Embodiments described herein relate to methods and devices for detecting a replay attack on a voice biometrics system.
Voice biometrics systems are becoming widely used. In such a system, a user trains the system by providing samples of their speech during an enrolment phase. In subsequent use, the system is able to discriminate between the enrolled user and non-registered speakers. Voice biometrics systems can in principle be used to control access to a wide range of services and systems.
One way for a malicious party to attempt to defeat a voice biometrics system is to obtain a recording of the enrolled user's speech, and to play back the recording in an attempt to impersonate the enrolled user and to gain access to services that are intended to be restricted to the enrolled user.
This is referred to as a replay attack, or as a spoofing attack.
According to an aspect of the present invention, there is provided a method of detecting a replay attack in a speaker recognition system. The method comprises: identifying at least one feature of a detected magnetic field; determining whether the at least one identified feature of the detected magnetic field is indicative of playback of speech through a loudspeaker; and if so, determining that a replay attack may have taken place.
The method may further comprise: receiving an audio signal representing speech, wherein the audio signal is received at substantially the same time as the magnetic field is detected; and if it is determined that the at least one identified feature of the detected magnetic field is indicative of playback of speech through a loudspeaker, determining that the audio signal may result from said replay attack.
The step of identifying at least one feature of the detected magnetic field may comprise: receiving a signal from a magnetometer; and performing a Discrete Fourier Transform on the received signal from the magnetometer.
The step of identifying at least one feature of the detected magnetic field may comprise: receiving a signal from a magnetometer; and detecting modulation of the at least one feature from the received signal from the magnetometer at frequencies in the range of 2 Hz-10 Hz, at the syllabic rate, and/or at the articulation rate. The syllabic rate and/or the articulation rate may correspond to typical rates for speech or for that specific type of speech or speaker, or may be determined by analysis of speech that is detected at the same time as the magnetic field is being detected.
The method may comprise determining whether a detected pattern of variability of the magnetic field is indicative of a reference pattern associated with playback of a predetermined spoken phrase through a loudspeaker.
Determining whether the detected pattern of variability of the magnetic field is indicative of a reference pattern associated with playback of a predetermined spoken phrase through a loudspeaker may comprise comparing the detected pattern of variability of the magnetic field with a stored reference pattern.
The stored reference pattern may correspond to the predetermined spoken phrase, as spoken by a specific enrolled user, or may correspond to the predetermined spoken phrase, as spoken by multiple speakers.
Determining whether the detected pattern of variability of the magnetic field is indicative of a reference pattern associated with playback of a predetermined spoken phrase through a loudspeaker may comprise passing the detected pattern of variability of the magnetic field to a classifier that has been trained to with inputs obtained from playback of the predetermined spoken phrase through a loudspeaker.
According to a second aspect of the present invention, there is provided a system for detecting a replay attack in a speaker recognition system, the system being configured for: identifying at least one feature of a detected magnetic field; determining whether the at least one identified feature of the detected magnetic field is indicative of playback of speech through a loudspeaker; and if so, determining that a replay attack may have taken place.
The system may be further configured for: receiving an audio signal representing speech, wherein the audio signal is received at substantially the same time as the magnetic field is detected; and if it is determined that the at least one identified feature of the detected magnetic field is indicative of playback of speech through a loudspeaker, determining that the audio signal may result from said replay attack.
Identifying at least one feature of the detected magnetic field may comprise: receiving a signal from a magnetometer; and performing a Discrete Fourier Transform on the received signal from the magnetometer.
The system may be configured for identifying at least one feature of the detected magnetic field by: receiving a signal from a magnetometer; and detecting modulation of the at least one feature from the received signal from the magnetometer at frequencies in the range of 2 Hz-10 Hz.
The system may be configured for identifying at least one feature of the detected magnetic field by: receiving a signal from a magnetometer; and detecting modulation of the at least one feature from the received signal from the magnetometer at the syllabic rate.
The system may be configured for identifying at least one feature of the detected magnetic field by: receiving a signal from a magnetometer; and detecting modulation of the at least one feature from the received signal from the magnetometer at the articulation rate.
The system may be configured for determining whether a detected pattern of variability of the magnetic field is indicative of a reference pattern associated with playback of a predetermined spoken phrase through a loudspeaker.
The system may be configured for determining whether the detected pattern of variability of the magnetic field is indicative of a reference pattern associated with playback of a predetermined spoken phrase through a loudspeaker by: comparing the detected pattern of variability of the magnetic field with a stored reference pattern.
The stored reference pattern may correspond to the predetermined spoken phrase, as spoken by a specific enrolled user, or may correspond to the predetermined spoken phrase, as spoken by multiple speakers.
The system may be configured for determining whether the detected pattern of variability of the magnetic field is indicative of a reference pattern associated with playback of a predetermined spoken phrase through a loudspeaker by: passing the detected pattern of variability of the magnetic field to a classifier that has been trained to with inputs obtained from playback of the predetermined spoken phrase through a loudspeaker.
According to an aspect of the present invention, there is provided a device comprising a system according to the second aspect. The device may comprise a mobile telephone, an audio player, a video player, a mobile computing platform, a games device, a remote controller device, a toy, a machine, or a home automation controller or a domestic appliance.
According to an aspect of the present invention, there is provided a computer program product, comprising a computer-readable tangible medium, and instructions for performing a method according to the first aspect.
