Decoherence as Defence and the Magnitude of Noise Regularisation: A Rigorous N -Qubit Theory of Stochastic Quantum Neural Networks for Adversarially Robust Network Intrusion Detection
Summary
This paper presents a rigorous N-qubit theory of stochastic quantum neural networks (SQNNs) for adversarially robust network intrusion detection, proving a decoherence-contraction theorem and showing that depolarising noise provides robustness against adversarial attacks, with experiments on the NSL-KDD dataset.
View Cached Full Text
Cached at: 06/24/26, 07:46 AM
# Decoherence as Defence and the Magnitude of Noise Regularisation: A Rigorous N -Qubit Theory of Stochastic Quantum Neural Networks for Adversarially Robust Network Intrusion Detection
Source: [https://arxiv.org/abs/2606.24219](https://arxiv.org/abs/2606.24219)
[View PDF](https://arxiv.org/pdf/2606.24219)
> Abstract:Stochastic quantum neural networks \(SQNNs\) encode neuronal activations as qubits, synaptic topology as entanglement, and neural noise through a Lindblad master equation\. A recent conference study applied a ring\-entangled SQNN to collaborative intrusion detection and reached three conclusions: ring entanglement is \\emph\{essential\} for non\-local anomaly detection; an adversarial\-resilience bound holds but is \\emph\{conservative\}; and the depolarising channel \\emph\{fails\} to act as a dropout\-style regulariser, behaving instead as output noise\. It left open whether a per\-gate stochastic deactivation \(\`\`true quantum dropout''\) could regularise where the depolarising channel could not, and whether the loose robustness bound could be replaced by a predictive theory\. This paper resolves both and extends the framework to real data and to neutral\-atom hardware\. We give an $N$\-qubit formulation through the stochastic master equation and its vectorised Liouvillian, and prove a \\emph\{decoherence\-contraction theorem\}: a depolarising channel of strength $\\gamma$ over $L$ entangling layers contracts every weight\-$w$ Pauli read\-out by a factor $\(1\-4\\gamma/3\)^\{wL\}$ \(for the weight\-$1$ read\-out used here, $\(1\-4\\gamma/3\)^\{L\}$\); building on the general noise\-as\-defence result of Du et al\., we make this quantitative and operational for intrusion detection\. On the real NSL\-KDD dataset under white\-box FGSM and PGD attacks, a depolarising SQNN trained with the channel is, over seven seeds under strong $\\ell\_\\infty$/$\\ell\_2$ attacks, significantly more robust than the noiseless circuit \($\\ell\_\\infty$ PGD\-$20$, $p=0\.04$, large effect\) and, critically, never suffers the catastrophic robustness collapse that the noiseless model and gradient\-trained classical detectors \(which fall from $95\\%$ to $47\\%$\) do, cutting robustness variance roughly twofold; we show this robustness arises from a noise\-reshaped training boundary rather than from attack\-time gradient contraction\. For generalisation, we derive an adaptive\-penalty formula showing that per\-gate dropout implements a curvature\-weighted $L\_2$ penalty $\\tfrac\{p\(1\-p\)\}\{2\}\\sum\\theta^2\\partial^2\_\\theta L$ in weight space, maximised at $p=1/2$, whereas depolarising noise implements an output\-space penalty\. A $30$\-seed study confirms the formula's quantitative prediction: both mechanisms reduce the train\-test gap by a small but statistically significant margin \($\\approx\\\!0\.01$; $p<10^\{\-4\}$ and $p=0\.004$\), are statistically indistinguishable from each other, and the effect is concentrated where overfitting is largest; increasing the dropout rate past $1/2$ does not help, as the formula predicts\. The single\-seed dichotomy of prior work does not survive replication\. We close with a neutral\-atom realisation and a feasibility\-by\-$N$ analysis\.
## Submission history
From: Gautier\-Edouard FILARDO \[[view email](https://arxiv.org/show-email/db8f8f62/2606.24219)\] \[via CCSD proxy\] **\[v1\]**Tue, 23 Jun 2026 07:06:56 UTC \(455 KB\)Similar Articles
Neural Variability Enhances Artificial Network Robustness
This paper investigates how correlated noise, inspired by neural variability in the brain, can enhance the robustness of artificial neural networks against adversarial attacks and naturalistic image modifications.
Intrinsic-Noise Consolidation: A Doob-Barrier-Conditioned Diffusion Turns Analog Device Noise into a Continual-Learning Resource
This paper proposes using intrinsic device noise on analog neuromorphic hardware as a resource for continual learning by conditioning each weight's stochastic dynamics to avoid crossing memory-critical barriers, demonstrating non-monotonic retention improvement and validation on BrainScaleS-2 silicon.
Rank-Order N-of-M Codes for Sparse Distributed Memory: Disentangling Representation and Learning Effects in Noise Robustness Against Contemporary Neuromorphic Architectures
This paper investigates Rank-Order N-of-M codes for sparse distributed memory, disentangling representation and learning effects to evaluate noise robustness compared to contemporary neuromorphic architectures.
Quantum Port-Hamiltonian Neural Networks: Learning Conservative and Dissipative Dynamics via Measurement-Induced Nonlinearity
Introduces Quantum Port-Hamiltonian Neural Networks (Q-pHNNs) that learn classical dynamics while preserving conservation and dissipation properties using quantum circuits with measurement-induced nonlinearity. Experiments show low energy drift and accurate damping coefficient identification.
Quantum Adversarial Machine Learning: From Classical Adaptations to Quantum-Native Methods
A survey on quantum adversarial machine learning, covering attacks, defenses, and theoretical underpinnings.