We construct targeted audio adversarial examples on automatic speech recognition. Given any audio waveform, we can produce another that is over 99.9% similar, but transcribes as any phrase we choose (recognizing up to 50 characters per second of audio). We apply our white-box iterative optimization-based attack to Mozilla's implementation DeepSpeech end-to-end, and show it has a 100% success rate. The feasibility of this attack introduce a new domain to study adversarial examples.
Audio Adversarial Examples: Targeted Attacks on Speech-to-Text
Published 2018 in 2018 IEEE Security and Privacy Workshops (SPW)
ABSTRACT
PUBLICATION RECORD
- Publication year
2018
- Venue
2018 IEEE Security and Privacy Workshops (SPW)
- Publication date
2018-01-05
- Fields of study
Mathematics, Computer Science
- Identifiers
- External record
- Source metadata
Semantic Scholar
CITATION MAP
EXTRACTION MAP
CLAIMS
- No claims are published for this paper.
CONCEPTS
- No concepts are published for this paper.
REFERENCES
Showing 1-42 of 42 references · Page 1 of 1