According to an aspect of the present invention, there is provided a non-transitory computer readable storage medium having computer-executable instructions stored thereon that, when executed by processor circuitry, cause the processor circuitry to perform a method according to the first aspect.
According to an aspect of the present invention, there is provided a device comprising the non-transitory computer readable storage medium according to the previous aspect. The device may comprise a mobile telephone, an audio player, a video player, a mobile computing platform, a games device, a remote controller device, a toy, a machine, or a home automation controller or a domestic appliance.
For a better understanding of the present invention, and to show how it may be put into effect, reference will now be made to the accompanying drawings, in which:—
The description below sets forth example embodiments according to this disclosure. Further example embodiments and implementations will be apparent to those having ordinary skill in the art. Further, those having ordinary skill in the art will recognize that various equivalent techniques may be applied in lieu of, or in conjunction with, the embodiments discussed below, and all such equivalents should be deemed as being encompassed by the present disclosure.
Specifically,
Thus,
In this embodiment, the smartphone 10 is provided with voice biometric functionality, and with control functionality. Thus, the smartphone 10 is able to perform various functions in response to spoken commands from an enrolled user. The biometric functionality is able to distinguish between spoken commands from the enrolled user, and the same commands when spoken by a different person. Thus, certain embodiments of the invention relate to operation of a smartphone or another portable electronic device with some sort of voice operability, for example a tablet or laptop computer, a games console, a home control system, a home entertainment system, an in-vehicle entertainment system, a domestic appliance, or the like, in which the voice biometric functionality is performed in the device that is intended to carry out the spoken command. Certain other embodiments relate to systems in which the voice biometric functionality is performed on a smartphone or other device, which then transmits the commands to a separate device if the voice biometric functionality is able to confirm that the speaker was the enrolled user.
In some embodiments, while voice biometric functionality is performed on the smartphone 10 or other device that is located close to the user, the spoken commands are transmitted using the transceiver 18 to a remote speech recognition system, which determines the meaning of the spoken commands. For example, the speech recognition system may be located on one or more remote server in a cloud computing environment. Signals based on the meaning of the spoken commands are then returned to the smartphone 10 or other local device.
One attempt to deceive a voice biometric system is to play a recording of an enrolled user's voice in a so-called replay or spoof attack.
It is known that smartphones, such as the smartphone 30, are typically provided with loudspeakers that are of relatively low quality due to size constraints. Thus, the recording of an enrolled user's voice played back through such a loudspeaker will not be a perfect match with the user's voice, and this fact can be used to identify replay attacks. For example, loudspeakers may have certain frequency characteristics, and if these frequency characteristics can be detected in a speech signal that is received by the voice biometrics system, it may be considered that the speech signal has resulted from a replay attack.
In this example, the smartphone 40 is connected to a high quality loudspeaker 50. Then, the microphone inlet 12 of the smartphone 10 is positioned close to the loudspeaker 50, and the recording of the enrolled user's voice is played back through the loudspeaker 50. As before, if the voice biometric system is unable to detect that the enrolled user's voice that it detects is a recording, the attacker will gain access to one or more services that are intended to be accessible only by the enrolled user.
In this example, the loudspeaker 50 may be of high enough quality that the recording of the enrolled user's voice played back through the loudspeaker will not be reliably distinguishable from the user's voice, and so the audio features of the speech signal cannot be used to identify the replay attack.
However, it is appreciated that many loudspeakers, and particularly high quality loudspeakers, are electromagnetic loudspeakers in which an electrical audio signal is applied to a voice coil, which is located between the poles of a permanent magnet, causing the coil to move rapidly backwards and forwards. This movement causes a diaphragm attached to the coil to move backwards and forwards, creating sound waves. It is recognised here that, if a device such as the smartphone 10 is positioned close to a loudspeaker while it is playing back sounds, there will be corresponding changes in the magnetic field, which will be detectable by a magnetic field sensor 22.
In order to reduce power consumption, the speech processing system 60 operates in a progressive fashion. Thus, the audio signal is passed to a voice activity detection (VAD) block 64, which determines when the received audio signal contains a human voice.
When the VAD block 64 determines that the received audio signal contains human speech, it sends a signal to a keyword detection block 66 to initiate operation thereof.
When it is activated, the keyword detection block 66 receives the input audio signal, and determines whether the human speech contains a predetermined trigger phrase. For example, a smartphone might have a trigger phrase “hello phone”, which the user must speak to activate the speech processing.
When the keyword detection block 66 determines that the human speech contains a predetermined trigger phrase, it sends a signal to a speaker recognition block 68 to initiate operation thereof.
When it is activated, the speaker recognition block 68 receives the input audio signal, and determines whether the human speech was spoken by an enrolled user of the device. For example, a smartphone may have just one or a few enrolled users, who are authorised to issue voice commands to the device, and the speaker recognition block 68 determines whether the detected human speech was spoken by that enrolled user or one of the enrolled users.
When the speaker recognition block 68 determines that the human speech was spoken by an enrolled user of the device it sends a signal to a speech processing block 70 to initiate operation thereof. The speech processing block 70 may be located in the same device as the other blocks shown in
When it is activated, the speech processing block 70 receives the input audio signal, and determines the content of the received speech. For example, the speech processing block 70 may determine that the speech contains a command, and may then control some aspect of the operation of the device, or of a separate device, in response to that command.
