{"id":"https://openalex.org/W2996463502","doi":"https://doi.org/10.1109/dyspan.2019.8935789","title":"Semi-black-box Attacks Against Speech Recognition Systems Using Adversarial Samples","display_name":"Semi-black-box Attacks Against Speech Recognition Systems Using Adversarial Samples","publication_year":2019,"publication_date":"2019-11-01","ids":{"openalex":"https://openalex.org/W2996463502","doi":"https://doi.org/10.1109/dyspan.2019.8935789","mag":"2996463502"},"language":"en","primary_location":{"id":"doi:10.1109/dyspan.2019.8935789","is_oa":false,"landing_page_url":"https://doi.org/10.1109/dyspan.2019.8935789","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2019 IEEE International Symposium on Dynamic Spectrum Access Networks (DySPAN)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5073986426","display_name":"Yi Wu","orcid":"https://orcid.org/0009-0006-3120-3769"},"institutions":[{"id":"https://openalex.org/I75027704","display_name":"University of Tennessee at Knoxville","ror":"https://ror.org/020f3ap87","country_code":"US","type":"education","lineage":["https://openalex.org/I75027704"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Yi Wu","raw_affiliation_strings":["University of Tennessee, Knoxville, TN, USA"],"affiliations":[{"raw_affiliation_string":"University of Tennessee, Knoxville, TN, USA","institution_ids":["https://openalex.org/I75027704"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100659367","display_name":"Jian Liu","orcid":"https://orcid.org/0000-0003-2636-5561"},"institutions":[{"id":"https://openalex.org/I75027704","display_name":"University of Tennessee at Knoxville","ror":"https://ror.org/020f3ap87","country_code":"US","type":"education","lineage":["https://openalex.org/I75027704"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Jian Liu","raw_affiliation_strings":["University of Tennessee, Knoxville, TN, USA"],"affiliations":[{"raw_affiliation_string":"University of Tennessee, Knoxville, TN, USA","institution_ids":["https://openalex.org/I75027704"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100394750","display_name":"Yingying Chen","orcid":"https://orcid.org/0000-0002-3994-766X"},"institutions":[{"id":"https://openalex.org/I102322142","display_name":"Rutgers, The State University of New Jersey","ror":"https://ror.org/05vt9qd57","country_code":"US","type":"education","lineage":["https://openalex.org/I102322142"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Yingying Chen","raw_affiliation_strings":["Rutgers University, New Brunswick, NJ, USA"],"affiliations":[{"raw_affiliation_string":"Rutgers University, New Brunswick, NJ, USA","institution_ids":["https://openalex.org/I102322142"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5104024031","display_name":"Jerry Cheng","orcid":"https://orcid.org/0009-0004-3637-0211"},"institutions":[{"id":"https://openalex.org/I4210104314","display_name":"New York Institute of Technology","ror":"https://ror.org/01bghzb51","country_code":"US","type":"education","lineage":["https://openalex.org/I4210104314"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Jerry Cheng","raw_affiliation_strings":["New York Institute of Technology, New York, NY, USA"],"affiliations":[{"raw_affiliation_string":"New York Institute of Technology, New York, NY, USA","institution_ids":["https://openalex.org/I4210104314"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5073986426"],"corresponding_institution_ids":["https://openalex.org/I75027704"],"apc_list":null,"apc_paid":null,"fwci":0.7001,"has_fulltext":false,"cited_by_count":8,"citation_normalized_percentile":{"value":0.788253,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":89,"max":97},"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"5"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9855999946594238,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10201","display_name":"Speech Recognition and Synthesis","score":0.9836000204086304,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8411551117897034},{"id":"https://openalex.org/keywords/adversary","display_name":"Adversary","score":0.6390315294265747},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.5326696634292603},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.531109631061554},{"id":"https://openalex.org/keywords/black-box","display_name":"Black box","score":0.5299725532531738},{"id":"https://openalex.org/keywords/set","display_name":"Set (abstract data type)","score":0.5050283074378967},{"id":"https://openalex.org/keywords/speech-recognition","display_name":"Speech recognition","score":0.43933573365211487},{"id":"https://openalex.org/keywords/white-box","display_name":"White box","score":0.42725831270217896},{"id":"https://openalex.org/keywords/adversarial-machine-learning","display_name":"Adversarial machine learning","score":0.42239969968795776},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.4124966561794281},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.3029349744319916},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.22409063577651978}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8411551117897034},{"id":"https://openalex.org/C41065033","wikidata":"https://www.wikidata.org/wiki/Q2825412","display_name":"Adversary","level":2,"score":0.6390315294265747},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.5326696634292603},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.531109631061554},{"id":"https://openalex.org/C94966114","wikidata":"https://www.wikidata.org/wiki/Q29256","display_name":"Black box","level":2,"score":0.5299725532531738},{"id":"https://openalex.org/C177264268","wikidata":"https://www.wikidata.org/wiki/Q1514741","display_name":"Set (abstract data