ON THE GENERATION AND REMOVAL OF SPEAKER ADVERSARIAL PERTURBATION FOR VOICE-PRIVACY PROTECTION

被引:0
|
作者
Guo, Chenyang [1 ]
Chen, Liping [1 ]
Li, Zhuhai [1 ]
Lee, Kong Aik [2 ]
Ling, Zhen-Hua [1 ]
Guo, Wu [1 ]
机构
[1] Univ Sci & Technol China, Hefei, Peoples R China
[2] Hong Kong Polytech Univ, Hong Kong, Peoples R China
关键词
speaker recognition; voice-privacy protection; speaker adversarial perturbation; perturbation removal;
D O I
10.1109/SLT61566.2024.10832243
中图分类号
O42 [声学];
学科分类号
070206 ; 082403 ;
摘要
Neural networks are commonly known to be vulnerable to adversarial attacks mounted through subtle perturbation on the input data. Recent development in voice-privacy protection has shown the positive use cases of the same technique to conceal speaker's voice attribute with additive perturbation signal generated by an adversarial network. This paper examines the reversibility property where an entity generating the adversarial perturbations is authorized to remove them and restore original speech (e.g., the speaker him/herself). A similar technique could also be used by an investigator to deanonymize a voice-protected speech to restore criminals' identities in security and forensic analysis. In this setting, the perturbation generative module is assumed to be known in the removal process. To this end, a joint training of perturbation generation and removal modules is proposed. Experimental results on the LibriSpeech dataset demonstrated that the subtle perturbations added to the original speech can be predicted from the anonymized speech while achieving the goal of privacy protection. By removing these perturbations from the anonymized sample, the original speech can be restored. Audio samples can be found in https://voiceprivacy.github.io/Perturbation-Generation-Removal/.
引用
收藏
页码:1179 / 1184
页数:6
相关论文
共 50 条
  • [41] SCAPEGOAT GENERATION FOR PRIVACY PROTECTION FROM DEEPFAKE
    Kato, Gido
    Fukuhara, Yoshihiro
    Isogawa, Mariko
    Tsunashima, Hideki
    Kataoka, Hirokatsu
    Morishima, Shigeo
    2023 IEEE INTERNATIONAL CONFERENCE ON IMAGE PROCESSING, ICIP, 2023, : 3364 - 3368
  • [42] Privacy in AI and the IoT: The privacy concerns of smart speaker users and the Personal Information Protection Law in China
    Liu, Yu-li
    Huang, Luyan
    Yan, Wenjia
    Wang, Xinghan
    Zhang, Ruochen
    TELECOMMUNICATIONS POLICY, 2022, 46 (07)
  • [43] FOX: Fooling with Explanations Privacy Protection with Adversarial Reactions in Social Media
    Belhadj-Cheikh, Noreddine
    Imine, Abdessamad
    Rusinowitch, Michael
    2021 18TH INTERNATIONAL CONFERENCE ON PRIVACY, SECURITY AND TRUST (PST), 2021,
  • [44] Privacy Protection Against Automated Tracking System Using Adversarial Patch
    Takiwaki, Hiroto
    Kuribayashi, Minoru
    Funabiki, Nobuo
    Raval, Mehul S.
    PROCEEDINGS OF 2022 ASIA-PACIFIC SIGNAL AND INFORMATION PROCESSING ASSOCIATION ANNUAL SUMMIT AND CONFERENCE (APSIPA ASC), 2022, : 1849 - 1854
  • [45] Dual Protection for Image Privacy and Copyright via Traceable Adversarial Examples
    Li, Ming
    Yang, Zhaoli
    Wang, Tao
    Zhang, Yushu
    Wen, Wenying
    IEEE Transactions on Circuits and Systems for Video Technology, 2024, 34 (12) : 13401 - 13412
  • [46] Generalization in Generative Adversarial Networks: A Novel Perspective from Privacy Protection
    Wu, Bingzhe
    Zhao, Shiwan
    Chen, ChaoChao
    Xu, Haoyang
    Wang, Li
    Zhang, Xiaolu
    Sun, Guangyu
    Zhou, Jun
    ADVANCES IN NEURAL INFORMATION PROCESSING SYSTEMS 32 (NIPS 2019), 2019, 32
  • [47] Privacy Protection of Grid Users Data with Blockchain and Adversarial Machine Learning
    Yilmaz, Ibrahim
    Kapoor, Kavish
    Siraj, Ambareen
    Abouyoussef, Mahmoud
    SAT-CPS'21: PROCEEDINGS OF THE 2021 ACM WORKSHOP ON SECURE AND TRUSTWORTHY CYBER-PHYSICAL SYSTEMS, 2021, : 33 - 38
  • [48] Multifunctional adversarial examples: A novel mechanism for authenticatable privacy protection of images
    Li, Ming
    Wang, Si
    SIGNAL PROCESSING, 2025, 230
  • [49] SiFDetectCracker: An Adversarial Attack Against Fake Voice Detection Based on Speaker-Irrelative Features
    Hai, Xuan
    Liu, Xin
    Tan, Yuan
    Zhou, Qingguo
    PROCEEDINGS OF THE 31ST ACM INTERNATIONAL CONFERENCE ON MULTIMEDIA, MM 2023, 2023, : 8552 - 8560
  • [50] Your Voice is Not Yours? Black-Box Adversarial Attacks Against Speaker Recognition Systems
    Ye, Jianbin
    Lin, Fuqiang
    Liu, Xiaoyuan
    Liu, Bo
    2022 IEEE INTL CONF ON PARALLEL & DISTRIBUTED PROCESSING WITH APPLICATIONS, BIG DATA & CLOUD COMPUTING, SUSTAINABLE COMPUTING & COMMUNICATIONS, SOCIAL COMPUTING & NETWORKING, ISPA/BDCLOUD/SOCIALCOM/SUSTAINCOM, 2022, : 692 - 699