Defend Data Poisoning Attacks on Voice Authentication

被引:1
|
作者
Li, Ke [1 ]
Baird, Cameron [1 ]
Lin, Dan [1 ]
机构
[1] Vanderbilt Univ, CS Dept, Nashville, TN 67240 USA
关键词
Authentication; Data models; Passwords; Training; Web services; Speech recognition; Neural networks; Voice authentication; deep neural networks; data poisoning attacks; SUPPORT VECTOR MACHINES; SPEAKER RECOGNITION;
D O I
10.1109/TDSC.2023.3289446
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
With the advances in deep learning, speaker verification has achieved very high accuracy and is gaining popularity as a type of biometric authentication option in many scenes of our daily life, especially the growing market of web services. Compared to traditional passwords, "vocal passwords" are much more convenient as they relieve people from memorizing different passwords. However, new machine learning attacks are putting these voice authentication systems at risk. Without a strong security guarantee, attackers could access legitimate users' web accounts by fooling the deep neural network (DNN) based voice recognition models. In this article, we demonstrate an easy-to-implement data poisoning attack to the voice authentication system, which cannot be captured effectively by existing defense mechanisms. Thus, we also propose a more robust defense method called Guardian, a convolutional neural network-based discriminator. The Guardian discriminator integrates a series of novel techniques including bias reduction, input augmentation, and ensemble learning. Our approach is able to distinguish about 95% of attacked accounts from normal accounts, which is much more effective than existing approaches with only 60% accuracy.
引用
收藏
页码:1754 / 1769
页数:16
相关论文
共 50 条
  • [1] HINT: Healthy Influential -Noise based Training to Defend against Data Poisoning Attacks
    Van, Minh-Hao
    Carey, Alycia N.
    Wu, Xintao
    23RD IEEE INTERNATIONAL CONFERENCE ON DATA MINING, ICDM 2023, 2023, : 608 - 617
  • [2] Using Random Bit Authentication to Defend IEEE 802.11 DoS Attacks
    Lee, Ying-Sung
    Chien, Hsien-Te
    Tsai, Wen-Nung
    JOURNAL OF INFORMATION SCIENCE AND ENGINEERING, 2009, 25 (05) : 1485 - 1500
  • [3] Using random bit authentication to defend IEEE 802.11 dos attacks
    Lee, Ying-Sung
    Chien, Hsien-Te
    Tsai, Wen-Nung
    Journal of Information Science and Engineering, 2009, 25 (5 SPECIAL ISSUE) : 1485 - 1500
  • [4] Smart Grid Data Injection Attacks: To Defend or Not?
    Sanjab, Anibal
    Saad, Walid
    2015 IEEE INTERNATIONAL CONFERENCE ON SMART GRID COMMUNICATIONS (SMARTGRIDCOMM), 2015, : 380 - 385
  • [5] Subpopulation Data Poisoning Attacks
    Jagielski, Matthew
    Severi, Giorgio
    Harger, Niklas Pousette
    Oprea, Mina
    CCS '21: PROCEEDINGS OF THE 2021 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, 2021, : 3104 - 3122
  • [6] Online Data Poisoning Attacks
    Zhang, Xuezhou
    Zhu, Xiaojin
    Lessard, Laurent
    LEARNING FOR DYNAMICS AND CONTROL, VOL 120, 2020, 120 : 201 - 210
  • [7] Uncertainty-Matching Graph Neural Networks to Defend Against Poisoning Attacks
    Shanthamallu, Uday Shankar
    Thiagarajan, Jayaraman J.
    Spanias, Andreas
    THIRTY-FIFTH AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE, THIRTY-THIRD CONFERENCE ON INNOVATIVE APPLICATIONS OF ARTIFICIAL INTELLIGENCE AND THE ELEVENTH SYMPOSIUM ON EDUCATIONAL ADVANCES IN ARTIFICIAL INTELLIGENCE, 2021, 35 : 9524 - 9532
  • [8] FLShield: A Validation Based Federated Learning Framework to Defend Against Poisoning Attacks
    Kabir, Ehsanul
    Song, Zeyu
    Rashid, Md Rafi Ur
    Mehnaz, Shagufta
    45TH IEEE SYMPOSIUM ON SECURITY AND PRIVACY, SP 2024, 2024, : 2572 - 2590
  • [9] Preventing Machine Learning Poisoning Attacks Using Authentication and Provenance
    Stokes, Jack W.
    England, Paul
    Kane, Kevin
    2021 IEEE MILITARY COMMUNICATIONS CONFERENCE (MILCOM 2021), 2021,
  • [10] An Authentication Scheme to Defend Against UDP DrDoS Attacks in 5G Networks
    Huang, Haiou
    Hu, Liang
    Chu, Jianfeng
    Cheng, Xiaochun
    IEEE ACCESS, 2019, 7 : 175970 - 175979