中文

芝麻开门!为语音服务引入访问控制

密码学与安全 2021-06-29 v1 系统与控制 系统与控制

摘要

个人语音助手(VA)被证明易受重放录音及其他声学攻击,攻击者借此可未经授权控制智能家居中的联网设备。现有防御手段要么缺乏检测与管理能力,要么粒度过于粗犷,无法像其他计算接口那样实施灵活的策略。本工作中,我们提出 Sesame,一种面向边缘设备的轻量级框架,首次实现对智能家居语音命令的细粒度访问控制。Sesame 结合了三个组件:自动语音识别、自然语言理解(NLU)与策略模块。我们在 Android 设备上实现了 Sesame,并证明我们的系统可针对 Alexa 和 Google Home 实时(端到端推理时间 362ms)执行安全策略,其轻量级(<25MB)NLU 模型相比非压缩等价模型精度损失极小。

关键词

引用

@article{arxiv.2106.14191,
  title  = {Open, Sesame! Introducing Access Control to Voice Services},
  author = {Dominika Woszczyk and Alvin Lee and Soteris Demetriou},
  journal= {arXiv preprint arXiv:2106.14191},
  year   = {2021}
}

备注

6 pages, to appear in the 1st Workshop on Security and Privacy for Mobile AI (MAISP'21) - co-located with ACM MobiSys 2021