Jul 2026· European Conference on Artificial Intelligence· pp. 1-7· 0 citations· 16 references
Abstract
Cyber-physical energy systems rely on digital measurements, state estimation, and learning-assisted monitoring, yet these layers are vulnerable to stealthy false data injection attacks that can distort operator awareness without triggering residual alarms. This paper presents a physics-constrained deep generative framework for attack synthesis in power-system state estimation. Conditional generative adversarial networks, autoencoders, and variational autoencoders are compared under a unified physics-aware setting that embeds the nonlinear measurement function, local state-estimation sensitivity, residual preservation, and reconstruction consistency. The framework evaluates generated attacks on IEEE 14-bus, 57-bus, and 118-bus systems using convergence behavior, bad data detection bypass rate, and Jensen-Shannon divergence. Results show that the variational autoencoder and autoencoder achieve stronger residual evasion, whereas the conditional generative adversarial network yields more realistic measurement distributions. Confidential computing and zero-trust tokenization are incorporated as interpretive security layers for protected measurement handling, tokenized provenance, and joint residual distributional trust assessment within state-estimation security decision workflows.
UA-EAD is proposed, an uncertainty-aware evidential adversarial defense that equips the detector with an evidential head yielding calibrated predictive uncertainty in a single forward pass, trains it with an uncertainty-weighted adversarial objective plus a consistency regularizer that concentrates robustness on the most uncertain, near-boundary flows, and uses the resulting uncertainty for selective prediction.
Jiawen Luo, Samuel Price· International Journal of Adv...· 0 citations
A detailed overview of the security risks associated with adversarial attacks is offered, including evasion attacks carried out at inference time, data poisoning that corrupts the training process, backdoor insertion that hides dormant triggers inside a model, and model inversion that leaks private information back out of a trained system.
Harsh Verma· International Journal of Sci...· 0 citations
This paper evaluates the robustness of the Support Vector Machine (SVM) classifier, a leading algorithm in state-of-the-art HT detection frameworks, under gradient-based adversarial attacks, and highlights the need to reframe hardware security evaluations beyond nominal accuracy toward adversarial robustness.
Ashutosh Ghimire, Lingwei Chen, Cole Castronova et al.· Journal of electronic testin...· 0 citations
A novel framework for adversarial machine unlearning is introduced to enable privacy-preserving threat intelligence sharing and lays the foundation for secure and compliant knowledge transfer in federated security operations and collaborative defence ecosystems.
R. Polishetty, Arfi Siddik Mollashaik, Naveen Jagadam et al.· Journal of Intelligent Decis...· 0 citations
The proposed Diff-DDoS framework, a three-phase framework for realistic attack synthesis and robust detection using tabular diffusion models, supports tabular diffusion models for stress-testing and hardening intrusion detectors in data-scarce 5G cyber-physical deployments.
Bilal Hussain, Xiao Tang, Qinghe Du et al.· 0 citations
A Self-Adaptive Quantum-Capsule Cognitive Security Architecture (SA-QCCSA) is introduced for zero-trust adversarial defense in 6G wireless networks, integrating Quantum-optimized Capsule Networks (Q-CapsNet) with cognitive threat orchestration for real-time cyber-attack mitigation. Multidimensional 6G network traffic is modeled as temporal–spectral feature tensors and processed using a lightweight CNN encoder followed by primary and higher-order capsules that preserve hierarchical attack patterns. A quantum-enhanced dynamic routing mechanism, implemented using a Variational Quantum Optimization layer, adaptively tunes capsule coupling coefficients to minimize adversarial uncertainty and maximize class separability under strong evasion attacks. The framework is trained using a hybrid adversarial learning strategy that combines margin-based capsule loss with contrastive regularization, enabling robustness against FGSM, BIM, PGD, and CW attacks. Experiments conducted on CIC-IDS2017, NSL-KDD, and AWID Wi-Fi intrusion datasets demonstrate that SA-QCCSA achieves 98.7% detection accuracy, 0.986 F1-score, and 0.993 AUC, significantly outperforming conventional CNN (94.1% accuracy) and LSTM (91.6% accuracy) models. Under high-strength PGD attacks, the proposed model maintains 94.8% accuracy, while CNN performance degrades below 78%, confirming superior adversarial resilience. A cognitive zero-trust control plane dynamically adjusts quantum routing depth based on real-time threat entropy, enabling self-learning, self-healing, and proactive attack containment for future 6G and beyond wireless networks.
Sneha George, R. Joy, K. Karuppasamy· 2026 International Conferenc...· 0 citations