paper-with-me

홈 › Papers

Unraveling Adversarial Examples against Speaker Identification -- Techniques for Attack Detection and Victim Model Classification

2024-02-29 · Sonal Joshi, Thomas Thebaud, Jesús Villalba, Najim Dehak

Adversarial examples have proven to threaten speaker identification systems, and several countermeasures against them have been proposed. In this paper, we propose a method to detect the presence of adversarial examples, i.e., a binary classifier distinguishing between benign and adversarial examples. We build upon and extend previous work on attack type classification by exploring new architectures. Additionally, we introduce a method for identifying the victim model on which the adversarial attack is carried out. To achieve this, we generate a new dataset containing multiple attacks performed against various victim models. We achieve an AUC of 0.982 for attack detection, with no more than a 0.03 drop in performance for unknown attacks. Our attack classification accuracy (excluding benign) reaches 86.48% across eight attack types using our LightResNet34 architecture, while our victim model classification accuracy reaches 72.28% across four victim models.

📄 PDF Abstract BibTeX arXiv:2402.19355

Code (0)

등록된 구현이 없습니다.

Tasks

Adversarial AttackClassificationSpeaker Identification

Similar Papers 제목 키워드 기반

Tubes Among Us: Analog Attack on Automatic Speaker Identification

2022-02-06 · Shimaa Ahmed, Yash Wani, Ali Shahin Shamsabadi, Mohammad Yaghini 외

Recent years have seen a surge in the popularity of acoustics-enabled personal devices powered by machine learning. Yet, machine learning has proven to be vulnerable to adversarial examples. A large number of modern syst…

BIG-bench Machine LearningSpeaker Identification

AdvEst: Adversarial Perturbation Estimation to Classify and Detect Adversarial Attacks against Speaker Identification

2022-04-08 · Sonal Joshi, Saurabh Kataria, Jesus Villalba, Najim Dehak

Adversarial attacks pose a severe security threat to the state-of-the-art speaker identification systems, thereby making it vital to propose countermeasures against them. Building on our previous work that used represent…

Representation LearningSpeaker Identification

Symmetric Saliency-based Adversarial Attack To Speaker Identification

2022-10-30 · Jiadi Yao, Xing Chen, Xiao-Lei Zhang, Wei-Qiang Zhang 외

Adversarial attack approaches to speaker identification either need high computational cost or are not very effective, to our knowledge. To address this issue, in this paper, we propose a novel generation-network-based a…

Adversarial AttackDecoderSpeaker Identification

FoolHD: Fooling speaker identification by Highly imperceptible adversarial Disturbances

2020-11-17 · Ali Shahin Shamsabadi, Francisco Sepúlveda Teixeira, Alberto Abad, Bhiksha Raj 외

Speaker identification models are vulnerable to carefully designed adversarial perturbations of their input signals that induce misclassification. In this work, we propose a white-box steganography-inspired adversarial a…

Adversarial AttackSpeaker Identification

Privacy-Utility Balanced Voice De-Identification Using Adversarial Examples

2022-11-10 · Meng Chen, Li Lu, Jiadi Yu, Yingying Chen 외

Faced with the threat of identity leakage during voice data publishing, users are engaged in a privacy-utility dilemma when enjoying convenient voice services. Existing studies employ direct modification or text-based re…

De-identificationSpeaker Identification