PRIVACY ATTACKS FOR AUTOMATIC SPEECH RECOGNITION ACOUSTIC MODELS IN A FEDERATED LEARNING FRAMEWORK

被引:10
|
作者
Tomashenko, Natalia [1 ]
Mdhaffar, Salima [1 ]
Tommasi, Marc [2 ]
Esteve, Yannick [1 ]
Bonastre, Jean-Francois [1 ]
机构
[1] Avignon Univ, LIA, Avignon, France
[2] Univ Lille, Cent Lille, INRIA, CNRS,UMR 9189 CRIStAL, Lille, France
来源
2022 IEEE INTERNATIONAL CONFERENCE ON ACOUSTICS, SPEECH AND SIGNAL PROCESSING (ICASSP) | 2022年
关键词
Privacy; federated learning; acoustic models; attack models; speech recognition; speaker verification;
D O I
10.1109/ICASSP43922.2022.9746541
中图分类号
O42 [声学];
学科分类号
070206 ; 082403 ;
摘要
This paper investigates methods to effectively retrieve speaker information from the personalized speaker adapted neural network acoustic models (AMs) in automatic speech recognition (ASR). This problem is especially important in the context of federated learning of ASR acoustic models where a global model is learnt on the server based on the updates received from multiple clients. We propose an approach to analyze information in neural network AMs based on a neural network footprint on the so-called Indicator dataset. Using this method, we develop two attack models that aim to infer speaker identity from the updated personalized models without access to the actual users' speech data. Experiments on the TED-LIUM 3 corpus demonstrate that the proposed approaches are very effective and can provide equal error rate (EER) of 1-2%.
引用
收藏
页码:6972 / 6976
页数:5
相关论文
共 50 条
  • [21] DEFENDING AGAINST BACKDOOR ATTACKS IN FEDERATED LEARNING WITH DIFFERENTIAL PRIVACY
    Miao, Lu
    Yang, Wei
    Hu, Rong
    Li, Lu
    Huang, Liusheng
    2022 IEEE INTERNATIONAL CONFERENCE ON ACOUSTICS, SPEECH AND SIGNAL PROCESSING (ICASSP), 2022, : 2999 - 3003
  • [22] Privacy-Preserving Federated Learning Resistant to Byzantine Attacks
    Mu X.-T.
    Cheng K.
    Song A.-X.
    Zhang T.
    Zhang Z.-W.
    Shen Y.-L.
    Jisuanji Xuebao/Chinese Journal of Computers, 2024, 47 (04): : 842 - 861
  • [23] Sybil Attacks and Defense on Differential Privacy based Federated Learning
    Jiang, Yupeng
    Li, Yong
    Zhou, Yipeng
    Zheng, Xi
    2021 IEEE 20TH INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS (TRUSTCOM 2021), 2021, : 355 - 362
  • [24] Federated Learning for Speech Emotion Recognition Applications
    Latif, Siddique
    Khalifa, Sara
    Rana, Rajib
    Jurdak, Raja
    2020 19TH ACM/IEEE INTERNATIONAL CONFERENCE ON INFORMATION PROCESSING IN SENSOR NETWORKS (IPSN 2020), 2020, : 341 - 342
  • [25] Survey on Security and Privacy of Federated Learning Models
    Gu Y.-H.
    Bai Y.-B.
    Ruan Jian Xue Bao/Journal of Software, 2023, 34 (06): : 2833 - 2864
  • [26] PFLF: Privacy-Preserving Federated Learning Framework for Edge Computing
    Zhou, Hao
    Yang, Geng
    Dai, Hua
    Liu, Guoxiu
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2022, 17 : 1905 - 1918
  • [27] A Game-theoretic Framework for Privacy-preserving Federated Learning
    Zhang, Xiaojin
    Fan, Lixin
    Wang, Siwei
    Li, Wenjie
    Chen, Kai
    Yang, Qiang
    ACM TRANSACTIONS ON INTELLIGENT SYSTEMS AND TECHNOLOGY, 2024, 15 (03)
  • [28] OpenVFL: A Vertical Federated Learning Framework With Stronger Privacy-Preserving
    Yang, Yunbo
    Chen, Xiang
    Pan, Yuhao
    Shen, Jiachen
    Cao, Zhenfu
    Dong, Xiaolei
    Li, Xiaoguo
    Sun, Jianfei
    Yang, Guomin
    Deng, Robert
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2024, 19 : 9670 - 9681
  • [29] A Framework for Evaluating Client Privacy Leakages in Federated Learning
    Wei, Wenqi
    Liu, Ling
    Loper, Margaret
    Chow, Ka-Ho
    Gursoy, Mehmet Emre
    Truex, Stacey
    Wu, Yanzhao
    COMPUTER SECURITY - ESORICS 2020, PT I, 2020, 12308 : 545 - 566
  • [30] Exploring Federated Learning: The Framework, Applications, Security & Privacy
    Saha, Ashim
    Ali, Lubaina
    Rahman, Rudrita
    Monir, Md Fahad
    Ahmed, Tarem
    2024 IEEE INTERNATIONAL BLACK SEA CONFERENCE ON COMMUNICATIONS AND NETWORKING, BLACKSEACOM 2024, 2024, : 272 - 275