Presentation 2022-06-24
Application of Adversarial Examples to Physical ECG Signals
Taiga Ono, Takeshi Sugawara, Jun Sakuma, Tatsuya Mori,
PDF Download Page PDF download Page Link
Abstract(in Japanese) (See Japanese page)
Abstract(in English) This work aims to assess the reality and feasibility of applying adversarial examples to attack cardiac diagnosis systems powered by machine learning algorithms. To this end, we introduce "adversarial beats", which are adversarial perturbations tailored specifically against classification systems designed to diagnose electrocardiograms (ECGs). We formulate an algorithm to generate adversarial beats, and evaluate their feasibility in a physical environment by designing a hardware attack. To the best of our knowledge, our work is the first in evaluating the proficiency of adversarial examples for ECGs in a physical setup. Our real-world experiments demonstrate that against an automated ECG diagnosis setup, we can leverage our proposed method to fake the presence of potential signs of cardiomyopathy with approximately 42.1% chance of success. We conclude that our proposed method can be leveraged by attackers to influence clinical decisions, which could be applied to fraudulent clinical transactions.
Keyword(in Japanese) (See Japanese page)
Keyword(in English) DNN / Adversarial Examples / Hardware
Paper # IA2022-11,ICSS2022-11
Date of Issue 2022-06-16 (IA, ICSS)

Conference Information
Committee IA / ICSS
Conference Date 2022/6/23(2days)
Place (in Japanese) (See Japanese page)
Place (in English) Univ. of Nagasaki
Topics (in Japanese) (See Japanese page)
Topics (in English) Internet Security, etc.
Chair Tomoki Yoshihisa(Osaka Univ.) / Katsunari Yoshioka(Yokohama National Univ.)
Vice Chair Toru Kondo(Hiroshima Univ.) / Yuichiro Hei(KDDI Research) / Hiroshi Yamamoto(Ritsumeikan Univ.) / Kazunori Kamiya(NTT) / Takahiro Kasama(NICT)
Secretary Toru Kondo(Osaka Univ.) / Yuichiro Hei(Kogakuin Univ.) / Hiroshi Yamamoto(NEC) / Kazunori Kamiya(KDDI labs.) / Takahiro Kasama(Okayama Univ.)
Assistant Daisuke Kotani(Kyoto Univ.) / Ryo Nakamurai(Fukuoka Univ.) / Daiki Nobayashi(Kyushu Inst. of Tech.) / Keisuke Kito(Mitsubishi Electric) / Takeshi Sugawara(Univ. of Electro-Comm.)

Paper Information
Registration To Technical Committee on Internet Architecture / Technical Committee on Information and Communication System Security
Title (in Japanese) (See Japanese page)
Sub Title (in Japanese) (See Japanese page)
Title (in English) Application of Adversarial Examples to Physical ECG Signals
Sub Title (in English)
Keyword(1) DNN
Keyword(2) Adversarial Examples
Keyword(3) Hardware
1st Author's Name Taiga Ono
1st Author's Affiliation Waseda University(Waseda Univ.)
2nd Author's Name Takeshi Sugawara
2nd Author's Affiliation The University of Electro-Communications(UEC)
3rd Author's Name Jun Sakuma
3rd Author's Affiliation University of Tsukuba/RIKEN(Tsukuba Univ./RIKEN)
4th Author's Name Tatsuya Mori
4th Author's Affiliation Waseda University/RIKEN/National Institute of Information and Communications Technology(Waseda Univ./RIKEN/NICT)
Date 2022-06-24
Paper # IA2022-11,ICSS2022-11
Volume (vol) vol.122
Number (no) IA-85,ICSS-86
Page pp.pp.61-66(IA), pp.61-66(ICSS),
#Pages 6
Date of Issue 2022-06-16 (IA, ICSS)