type)","level":2,"score":0.5050283074378967},{"id":"https://openalex.org/C28490314","wikidata":"https://www.wikidata.org/wiki/Q189436","display_name":"Speech recognition","level":1,"score":0.43933573365211487},{"id":"https://openalex.org/C180932941","wikidata":"https://www.wikidata.org/wiki/Q997233","display_name":"White box","level":2,"score":0.42725831270217896},{"id":"https://openalex.org/C2778403875","wikidata":"https://www.wikidata.org/wiki/Q20312394","display_name":"Adversarial machine learning","level":3,"score":0.42239969968795776},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.4124966561794281},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.3029349744319916},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.22409063577651978},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1109/dyspan.2019.8935789","is_oa":false,"landing_page_url":"https://doi.org/10.1109/dyspan.2019.8935789","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2019 IEEE International Symposium on Dynamic Spectrum Access Networks (DySPAN)","raw_type":"proceedings-article"},{"id":"pmh:oai:alma.01RUT_INST:11685501060004646","is_oa":false,"landing_page_url":"https://scholarship.libraries.rutgers.edu/esploro/outputs/conferenceProceeding/Semi-black-box-Attacks-Against-Speech-Recognition-Systems/991031759099404646","pdf_url":null,"source":{"id":"https://openalex.org/S4210197018","display_name":"View","issn_l":"2688-268X","issn":["2688-268X","2688-3988"],"is_oa":false,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310320595","host_organization_name":"Wiley","host_organization_lineage":["https://openalex.org/P4310320595"],"host_organization_lineage_names":["Wiley"],"type":"journal"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"Conference Proceedings"}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.800000011920929,"display_name":"Peace, Justice and strong institutions","id":"https://metadata.un.org/sdg/16"}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":21,"referenced_works":["https://openalex.org/W1494198834","https://openalex.org/W1524333225","https://openalex.org/W1922655562","https://openalex.org/W1945616565","https://openalex.org/W2166843422","https://openalex.org/W2770312844","https://openalex.org/W2782403400","https://openalex.org/W2885407017","https://openalex.org/W2916979304","https://openalex.org/W2962717526","https://openalex.org/W2963058500","https://openalex.org/W2963070863","https://openalex.org/W2963207607","https://openalex.org/W2964301649","https://openalex.org/W2973252307","https://openalex.org/W6631362777","https://openalex.org/W6640090968","https://openalex.org/W6640425456","https://openalex.org/W6746882984","https://openalex.org/W6748288002","https://openalex.org/W6751228627"],"related_works":["https://openalex.org/W4320018150","https://openalex.org/W4239582170","https://openalex.org/W3048732067","https://openalex.org/W2918664383","https://openalex.org/W106056076","https://openalex.org/W2047881532","https://openalex.org/W4320855730","https://openalex.org/W4383468834","https://openalex.org/W2135200719","https://openalex.org/W4224288049"],"abstract_inverted_index":{"As":[0],"automatic":[1],"speech":[2],"recognition":[3],"(ASR)":[4],"systems":[5,73],"have":[6,24,34,64],"been":[7],"integrated":[8],"into":[9,131],"a":[10,132],"diverse":[11],"set":[12],"of":[13,22,46,83,92,180,193],"devices":[14],"around":[15],"us":[16],"in":[17,96,160],"recent":[18],"years,":[19],"security":[20],"vulnerabilities":[21],"them":[23],"become":[25],"an":[26],"increasing":[27],"concern":[28],"for":[29],"the":[30,43,58,94,97,106,111,138,150,161,191,194],"public.":[31],"Existing":[32],"studies":[33,63],"demonstrated":[35],"that":[36,165],"deep":[37],"neural":[38],"networks":[39],"(DNNs),":[40],"acting":[41],"as":[42,149],"computation":[44],"core":[45],"ASR":[47,72,99,112],"systems,":[48],"is":[49],"vulnerable":[50],"to":[51,158,177],"deliberately":[52],"designed":[53,79],"adversarial":[54,67],"attacks.":[55],"Based":[56],"on":[57,137],"gradient":[59],"descent":[60],"algorithm,":[61],"existing":[62],"successfully":[65],"generated":[66],"samples":[68],"which":[69,89],"can":[70,127,168],"disturb":[71],"and":[74,122,156,187,199],"produce":[75],"adversary-expected":[76],"transcript":[77],"texts":[78],"by":[80,154],"adversaries.":[81],"Most":[82],"these":[84],"research":[85],"simulated":[86],"white-box":[87],"attacks":[88],"require":[90],"knowledge":[91],"all":[93],"components":[95],"targeted":[98],"systems.":[100],"In":[101],"this":[102],"work,":[103],"we":[104,126],"propose":[105],"first":[107],"semi-black-box":[108],"attack":[109,167,171],"against":[110],"system":[113],"-":[114],"Kaldi.":[115],"Requiring":[116],"only":[117],"partial":[118],"information":[119],"from":[120,124],"Kaldi":[121,155],"none":[123],"DNN,":[125],"embed":[128],"malicious":[129,152],"commands":[130,153],"single":[133],"audio":[134,144,181],"chip":[135],"based":[136],"gradient-independent":[139],"genetic":[140],"algorithm.":[141],"The":[142],"crafted":[143],"clip":[145],"could":[146],"be":[147],"recognized":[148],"embedded":[151],"unnoticeable":[157,175],"humans":[159],"meanwhile.":[162],"Experiments":[163],"show":[164],"our":[166],"achieve":[169],"high":[170],"success":[172],"rate":[173],"with":[174],"perturbations":[176],"three":[178],"types":[179],"clips":[182],"(pop":[183],"music,":[184,186],"pure":[185],"human":[188],"command)":[189],"without":[190],"need":[192],"underlying":[195],"DNN":[196],"model":[197],"parameters":[198],"architecture.":[200]},"counts_by_year":[{"year":2025,"cited_by_count":1},{"year":2023,"cited_by_count":2},{"year":2022,"cited_by_count":3},{"year":2021,"cited_by_count":1},{"year":2020,"cited_by_count":1}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
