Collaborative Research: SaTC: CORE: Small: Securing IoT and Edge Devices under Audio Adversarial Attacks

协作研究:SaTC:核心:小型:在音频对抗攻击下保护物联网和边缘设备

基本信息

  • 批准号:
    2114161
  • 负责人:
  • 金额:
    $ 17万
  • 依托单位:
  • 依托单位国家:
    美国
  • 项目类别:
    Standard Grant
  • 财政年份:
    2021
  • 资助国家:
    美国
  • 起止时间:
    2021-10-01 至 2024-09-30
  • 项目状态:
    已结题

项目摘要

Powered by the advancement of artificial intelligence (AI) techniques, the next-generation voice-controllable IoT and edge systems have substantially facilitated people’s daily lives. Such systems include voice assistant systems and voice authenticated mobile banking, among many others. However, the underlying machine learning approaches used in these systems, are inherently vulnerable to audio adversarial attacks, in which an adversary can mislead the machine learning models via injecting imperceptible perturbation to the original audio input. Given the widespread adoption of voice-controllable IoT and edge systems in many privacy-critical and safety-critical applications, e.g., personal banking and autonomous driving, the in-depth understanding and investigation of severity and consequences of audio-based adversarial attack as well as the corresponding defense solutions, are highly demanded. This project will perform a comprehensive study and analysis of the vulnerability and robustness of voice-controllable IoT and edge systems against audio-domain adversarial attacks in both temporal and spatial perspectives. The research outcome of this project will form solid foundations for building trustworthy voice-controllable IoT and edge systems. The developed defense techniques will improve the security of many intelligent audio systems, such as automatic speech recognition (ASR), keyword spotting, and speaker recognition. This project will involve underrepresented students, undergraduate and graduate students, and K-12 students through a variety of engaging programs.The objective of this project is to demonstrate the feasibility of audio adversarial attacks in the physical world, determine the attack severity and consequences, and further develop defending strategies in practical environments to build attack-resilient voice-controllable Internet-of-Things (IoT) devices and edge systems. To study the possibility and severity of audio adversarial attacks in a practical time-constraint setting, the project will develop low-cost audio-agnostic synchronization-free attack launching schemes, including audio-specific fast adversarial perturbation generator and universal adversarial perturbation generator. To investigate how the adversarial perturbations survive various propagation factors in realistic environments, the project will analyze the audio distortions caused by the over-the-air propagation using an advanced room impulse response simulator and physical environment measurements. The project will also develop several defense techniques, including defensive denoiser, model enhancement, and microphone-array-based liveness detection. The presented technique will help to secure the voice-controllable IoT and edge devices under audio adversarial attacks. The project will also contribute to a new computing paradigm in audio-based adversarial machine learning in both theoretic foundations as well as safety-critical audio-oriented emerging applications.This award reflects NSF's statutory mission and has been deemed worthy of support through evaluation using the Foundation's intellectual merit and broader impacts review criteria.
在人工智能(AI)技术的发展方面,下一代语音控制的物联网和边缘系统的推动力大大支持了人们的日常生活。这样的系统包括语音助理系统和语音身份验证的移动银行业务等。但是,这些系统中使用的基础机器学习方法本质上容易受到音频对抗性攻击的影响,在这种情况下,对手可以通过向原始音频输入注入不可察觉的扰动来误导机器学习模型。鉴于在许多关键和关键安全的应用中采用了语音控制的物联网和边缘系统,例如个人银行和自动驾驶,高度要求对基于音频的对抗性攻击以及对应的国防解决方案的严重性以及对严重性的深入理解和调查。该项目将对语音控制的物联网和边缘系统的脆弱性和鲁棒性进行全面研究和分析,以针对临时和空间观点的音频域对抗攻击。该项目的研究结果将构成可靠的基础,以建立可信赖的语音控制物联网和边缘系统。开发的防御技术将提高许多智能音频系统的安全性,例如自动语音识别(ASR),关键字斑点和扬声器识别。该项目将通过各种引人入胜的计划涉及代表性不足的学生,本科生和研究生以及K-12学生。该项目的目的是证明在物理世界中音频对抗性攻击的可行性,确定攻击性的严重性和后果,并在实践环境中进一步发展攻击性的策略,以构建攻击性的语言互联网和互联网互联网(Intern Internt)。为了研究在实用的时间限制环境中音频对抗攻击的可能性和严重性,该项目将开发低成本的音频无关同步攻击启动方案,包括音频特定的快速对抗性扰动生成器和通用对抗性扰动生成器。为了研究对抗性扰动如何在现实环境中生存各种传播因素,该项目将使用高级房间脉冲响应模拟器和物理环境测量值分析由空中传播引起的音频畸变。该项目还将开发多种防御技术,包括防御性Denoiser,模型增强和基于麦克风阵列的Livices检测。提出的技术将有助于在音频对抗攻击下保护语音控制的物联网和边缘设备。该项目还将有助于基于音频的对抗机器学习的新计算范式在理论基础中以及面向安全性音频的新兴应用程序中。该奖项反映了NSF的法定任务,并被认为是通过基金会的智力和更广泛影响的评估来通过评估来通过评估来获得支持的珍贵。