As discussed above with reference to
Specifically, in step 80 in the method of
At the same time, in step 82 in the method of
In some embodiments, the input signal received from the magnetometer is passed to a magnetic feature extraction block 104. For example, if the signal received from the magnetometer contains separate measurements of the magnetic field strength in three orthogonal directions, these can be combined to provide a single measurement of the magnetic field strength. The measurement of the magnetic field strength could be found as the square root of the sum of the squares of the three separate measurements of the magnetic field strength in the three orthogonal directions.
Further, the aim of the system is to determine any magnetic field that is generated by a nearby object such as a loudspeaker. In order to obtain the most useful information about this, one possibility is to process the input signal received from the magnetometer in order to remove the effects of the Earth's magnetic field. For example, this can be achieved by forming an average value of the magnetic field strength, for example over a period of seconds, minutes or hours, and subtracting this from each individual measurement to obtain an instantaneous measurement of the magnetic field generated by artificial sources.
Thus, in step 82 in the method of
Relevant information about the pattern of variability of the magnetic field can then be obtained by the magnetic feature extraction block 104.
In these examples, a Discrete Fourier Transform is used, though other techniques such as Fast Fourier Transform (FFT) or Discrete Cosine Transform (DCT) can also be used.
If a pattern of variability of the magnetic field that is associated with an audio signal is detected, the process passes to step 84 of the method of
The determination may take any suitable form.
The store 122 may store a reference pattern, and this reference pattern may correspond to the pattern of variability of the magnetic field when the predetermined spoken phrase is spoken by a specific enrolled user, or may correspond to the average pattern of variability of the magnetic field when the predetermined spoken phrase is spoken by multiple speakers.
In these examples, features are extracted from the magnetometer signal, and compared with a reference pattern, either directly or in a classifier. In other examples, the magnetometer signal itself is passed to a suitably trained classifier to determine whether the signal contains features that indicate that the pattern of variability of the magnetic field is indicative of a reference pattern associated with playback of the predetermined spoken phrase through a loudspeaker.
To avoid the need to train the classifier 130 by playing back many examples of speech through a loudspeaker, the classifier may be trained using modelled data.
The signal that is received from the magnetometer signal will typically have a sample rate in the region of 80-120 Hz. Therefore, if that signal does result from the playback of speech, it will represent a heavily under-sampled version of that speech. Further, the sample rate may not be constant, because the operation of the magnetometer is typically a low priority task in a device such as a smartphone.
Therefore, to obtain suitable training data for the classifier, signals are obtained that represent the voltage applied to a loudspeaker when the predetermined phrase is spoken.
These signals are input, in turn, to a transducer model 140, which maps the voltage applied to the loudspeaker to the magnetic field that the magnetometer senses. The transducer model must therefore take account of different types of loudspeaker that might plausibly be used in a spoof attack, and must also take account of different possible positions of the magnetometer relative to the loudspeaker.
The resulting signals are applied to a magnetometer model 142, which models the sampling process of the magnetometer (namely, the fact that the magnetometer may perform under-sampling, irregular sampling, or other possible sampling techniques).
This provides data, representing many possible magnetometer signals that can be obtained by playing back the predetermined phrase through a loudspeaker and detecting the resulting pattern of variability of the magnetic field through a magnetometer. This obtained data can then be used to train the classifier 130.
As shown in
If it is determined in step 84 of the method of
This determination may be used on its own to determine that the received audio signal results from a replay attack. Alternatively, the determination may be combined with other factors to reach a decision as to whether the received audio signal results from a replay attack.
In the system of
In most cases, the audio processing block 108 of the keyword detection block 66 determines whether the audio signal contains a predetermined trigger phrase and, if so, it sends a signal to the speaker recognition block 68 of
However, if the determination block 106 determines (based only on the pattern of variability of the magnetic field or based partly on the pattern of variability of the magnetic field) that the received audio signal may result from a replay attack shown in
Thus, if it is determined from the magnetic field measurements that the audio signal may result from a replay attack, the keyword detection block 66 does not attempt to detect the presence of the predetermined trigger phrase.
The method has been described so far herein with reference to a specific example in which it is determined whether the detected pattern of variability of the magnetic field is indicative of a reference pattern associated with playback of a predetermined spoken phrase through a loudspeaker, and there is only one such predetermined phrase, for example a trigger phrase that is used by an enrolled user to activate a device. However, there may be multiple predetermined spoken phrases, and the method can test whether the detected pattern of variability of the magnetic field is indicative of a reference pattern associated with playback of any of these predetermined spoken phrases through a loudspeaker. Where the determination block 106 includes a classifier, as shown in
More generally, the method can test whether the detected pattern of variability of the magnetic field is indicative of playback of human speech.
An audio signal that may contain speech is passed to a speech processing block 172. This may take any suitable form. For example, it may be a keyword detection block, a speaker recognition function, a speech recognition block, or any other function.
A magnetometer signal, possibly after pre-processing to remove the effects of the Earth's magnetic field and obtain an instantaneous measurement of the magnetic field generated by artificial sources, is applied to a magnetic feature extraction block 174.
Thus, in step 180 of the process shown in
The magnetic feature extraction block 174 may for example extract Mel Frequency Cepstral Coefficients (MFCCs) from the magnetometer signal.
Alternatively,
In
The filtered signal is passed to a block 192 in which the signal is converted to energy, by squaring it.
