Matches in SemOpenAlex for { <https://semopenalex.org/work/W4308642956> ?p ?o ?g. }
Showing items 1 to 73 of
73
with 100 items per page.
- W4308642956 abstract "Speaker Recognition Systems (SRSs) grant access to legitimate users based on voiceprint. Recent research has shown that SRSs can be bypassed during the training phase (backdoor attacks) and the recognition phase (evasion attacks). In this paper, we explore a new attack surface of SRSs by presenting an enrollment-phase attack paradigm, named FenceSitter, where the adversary poisons the SRS using imperceptible adversarial ambient sound when the legitimate user registers into the SRS. The tainted voiceprint extracted by the SRS allows both the adversary and the legitimate user to access the system in all future recognition phases. To materialize such attack, we interleave carefully-designed continuous adversarial perturbations into innocent-sounding ambient sound. As computing adversarial perturbations over a long sequence of ambient sound carrier is intractable, we optimize over adversarial segments with content desensitization and physical realization. In addition, the attack is made available under the black-box settings by gradient estimation based on the natural evolution strategy. Extensive experiments have been conducted on both English and Chinese voice datasets for close-set identification (CSI), open-set identification (OSI), and speaker verification (SV) tasks. The results under various digital and physical conditions have verified the effectiveness and robustness of FenceSitter. With live enrollment experiments and user study, we further validate the practicality of FenceSitter. Our work reveals the vulnerability of SRSs during the enrollment phase, which may spur future research in improving the security of SRSs." @default.
- W4308642956 created "2022-11-13" @default.
- W4308642956 creator A5015275781 @default.
- W4308642956 creator A5060351020 @default.
- W4308642956 creator A5080527605 @default.
- W4308642956 date "2022-11-07" @default.
- W4308642956 modified "2023-09-30" @default.
- W4308642956 title "FenceSitter" @default.
- W4308642956 cites W1494198834 @default.
- W4308642956 cites W1589969974 @default.
- W4308642956 cites W2124983223 @default.
- W4308642956 cites W2136682440 @default.
- W4308642956 cites W2150769028 @default.
- W4308642956 cites W2808631503 @default.
- W4308642956 cites W2963077926 @default.
- W4308642956 cites W2963565199 @default.
- W4308642956 cites W2984998244 @default.
- W4308642956 cites W3007384386 @default.
- W4308642956 cites W3109668151 @default.
- W4308642956 cites W3156272176 @default.
- W4308642956 cites W4232992964 @default.
- W4308642956 cites W4308642956 @default.
- W4308642956 doi "https://doi.org/10.1145/3548606.3559357" @default.
- W4308642956 hasPublicationYear "2022" @default.
- W4308642956 type Work @default.
- W4308642956 citedByCount "1" @default.
- W4308642956 countsByYear W43086429562022 @default.
- W4308642956 crossrefType "proceedings-article" @default.
- W4308642956 hasAuthorship W4308642956A5015275781 @default.
- W4308642956 hasAuthorship W4308642956A5060351020 @default.
- W4308642956 hasAuthorship W4308642956A5080527605 @default.
- W4308642956 hasConcept C104317684 @default.
- W4308642956 hasConcept C116834253 @default.
- W4308642956 hasConcept C154945302 @default.
- W4308642956 hasConcept C185592680 @default.
- W4308642956 hasConcept C37736160 @default.
- W4308642956 hasConcept C38652104 @default.
- W4308642956 hasConcept C41008148 @default.
- W4308642956 hasConcept C41065033 @default.
- W4308642956 hasConcept C55493867 @default.
- W4308642956 hasConcept C59822182 @default.
- W4308642956 hasConcept C63479239 @default.
- W4308642956 hasConcept C86803240 @default.
- W4308642956 hasConcept C95713431 @default.
- W4308642956 hasConceptScore W4308642956C104317684 @default.
- W4308642956 hasConceptScore W4308642956C116834253 @default.
- W4308642956 hasConceptScore W4308642956C154945302 @default.
- W4308642956 hasConceptScore W4308642956C185592680 @default.
- W4308642956 hasConceptScore W4308642956C37736160 @default.
- W4308642956 hasConceptScore W4308642956C38652104 @default.
- W4308642956 hasConceptScore W4308642956C41008148 @default.
- W4308642956 hasConceptScore W4308642956C41065033 @default.
- W4308642956 hasConceptScore W4308642956C55493867 @default.
- W4308642956 hasConceptScore W4308642956C59822182 @default.
- W4308642956 hasConceptScore W4308642956C63479239 @default.
- W4308642956 hasConceptScore W4308642956C86803240 @default.
- W4308642956 hasConceptScore W4308642956C95713431 @default.
- W4308642956 hasLocation W43086429561 @default.
- W4308642956 hasOpenAccess W4308642956 @default.
- W4308642956 hasPrimaryLocation W43086429561 @default.
- W4308642956 hasRelatedWork W1583236736 @default.
- W4308642956 hasRelatedWork W2230740169 @default.
- W4308642956 hasRelatedWork W2522301850 @default.
- W4308642956 hasRelatedWork W2978686724 @default.
- W4308642956 hasRelatedWork W3034953030 @default.
- W4308642956 hasRelatedWork W3193369220 @default.
- W4308642956 hasRelatedWork W4290859889 @default.
- W4308642956 hasRelatedWork W4293790771 @default.
- W4308642956 hasRelatedWork W4312326921 @default.
- W4308642956 hasRelatedWork W4362599004 @default.
- W4308642956 isParatext "false" @default.
- W4308642956 isRetracted "false" @default.
- W4308642956 workType "article" @default.