Matches in SemOpenAlex for { <https://semopenalex.org/work/W4306179629> ?p ?o ?g. }
- W4306179629 abstract "Deep learning models have become key enablers of voice user interfaces. With the growing trend of adopting outsourced training of these models, backdoor attacks, stealthy yet effective training-phase attacks, have gained increasing attention. They inject hidden trigger patterns through training set poisoning and overwrite the model's predictions in the inference phase. Research in backdoor attacks has been focusing on image classification tasks, while there have been few studies in the audio domain. In this work, we explore the severity of audio-domain backdoor attacks and demonstrate their feasibility under practical scenarios of voice user interfaces, where an adversary injects (plays) an unnoticeable audio trigger into live speech to launch the attack. To realize such attacks, we consider jointly optimizing the audio trigger and the target model in the training phase, deriving a position-independent, unnoticeable, and robust audio trigger. We design new data poisoning techniques and penalty-based algorithms that inject the trigger into randomly generated temporal positions in the audio input during training, rendering the trigger resilient to any temporal position variations. We further design an environmental sound mimicking technique to make the trigger resemble unnoticeable situational sounds and simulate played over-the-air distortions to improve the trigger's robustness during the joint optimization process. Extensive experiments on two important applications (i.e., speech command recognition and speaker recognition) demonstrate that our attack can achieve an average success rate of over 99% under both digital and physical attack settings." @default.
- W4306179629 created "2022-10-14" @default.
- W4306179629 creator A5000613655 @default.
- W4306179629 creator A5003642180 @default.
- W4306179629 creator A5023218221 @default.
- W4306179629 creator A5042892555 @default.
- W4306179629 creator A5048295434 @default.
- W4306179629 creator A5058452657 @default.
- W4306179629 creator A5060165452 @default.
- W4306179629 creator A5063107365 @default.
- W4306179629 creator A5083854815 @default.
- W4306179629 date "2022-10-14" @default.
- W4306179629 modified "2023-10-17" @default.
- W4306179629 title "Audio-domain position-independent backdoor attack via unnoticeable triggers" @default.
- W4306179629 cites W2005665266 @default.
- W4306179629 cites W2055120733 @default.
- W4306179629 cites W2117678320 @default.
- W4306179629 cites W2132083787 @default.
- W4306179629 cites W2733384076 @default.
- W4306179629 cites W2807363941 @default.
- W4306179629 cites W2890964092 @default.
- W4306179629 cites W2934843808 @default.
- W4306179629 cites W2942091739 @default.
- W4306179629 cites W2962858109 @default.
- W4306179629 cites W2963857521 @default.
- W4306179629 cites W2964052309 @default.
- W4306179629 cites W2990270730 @default.
- W4306179629 cites W2996800219 @default.
- W4306179629 cites W2998572311 @default.
- W4306179629 cites W3007679772 @default.
- W4306179629 cites W3047561893 @default.
- W4306179629 cites W3109668151 @default.
- W4306179629 cites W3110715780 @default.
- W4306179629 cites W3119913666 @default.
- W4306179629 cites W3153453329 @default.
- W4306179629 cites W3163083600 @default.
- W4306179629 cites W3178326529 @default.
- W4306179629 doi "https://doi.org/10.1145/3495243.3560531" @default.
- W4306179629 hasPublicationYear "2022" @default.
- W4306179629 type Work @default.
- W4306179629 citedByCount "4" @default.
- W4306179629 countsByYear W43061796292023 @default.
- W4306179629 crossrefType "proceedings-article" @default.
- W4306179629 hasAuthorship W4306179629A5000613655 @default.
- W4306179629 hasAuthorship W4306179629A5003642180 @default.
- W4306179629 hasAuthorship W4306179629A5023218221 @default.
- W4306179629 hasAuthorship W4306179629A5042892555 @default.
- W4306179629 hasAuthorship W4306179629A5048295434 @default.
- W4306179629 hasAuthorship W4306179629A5058452657 @default.
- W4306179629 hasAuthorship W4306179629A5060165452 @default.
- W4306179629 hasAuthorship W4306179629A5063107365 @default.
- W4306179629 hasAuthorship W4306179629A5083854815 @default.
- W4306179629 hasConcept C104317684 @default.
- W4306179629 hasConcept C107457646 @default.
- W4306179629 hasConcept C111919701 @default.
- W4306179629 hasConcept C127413603 @default.
- W4306179629 hasConcept C145804949 @default.
- W4306179629 hasConcept C146978453 @default.
- W4306179629 hasConcept C154945302 @default.
- W4306179629 hasConcept C185592680 @default.
- W4306179629 hasConcept C2781045450 @default.
- W4306179629 hasConcept C28490314 @default.
- W4306179629 hasConcept C38652104 @default.
- W4306179629 hasConcept C41008148 @default.
- W4306179629 hasConcept C41065033 @default.
- W4306179629 hasConcept C55493867 @default.
- W4306179629 hasConcept C63479239 @default.
- W4306179629 hasConcept C98045186 @default.
- W4306179629 hasConceptScore W4306179629C104317684 @default.
- W4306179629 hasConceptScore W4306179629C107457646 @default.
- W4306179629 hasConceptScore W4306179629C111919701 @default.
- W4306179629 hasConceptScore W4306179629C127413603 @default.
- W4306179629 hasConceptScore W4306179629C145804949 @default.
- W4306179629 hasConceptScore W4306179629C146978453 @default.
- W4306179629 hasConceptScore W4306179629C154945302 @default.
- W4306179629 hasConceptScore W4306179629C185592680 @default.
- W4306179629 hasConceptScore W4306179629C2781045450 @default.
- W4306179629 hasConceptScore W4306179629C28490314 @default.
- W4306179629 hasConceptScore W4306179629C38652104 @default.
- W4306179629 hasConceptScore W4306179629C41008148 @default.
- W4306179629 hasConceptScore W4306179629C41065033 @default.
- W4306179629 hasConceptScore W4306179629C55493867 @default.
- W4306179629 hasConceptScore W4306179629C63479239 @default.
- W4306179629 hasConceptScore W4306179629C98045186 @default.
- W4306179629 hasFunder F4320306076 @default.
- W4306179629 hasLocation W43061796291 @default.
- W4306179629 hasOpenAccess W4306179629 @default.
- W4306179629 hasPrimaryLocation W43061796291 @default.
- W4306179629 hasRelatedWork W2164065400 @default.
- W4306179629 hasRelatedWork W2477379160 @default.
- W4306179629 hasRelatedWork W2481725570 @default.
- W4306179629 hasRelatedWork W3086120435 @default.
- W4306179629 hasRelatedWork W3199182217 @default.
- W4306179629 hasRelatedWork W4309803992 @default.
- W4306179629 hasRelatedWork W4319323572 @default.
- W4306179629 hasRelatedWork W4328053081 @default.
- W4306179629 hasRelatedWork W4366850823 @default.
- W4306179629 hasRelatedWork W4385567869 @default.
- W4306179629 isParatext "false" @default.
- W4306179629 isRetracted "false" @default.