|国家预印本平台
首页|Novel Loss-Enhanced Universal Adversarial Patches for Sustainable Speaker Privacy

Novel Loss-Enhanced Universal Adversarial Patches for Sustainable Speaker Privacy

Novel Loss-Enhanced Universal Adversarial Patches for Sustainable Speaker Privacy

来源:Arxiv_logoArxiv
英文摘要

Deep learning voice models are commonly used nowadays, but the safety processing of personal data, such as human identity and speech content, remains suspicious. To prevent malicious user identification, speaker anonymization methods were proposed. Current methods, particularly based on universal adversarial patch (UAP) applications, have drawbacks such as significant degradation of audio quality, decreased speech recognition quality, low transferability across different voice biometrics models, and performance dependence on the input audio length. To mitigate these drawbacks, in this work, we introduce and leverage the novel Exponential Total Variance (TV) loss function and provide experimental evidence that it positively affects UAP strength and imperceptibility. Moreover, we present a novel scalable UAP insertion procedure and demonstrate its uniformly high performance for various audio lengths.

Elvir Karimov、Alexander Varlamov、Danil Ivanov、Dmitrii Korzh、Oleg Y. Rogov

计算技术、计算机技术

Elvir Karimov,Alexander Varlamov,Danil Ivanov,Dmitrii Korzh,Oleg Y. Rogov.Novel Loss-Enhanced Universal Adversarial Patches for Sustainable Speaker Privacy[EB/OL].(2025-05-26)[2025-06-15].https://arxiv.org/abs/2505.19951.点此复制

评论