arXiv · 2607.01356
Chameleon: Recovering Cyber-Physical Systems from Memory Corruption Attacks via ML Surrogates
Abstract
Cyber-physical systems (CPSs) can be compromised through memory corruption vulnerabilities, which can result in safety violations. Existing techniques mostly focus on detecting such attacks but respond by terminating or halting execution upon attack detection, which is not acceptable in CPSs as interrupted tasks can have catastrophic consequences. Other techniques replace compromised CPS components with simplified defaults that degrade system behavior, or reboot the system upon attack detection, which are not suitable for CPS deployed in safety-critical domains. We propose Chameleon, a novel framework for automatically recovering CPSs from memory corruption attacks using machine learning (ML)-based surrogates trained at compartment granularity that nearly replicate their original compartments' behavior but are implemented differently, and hence are unlikely to have the same memory corruption vulnerabilities. Upon attack detection, Chameleon replaces the compromised compartment with its trained ML surrogate. We implemented Chameleon using the LLVM compiler, and evaluated its efficiency and effectiveness on seven different robotic vehicles (RVs), including simulated and real ones. We found that Chameleon can generate surrogates that closely approximate the original compartments (with an average R$^2$=0.96), successfully recover the system despite real-world memory corruption attacks and complete their tasks while incurring low performance and memory overheads on real RVs.
Explore related subjects
Keep this discovery
Explore connections, maps & timelines
Mohsen Salehi, Karthik Pattabiraman. 2026-09-17. Chameleon: Recovering Cyber-Physical Systems from Memory Corruption Attacks via ML Surrogates. https://arxiv.org/abs/2607.01356
Cite the original work for its findings. Save a collection to share your selection of sources.