Adversarial Observations in Weather Forecasting
Erik Imgrund, Thorsten Eisenhofer, Konrad Rieck
摘要
AI-based systems, such as Google's GenCast, have recently redefined the state of the art in weather forecasting, offering more accurate and timely predictions of both everyday weather and extreme events. While these systems are on the verge of replacing traditional meteorological methods, they also introduce new vulnerabilities into the forecasting process. In this paper, we investigate this threat and present a novel attack on autoregressive diffusion models, such as those used in GenCast, capable of manipulating weather forecasts and fabricating extreme events, including hurricanes, heat waves, and intense rainfall. The attack introduces subtle perturbations into weather observations that are statistically indistinguishable from natural noise and change less than 0.1% of the measurements—comparable to tampering with data from a single meteorological satellite. As modern forecasting integrates data from nearly one hundred satellites and many other sources operated by different countries, our findings highlight a critical security risk with the potential to cause large-scale disruptions and undermine public trust in weather forecasting.
问问这篇 Paper
智能体会读完全文。
Lune 把这篇 Paper 索引到了每一个公式,引用它的顶会 Paper 也一样。你提问,回答直接引用原文。
它引用的顶会 Paper7
- Towards Evaluating the Robustness of Neural NetworksNicholas Carlini, David A. WagnerS&P 2017 · 被引用 9,786 次
- Reliable evaluation of adversarial robustness with an ensemble of diverse parameter-free attacksFrancesco Croce, Matthias HeinICML 2020 · 被引用 2,337 次
- Adversarial Example Does Good: Preventing Painting Imitation from Diffusion Models via Adversarial ExamplesChumeng Liang, Xiaoyu Wu, Yang Hua, Jiaru Zhang 等ICML 2023 · 被引用 200 次
- DiffDA: a Diffusion model for weather-scale Data AssimilationLangwen Huang, Lukas Gianinazzi, Yuejiang Yu, Peter D. Düben 等ICML 2024 · 被引用 81 次
- Diffusion Policy Attacker: Crafting Adversarial Attacks for Diffusion-based PoliciesYipu Chen, Haotian Xue, Yongxin ChenNeurIPS 2024 · 被引用 23 次
相关 Paper
- Adversarial Attacks on Probabilistic Autoregressive Forecasting ModelsRaphaël Dang-Nhu, Gagandeep Singh, Pavol Bielik, Martin T. VechevICML 2020 · 被引用 28 次
- Distracting Downpour: Adversarial Weather Attacks for Motion EstimationJenny Schmalfuss, Lukas Mehl, Andrés BruhnICCV 2023 · 被引用 23 次
- Data-Free Model-Related Attacks: Unleashing the Potential of Generative AIDayong Ye, Tianqing Zhu, Shang Wang, Bo Liu 等USENIX Security 2025
- U-Cast: A Surprisingly Simple and Efficient Frontier Probabilistic AI Weather ForecasterSalva Ruhling Cachay, Duncan Watson-Parris, Rose YuICML 2026 · 被引用 3 次
- STCast: Adaptive Boundary Alignment for Global and Regional Weather ForecastingHao Chen, Tao Han, Jie Zhang, Song Guo 等CVPR 2026 · 被引用 7 次
