Audio Adversarial Examples: Targeted Attacks on Speech-to-Text
2018/01/05 by Nicholas Carlini, David Wagner, Carlini, Nicholas +1 · 5 voices · 24 citations
#cs.LG #cs.AI #cs.CR
paper · pdf · doi:10.48550/arxiv.1801.01944
Abstract
We construct targeted audio adversarial examples on automatic speech recognition. Given any audio waveform, we can produce another that is over 99.9% similar, but transcribes as any phrase we choose (recognizing up to 50 characters per second of audio). We apply our white-box iterative optimization-based attack to Mozilla's implementation DeepSpeech end-to-end, and show it has a 100% success rate. The feasibility of this attack introduce a new domain to study adversarial examples.
Cited by
Discussions
- Audio Adversarial Examples: Targeted Attacks on Speech-To-Text [hn, 64 points, 17 comments]
- Targeted Attacks on Speech-to-Text [pdf] [hn, 4 points, 1 comments]
- Audio Adversarial Examples: Targeted Attacks on Speech-To-Text [hn, 3 points, 0 comments]
- Carlini & Wagner, "Audio Adversarial Examples: Targeted Attacks on Speech-to-Text" (Jan 2018). Researchers manage to beat DeepSpeech's speech-to-text engine with adversarial sound w/ 100% success rate [bsky, 0 points, 0 comments]
- Adversarial examples against machine learning systems are such an incredible exploit, because they weaponize the gap in our understanding of those systems. This new one targets speech-to-text extremel [bsky, 0 points, 1 comments]
Related