RADAR: A FRAMEWORK FOR DEVELOPING ADVERSARIALLY ROBUST CYBER DEFENSE AI AGENTS WITH DEEP REINFORCEMENT LEARNING
成果类型:
Article
署名作者:
Ebrahimi, Reza; Chai, Yidong; Li, Weifeng; Pacheco, Jason; Chen, Hsinchun
署名单位:
State University System of Florida; University of South Florida; Hefei University of Technology; City University of Hong Kong; University System of Georgia; University of Georgia; University of Arizona; University of Arizona
刊物名称:
MIS QUARTERLY
ISSN/ISSBN:
0276-7783
DOI:
10.25300/MISQ/2024/17339
发表日期:
2025-12
页码:
1385-1416
关键词:
Cyber defense
Artificial intelligence
Adversarial attacks
robust optimization
Deep Reinforcement Learning
computational design science
design science research
optimization
hackers
context
IMPACT
摘要:
Artificial intelligence (AI) is being widely adopted in modern cyber defense to weave automation and scalability into the operational fabric of cybersecurity firms. Today, AI aids in crucial cyber defense tasks such as malware and intrusion detection to keep information technology (IT) infrastructure secure. Despite their value, cyber defense AI agents can be vulnerable to adversarial attacks. In these attacks, the adversary deliberately manipulates a malicious input by taking a sequence of actions so that a targeted cyber defense AI agent fails to correctly determine its maliciousness. Consequently, the robustness of cyber defense AI agents has raised deep concerns in modern cyber defense. Drawing on the computational design science paradigm, we couple robust optimization and reinforcement learning theories to develop a novel framework, called reinforcement learning-based adversarial attack robustness (RADAR), to increase the robustness of cyber defense AI agents against adversarial attacks. To demonstrate practical utility, we instantiate RADAR for malware attacks-the primary cause of financial loss in cyber attacks. We rigorously evaluate the performance ofRADAR as a situated IT artifact against state-of-the-art machine learning and deep learning-based benchmark methods. Incorporating RADAR in three renowned malware detectors shows an adversarial robustness increase of up to seven times, on average. We conclude by discussing contributions to information system research as well as implications for cyber defense stakeholders.
来源URL: