Towards Visualizing and Detecting Audio Adversarial Examples for Automatic Speech Recognition

被引:2
|
作者
Zong, Wei [1 ]
Chow, Yang-Wai [1 ]
Susilo, Willy [1 ]
机构
[1] Univ Wollongong, Sch Comp & Informat Technol, Inst Cybersecur & Cryptol, Wollongong, NSW, Australia
关键词
Adversarial machine learning; Adversarial example; Anomaly detection; Visualization;
D O I
10.1007/978-3-030-90567-5_27
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Automatic speech recognition (ASR) systems are now ubiquitous in many commonly used applications, as various commercial products rely on ASR techniques, which are increasingly based on machine learning, to transcribe voice commands into text for further processing. However, audio adversarial examples (AEs) have emerged as a serious security threat, as they have been shown to be able to fool ASR models into producing incorrect results. Although there are proposed methods to defend against audio AEs, the intrinsic properties of audio AEs compared with benign audio have not been well studied. In this paper, we show that the machine learning decision boundary patterns around audio AEs and benign audio are fundamentally different. In addition, using dimensionality reduction techniques, we show that these different patterns can be distinguished visually in 2D space. Based on dimensionality reduction results, this paper also demonstrates that it is feasible to detect previously unknown audio AEs using anomaly detection methods.
引用
收藏
页码:531 / 549
页数:19
相关论文
共 50 条
  • [1] Noise Flooding for Detecting Audio Adversarial Examples Against Automatic Speech Recognition
    Rajaratnam, Krishan
    Kalita, Jugal
    2018 IEEE INTERNATIONAL SYMPOSIUM ON SIGNAL PROCESSING AND INFORMATION TECHNOLOGY (ISSPIT), 2018, : 197 - 201
  • [2] Synthesising Audio Adversarial Examples for Automatic Speech Recognition
    Qu, Xinghua
    Wei, Pengfei
    Gao, Mingyong
    Sun, Zhu
    Ong, Yew-Soon
    Ma, Zejun
    PROCEEDINGS OF THE 28TH ACM SIGKDD CONFERENCE ON KNOWLEDGE DISCOVERY AND DATA MINING, KDD 2022, 2022, : 1430 - 1440
  • [3] Detecting Audio Adversarial Examples in Automatic Speech Recognition Systems Using Decision Boundary Patterns
    Zong, Wei
    Chow, Yang-Wai
    Susilo, Willy
    Kim, Jongkil
    Le, Ngoc Thuy
    JOURNAL OF IMAGING, 2022, 8 (12)
  • [4] A Detection Algorithm for Audio Adversarial Examples in EI-Enhanced Automatic Speech Recognition
    Huang, Ying
    Liu, Jie
    WIRELESS COMMUNICATIONS & MOBILE COMPUTING, 2022, 2022
  • [5] Adversarial Examples for Automatic Speech Recognition: Attacks and Countermeasures
    Hu, Shengshan
    Shang, Xingcan
    Qin, Zhan
    Li, Minghui
    Wang, Qian
    Wang, Cong
    IEEE COMMUNICATIONS MAGAZINE, 2019, 57 (10) : 120 - 126
  • [6] Towards Understanding and Mitigating Audio Adversarial Examples for Speaker Recognition
    Chen, Guangke
    Zhao, Zhe
    Song, Fu
    Chen, Sen
    Fan, Lingling
    Wang, Feng
    Wang, Jiashui
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2023, 20 (05) : 3970 - 3987
  • [7] Detecting Adversarial Examples for Speech Recognition via Uncertainty Quantification
    Daeubener, Sina
    Schoenherr, Lea
    Fischer, Asja
    Kolossa, Dorothea
    INTERSPEECH 2020, 2020, : 4661 - 4665
  • [8] Imperceptible, Robust, and Targeted Adversarial Examples for Automatic Speech Recognition
    Qin, Yao
    Carlini, Nicholas
    Goodfellow, Ian
    Cottrell, Garrison
    Raffel, Colin
    INTERNATIONAL CONFERENCE ON MACHINE LEARNING, VOL 97, 2019, 97
  • [9] A Unified Framework for Detecting Audio Adversarial Examples
    Du, Xia
    Pun, Chi-Man
    Zhang, Zheng
    MM '20: PROCEEDINGS OF THE 28TH ACM INTERNATIONAL CONFERENCE ON MULTIMEDIA, 2020, : 3986 - 3994
  • [10] Detecting Audio Adversarial Examples with Logit Noising
    Park, Namgyu
    Ji, Sangwoo
    Kim, Jong
    37TH ANNUAL COMPUTER SECURITY APPLICATIONS CONFERENCE, ACSAC 2021, 2021, : 586 - 595