Abstract
Cyber-physical infrastructure faces threats from evasive false data injection attacks that can significantly impact their security and performance. Adversarial attacks are a popular evasive false data injection threat model that generally targets AI/ML models employed in cyber-physical systems (CPSs). However, AI/ML models are often not necessary to carry out several key functions of critical CPSs. In this study, we explore the potential for designing effective adversarial attacks targeting critical functions within cyber-physical infrastructure, that do not rely on AI systems, while retaining their adversarial nature against related black-box AI and non-AI functionalities. Specifically, we introduce an evasive deep black-box adversarial attack (DeeBBAA) designed to disrupt the nonlinear state estimation process of an unidentified power network. The attack is engineered to operate under practical constraints, without prior knowledge of the network's topology, and by targeting fewer than twenty-five percent of the network's measurements during data collection (or eavesdropping) and the subsequent online attack injection phases. The study demonstrates that even within these restrictive parameters, DeeBBAA exhibits significant evasiveness against a broad spectrum of conventional, statistical, and machine learning-based cyberattack detection techniques, resulting in substantial deviations in the estimated network states. © 2014 IEEE.
| Original language | English |
|---|---|
| Pages (from-to) | 40670-40688 |
| Number of pages | 19 |
| Journal | IEEE Internet of Things Journal |
| Volume | 11 |
| Issue number | 24 |
| Online published | 4 Sept 2024 |
| DOIs | |
| Publication status | Published - 15 Dec 2024 |
| Externally published | Yes |
Funding
This work was supported in part by the Prime Minister's Research Fellowship Granted by the Ministry of Education, Government of India, and in part by the EAIT New Staff Research Start-Up Fund under Grant NS-2405.
Research Keywords
- AC state estimation
- adversarial attack against
- cyber-security
- deep learning
- regression
- stealthy false data injection attack (SFDIA)
Fingerprint
Dive into the research topics of 'DeeBBAA: A Benchmark Deep Black-Box Adversarial Attack Against Cyber-Physical Power Systems'. Together they form a unique fingerprint.Cite this
- APA
- Author
- BIBTEX
- Harvard
- Standard
- RIS
- Vancouver