Each energy band is then passed to a band pass filter (BPF) block 194, with a pass band centred on a suitable syllabic rate, for example 4 Hz. The syllabic rate, or articulation rate, may be chosen to correspond to a typical rate, for example for general speech or for that specific type of speech or speaker. Alternatively, a value of a syllabic rate, or articulation rate, may be determined by analysis of speech that is detected at the same time as the magnetic field is being detected (for example in the speech processing block 172 of
The modulation energy at the output of the BPF can then be measured, for example with a simple threshold or with a more advanced pattern recogniser such as neural net.
In block 176 of the system shown in
If so, then it is determined in step 184 that a replay attack may have taken place. In that event, any suitable output may be provided to a user.
In the case of a system as shown in
There are therefore disclosed methods and systems that can be used for detecting situations that may indicate that a received audio signal is the result of a replay attack.
The skilled person will recognise that some aspects of the above-described apparatus and methods may be embodied as processor control code, for example on a non-volatile carrier medium such as a disk, CD- or DVD-ROM, programmed memory such as read only memory (Firmware), or on a data carrier such as an optical or electrical signal carrier. For many applications embodiments of the invention will be implemented on a DSP (Digital Signal Processor), ASIC (Application Specific Integrated Circuit) or FPGA (Field Programmable Gate Array). Thus the code may comprise conventional program code or microcode or, for example code for setting up or controlling an ASIC or FPGA. The code may also comprise code for dynamically configuring re-configurable apparatus such as re-programmable logic gate arrays. Similarly the code may comprise code for a hardware description language such as Verilog™ or VHDL (Very high speed integrated circuit Hardware Description Language). As the skilled person will appreciate, the code may be distributed between a plurality of coupled components in communication with one another. Where appropriate, the embodiments may also be implemented using code running on a field-(re)programmable analogue array or similar device in order to configure analogue hardware.
Note that as used herein the term module shall be used to refer to a functional unit or block which may be implemented at least partly by dedicated hardware components such as custom defined circuitry and/or at least partly be implemented by one or more software processors or appropriate code running on a suitable general purpose processor or the like. A module may itself comprise other modules or functional units. A module may be provided by multiple components or sub-modules which need not be co-located and could be provided on different integrated circuits and/or running on different processors.
Embodiments may be implemented in a host device, especially a portable and/or battery powered host device such as a mobile computing device for example a laptop or tablet computer, a games console, a remote control device, a home automation controller or a domestic appliance including a domestic temperature or lighting control system, a toy, a machine such as a robot, an audio player, a video player, or a mobile telephone for example a smartphone.
It should be noted that the above-mentioned embodiments illustrate rather than limit the invention, and that those skilled in the art will be able to design many alternative embodiments without departing from the scope of the appended claims. The word “comprising” does not exclude the presence of elements or steps other than those listed in a claim, “a” or “an” does not exclude a plurality, and a single feature or other unit may fulfil the functions of several units recited in the claims. Any reference numerals or labels in the claims shall not be construed so as to limit their scope.
Number | Name | Date | Kind |
---|---|---|---|
5197113 | Mumolo | Mar 1993 | A |
5568559 | Makino | Oct 1996 | A |
5787187 | Bouchard et al. | Jul 1998 | A |
6480825 | Sharma et al. | Nov 2002 | B1 |
7016833 | Gable et al. | Mar 2006 | B2 |
7039951 | Chaudhari et al. | May 2006 | B1 |
7492913 | Connor et al. | Feb 2009 | B2 |
8489399 | Gross | Jul 2013 | B2 |
8856541 | Chaudhury et al. | Oct 2014 | B1 |
