Practical Adversarial Attack on WiFi Sensing Through Unnoticeable Communication Packet Perturbation
Changming Li, Mingjing Xu, Yicong Du, Limin Liu, Cong Shi, Yan Wang, Hongbo Liu, Yingying Chen
摘要
The pervasive use of WiFi has driven the recent research in WiFi sensing, converting communication tech into sensing for applications such as activity recognition, user authentication, and vital sign monitoring. Despite the integration of deep learning into WiFi sensing systems, potential security vulnerabilities to adversarial attacks remain unexplored. This paper introduces the first physical attack focusing on deep learning-based WiFi sensing systems, demonstrating how adversaries can subtly manipulate WiFi packet preambles to affect channel state information (CSI), a critical feature in such systems, and thereby influence underlying deep learning models without disrupting regular communication. To realize the proposed attack in practical scenarios, we rigorously analyze and derive the intricate relationship between the pilot symbol and CSI. A novel mechanism is proposed to facilitate quantitive control of receiver-side CSI through minimal modifications to the pilot symbols of WiFi packets at the transmitter. We further develop a perturbation optimization method based on the Carlini & Wagner (CW) attack and a penalty-based training process to ensure the attack's universal efficacy across various CSI responses and noise. The physical attack is implemented and evaluated in two representative WiFi sensing systems (i.e., activity recognition and user authentication) with 35 participants over 3 months. Extensive experiments demonstrate the remarkable attack success rates of 90.47% and 83.83% for activity recognition and user authentication, respectively.
问问这篇 Paper
问问你的智能体。
Lune 读过与它相关的顶会 Paper,每个回答都会注明依据哪几篇。
引用它的顶会 Paper3
- Lend Me Your Beam: Privacy Implications of Plaintext Beamforming Feedback in WiFiRui Xiao, Xiankai Chen, Yinghui He, Jun Han 等NDSS 2025
- DiffLoc: WiFi Hidden Camera Localization Based on Electromagnetic DiffractionXiang Zhang, Jie Zhang, Huan Yan, Jinyang Huang 等USENIX Security 2025
- Magmaw: Modality-Agnostic Adversarial Attacks on Machine Learning-Based Wireless Communication SystemsJung-Woo Chang, Ke Sun, Nasimeh Heydaribeni, Seira Hidano 等NDSS 2025
相关 Paper
- Physical-World Attack towards WiFi-based Behavior RecognitionJianwei Liu, Yinghui He, Chaowei Xiao, Jinsong Han 等INFOCOM 2022 · 被引用 25 次
- WiAdv: Practical and Robust Adversarial Attack against WiFi-based Gesture Recognition SystemYuxuan Zhou, Huangxun Chen, Chenyu Huang, Qian ZhangUbiComp 2022 · 被引用 31 次
- Poisoning Attacks on Deep Learning based Wireless Traffic PredictionTianhang Zheng, Baochun LiINFOCOM 2022 · 被引用 32 次
- Attacking mmWave-enabled Chest Vibration Sensing via Actuator-induced MimicryXiaonan Guo, Yi Wei, Yuan Ge, Yucheng Xie 等INFOCOM 2026
- UniFi: A Unified Framework for Generalizable Gesture Recognition with Wi-Fi Signals Using Consistency-guided Multi-View NetworksYan Liu, Anlan Yu, Leye Wang, Bin Guo 等UbiComp 2024 · 被引用 57 次
