{"title":"Data alignment based adversarial defense benchmark for EEG-based BCIs","authors":"Xiaoqing Chen , Tianwang Jia , Dongrui Wu","doi":"10.1016/j.neunet.2025.107516","DOIUrl":null,"url":null,"abstract":"<div><div>Machine learning has been extensively applied to signal decoding in electroencephalogram (EEG)-based brain–computer interfaces (BCIs). While most studies have focused on enhancing the accuracy of EEG-based BCIs, more attention should be given to their security. Recent findings reveal that EEG-based BCIs are vulnerable to adversarial attacks. To address this, we present the first adversarial defense benchmark based on data alignment, aiming to enhance both the accuracy and robustness of EEG-based BCIs. This study evaluates nine adversarial defense approaches (including five defense strategies) across five EEG datasets (covering three paradigms), three neural networks, and four experimental scenarios. Our results show for the first time that integrating data augmentation, data alignment, and robust training can further improve both the accuracy and robustness of BCIs compared to using only one or two of them. Furthermore, we provide insights into the characteristics of various adversarial defense approaches based on EEG data alignment, offering valuable guidance for developing more accurate and secure EEG-based BCIs.</div></div>","PeriodicalId":49763,"journal":{"name":"Neural Networks","volume":"188 ","pages":"Article 107516"},"PeriodicalIF":6.3000,"publicationDate":"2025-05-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"Neural Networks","FirstCategoryId":"94","ListUrlMain":"https://www.sciencedirect.com/science/article/pii/S0893608025003958","RegionNum":1,"RegionCategory":"计算机科学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"Q1","JCRName":"COMPUTER SCIENCE, ARTIFICIAL INTELLIGENCE","Score":null,"Total":0}
引用次数: 0
Abstract
Machine learning has been extensively applied to signal decoding in electroencephalogram (EEG)-based brain–computer interfaces (BCIs). While most studies have focused on enhancing the accuracy of EEG-based BCIs, more attention should be given to their security. Recent findings reveal that EEG-based BCIs are vulnerable to adversarial attacks. To address this, we present the first adversarial defense benchmark based on data alignment, aiming to enhance both the accuracy and robustness of EEG-based BCIs. This study evaluates nine adversarial defense approaches (including five defense strategies) across five EEG datasets (covering three paradigms), three neural networks, and four experimental scenarios. Our results show for the first time that integrating data augmentation, data alignment, and robust training can further improve both the accuracy and robustness of BCIs compared to using only one or two of them. Furthermore, we provide insights into the characteristics of various adversarial defense approaches based on EEG data alignment, offering valuable guidance for developing more accurate and secure EEG-based BCIs.
期刊介绍:
Neural Networks is a platform that aims to foster an international community of scholars and practitioners interested in neural networks, deep learning, and other approaches to artificial intelligence and machine learning. Our journal invites submissions covering various aspects of neural networks research, from computational neuroscience and cognitive modeling to mathematical analyses and engineering applications. By providing a forum for interdisciplinary discussions between biology and technology, we aim to encourage the development of biologically-inspired artificial intelligence.