8997191 | Stark et al. | Mar 2015 | B1 |
9049983 | Baldwin | Jun 2015 | B1 |
9171548 | Velius et al. | Oct 2015 | B2 |
9305155 | Vo et al. | Apr 2016 | B1 |
9317736 | Siddiqui | Apr 2016 | B1 |
9390726 | Smus et al. | Jul 2016 | B1 |
9430629 | Ziraknejad et al. | Aug 2016 | B1 |
9484036 | Kons et al. | Nov 2016 | B2 |
9548979 | Johnson et al. | Jan 2017 | B1 |
9641585 | Kvaal et al. | May 2017 | B2 |
9646261 | Agrafioti et al. | May 2017 | B2 |
9659562 | Lovitt | May 2017 | B2 |
9665784 | Derakhshani et al. | May 2017 | B2 |
9984314 | Philipose et al. | May 2018 | B2 |
10032451 | Mamkina et al. | Jul 2018 | B1 |
10063542 | Kao | Aug 2018 | B1 |
10079024 | Bhimanaik et al. | Sep 2018 | B1 |
10097914 | Petrank | Oct 2018 | B2 |
10192553 | Chenier et al. | Jan 2019 | B1 |
10204625 | Mishra et al. | Feb 2019 | B2 |
10210685 | Borgmeyer | Feb 2019 | B2 |
10305895 | Barry et al. | May 2019 | B2 |
10318580 | Topchy et al. | Jun 2019 | B2 |
10334350 | Petrank | Jun 2019 | B2 |
10460095 | Boesen | Oct 2019 | B2 |
10467509 | Albadawi et al. | Nov 2019 | B2 |
10733987 | Govender et al. | Aug 2020 | B1 |
20020194003 | Mozer | Dec 2002 | A1 |
20030033145 | Petrushin | Feb 2003 | A1 |
20030177006 | Ichikawa et al. | Sep 2003 | A1 |
20030177007 | Kanazawa et al. | Sep 2003 | A1 |
20040030550 | Liu | Feb 2004 | A1 |
20040141418 | Matsuo et al. | Jul 2004 | A1 |
20050060153 | Gable et al. | Mar 2005 | A1 |
20050171774 | Applebaum et al. | Aug 2005 | A1 |
20060171571 | Chan et al. | Aug 2006 | A1 |
20070055517 | Spector | Mar 2007 | A1 |
20070129941 | Tavares | Jun 2007 | A1 |
20070185718 | Di Mambro et al. | Aug 2007 | A1 |
20070233483 | Kuppuswamy et al. | Oct 2007 | A1 |
20070250920 | Lindsay | Oct 2007 | A1 |
20080071532 | Ramakrishnan et al. | Mar 2008 | A1 |
20080082510 | Wang et al. | Apr 2008 | A1 |
20080223646 | White | Sep 2008 | A1 |
20080262382 | Akkermans et al. | Oct 2008 | A1 |
20080285813 | Holm | Nov 2008 | A1 |
20090087003 | Zurek et al. | Apr 2009 | A1 |
20090105548 | Bart | Apr 2009 | A1 |
20090167307 | Kopp | Jul 2009 | A1 |
20090232361 | Miller | Sep 2009 | A1 |
20090281809 | Reuss | Nov 2009 | A1 |
20090319270 | Gross | Dec 2009 | A1 |
20100004934 | Hirose et al. | Jan 2010 | A1 |
20100076770 | Ramaswamy | Mar 2010 | A1 |
20100204991 | Ramakrishnan et al. | Aug 2010 | A1 |
20100328033 | Kamei | Dec 2010 | A1 |
20110051907 | Jaiswal et al. | Mar 2011 | A1 |
20110246198 | Asenjo et al. | Oct 2011 | A1 |
20110276323 | Seyfetdinov | Nov 2011 | A1 |
20110314530 | Donaldson | Dec 2011 | A1 |
20110317848 | Ivanov et al. | Dec 2011 | A1 |
20120110341 | Beigi | May 2012 | A1 |
20120223130 | Knopp et al. | Sep 2012 | A1 |
20120224456 | Visser et al. | Sep 2012 | A1 |
20120249328 | Xiong | Oct 2012 | A1 |
20120323796 | Udani | Dec 2012 | A1 |
20130024191 | Krutsch et al. | Jan 2013 | A1 |
20130058488 | Cheng et al. | Mar 2013 | A1 |
20130080167 | Mozer | Mar 2013 | A1 |
20130227678 | Kang | Aug 2013 | A1 |
20130247082 | Wang et al. | Sep 2013 | A1 |
20130279297 | Wulff et al. | Oct 2013 | A1 |
20130279724 | Stafford et al. | Oct 2013 | A1 |
20130289999 | Hymel | Oct 2013 | A1 |
20140059347 | Dougherty et al. | Feb 2014 | A1 |
20140149117 | Bakish et al. | May 2014 | A1 |
20140188770 | Agrafioti et al. | Jul 2014 | A1 |
20140237576 | Zhang et al. | Aug 2014 | A1 |
20140241597 | Leite | Aug 2014 | A1 |
20140293749 | Gervaise | Oct 2014 | A1 |
20140307876 | Agiomyrgiannakis et al. | Oct 2014 | A1 |
20140330568 | Lewis et al. | Nov 2014 | A1 |
20140337945 | Jia et al. | Nov 2014 | A1 |
20140343703 | Topchy et al. | Nov 2014 | A1 |
20150006163 | Liu et al. | Jan 2015 | A1 |
20150033305 | Shear et al. | Jan 2015 | A1 |
20150036462 | Calvarese | Feb 2015 | A1 |
20150088509 | Gimenez et al. | Mar 2015 | A1 |
20150089616 | Brezinski et al. | Mar 2015 | A1 |
20150112682 | Rodriguez et al. | Apr 2015 | A1 |
20150134330 | Baldwin et al. | May 2015 | A1 |
20150161370 | North et al. | Jun 2015 | A1 |
20150161459 | Boczek | Jun 2015 | A1 |
20150168996 | Sharpe et al. | Jun 2015 | A1 |
20150245154 | Dadu et al. | Aug 2015 | A1 |
20150261944 | Hosom et al. | Sep 2015 | A1 |
20150301796 | Visser et al. | Oct 2015 | A1 |
20150332665 | Mishra et al. | Nov 2015 | A1 |
20150347734 | Beigi | Dec 2015 | A1 |
20150356974 | Tani et al. | Dec 2015 | A1 |
20150371639 | Foerster et al. | Dec 2015 | A1 |
20160026781 | Boczek | Jan 2016 | A1 |
20160071275 | Hirvonen | Mar 2016 | A1 |
20160086609 | Yue et al. | Mar 2016 | A1 |
