UNIVERSAL ADVERSARIAL ATTACK AGAINST SPEAKER RECOGNITION MODELS

被引:0
作者
Hanina, Shoham [1 ]
Zolfi, Alon [1 ]
Elovici, Yuval [1 ]
Shabtai, Asaf [1 ]
机构
[1] Ben Gurion Univ Negev, Negev, Israel
来源
2024 IEEE INTERNATIONAL CONFERENCE ON ACOUSTICS, SPEECH AND SIGNAL PROCESSING, ICASSP 2024 | 2024年
关键词
Speaker Recognition; Adversarial Attack;
D O I
10.1109/ICASSP48485.2024.10447073
中图分类号
学科分类号
摘要
In recent years, deep learning-based speaker recognition (SR) models have received a large amount of attention from the machine learning (ML) community. Their increasing popularity derives in large part from their effectiveness in identifying speakers in many security-sensitive applications. Researchers have attempted to challenge the robustness of SR models, and they have revealed the models' vulnerability to adversarial ML attacks. However, the studies performed mainly proposed tailor-made perturbations that are only effective for the speakers they were trained on (i.e., a closed-set). In this paper, we propose the Anonymous Speakers attack, a universal adversarial perturbation that fools SR models on all speakers in an open-set environment, i.e., including speakers that were not part of the training phase of the attack. Using a custom optimization process, we craft a single perturbation that can be applied to the original recording of any speaker and results in misclassification by the SR model. We examined the attack's effectiveness on various state-of-the-art SR models with a wide range of speaker identities. The results of our experiments show that our attack largely reduces the embeddings' similarity to the speaker's original embedding representation while maintaining a high signal-to-noise ratio value.
引用
收藏
页码:4860 / 4864
页数:5
相关论文
共 50 条
  • [31] Your Voice is Not Yours? Black-Box Adversarial Attacks Against Speaker Recognition Systems
    Ye, Jianbin
    Lin, Fuqiang
    Liu, Xiaoyuan
    Liu, Bo
    2022 IEEE INTL CONF ON PARALLEL & DISTRIBUTED PROCESSING WITH APPLICATIONS, BIG DATA & CLOUD COMPUTING, SUSTAINABLE COMPUTING & COMMUNICATIONS, SOCIAL COMPUTING & NETWORKING, ISPA/BDCLOUD/SOCIALCOM/SUSTAINCOM, 2022, : 692 - 699
  • [32] An Universal Adversarial Attack Method Based on Spherical Projection
    Fan, Chunlong
    Zhang, Zhimin
    Qiao, Jianzhong
    JOURNAL OF CIRCUITS SYSTEMS AND COMPUTERS, 2022, 31 (02)
  • [33] Universal Adversarial Attack on Attention and the Resulting Dataset DAmageNet
    Chen, Sizhe
    He, Zhengbao
    Sun, Chengjin
    Yang, Jie
    Huang, Xiaolin
    IEEE TRANSACTIONS ON PATTERN ANALYSIS AND MACHINE INTELLIGENCE, 2022, 44 (04) : 2188 - 2197
  • [34] Targeted Universal Adversarial Attack on Deep Hash Networks
    Meng, Fanlei
    Chen, Xiangru
    Cao, Yuan
    PROCEEDINGS OF THE 4TH ANNUAL ACM INTERNATIONAL CONFERENCE ON MULTIMEDIA RETRIEVAL, ICMR 2024, 2024, : 165 - 174
  • [35] Adversarial Training for Multi-domain Speaker Recognition
    Wang, Qing
    Rao, Wei
    Guo, Pengcheng
    Xie, Lei
    2021 12TH INTERNATIONAL SYMPOSIUM ON CHINESE SPOKEN LANGUAGE PROCESSING (ISCSLP), 2021,
  • [36] Contrastive Adversarial Domain Adaptation Networks for Speaker Recognition
    Li, Longxin
    Mak, Man-Wai
    Chien, Jen-Tzung
    IEEE TRANSACTIONS ON NEURAL NETWORKS AND LEARNING SYSTEMS, 2022, 33 (05) : 2236 - 2245
  • [37] Stealthy Backdoor Attack Against Speaker Recognition Using Phase-Injection Hidden Trigger
    Ye, Zhe
    Yan, Diqun
    Dong, Li
    Deng, Jiacheng
    Yu, Shui
    IEEE SIGNAL PROCESSING LETTERS, 2023, 30 : 1057 - 1061
  • [38] Adversarial attack algorithm for traffic sign recognition
    Wang, Juan
    Shi, Lei
    Zhao, Yang
    Zhang, Haoxi
    Szczerbicki, Edward
    MULTIMEDIA TOOLS AND APPLICATIONS, 2022,
  • [39] Adversarial Attack Against Deep Saliency Models Powered by Non-Redundant Priors
    Che, Zhaohui
    Borji, Ali
    Zhai, Guangtao
    Ling, Suiyi
    Li, Jing
    Tian, Yuan
    Guo, Guodong
    Le Callet, Patrick
    IEEE TRANSACTIONS ON IMAGE PROCESSING, 2021, 30 : 1973 - 1988
  • [40] Defending Against Adversarial Attacks in Speaker Verification Systems
    Chang, Li-Chi
    Chen, Zesheng
    Chen, Chao
    Wang, Guoping
    Bi, Zhuming
    2021 IEEE INTERNATIONAL PERFORMANCE, COMPUTING, AND COMMUNICATIONS CONFERENCE (IPCCC), 2021,