Papers
Topics
Authors
Recent
Gemini 2.5 Flash
Gemini 2.5 Flash
38 tokens/sec
GPT-4o
59 tokens/sec
Gemini 2.5 Pro Pro
41 tokens/sec
o3 Pro
7 tokens/sec
GPT-4.1 Pro
50 tokens/sec
DeepSeek R1 via Azure Pro
28 tokens/sec
2000 character limit reached

A White-Box Adversarial Attack Against a Digital Twin (2210.14018v1)

Published 25 Oct 2022 in cs.CR, cs.AI, and cs.LG

Abstract: Recent research has shown that Machine Learning/Deep Learning (ML/DL) models are particularly vulnerable to adversarial perturbations, which are small changes made to the input data in order to fool a machine learning classifier. The Digital Twin, which is typically described as consisting of a physical entity, a virtual counterpart, and the data connections in between, is increasingly being investigated as a means of improving the performance of physical entities by leveraging computational techniques, which are enabled by the virtual counterpart. This paper explores the susceptibility of Digital Twin (DT), a virtual model designed to accurately reflect a physical object using ML/DL classifiers that operate as Cyber Physical Systems (CPS), to adversarial attacks. As a proof of concept, we first formulate a DT of a vehicular system using a deep neural network architecture and then utilize it to launch an adversarial attack. We attack the DT model by perturbing the input to the trained model and show how easily the model can be broken with white-box attacks.

User Edit Pencil Streamline Icon: https://streamlinehq.com
Authors (6)
  1. Wilson Patterson (3 papers)
  2. Ivan Fernandez (13 papers)
  3. Subash Neupane (17 papers)
  4. Milan Parmar (2 papers)
  5. Sudip Mittal (66 papers)
  6. Shahram Rahimi (36 papers)
Citations (3)