20160111112 | Hayakawa | Apr 2016 | A1 |
20160125877 | Foerster et al. | May 2016 | A1 |
20160147987 | Jang et al. | May 2016 | A1 |
20160210407 | Hwang et al. | Jul 2016 | A1 |
20160217321 | Gottleib | Jul 2016 | A1 |
20160234204 | Rishi et al. | Aug 2016 | A1 |
20160314790 | Tsujikawa et al. | Oct 2016 | A1 |
20160324478 | Goldstein | Nov 2016 | A1 |
20160330198 | Stern et al. | Nov 2016 | A1 |
20160371555 | Derakhshani | Dec 2016 | A1 |
20170011406 | Tunnell et al. | Jan 2017 | A1 |
20170049335 | Duddy | Feb 2017 | A1 |
20170068805 | Chandrasekharan et al. | Mar 2017 | A1 |
20170078780 | Qian et al. | Mar 2017 | A1 |
20170110121 | Warford et al. | Apr 2017 | A1 |
20170112671 | Goldstein | Apr 2017 | A1 |
20170116995 | Ady et al. | Apr 2017 | A1 |
20170161482 | Eltoft et al. | Jun 2017 | A1 |
20170169828 | Sachdev | Jun 2017 | A1 |
20170200451 | Booklet et al. | Jul 2017 | A1 |
20170213268 | Puehse et al. | Jul 2017 | A1 |
20170214687 | Klein | Jul 2017 | A1 |
20170231534 | Agassy et al. | Aug 2017 | A1 |
20170243597 | Braasch | Aug 2017 | A1 |
20170279815 | Chung et al. | Sep 2017 | A1 |
20170287490 | Biswal et al. | Oct 2017 | A1 |
20170323644 | Kawato | Nov 2017 | A1 |
20170347180 | Petrank | Nov 2017 | A1 |
20170347348 | Masaki et al. | Nov 2017 | A1 |
20170351487 | Aviles-Casco Vaquero et al. | Dec 2017 | A1 |
20180018974 | Zass | Jan 2018 | A1 |
20180032712 | Oh et al. | Feb 2018 | A1 |
20180039769 | Saunders et al. | Feb 2018 | A1 |
20180047393 | Tian et al. | Feb 2018 | A1 |
20180060557 | Valenti et al. | Mar 2018 | A1 |
20180096120 | Boesen | Apr 2018 | A1 |
20180107866 | Li et al. | Apr 2018 | A1 |
20180108225 | Mappus et al. | Apr 2018 | A1 |
20180113673 | Sheynblat | Apr 2018 | A1 |
20180121161 | Ueno et al. | May 2018 | A1 |
20180146370 | Krishnaswamy et al. | May 2018 | A1 |
20180174600 | Chaudhuri et al. | Jun 2018 | A1 |
20180176215 | Perotti et al. | Jun 2018 | A1 |
20180187969 | Kim et al. | Jul 2018 | A1 |
20180191501 | Lindemann | Jul 2018 | A1 |
20180232201 | Holtmann | Aug 2018 | A1 |
20180232511 | Bakish | Aug 2018 | A1 |
20180239955 | Rodriguez et al. | Aug 2018 | A1 |
20180240463 | Perotti | Aug 2018 | A1 |
20180254046 | Khoury et al. | Sep 2018 | A1 |
20180289354 | Cvijanovic et al. | Oct 2018 | A1 |
20180292523 | Orenstein et al. | Oct 2018 | A1 |
20180308487 | Goel et al. | Oct 2018 | A1 |
20180336716 | Ramprashad et al. | Nov 2018 | A1 |
20180336901 | Masaki et al. | Nov 2018 | A1 |
20180366124 | Cilingir et al. | Dec 2018 | A1 |
20180374487 | Lesso | Dec 2018 | A1 |
20190005963 | Alonso et al. | Jan 2019 | A1 |
20190005964 | Alonso et al. | Jan 2019 | A1 |
20190013033 | Bhimanaik | Jan 2019 | A1 |
20190030452 | Fassbender et al. | Jan 2019 | A1 |
20190042871 | Pogorelik | Feb 2019 | A1 |
20190098003 | Ota | Mar 2019 | A1 |
20190114496 | Lesso | Apr 2019 | A1 |
20190114497 | Lesso | Apr 2019 | A1 |
20190115030 | Lesso | Apr 2019 | A1 |
20190115032 | Lesso | Apr 2019 | A1 |
20190115033 | Lesso | Apr 2019 | A1 |
20190115046 | Lesso | Apr 2019 | A1 |
20190147888 | Lesso | Apr 2019 | A1 |
20190149932 | Lesso | Apr 2019 | A1 |
20190228778 | Lesso | Apr 2019 | A1 |
20190228779 | Lesso | Apr 2019 | A1 |
20190197755 | Vats | Jun 2019 | A1 |
20190199935 | Danielsen et al. | Jun 2019 | A1 |
20190246075 | Khadloya et al. | Aug 2019 | A1 |
20190260731 | Chandrasekharan et al. | Aug 2019 | A1 |
20190294629 | Wexler et al. | Sep 2019 | A1 |
20190295554 | Lesso | Sep 2019 | A1 |
20190306594 | Aumer et al. | Oct 2019 | A1 |
20190311722 | Caldwell | Oct 2019 | A1 |
20190313014 | Welbourne et al. | Oct 2019 | A1 |
20190318035 | Blanco et al. | Oct 2019 | A1 |
20190356588 | Shahraray et al. | Nov 2019 | A1 |
20190371330 | Lin et al. | Dec 2019 | A1 |
20190373438 | Amir et al. | Dec 2019 | A1 |
20190392145 | Komogortsev | Dec 2019 | A1 |
20190394195 | Chari et al. | Dec 2019 | A1 |
20200035247 | Boyadjiev et al. | Jan 2020 | A1 |
Number | Date | Country |
---|---|---|
2015202397 | May 2015 | AU |
1937955 | Mar 2007 | CN |
104956715 | Sep 2015 | CN |
105185380 | Dec 2015 | CN |
106297772 | Jan 2017 | CN |
106531172 | Mar 2017 | CN |
1205884 | May 2002 | EP |
1600791 | Nov 2005 | EP |
1701587 | Sep 2006 | EP |
1928213 | Jun 2008 | EP |
1965331 | Sep 2008 | EP |
2660813 | Nov 2013 | EP |
2704052 | Mar 2014 | EP |
2860706 | Apr 2015 | EP |
3016314 | May 2016 | EP |
3156978 | Apr 2017 | EP |
2375205 | Nov 2002 | GB |
2493849 | Feb 2013 | GB |