项目成果

期刊论文数量(3)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)
Speech Privacy Leakage from Shared Gradients in Distributed Learning
Audio-domain position-independent backdoor attack via unnoticeable triggers
RIBAC: Towards Robust and Imperceptible Backdoor Attack against Compact DNN
  • DOI:
    10.48550/arxiv.2208.10608
  • 发表时间:
    2022-08
  • 期刊:
  • 影响因子:
    0
  • 作者:
    Huy Phan;Cong Shi;Yi Xie;Tian-Di Zhang;Zhuohang Li;Tianming Zhao;Jian Liu;Yan Wang;Ying Chen;Bo Yuan
  • 通讯作者:
    Huy Phan;Cong Shi;Yi Xie;Tian-Di Zhang;Zhuohang Li;Tianming Zhao;Jian Liu;Yan Wang;Ying Chen;Bo Yuan
{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

数据更新时间:{{ journalArticles.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ monograph.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ sciAawards.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ conferencePapers.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ patent.updateTime }}

Jian Liu其他文献

Effects of the oppositely charged moieties on the self-assembly and biophysicochemical properties of polyurethane micelles
带相反电荷的基团对聚氨酯胶束自组装和生物理化性能的影响
  • DOI:
    10.1039/d2tb00631f
  • 发表时间:
    2022
  • 期刊:
  • 影响因子:
    7
  • 作者:
    Zhicheng Pan;Guangxuan Yang;Jian Liu;Jinfeng Yuan;Mingwang Pan;Jiehua Li;Hong Tan
  • 通讯作者:
    Hong Tan
The pyrolysis behavior and biochar characteristics of Jerusalem artichoke straw with cerium nitrate
硝酸铈菊芋秸秆热解行为及生物炭特性
  • DOI:
    10.1016/j.jaap.2022.105768
  • 发表时间:
    2022
  • 期刊:
  • 影响因子:
    6
  • 作者:
    Lu Wang;Gaigai Xue;Ting Li;Tao Ye;Xianming Ma;Xiaohui Ju;Peiyong Ma;Jian Liu;Hanwu Lei
  • 通讯作者:
    Hanwu Lei
An energy-efficient distributed adaptive cooperative routing based on reinforcement learning in wireless multimedia sensor networks
无线多媒体传感器网络中基于强化学习的节能分布式自适应协作路由
  • DOI:
    10.1016/j.comnet.2020.107313
  • 发表时间:
    2020-09
  • 期刊:
  • 影响因子:
    5.6
  • 作者:
    Denghui Wang;Jian Liu;Dezhong Yao
  • 通讯作者:
    Dezhong Yao
Pharmacokinetics and tissue distribution study of camellianin A and its major metabolite in rats by liquid chromatography with tandem mass spectrometry
液相色谱-串联质谱法研究茶花苷A及其主要代谢物在大鼠体内的药动学和组织分布
Influence of Ti on the Microstructure and Performance of Fe-Cr Alloy Cladding Layer
Ti对Fe-Cr合金熔覆层组织和性能的影响
  • DOI:
    10.4028/www.scientific.net/msf.849.709
  • 发表时间:
    2016
  • 期刊:
  • 影响因子:
    0
  • 作者:
    Jian Liu;Qing Tao;Wei Lai;Weigang Tang;Jian Wang;Wei Liu
  • 通讯作者:
    Wei Liu

