Targeted Adversarial Attacks on Deep Reinforcement Learning Policies via Model Checking

12/10/2022
by   Dennis Gross, et al.
0

Deep Reinforcement Learning (RL) agents are susceptible to adversarial noise in their observations that can mislead their policies and decrease their performance. However, an adversary may be interested not only in decreasing the reward, but also in modifying specific temporal logic properties of the policy. This paper presents a metric that measures the exact impact of adversarial attacks against such properties. We use this metric to craft optimal adversarial attacks. Furthermore, we introduce a model checking method that allows us to verify the robustness of RL policies against adversarial attacks. Our empirical analysis confirms (1) the quality of our metric to craft adversarial attacks against temporal logic properties, and (2) that we are able to concisely assess a system's robustness against attacks.

READ FULL TEXT

page 6

page 7

research
05/29/2019

Targeted Attacks on Deep Reinforcement Learning Agents through Adversarial Observations

This paper deals with adversarial attacks on perceptions of neural netwo...
research
10/13/2022

Observed Adversaries in Deep Reinforcement Learning

In this work, we point out the problem of observed adversaries for deep ...
research
06/28/2019

Learning to Cope with Adversarial Attacks

The security of Deep Reinforcement Learning (Deep RL) algorithms deploye...
research
01/03/2022

Actor-Critic Network for Q A in an Adversarial Environment

Significant work has been placed in the Q A NLP space to build models ...
research
11/03/2019

Online Robustness Training for Deep Reinforcement Learning

In deep reinforcement learning (RL), adversarial attacks can trick an ag...
research
03/05/2020

Detection and Recovery of Adversarial Attacks with Injected Attractors

Many machine learning adversarial attacks find adversarial samples of a ...
research
09/20/2023

It's Simplex! Disaggregating Measures to Improve Certified Robustness

Certified robustness circumvents the fragility of defences against adver...

Please sign up or login with your details

Forgot password? Click here to reset