首页> 外文期刊>IEEE transactions on dependable and secure computing >The Feasibility of Injecting Inaudible Voice Commands to Voice Assistants
【24h】

The Feasibility of Injecting Inaudible Voice Commands to Voice Assistants

机译:向语音助手注入音乐声音命令的可行性

获取原文
获取原文并翻译 | 示例

摘要

Voice assistants (VAs) such as Siri and Google Now have become an increasingly popular human-machine interaction method and have made various systems voice controllable. Prior work on attacking voice assistants shows that the hidden voice commands that are incomprehensible to people can control the VAs. Hidden voice commands, though 'hidden', are nonetheless audible. In this work, we design a completely inaudible attack, DolphinAttack, that modulates voice commands on ultrasonic carriers to achieve inaudibility. By leveraging the nonlinearity of the microphone circuits, the modulated low-frequency audio commands can be successfully demodulated, recovered, and more importantly interpreted by the voice assistants. We validate DolphinAttack on popular voice assistants, including Siri, Google Now, S Voice, HiVoice, Cortana, Alexa, etc. By injecting a sequence of inaudible voice commands, we show a few proof-of-concept attacks, which include activating Siri to initiate a FaceTime call on iPhone, activating Google Now to turn on the airplane mode, and even manipulating the navigation system in an Audi automobile. We propose hardware and software defense solutions. We validate that it is feasible to detect DolphinAttack by classifying the audios using supported vector machine (SVM), and suggest to re-design voice assistants to be resilient to inaudible voice command attacks.
机译:Siri和Google等语音助理(VAS)已成为人机交互方法越来越受欢迎,并使各种系统语音可控。攻击语音助理的事先工作表明,人们难以理解的语音命令可以控制VAS。隐藏的语音命令,虽然“隐藏”,但仍然是可听的。在这项工作中,我们设计了一个完全听不清的攻击,Dolphinattack,可以在超声波载波上调制语音命令,以实现不和谐。通过利用麦克风电路的非线性,可以通过语音助手成功解调,恢复和更重要地解释调制的低频音频命令。我们验证了流行的语音助理的海豚,包括Siri,谷歌,S声音,霍爱,Cortana,Alexa等通过注入一系列听力的语音命令,我们展示了一些概念验证攻击,包括激活Siri到在iPhone上启动FaceTime呼叫,现在激活Google打开飞机模式,甚至在奥迪汽车中操纵导航系统。我们提出了硬件和软件防御解决方案。我们通过使用支持的向量机(SVM)来检测Dolphinattack是可行的,并建议重新设计语音助手来重新设计语音命令攻击。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号