paper-with-me

Papers

CommanderSong: A Systematic Approach for Practical Adversarial Voice Recognition

2018-01-24 · Xuejing Yuan, Yuxuan Chen, Yue Zhao, Yunhui Long, Xiaokang Liu, Kai Chen, Shengzhi Zhang, Heqing Huang, Xiao-Feng Wang, Carl A. Gunter

The popularity of ASR (automatic speech recognition) systems, like Google Voice, Cortana, brings in security concerns, as demonstrated by recent attacks. The impacts of such threats, however, are less clear, since they are either less stealthy (producing noise-like voice commands) or requiring the physical presence of an attack device (using ultrasound). In this paper, we demonstrate that not only are more practical and surreptitious attacks feasible but they can even be automatically constructed. Specifically, we find that the voice commands can be stealthily embedded into songs, which, when played, can effectively control the target system through ASR without being noticed. For this purpose, we developed novel techniques that address a key technical challenge: integrating the commands into a song in a way that can be effectively recognized by ASR through the air, in the presence of background noise, while not being detected by a human listener. Our research shows that this can be done automatically against real world ASR applications. We also demonstrate that such CommanderSongs can be spread through Internet (e.g., YouTube) and radio, potentially affecting millions of ASR users. We further present a new mitigation technique that controls this threat.

📄 PDF Abstract BibTeX arXiv:1801.08535

Code (0)

등록된 구현이 없습니다.

Tasks

Automatic Speech RecognitionAutomatic Speech Recognition (ASR)speech-recognitionSpeech Recognition

Similar Papers 제목 키워드 기반

Who is Real Bob? Adversarial Attacks on Speaker Recognition Systems

2019-11-03 · Guangke Chen, Sen Chen, Lingling Fan, Xiaoning Du 외

Speaker recognition (SR) is widely used in our daily life as a biometric authentication or identification mechanism. The popularity of SR brings in serious security concerns, as demonstrated by recent adversarial attacks…

Adversarial AttackSpeaker Recognitionspeech-recognitionSpeech Recognition

Real-Time Neural Voice Camouflage

2021-12-14 · ICLR 2022 4 · Mia Chiquier, Chengzhi Mao, Carl Vondrick

Automatic speech recognition systems have created exciting possibilities for applications, however they also enable opportunities for systematic eavesdropping. We propose a method to camouflage a person's voice over-the-…

Automatic Speech RecognitionAutomatic Speech Recognition (ASR)speech-recognitionSpeech Recognition

AS2T: Arbitrary Source-To-Target Adversarial Attack on Speaker Recognition Systems

2022-06-07 · Guangke Chen, Zhe Zhao, Fu Song, Sen Chen 외

Recent work has illuminated the vulnerability of speaker recognition systems (SRSs) against adversarial attacks, raising significant security concerns in deploying SRSs. However, they considered only a few settings (e.g.…

Adversarial AttackSpeaker Recognition

Bias in Automated Speaker Recognition

2022-01-24 · Wiebke Toussaint Hutiri, Aaron Ding

Automated speaker recognition uses data processing to identify speakers by their voice. Today, automated speaker recognition is deployed on billions of smart devices and in services such as call centres. Despite their wi…

BIG-bench Machine LearningFace RecognitionSpeaker RecognitionSpeaker Verification

Interpretable Spectrum Transformation Attacks to Speaker Recognition

2023-02-21 · Jiadi Yao, Hong Luo, Xiao-Lei Zhang

The success of adversarial attacks to speaker recognition is mainly in white-box scenarios. When applying the adversarial voices that are generated by attacking white-box surrogate models to black-box victim models, i.e.…

Speaker Recognition