Passive-Reflection-based Attack against mmWave Radar Object Detection in Autonomous DrivingYi Zhu, Chenglin Miao, Hongfei Xue, Zhengxiong Li et al.CCS 2023 · 16 citations
- Watch Out! Simple Horizontal Class Backdoor Can Trivially Evade DefenseHua Ma, Shang Wang, Yansong Gao, Zhi Zhang et al.CCS 2024 · 7 citations
- Deep Learning Models as Moving Targets to Counter Modulation Classification AttacksNaureen Hoque, Hanif RahbariINFOCOM 2024 · 1 citation
- FeatureFool: Zero-Query Fooling of Video Models via Feature MapDuoxun Tang, Xi Xiao, Guangwu Hu, Kangkang Sun et al.CVPR 2026 · 1 citation
Related papers
- Robust Adversarial Attacks Against DNN-Based Wireless Communication SystemsAlireza Bahramali, Milad Nasr, Amir Houmansadr, Dennis Goeckel et al.CCS 2021 · 80 citations
- Adversarial Robust ViT-Based Automatic Modulation Recognition in Practical Deep Learning-Based Wireless SystemsGen Li, ChunChih Lin, Xiaonan Zhang, Xiaolong Ma et al.S&P 2025
- WiAdv: Practical and Robust Adversarial Attack against WiFi-based Gesture Recognition SystemYuxuan Zhou, Huangxun Chen, Chenyu Huang, Qian ZhangUbiComp 2022 · 31 citations
- Modulation-Based Backdoors: Leveraging Amplitude and Frequency Patterns to Attack Speaker RecognitionHanbo Cai, Pengcheng Zhang, Yan Xiao, De Li et al.AAAI 2026
- Countering Acoustic Adversarial Attacks in Microphone-equipped Smart Home DevicesSourav Bhattacharya, Dionysis Manousakas, Alberto Gil C. P. Ramos, Stylianos I. Venieris et al.UbiComp 2020 · 19 citations
