Multi-layer Feature Augmentation Based Transferable Adversarial Examples Generation for Speaker Recognition

被引:0
|
作者
Li, Zhuhai [1 ]
Zhang, Jie [1 ]
Guo, Wu [1 ]
机构
[1] Univ Sci & Technol China, NERC SLIP, Hefei 230027, Peoples R China
关键词
Adversarial Attack; Transferability; Speaker Recognition;
D O I
10.1007/978-981-97-5591-2_32
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Adversarial examples that almost remain imperceptible for human can mislead practical speaker recognition systems. However, most existing adversaries generated by substitute models have a poor transferability to attack the unseen victim models. To tackle this problem, in this work we propose a multilayer feature augmentation method to improve the transferability of adversarial examples. Specifically, we apply data augmentation on the intermediate-layer feature maps of the substitute model to create diverse pseudo victim models. By attacking the ensemble of the substitute model and the corresponding augmented models, the proposed method can help the adversarial examples avoid overfitting, resulting in more transferable adversarial examples. Experimental results on the VoxCeleb dataset verify the effectiveness of the proposed approach for the speaker identification and speaker verification tasks.
引用
收藏
页码:373 / 385
页数:13
相关论文
共 50 条
  • [41] Multi-Layer Perceptrons for Subvocal Recognition
    Coe, Brian
    2017 IEEE 29TH INTERNATIONAL CONFERENCE ON TOOLS WITH ARTIFICIAL INTELLIGENCE (ICTAI 2017), 2017, : 293 - 300
  • [42] Multi-layer Lacunarity for Texture Recognition
    Mazurek, Przemyslaw
    Oszutowska-Mazurek, Dorota
    COMPUTER VISION AND GRAPHICS, ICCVG 2016, 2016, 9972 : 174 - 183
  • [43] Multi-layer boosting for pattern recognition
    Fleuret, Francois
    PATTERN RECOGNITION LETTERS, 2009, 30 (03) : 237 - 241
  • [44] A speech recognition method based on the sequential multi-layer perceptrons
    Chen, WY
    Chen, SH
    Lin, CJ
    NEURAL NETWORKS, 1996, 9 (04) : 655 - 669
  • [45] A speech recognition method based on the sequential multi-layer perceptrons
    Indust. Technol. Research Institute, Hsinchu, Taiwan
    不详
    不详
    NEURAL NETW., 4 (655-669):
  • [46] Correction of multi-layer path planning based on vision recognition
    Yang, Cheng-Dong
    Zhong, Ji-Yong
    Chen, Yu-Xi
    Chen, Shan-Ben
    Shanghai Jiaotong Daxue Xuebao/Journal of Shanghai Jiaotong University, 2015, 49 (03): : 297 - 300
  • [47] Face Recognition Algorithm Based On Multi-layer Weighted LBP
    Zhang, Jian
    Xiao, Xiao
    2015 8TH INTERNATIONAL SYMPOSIUM ON COMPUTATIONAL INTELLIGENCE AND DESIGN (ISCID), VOL 1, 2015, : 196 - 199
  • [48] Chinese adversarial examples generation approach with multi-strategy based on semantic
    Ou, Hongxu
    Yu, Long
    Tian, Shengwei
    Chen, Xin
    KNOWLEDGE AND INFORMATION SYSTEMS, 2022, 64 (04) : 1101 - 1119
  • [49] Chinese adversarial examples generation approach with multi-strategy based on semantic
    Hongxu Ou
    Long Yu
    Shengwei Tian
    Xin Chen
    Knowledge and Information Systems, 2022, 64 : 1101 - 1119
  • [50] Android Voice Recognition Application with Multi Speaker Feature
    Frewat, George
    Baroud, Charbel
    Sammour, Roy
    Kassem, Abdallah
    Hamad, Mustapha
    PROCEEDINGS OF THE 18TH MEDITERRANEAN ELECTROTECHNICAL CONFERENCE MELECON 2016, 2016,