Inaudible Adversarial Perturbation: Manipulating the Recognition of User Speech in Real Time

Xinfeng Li

Network and Distributed System Security (NDSS) Symposium 2024 · Day 2 · Audio & Voice Security

This talk introduces **VRIFLE**, a novel **inaudible adversarial perturbation (IAP) attack** designed to manipulate **Automatic Speech Recognition (ASR)** systems in real-time, even while a user is speaking and without their awareness. Presented by Xinfeng Li, this research addresses a significant gap in the field of adversarial examples against ASR. Previous attacks often suffered from audibility, limited universality, or failed in the presence of user speech and potential remedy commands. VRIFLE aims to overcome these limitations by leveraging **ultrasound modulation** to deliver stealthy, potent perturbations.

Watch on YouTube