{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,3]],"date-time":"2026-04-03T14:15:46Z","timestamp":1775225746506,"version":"3.50.1"},"reference-count":48,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","license":[{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/501100012166","name":"National Key Research and Development Program of China","doi-asserted-by":"publisher","award":["2023YFB3107402"],"award-info":[{"award-number":["2023YFB3107402"]}],"id":[{"id":"10.13039\/501100012166","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62102354"],"award-info":[{"award-number":["62102354"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62172277"],"award-info":[{"award-number":["62172277"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62032021"],"award-info":[{"award-number":["62032021"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62372406"],"award-info":[{"award-number":["62372406"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62172359"],"award-info":[{"award-number":["62172359"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"name":"Hangzhou Leading Innovation and Entrepreneurship Team","award":["TD2020003"],"award-info":[{"award-number":["TD2020003"]}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans.Inform.Forensic Secur."],"published-print":{"date-parts":[[2024]]},"DOI":"10.1109\/tifs.2023.3345639","type":"journal-article","created":{"date-parts":[[2023,12,21]],"date-time":"2023-12-21T19:24:37Z","timestamp":1703186677000},"page":"1948-1962","source":"Crossref","is-referenced-by-count":13,"title":["AdvReverb: Rethinking the Stealthiness of Audio Adversarial Examples to Human Perception"],"prefix":"10.1109","volume":"19","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-4775-5107","authenticated-orcid":false,"given":"Meng","family":"Chen","sequence":"first","affiliation":[{"name":"State Key Laboratory of Blockchain and Data Security, School of Cyber Science and Technology, College of Computer Science and Technology, Zhejiang University, Hangzhou, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-5230-3749","authenticated-orcid":false,"given":"Li","family":"Lu","sequence":"additional","affiliation":[{"name":"State Key Laboratory of Blockchain and Data Security, School of Cyber Science and Technology, College of Computer Science and Technology, Zhejiang University, Hangzhou, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-0207-9643","authenticated-orcid":false,"given":"Jiadi","family":"Yu","sequence":"additional","affiliation":[{"name":"Department of Computer Science and Engineering, Shanghai Jiao Tong University, Shanghai, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-0921-8869","authenticated-orcid":false,"given":"Zhongjie","family":"Ba","sequence":"additional","affiliation":[{"name":"State Key Laboratory of Blockchain and Data Security, School of Cyber Science and Technology, College of Computer Science and Technology, Zhejiang University, Hangzhou, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-5240-5200","authenticated-orcid":false,"given":"Feng","family":"Lin","sequence":"additional","affiliation":[{"name":"State Key Laboratory of Blockchain and Data Security, School of Cyber Science and Technology, College of Computer Science and Technology, Zhejiang University, Hangzhou, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-1969-2591","authenticated-orcid":false,"given":"Kui","family":"Ren","sequence":"additional","affiliation":[{"name":"State Key Laboratory of Blockchain and Data Security, School of Cyber Science and Technology, College of Computer Science and Technology, Zhejiang University, Hangzhou, China"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.21437\/Interspeech.2019-1363"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.21437\/Interspeech.2021-383"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/ICASSP.2018.8461375"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.21437\/Interspeech.2020-2650"},{"key":"ref5","first-page":"12449","article-title":"wav2vec 2.0: A framework for self-supervised learning of speech representations","volume-title":"Proc. Adv. Neural Inf. Process. Syst.","volume":"33","author":"Baevski"},{"key":"ref6","article-title":"Robust speech recognition via large-scale weak supervision","author":"Radford","year":"2022","journal-title":"arXiv:2212.04356"},{"key":"ref7","first-page":"6977","article-title":"Houdini: Fooling deep structured visual and speech recognition models with adversarial examples","volume-title":"Proc. NeurIPS","author":"Ciss\u00e9"},{"key":"ref8","first-page":"49","article-title":"CommanderSong: A systematic approach for practical adversarial voice recognition","volume-title":"Proc. USENIX