Current browse context:
cs.SD
Change to browse by:
References & Citations
Computer Science > Sound
Title: Model Extraction Attack against Self-supervised Speech Models
(Submitted on 29 Nov 2022 (v1), last revised 8 Oct 2023 (this version, v2))
Abstract: Self-supervised learning (SSL) speech models generate meaningful representations of given clips and achieve incredible performance across various downstream tasks. Model extraction attack (MEA) often refers to an adversary stealing the functionality of the victim model with only query access. In this work, we study the MEA problem against SSL speech model with a small number of queries. We propose a two-stage framework to extract the model. In the first stage, SSL is conducted on the large-scale unlabeled corpus to pre-train a small speech model. Secondly, we actively sample a small portion of clips from the unlabeled corpus and query the target model with these clips to acquire their representations as labels for the small model's second-stage training. Experiment results show that our sampling methods can effectively extract the target model without knowing any information about its model architecture.
Submission history
From: Tsu-Yuan Hsu [view email][v1] Tue, 29 Nov 2022 09:28:05 GMT (110kb,D)
[v2] Sun, 8 Oct 2023 09:41:22 GMT (493kb,D)
Link back to: arXiv, form interface, contact.