paper-with-me

Papers

Attack on practical speaker verification system using universal adversarial perturbations

2021-05-19 · Weiyi Zhang, Shuning Zhao, Le Liu, Jianmin Li, Xingliang Cheng, Thomas Fang Zheng, Xiaolin Hu

In authentication scenarios, applications of practical speaker verification systems usually require a person to read a dynamic authentication text. Previous studies played an audio adversarial example as a digital signal to perform physical attacks, which would be easily rejected by audio replay detection modules. This work shows that by playing our crafted adversarial perturbation as a separate source when the adversary is speaking, the practical speaker verification system will misjudge the adversary as a target speaker. A two-step algorithm is proposed to optimize the universal adversarial perturbation to be text-independent and has little effect on the authentication text recognition. We also estimated room impulse response (RIR) in the algorithm which allowed the perturbation to be effective after being played over the air. In the physical experiment, we achieved targeted attacks with success rate of 100%, while the word error rate (WER) on speech recognition was only increased by 3.55%. And recorded audios could pass replay detection for the live person speaking.

📄 PDF Abstract BibTeX arXiv:2105.09022

Code (1)

zhang-wy15/Attack_practical_asv 공식 구현 pytorch

Tasks

Real-World Adversarial AttackRoom Impulse Response (RIR)Speaker Verificationspeech-recognitionSpeech Recognition

Similar Papers 제목 키워드 기반

MASTERKEY: Practical Backdoor Attack Against Speaker Verification Systems

2023-09-13 · Hanqing Guo, Xun Chen, Junfeng Guo, Li Xiao 외

Speaker Verification (SV) is widely deployed in mobile systems to authenticate legitimate users by using their voice traits. In this work, we propose a backdoor attack MASTERKEY, to compromise the SV models. Different fr…

Backdoor AttackSpeaker Verification

Integrated Replay Spoofing-aware Text-independent Speaker Verification

2020-06-10 · Hye-jin Shim, Jee-weon Jung, Ju-ho Kim, Seung-bin Kim 외

A number of studies have successfully developed speaker verification or presentation attack detection systems. However, studies integrating the two tasks remain in the preliminary stages. In this paper, we propose two ap…

Multi-Task LearningSpeaker IdentificationSpeaker VerificationText-Independent Speaker Verification

Universal speaker recognition encoders for different speech segments duration

2022-10-28 · Sergey Novoselov, Vladimir Volokhov, Galina Lavrentyeva

Creating universal speaker encoders which are robust for different acoustic and speech duration conditions is a big challenge today. According to our observations systems trained on short speech segments are optimal for …

Speaker RecognitionSpeaker Verification

Real-time, Universal, and Robust Adversarial Attacks Against Speaker Recognition Systems

2020-03-04 · Yi Xie, Cong Shi, Zhuohang Li, Jian Liu 외

As the popularity of voice user interface (VUI) exploded in recent years, speaker recognition system has emerged as an important medium of identifying a speaker in many security-required applications and services. In thi…

Adversarial AttackRoom Impulse Response (RIR)Speaker Recognition

A Master Key Backdoor for Universal Impersonation Attack against DNN-based Face Verification

2021-05-01 · Wei Guo, Benedetta Tondi, Mauro Barni

We introduce a new attack against face verification systems based on Deep Neural Networks (DNN). The attack relies on the introduction into the network of a hidden backdoor, whose activation at test time induces a verifi…

Backdoor AttackFace Verification