Search papers, labs, and topics across Lattice.
This paper investigates a novel chained attack on drone-based federated learning (FL) systems, combining network-layer denial-of-service with credential-based impersonation. The authors demonstrate that adversaries can disrupt legitimate drone operations through 802.11 deauthentication attacks and subsequently impersonate these drones using extracted credentials, leading to significant training instability, especially under non-IID data conditions. Their findings highlight critical vulnerabilities in both network availability and client authentication, underscoring the need for improved security measures in mission-critical drone deployments.
Adversaries can exploit short-term wireless disruptions to not only take drones offline but also impersonate them, creating a dual threat to federated learning systems.
Edge Intelligence (EI) has emerged as a transformative model for mission-critical unmanned platforms, such as drone swarms, by enabling collaborative model training at the network periphery. However, the security of FL deployments depends on both network availability and robust client authentication mechanisms. This paper investigates a chained attack against drone-based FL systems that combines network-layer denial-of-service with credential-based impersonation. We demonstrate that an adversary can: (1) force legitimate drones offline using 802.11 deauthentication attacks, and (2) subsequently impersonate the disconnected drone using extracted credentials. Through a systematic literature review and empirical validation using the Flower framework on two distinct testbeds of Raspberry Pi and Jetsons, we quantify the impact of availability disruptions under Independent and Identically Distributed (IID) and Non-Independently and Identically Distributed (Non-IID) data distributions, and confirm that single-factor authentication permits post-disconnect impersonation. Our findings reveal that even short-term wireless interruptions cascade into substantial training instability, particularly under non-IID conditions, while the authentication gap enables adversaries to seamlessly replace disconnected nodes. We discuss the compounded implications for mission-critical drone deployments and outline directions for future defenses addressing both availability and authentication vulnerabilities.