Improving the Speaker Anonymization Evaluation's Robustness to Target Speakers with Adversarial Learning
Improving the Speaker Anonymization Evaluation's Robustness to Target Speakers with Adversarial Learning
The current privacy evaluation for speaker anonymization often overestimates privacy when a same-gender target selection algorithm (TSA) is used, although this TSA leaks the speaker's gender and should hence be more vulnerable. We hypothesize that this occurs because the evaluation does not account for the fact that anonymized speech contains information from both the source and target speakers. To address this, we propose to add a target classifier that measures the influence of target speaker information in the evaluation, which can also be removed with adversarial learning. Experiments demonstrate that this approach is effective for multiple anonymizers, particularly when using a same-gender TSA, leading to a more reliable assessment.
Carlos Franzreb、Arnab Das、Tim Polzehl、Sebastian Möller
计算技术、计算机技术
Carlos Franzreb,Arnab Das,Tim Polzehl,Sebastian Möller.Improving the Speaker Anonymization Evaluation's Robustness to Target Speakers with Adversarial Learning[EB/OL].(2025-08-13)[2025-08-24].https://arxiv.org/abs/2508.09803.点此复制
评论