Publications

SLMIA-SR: Speaker-Level Membership Inference Attacks against Speaker Recognition Systems

NDSS 2024, CCF-A

Guangke Chen, Yedi Zhang, and Fu Song

[paper] [code]

Guangke Chen, Yedi Zhang, Zhe Zhao, and Fu Song

QFA2SR: Query-Free Adversarial Transfer Attacks to Speaker Recognition Systems

USENIX Security 2023, CCF-A

[paper] [website] [slide] [talk] [press]

💥 🔥 highly effective against commercial APIs and voice assistants

🌟 vulnerability disclosure received bounty award from vendor

Guangke Chen, Zhe Zhao, Fu Song, Sen Chen, Lingling Fan, Feng Wang, Jiashui Wang

'Towards Understanding and Mitigating Audio Adversarial Examples for Speaker Recognition'

IEEE Transactions on Dependable and Secure Computing (TDSC), CCF-A, IF=7.3

[paper] [code] [website] [slide]

Yedi Zhang, Zhe Zhao, Guangke Chen, Fu Song, Taolue Chen

'Precise Quantitative Analysis of Binarized Neural Networks: A BDD-based Approach'

ACM Transactions on Software Engineering and Methodology (TOSEM, CCF-A)

Yedi Zhang, Zhe Zhao, Guangke Chen, Fu Song, Min Zhang, Taulue Chen, Jun Sun

'QVIP: An ILP-based Formal Verification Approach for Quantized Neural Networks'

ASE 2022, CCF-A

[paper] [code]

Zhe Zhao, Yedi Zhang, Guangke Chen, Fu Song, Taolue Chen and Jiaxiang Liu

'CLEVEREST: Accelerating CEGAR-based Neural Network Verification via Adversarial Attacks'

SAS 2022, CCF-B

[paper]

Guangke Chen, Zhe Zhao, Fu Song, Sen Chen, Lingling Fan, Yang Liu

'AS2T: Arbitrary source-to-target adversarial attack on speaker recognition systems'

IEEE Transactions on Dependable and Secure Computing (TDSC), CCF-A, IF=7.3

[paper] [blog]

Zhe Zhao, Guangke Chen, Tong Liu, Taishan Li, Fu Song, Jingyi Wang, Jun Sun

'Attack as Detection: Using Adversarial Attack Methods to Detect Abnormal Examples'

Under review

Guangke Chen, Zhe Zhao, Fu Song, Sen Chen, Lingling Fan, Yang Liu.

'SEC4SR: A Security Analysis Platform for Speaker Recognition'.

Preprint

[paper] [code] [website]

Guangke Chen, Sen Chen, Lingling Fan, Xiaoning Du, Zhe Zhao, Fu Song, Yang Liu.

'Who is Real Bob? Adversarial Attacks on Speaker Recognition Systems'.

Oakland 2021, CCF-A

Acceptance Rate: 115/952=12%

[paper] [website] [code] [slide] [talk] [blog] [press-1] [press-2] [press-3]

💥 🔥 🌟 citations > 140

Zhe Zhao, Guangke Chen, Jingyi Wang, Yiwei Yang, Fu Song, Jun Sun.

'Attack as Defense: Characterizing Adversarial Examples using Robustness'.

ISSTA 2021, CCF-A

Acceptance Rate: 51/219=23%

[paper] [code]

Yedi Zhang, Zhe Zhao, Guangke Chen, Fu Song, Taolue Chen.

'BDD4BNN: A BDD-based Quantitative Analysis Framework for Binarized Neural Networks'.

CAV 2021, CCF-A

Acceptance Rate: 79/290=27%

[paper]