SQUASH: A SWAP-Based Quantum Attack to Sabotage Hybrid Quantum Neural Networks

📅 2025-06-30
📈 Citations: 0
Influential: 0
📄 PDF
🤖 AI Summary
This work exposes a critical hardware-level security vulnerability in hybrid quantum neural networks (HQNNs): we propose SQUASH—the first stealthy attack targeting the variational quantum circuit structure. SQUASH strategically inserts SWAP gates into the victim HQNN’s quantum circuit, inducing qubit misalignment and state evolution distortion—without requiring access to training data, without modifying the input state, and without introducing observable perturbations. It supports both untargeted and targeted attacks, reducing classification accuracy by 74.08% and target-class recognition rate by 79.78% in noiseless settings. Crucially, this work pioneers the integration of circuit-level structural manipulation into quantum machine learning security research. By demonstrating that adversarial manipulation at the quantum gate level can severely compromise model integrity, it underscores the urgent need for hardware-aware security design in practical HQNN deployment.

Technology Category

Application Category

📝 Abstract
We propose a circuit-level attack, SQUASH, a SWAP-Based Quantum Attack to sabotage Hybrid Quantum Neural Networks (HQNNs) for classification tasks. SQUASH is executed by inserting SWAP gate(s) into the variational quantum circuit of the victim HQNN. Unlike conventional noise-based or adversarial input attacks, SQUASH directly manipulates the circuit structure, leading to qubit misalignment and disrupting quantum state evolution. This attack is highly stealthy, as it does not require access to training data or introduce detectable perturbations in input states. Our results demonstrate that SQUASH significantly degrades classification performance, with untargeted SWAP attacks reducing accuracy by up to 74.08% and targeted SWAP attacks reducing target class accuracy by up to 79.78%. These findings reveal a critical vulnerability in HQNN implementations, underscoring the need for more resilient architectures against circuit-level adversarial interventions.
Problem

Research questions and friction points this paper is trying to address.

Proposes SQUASH attack to sabotage Hybrid Quantum Neural Networks
Inserts SWAP gates to disrupt quantum state evolution
Reveals critical vulnerability in HQNN implementations
Innovation

Methods, ideas, or system contributions that make the work stand out.

SWAP gate insertion in quantum circuits
Direct manipulation of circuit structure
Stealthy attack without data access
🔎 Similar Papers
No similar papers found.
R
Rahul Kumar
Department of Computer and Information Sciences, Fordham University, New York, NY, 10023 USA
Wenqi Wei
Wenqi Wei
Fordham University, ex-IBMer
Big DataCybersecurityInformation Management
Y
Ying Mao
Department of Computer and Information Sciences, Fordham University, New York, NY, 10023 USA
Junaid Farooq
Junaid Farooq
University of Michigan-Dearborn
NextG NetworksCyber-Physical SystemsCyber SecurityResilience
Y
Ying Wang
Department of Systems and Enterprises, Stevens Institute of Technology, Hoboken, NJ 07030 USA
Juntao Chen
Juntao Chen
Department of Computer and Information Sciences, Fordham University
Cyber-Physical SystemsCyber Security and ResilienceGame and Decision TheoryOptimization and LearningSmart Grids