2499781 | Sep 2013 | GB |
2515527 | Dec 2014 | GB |
2541466 | Feb 2017 | GB |
2551209 | Dec 2017 | GB |
2003058190 | Feb 2003 | JP |
2006010809 | Jan 2006 | JP |
2010086328 | Apr 2010 | JP |
9834216 | Aug 1998 | WO |
02103680 | Dec 2002 | WO |
2006054205 | May 2006 | WO |
2007034371 | Mar 2007 | WO |
2008113024 | Sep 2008 | WO |
2010066269 | Jun 2010 | WO |
2013022930 | Feb 2013 | WO |
2013154790 | Oct 2013 | WO |
2014040124 | Mar 2014 | WO |
2015117674 | Aug 2015 | WO |
2015163774 | Oct 2015 | WO |
2016003299 | Jan 2016 | WO |
2017055551 | Apr 2017 | WO |
2017203484 | Nov 2017 | WO |
Entry |
---|
International Search Report and Written Opinion of the International Searching Authority, International Application No. PCT/GB2018/053274, dated Jan. 24, 2019. |
Beigi, Homayoon, “Fundamentals of Speaker Recognition,” Chapters 8-10, ISBN: 978-0-378-77592-0; 2011. |
Li, Lantian et al., “A Study on Replay Attack and Anti-Spoofing for Automatic Speaker Verification”, INTERSPEECH 2017, Jan. 1, 2017, pp. 92-96. |
Li, Zhi et al., “Compensation of Hysteresis Nonlinearity in Magnetostrictive Actuators with Inverse Multiplicative Structure for Preisach Model”, IEE Transactions on Automation Science and Engineering, vol. 11, No. 2, Apr. 1, 2014, pp. 613-619. |
Partial International Search Report of the International Searching Authority, International Application No. PCT/GB2018/052905, dated Jan. 25, 2019. |
Combined Search and Examination Report, UKIPO, Application No. GB1713697.9, dated Feb. 20, 2018. |
Combined Search and Examination Report, UKIPO, Application No. GB1713695.3, dated Feb. 19, 2018. |
Zhang et al., An Investigation of Deep-Learing Frameworks for Speaker Verification Antispoofing—IEEE Journal of Selected Topics in Signal Processes, Jun. 1, 2017. |
Combined Search and Examination Report under Sections 17 and 18(3), UKIPO, Application No. GB1809474.8, dated Jul. 23, 2018. |
Wu et al., Anti-Spoofing for text-Independent Speaker Verification: An Initial Database, Comparison of Countermeasures, and Human Performance, IEEE/ACM Transactions on Audio, Speech, and Language Processing, Issue Date: Apr. 2016. |
International Search Report and Written Opinion of the International Searching Authority, International Application No. PCT/GB2018/051760, dated Aug. 3, 2018. |
International Search Report and Written Opinion of the International Searching Authority, International Application No. PCT/GB2018/051765, dated Aug. 16, 2018. |
International Search Report and Written Opinion of the International Searching Authority, International Application No. PCT/GB2018/052907, dated Jan. 15, 2019. |
Ajmera, et al,, “Robust Speaker Change Detection,” IEEE Signal Processing Letters, vol. 11, No. 8, pp. 649-651, Aug. 2004. |
Combined Search and Examination Report under Sections 17 and 18(3), UKIPO, Application No. GB1719731.0, dated May 16, 2018. |
Further Search Report under Sections 17 (6), UKIPO, Application No. GB1719731.0, dated Nov. 26, 2018. |
Combined Search and Examination Report under Sections 17 and 18(3), UKIPO, Application No. GB1801663.4, dated Jul. 18, 2018. |
Combined Search and Examination Report under Sections 17 and 18(3), UKIPO, Application No. GB1801659.2, dated Jul. 26, 2018. |
Combined Search and Examination Report under Sections 17 and 18(3), UKIPO, Application No. GB1801661.8, dated Jul. 30, 2018. |
Combined Search and Examination Report under Sections 17 and 18(3), UKIPO, Application No. GB1801684.2, dated Aug. 1, 2018. |
Combined Search and Examination Report under Sections 17 and 18(3), UKIPO, Application No. GB1803570.9, dated Aug. 21, 2018. |
Combined Search and Examination Report under Sections 17 and 18(3), UKIPO, Application No. GB1804843.9, dated Sep. 27, 2018. |
International Search Report and Written Opinion of the International Searching Authority, International Application No. PCT/GB2018/052906, dated Jan. 14, 2019. |
International Search Report and Written Opinion of the International Searching Authority, International Application No. PCT/GB2019/052302, dated Oct. 2, 2019. |
Liu, Yuan et al., “Speaker verification with deep features”, Jul. 2014, in International Joint Conference on Neural Networks (IJCNN), pp. 747-753, IEEE. |
International Search Report and Written Opinion of the International Searching Authority, International Application No. PCT/GB2018/051927, dated Sep. 25, 2018. |
Combined Search and Examination Report under Sections 17 and 18(3), UKIPO, Application No. 1801530.5, dated Jul. 25, 2018. |