Jian Liu的其他文献

{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

{{ truncateString('Jian Liu', 18)}}的其他基金

Collaborative Research: High-precision monitoring of foodborne pathogens in food manufacturing facilities
合作研究:食品生产设施中食源性病原体的高精度监测
  • 批准号:
    2130643
  • 财政年份:
    2022
  • 资助金额:
    $ 17万
  • 项目类别:
    Standard Grant
Collaborative Research: CCSS: Continuous Facial Sensing and 3D Reconstruction via Single-ear Wearable Biosensors
合作研究:CCSS:通过单耳可穿戴生物传感器进行连续面部传感和 3D 重建
  • 批准号:
    2132106
  • 财政年份:
    2021
  • 资助金额:
    $ 17万
  • 项目类别:
    Standard Grant
Spatial-temporal control over tipping-point operation defines fidelity of genome partition
对临界点操作的时空控制定义了基因组分区的保真度
  • 批准号:
    2105837
  • 财政年份:
    2021
  • 资助金额:
    $ 17万
  • 项目类别:
    Continuing Grant
The Rising Stars in Cell Biology Symposium
细胞生物学新星研讨会
  • 批准号:
    2134945
  • 财政年份:
    2021
  • 资助金额:
    $ 17万
  • 项目类别:
    Standard Grant
CAREER: Engineering artificial oxide layers with hidden spin symmetry for drivable 2D quantum magnetism
职业:设计具有隐藏自旋对称性的人造氧化物层,以实现可驱动的二维量子磁性
  • 批准号:
    1848269
  • 财政年份:
    2019
  • 资助金额:
    $ 17万
  • 项目类别:
    Continuing Grant
Collaborative Research: Multi-Level Data Fusion for Real-Time Prognostic Health Management of Hierarchical Systems
协作研究:分层系统实时预测健康管理的多级数据融合
  • 批准号:
    1100949
  • 财政年份:
    2011
  • 资助金额:
    $ 17万
  • 项目类别:
    Standard Grant
SBIR Phase II: A MHz High Energy Femtosecond Fiber Laser System for High Throughput Photonic Device Fabrication
SBIR 第二阶段:用于高通量光子器件制造的 MHz 高能飞秒光纤激光器系统
  • 批准号:
    0952237
  • 财政年份:
    2010
  • 资助金额:
    $ 17万
  • 项目类别:
    Standard Grant
SBIR Phase I: A MHz High Energy Femtosecond Fiber Laser System for High Throughput Photonic Device Fabrication
SBIR 第一阶段:用于高通量光子器件制造的 MHz 高能飞秒光纤激光器系统
  • 批准号:
    0839230
  • 财政年份:
    2009
  • 资助金额:
    $ 17万
  • 项目类别:
    Standard Grant
NER: Semiconductor Quantum Dot-Based Artificial Enzymes. Rational Design and Development
NER:基于半导体量子点的人工酶。
  • 批准号:
    0403269
  • 财政年份:
    2004
  • 资助金额:
    $ 17万
  • 项目类别:
    Standard Grant

相似国自然基金

支持二维毫米波波束扫描的微波/毫米波高集成度天线研究
  • 批准号:
    62371263
  • 批准年份:
    2023
  • 资助金额:
    52 万元
  • 项目类别:
    面上项目
腙的Heck/脱氮气重排串联反应研究
  • 批准号:
    22301211
  • 批准年份:
    2023
  • 资助金额:
    30 万元
  • 项目类别:
    青年科学基金项目
水系锌离子电池协同性能调控及枝晶抑制机理研究
  • 批准号:
    52364038
  • 批准年份:
    2023
  • 资助金额:
    33 万元
  • 项目类别:
    地区科学基金项目
基于人类血清素神经元报告系统研究TSPYL1突变对婴儿猝死综合征的致病作用及机制
  • 批准号:
    82371176
  • 批准年份:
    2023
  • 资助金额:
    49 万元
  • 项目类别:
    面上项目
FOXO3 m6A甲基化修饰诱导滋养细胞衰老效应在补肾法治疗自然流产中的机制研究
  • 批准号:
    82305286
  • 批准年份:
    2023
  • 资助金额:
    30 万元
  • 项目类别:
    青年科学基金项目

相似海外基金

Collaborative Research: SaTC: CORE: Medium: Using Intelligent Conversational Agents to Empower Adolescents to be Resilient Against Cybergrooming
合作研究:SaTC:核心:中:使用智能会话代理使青少年能够抵御网络诱骗
  • 批准号:
    2330940
  • 财政年份:
    2024
  • 资助金额:
    $ 17万
  • 项目类别:
    Continuing Grant
Collaborative Research: SaTC: CORE: Medium: Differentially Private SQL with flexible privacy modeling, machine-checked system design, and accuracy optimization
协作研究:SaTC:核心:中:具有灵活隐私建模、机器检查系统设计和准确性优化的差异化私有 SQL
  • 批准号:
    2317232
  • 财政年份:
    2024
  • 资助金额:
    $ 17万
  • 项目类别:
    Continuing Grant
Collaborative Research: NSF-BSF: SaTC: CORE: Small: Detecting malware with machine learning models efficiently and reliably
协作研究:NSF-BSF:SaTC:核心:小型:利用机器学习模型高效可靠地检测恶意软件
  • 批准号:
    2338301
  • 财政年份:
    2024
  • 资助金额:
    $ 17万
  • 项目类别:
    Continuing Grant
Collaborative Research: SaTC: CORE: Medium: Differentially Private SQL with flexible privacy modeling, machine-checked system design, and accuracy optimization
协作研究:SaTC:核心:中:具有灵活隐私建模、机器检查系统设计和准确性优化的差异化私有 SQL
  • 批准号:
    2317233
  • 财政年份:
    2024
  • 资助金额:
    $ 17万
  • 项目类别:
    Continuing Grant
Collaborative Research: NSF-BSF: SaTC: CORE: Small: Detecting malware with machine learning models efficiently and reliably
协作研究:NSF-BSF:SaTC:核心:小型:利用机器学习模型高效可靠地检测恶意软件
  • 批准号:
    2338302
  • 财政年份:
    2024
  • 资助金额:
    $ 17万
  • 项目类别:
    Continuing Grant
{{ showInfoDetail.title }}

作者:{{ showInfoDetail.author }}

知道了