The Ephemeral Threat: Assessing the Security of Algorithmic Trading Systems powered by Deep Learning

Fuente: arXiv
Saved in:
Bibliographic Details
Main Authors: Rizvani, Advije, Apruzzese, Giovanni, Laskov, Pavel
Format: Preprint
Published: 2025
Subjects:
Online Access:
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1866915288446926848
author Rizvani, Advije
Apruzzese, Giovanni
Laskov, Pavel
author_facet Rizvani, Advije
Apruzzese, Giovanni
Laskov, Pavel
contents We study the security of stock price forecasting using Deep Learning (DL) in computational finance. Despite abundant prior research on the vulnerability of DL to adversarial perturbations, such work has hitherto hardly addressed practical adversarial threat models in the context of DL-powered algorithmic trading systems (ATS). Specifically, we investigate the vulnerability of ATS to adversarial perturbations launched by a realistically constrained attacker. We first show that existing literature has paid limited attention to DL security in the financial domain, which is naturally attractive for adversaries. Then, we formalize the concept of ephemeral perturbations (EP), which can be used to stage a novel type of attack tailored for DL-based ATS. Finally, we carry out an end-to-end evaluation of our EP against a profitable ATS. Our results reveal that the introduction of small changes to the input stock prices not only (i) induces the DL model to behave incorrectly but also (ii) leads the whole ATS to make suboptimal buy/sell decisions, resulting in a worse financial performance of the targeted ATS.
format Preprint
id arxiv_https___arxiv_org_abs_2505_10430
institution arXiv
publishDate 2025
record_format arxiv
spellingShingle The Ephemeral Threat: Assessing the Security of Algorithmic Trading Systems powered by Deep Learning
Rizvani, Advije
Apruzzese, Giovanni
Laskov, Pavel
Cryptography and Security
We study the security of stock price forecasting using Deep Learning (DL) in computational finance. Despite abundant prior research on the vulnerability of DL to adversarial perturbations, such work has hitherto hardly addressed practical adversarial threat models in the context of DL-powered algorithmic trading systems (ATS). Specifically, we investigate the vulnerability of ATS to adversarial perturbations launched by a realistically constrained attacker. We first show that existing literature has paid limited attention to DL security in the financial domain, which is naturally attractive for adversaries. Then, we formalize the concept of ephemeral perturbations (EP), which can be used to stage a novel type of attack tailored for DL-based ATS. Finally, we carry out an end-to-end evaluation of our EP against a profitable ATS. Our results reveal that the introduction of small changes to the input stock prices not only (i) induces the DL model to behave incorrectly but also (ii) leads the whole ATS to make suboptimal buy/sell decisions, resulting in a worse financial performance of the targeted ATS.
title The Ephemeral Threat: Assessing the Security of Algorithmic Trading Systems powered by Deep Learning
topic Cryptography and Security
url https://arxiv.org/abs/2505.10430