International Search Report and Written Opinion of the International Searching Authority, International Application No. PCT/GB2018/051924, dated Sep. 26, 2018. |
Combined Search and Examination Report under Sections 17 and 18(3), UKIPO, Application No. 1801526.3, dated Jul. 25, 2018. |
International Search Report and Written Opinion of the International Searching Authority, International Application No. PCT/GB2018/051931, dated Sep. 27, 2018. |
Combined Search and Examination Report under Sections 17 and 18(3), UKIPO, Application No. 1801527.1, dated Jul. 25, 2018. |
International Search Report and Written Opinion of the International Searching Authority, International Application No. PCT/GB2018/051925, dated Sep. 26, 2018. |
Combined Search and Examination Report under Sections 17 and 18(3), UKIPO, Application No. 1801528.9, dated Jul. 25, 2018. |
International Search Report and Written Opinion of the International Searching Authority, International Application No. PCT/GB2018/051928, dated Dec. 3, 2018. |
Combined Search and Examination Report under Sections 17 and 18(3), UKIPO, Application No. 1801532.1, dated Jul. 25, 2018. |
Lim, Zhi Hao et al., An Investigation of Spectral Feature Partitioning for Replay Attacks Detection, Proceedings of APSIPA Annual Summit and Conference 2017, Dec. 12-15, 2017, Malaysia, pp. 1570-1573. |
International Search Report and Written Opinion of the International Searching Authority, International Application No. PCT/GB2018/051787, dated Aug. 16, 2018. |
Villalba, Jesus et al., Preventing Replay Attacks on Speaker Verification Systems, International Carnahan Conference on Security Technology (ICCST), 2011 IEEE, Oct. 18, 2011, pp. 1-8. |
Combined Search and Examination Report, UKIPO, Application No. GB1713699.5, dated Feb. 21, 2018. |
Chen et al., “You Can Hear But You Cannot Steal: Defending Against Voice Impersonation Attacks on Smartphones”, Proceedings of the International Conference on Distributed Computing Systems, PD: Jun. 5, 2017. |
International Search Report and Written Opinion of the International Searching Authority, International Application No. PCT/GB2019/050185, dated Apr. 2, 2019. |
Ohtsuka, Takahiro and Kasuya, Hideki, Robust ARX Speech Analysis Method Taking Voice Source Pulse Train Into Account, Journal of the Acoustical Society of Japan, 58, 7, pp. 386-397, 2002. |
Wikipedia, Voice (phonetics), https://en.wikipedia.org/wik/Voice_(phonetics), accessed Jun. 1, 2020. |
Zhang et al., DolphinAttack: Inaudible Voice Commands, Retrieved from Proceedings of the 2017 ACM SIGSAC Conference on Computer and Communications Security, Aug. 2017. |
Song, Liwei, and Prateek Mittal, Poster: Inaudible Voice Commands, Proceedings of the 2017 ACM SIGSAC Conference on Computer and Communications Security, Aug. 2017. |
Fortuna, Andrea, [Online], DolphinAttack: inaudiable voice commands allow attackers to control Siri, Alexa and other digital assistants, Sep. 2017. |
Lucas, Jim, What is Electromagnetic Radiation?, Mar. 13, 2015, Live Science, https://www.livescience.com/38169-electromagnetism.html, pp. 1-11 (Year: 2015). |
Brownlee, Jason, A Gentle Introduction to Autocorrelation and Partial Autocorrelation, Feb. 6, 2017, https://machinelearningmastery.com/gentle-introduction-autocorrelation-partial-autocorrelation/, accessed Apr. 28, 2020. |
First Office Action, China National Intellectual Property Administration, Patent Application No. 2018800418983, dated May 29, 2020. |
International Search Report and Written Opinion, International Application No. PCT/GB2020/050723, dated Jun. 16, 2020. |
Liu, Yuxi et al., “Earprint: Transient Evoked Otoacoustic Emission for Biometrics”, IEEE Transactions on Information Forensics and Security, IEEE, Piscataway, NJ, US, vol. 9, No. 12, Dec. 1, 2014, pp. 2291-2301. |
Seha, Sherif Nagib Abbas et al., “Human recognition using transient auditory evoked potentials: a preliminary study”, IET Biometrics, IEEE, Michael Faraday House, Six Hills Way, Stevenage, Herts., UK, vol. 7, No. 3, May 1, 2018, pp. 242-250. |
Liu, Yuxi et al., “Biometric identification based on Transient Evoked Otoacoustic Emission”, IEEE International Symposium on Signal Processing and Information Technology, IEEE, Dec. 12, 2013, pp. 267-271. |
Number | Date | Country | |
---|---|---|---|
20190005964 A1 | Jan 2019 | US |
Number | Date | Country | |
---|---|---|---|
62526013 | Jun 2017 | US |