• Complex
  • Title
  • Keyword
  • Abstract
  • Scholars
  • Journal
  • ISSN
  • Conference
成果搜索

author:

Ye, Jianbin (Ye, Jianbin.) [1] | Liu, Xiaoyuan (Liu, Xiaoyuan.) [2] | You, Zheng (You, Zheng.) [3] | Li, Guowei (Li, Guowei.) [4] | Liu, Bo (Liu, Bo.) [5]

Indexed by:

SCIE

Abstract:

Automatic speech recognition (ASR) is popular in our daily lives (e.g., via voice assistants or voice input). Once its security attributes are destroyed, it poses as a severe threat to a user's life and `property safety'. Prior research has demonstrated that ASR systems are vulnerable to backdoor attacks. A model embedded with a backdoor behaves normally on clean samples yet misclassifies malicious samples that contain triggers. Existing backdoor attacks have mostly been conducted in the image domain. However, they can not be applied in the audio domain because of poor transferability. This paper proposes a dynamic backdoor attack method against ASR models, named DriNet. Significantly, we designed a dynamic trigger generation network to craft a variety of audio triggers. It is trained jointly with the discriminative model incorporated with an attack success rate on poisoned samples and accuracy on clean samples. We demonstrate that DriNet achieves an attack success rate of 86.4% when infecting only 0.5% of the training set without reducing its accuracy. DriNet can still achieve comparable attack performance to backdoor attacks using static triggers, further enjoying richer attack patterns. We further evaluated DriNet's resistance to a current state-of-the-art defense mechanism. The anomaly index of DriNet is more than 37.4% smaller than that of BadNets method. The triggers generated by DriNet are hard reverse, keeping DriNet from the detectors.

Keyword:

backdoor attack dynamic trigger speech recognition

Community:

  • [ 1 ] [Ye, Jianbin]Natl Univ Def Technoloy, Coll Comp Sci & Technol, Changsha 410073, Peoples R China
  • [ 2 ] [Liu, Xiaoyuan]Natl Univ Def Technoloy, Coll Comp Sci & Technol, Changsha 410073, Peoples R China
  • [ 3 ] [Li, Guowei]Natl Univ Def Technoloy, Coll Comp Sci & Technol, Changsha 410073, Peoples R China
  • [ 4 ] [Liu, Bo]Natl Univ Def Technoloy, Coll Comp Sci & Technol, Changsha 410073, Peoples R China
  • [ 5 ] [You, Zheng]Fuzhou Univ, Coll Phys & Informat Engn, Fuzhou 350000, Peoples R China

Reprint 's Address:

Show more details

Related Keywords:

Related Article:

Source :

APPLIED SCIENCES-BASEL

ISSN: 2076-3417

Year: 2022

Issue: 12

Volume: 12

2 . 7

JCR@2022

2 . 5 0 0

JCR@2023

ESI Discipline: ENGINEERING;

ESI HC Threshold:66

JCR Journal Grade:2

CAS Journal Grade:3

Cited Count:

WoS CC Cited Count:

SCOPUS Cited Count:

ESI Highly Cited Papers on the List: 0 Unfold All

WanFang Cited Count:

Chinese Cited Count:

30 Days PV: 1

Online/Total:312/10036572
Address:FZU Library(No.2 Xuyuan Road, Fuzhou, Fujian, PRC Post Code:350116) Contact Us:0591-22865326
Copyright:FZU Library Technical Support:Beijing Aegean Software Co., Ltd. 闽ICP备05005463号-1