PulseExploreJournal ClubDebatesTrendingResearchersJournals
Instagram
HomeExploreJournal ClubTrending
Synapse
⌘+K
Synapse
June 6, 20240 citationsOpen Access

Behavior-Targeted Attack on Reinforcement Learning with Limited Access to Victim's Policy

View Full Paper
SYShojiro YamabeKFKazuto FukuchiRSRyoma Senda

Key Points

Key points are not available for this paper at this time.

Abstract

This study considers the attack on reinforcement learning agents where the adversary aims to control the victim's behavior as specified by the adversary by adding adversarial modifications to the victim's state observation. While some attack methods reported success in manipulating the victim agent's behavior, these methods often rely on environment-specific heuristics. In addition, all existing attack methods require white-box access to the victim's policy. In this study, we propose a novel method for manipulating the victim agent in the black-box (i.e., the adversary is allowed to observe the victim's state and action only) and no-box (i.e., the adversary is allowed to observe the victim's state only) setting without requiring environment-specific heuristics. Our attack method is formulated as a bi-level optimization problem that is reduced to a distribution matching problem and can be solved by an existing imitation learning algorithm in the black-box and no-box settings. Empirical evaluations on several reinforcement learning benchmarks show that our proposed method has superior attack performance to baselines.

Ask AI
Helpful
Bookmark
Share
View Full Paper

Cite This Study

Yamabe et al. (2024) studied this question.

synapsesocial.com/papers/68e65e37b6db6435875ece17https://doi.org/10.48550/arxiv.2406.03862
Ask AI
Helpful
Bookmark
Share
View Full Paper