SiFDetectCracker: An Adversarial Attack Against Fake Voice Detection Based on Speaker-Irrelative Features

被引:1
|
作者
Hai, Xuan [1 ]
Liu, Xin [1 ]
Tan, Yuan [1 ]
Zhou, Qingguo [1 ]
机构
[1] Lanzhou Univ, Lanzhou, Peoples R China
关键词
Adversarial Attack; Deepfake; AI-Synthesized Speech; Voice Detection;
D O I
10.1145/3581783.3613841
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Voice is a vital medium for transmitting information. The advancement of speech synthesis technology has resulted in high-quality synthesized voices indistinguishable from human ears. These fake voices have been widely used in natural Deepfake production and other malicious activities, raising serious concerns regarding security and privacy. To deal with this situation, there have been many studies working on detecting fake voices and reporting excellent performance. However, is the story really over? In this paper, we propose SiFDetectCracker, a black-box adversarial attack framework based on Speaker-Irrelative Features (SiFs) against fake voice detection. We select background noise and mute parts before and after the speaker's voice as the primary attack features. By modifying these features in synthesized speech, the fake speech detector will make a misjudgment. Experiments show that SiFDetectCracker achieved a success rate of more than 80% in bypassing existing state-of-the-art fake voice detection systems. We also conducted several experiments to evaluate our attack approach's transferability and activation factor.
引用
收藏
页码:8552 / 8560
页数:9
相关论文
共 50 条
  • [21] Handwriting features based detection of fake signatures
    Akusok, Anton
    Espinosa-Leal, Leonardo
    Bjork, Kaj-Mikael
    Hu, Renjie
    Lendasse, Amaury
    THE 14TH ACM INTERNATIONAL CONFERENCE ON PERVASIVE TECHNOLOGIES RELATED TO ASSISTIVE ENVIRONMENTS, PETRA 2021, 2021, : 86 - 89
  • [22] Modeling Attack Resistant PUFs Based on Adversarial Attack Against Machine Learning
    Wang, Sying-Jyan
    Chen, Yu-Sheng
    Li, Katherine Shu-Min
    IEEE JOURNAL ON EMERGING AND SELECTED TOPICS IN CIRCUITS AND SYSTEMS, 2021, 11 (02) : 306 - 318
  • [23] Comparative Analysis of Speaker Recognition System Based on Voice Activity Detection Technique, MFCC and PLP Features
    Kalia, Akanksha
    Sharma, Shikar
    Pandey, Saurabh Kumar
    Jadoun, Vinay Kumar
    Das, Madhulika
    INTELLIGENT COMPUTING TECHNIQUES FOR SMART ENERGY SYSTEMS, 2020, 607 : 781 - 787
  • [24] Adversarial Post-Processing of Voice Conversion against Spoofing Detection
    Ding, Yi-Yang
    Zhang, Jing-Xuan
    Liu, Li-Juan
    Jiang, Yuan
    Hu, Yu
    Ling, Zhen-Hua
    2020 ASIA-PACIFIC SIGNAL AND INFORMATION PROCESSING ASSOCIATION ANNUAL SUMMIT AND CONFERENCE (APSIPA ASC), 2020, : 556 - 560
  • [25] Towards Defending against Adversarial Examples via Attack-Invariant Features
    Zhou, Dawei
    Liu, Tongliang
    Han, Bo
    Wang, Nannan
    Peng, Chunlei
    Gao, Xinbo
    INTERNATIONAL CONFERENCE ON MACHINE LEARNING, VOL 139, 2021, 139
  • [26] MaliFuzz: Adversarial Malware Detection Model for Defending Against Fuzzing Attack
    Xianwei Gao
    Chun Shan
    Changzhen Hu
    Journal of Beijing Institute of Technology, 2024, 33 (05) : 436 - 449
  • [27] MaliFuzz: Adversarial Malware Detection Model for Defending Against Fuzzing Attack
    Gao, Xianwei
    Shan, Chun
    Hu, Changzhen
    Journal of Beijing Institute of Technology (English Edition), 2024, 33 (05): : 436 - 449
  • [28] IDSGAN: Generative Adversarial Networks for Attack Generation Against Intrusion Detection
    Lin, Zilong
    Shi, Yong
    Xue, Zhi
    ADVANCES IN KNOWLEDGE DISCOVERY AND DATA MINING, PAKDD 2022, PT III, 2022, 13282 : 79 - 91
  • [29] HateVersarial: Adversarial Attack Against Hate Speech Detection Algorithms on Twitter
    Grolman, Edita
    Binyamini, Hodaya
    Shabtai, Asaf
    Elovici, Yuval
    Morikawa, Ikuya
    Shimizu, Toshiya
    PROCEEDINGS OF THE 30TH ACM CONFERENCE ON USER MODELING, ADAPTATION AND PERSONALIZATION, UMAP 2022, 2022, : 143 - 152
  • [30] Adversarial learning for a robust iris presentation attack detection method against unseen attack presentations
    Ferreira, Pedro M.
    Sequeira, Ana F.
    Pernes, Diogo
    Rebelo, Ana
    Cardoso, Jaime S.
    2019 INTERNATIONAL CONFERENCE OF THE BIOMETRICS SPECIAL INTEREST GROUP (BIOSIG 2019), 2019, P-296