Secur.","author":"Yuan"},{"key":"ref9","first-page":"2667","article-title":"Devil\u2019s whisper: A general approach for physical adversarial attacks against commercial black-box speech recognition devices","volume-title":"Proc. USENIX Secur.","author":"Chen"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1145\/3460120.3485383"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2020.3026543"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/SP40001.2021.00004"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1109\/INFOCOM48880.2022.9796934"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2022.3222963"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1109\/ICME46284.2020.9102886"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2022.3189397"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1145\/3320269.3384733"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.24963\/ijcai.2019\/741"},{"key":"ref19","first-page":"247","article-title":"KENKU: Towards efficient and stealthy black-box adversarial attacks against ASR systems","volume-title":"Proc. USENIX Secur.","author":"Wu"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1109\/SPW.2018.00009"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.21437\/Interspeech.2019-1353"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1145\/3372297.3423348"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2020.23055"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v35i16.17663"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2019.23288"},{"key":"ref26","first-page":"5231","article-title":"Imperceptible, robust, and targeted adversarial examples for automatic speech recognition","volume-title":"Proc. ICML","author":"Qin"},{"key":"ref27","first-page":"11908","article-title":"Adversarial music: Real world audio adversary against wake-word detection system","volume-title":"Proc. NeurIPS","author":"Li"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1145\/3427228.3427276"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1109\/INFOCOM41043.2020.9155483"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1145\/3548606.3560660"},{"key":"ref31","first-page":"2309","article-title":"Dompteur: Taming audio adversarial examples","volume-title":"Proc. USENIX Secur.","author":"Eisenhofer"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.21437\/Interspeech.2013-417"},{"key":"ref33","article-title":"Speech commands: A dataset for limited-vocabulary speech recognition","author":"Warden","year":"2018","journal-title":"arXiv:1804.03209"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.21437\/Interspeech.2017-950"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1109\/ICASSP.2015.7178964"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1186\/s13634-016-0306-6"},{"key":"ref37","article-title":"SpeechBrain: A general-purpose speech toolkit","author":"Ravanelli","year":"2021","journal-title":"arXiv:2106.04624"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.21437\/Interspeech.2017-1386"},{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.1109\/ISSPIT.2018.8642623"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.1145\/3319535.3363246"},{"key":"ref41","first-page":"2273","article-title":"WaveGuard: Understanding and mitigating audio adversarial examples","volume-title":"Proc. USENIX Secur.","author":"Hussain"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.24963\/ijcai.2020\/438"},{"key":"ref43","doi-asserted-by":"publisher","DOI":"10.1145\/3394171.3413603"},{"key":"ref44","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3133962"},{"key":"ref45","doi-asserted-by":"publisher","DOI":"10.1109\/INFOCOM.2018.8486283"},{"key":"ref46","first-page":"2685","article-title":"Void: A fast and light voice liveness detection system","volume-title":"Proc. USENIX Secur.","author":"Ahmed"},{"key":"ref47","doi-asserted-by":"publisher","DOI":"10.1145\/3460120.3484755"},{"key":"ref48","first-page":"1","article-title":"Explaining and harnessing adversarial examples","volume-title":"Proc. ICLR","author":"Goodfellow"}],"container-title":["IEEE Transactions on Information Forensics and Security"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/10206\/10319981\/10368060.pdf?arnumber=10368060","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,1,13]],"date-time":"2024-01-13T01:06:20Z","timestamp":1705107980000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10368060\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024]]},"references-count":48,"URL":"https:\/\/doi.org\/10.1109\/tifs.2023.3345639","relation":{},"ISSN":["1556-6013","1556-6021"],"issn-type":[{"value":"1556-6013","type":"print"},{"value":"1556-6021","type":"electronic"}],"subject":[],"published":{"date-parts":[[2024]]}}}