Ghost in the Radio: An Audio Adversarial Attack Using Environmental Noise Through Radio

Many automatic speech recognition (ASR) systems provide functions such as sending messages or opening garage doors. If such a system malfunctions, it could pose a significant threat. In this paper, we propose the attack scenario in which we transfer audio adversarial examples to radio system through...

Full description

Saved in:
Bibliographic Details
Main Authors: Hyeongjun Choi, Ji Hyuk Jung, Ji Won Yoon
Format: Article
Language:English
Published: IEEE 2024-01-01
Series:IEEE Access
Subjects:
Online Access:https://ieeexplore.ieee.org/document/10745477/
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1846159794047549440
author Hyeongjun Choi
Ji Hyuk Jung
Ji Won Yoon
author_facet Hyeongjun Choi
Ji Hyuk Jung
Ji Won Yoon
author_sort Hyeongjun Choi
collection DOAJ
description Many automatic speech recognition (ASR) systems provide functions such as sending messages or opening garage doors. If such a system malfunctions, it could pose a significant threat. In this paper, we propose the attack scenario in which we transfer audio adversarial examples to radio system through the radio signal and the sound received through radio deceives the ASR system. In addition, we propose over-the-air technology using environmental noise so that we can attack easily and effectively. Using this method, we observed that the combined sound was much more robust to environmental noise than the non-combined sound. Finally, we experiment as our scenario on a real environment with adversarial examples created using environmental noise and show the results. Our attack succeeded against commercial ASR systems with a success rate of over 50%.
format Article
id doaj-art-0d6ff83002b64bc48dcdab8d8d042ac4
institution Kabale University
issn 2169-3536
language English
publishDate 2024-01-01
publisher IEEE
record_format Article
series IEEE Access
spelling doaj-art-0d6ff83002b64bc48dcdab8d8d042ac42024-11-23T00:01:10ZengIEEEIEEE Access2169-35362024-01-011217171817172710.1109/ACCESS.2024.349227310745477Ghost in the Radio: An Audio Adversarial Attack Using Environmental Noise Through RadioHyeongjun Choi0https://orcid.org/0000-0003-1700-3729Ji Hyuk Jung1https://orcid.org/0000-0002-8076-4742Ji Won Yoon2https://orcid.org/0000-0003-2123-9849School of Cybersecurity, Korea University, Seoul, South KoreaSchool of Cybersecurity, Korea University, Seoul, South KoreaSchool of Cybersecurity, Korea University, Seoul, South KoreaMany automatic speech recognition (ASR) systems provide functions such as sending messages or opening garage doors. If such a system malfunctions, it could pose a significant threat. In this paper, we propose the attack scenario in which we transfer audio adversarial examples to radio system through the radio signal and the sound received through radio deceives the ASR system. In addition, we propose over-the-air technology using environmental noise so that we can attack easily and effectively. Using this method, we observed that the combined sound was much more robust to environmental noise than the non-combined sound. Finally, we experiment as our scenario on a real environment with adversarial examples created using environmental noise and show the results. Our attack succeeded against commercial ASR systems with a success rate of over 50%.https://ieeexplore.ieee.org/document/10745477/Adversarial attackartificial intelligenceautomatic speech recognitionenvironmental noiseover-the-air
spellingShingle Hyeongjun Choi
Ji Hyuk Jung
Ji Won Yoon
Ghost in the Radio: An Audio Adversarial Attack Using Environmental Noise Through Radio
IEEE Access
Adversarial attack
artificial intelligence
automatic speech recognition
environmental noise
over-the-air
title Ghost in the Radio: An Audio Adversarial Attack Using Environmental Noise Through Radio
title_full Ghost in the Radio: An Audio Adversarial Attack Using Environmental Noise Through Radio
title_fullStr Ghost in the Radio: An Audio Adversarial Attack Using Environmental Noise Through Radio
title_full_unstemmed Ghost in the Radio: An Audio Adversarial Attack Using Environmental Noise Through Radio
title_short Ghost in the Radio: An Audio Adversarial Attack Using Environmental Noise Through Radio
title_sort ghost in the radio an audio adversarial attack using environmental noise through radio
topic Adversarial attack
artificial intelligence
automatic speech recognition
environmental noise
over-the-air
url https://ieeexplore.ieee.org/document/10745477/
work_keys_str_mv AT hyeongjunchoi ghostintheradioanaudioadversarialattackusingenvironmentalnoisethroughradio
AT jihyukjung ghostintheradioanaudioadversarialattackusingenvironmentalnoisethroughradio
AT jiwonyoon ghostintheradioanaudioadversarialattackusingenvironmentalnoisethroughradio