Skip to main content

Table 1 Results of transfer attack on API service

From: Towards the transferable audio adversarial attack via ensemble methods

Noise

Baidu-API

iFlytek-API

Alibaba-API

± 0

5/50

3/50

5/50

± 4000

25/50

20/50

22/50

± 8000

22/50

13/50

20/50

± 12,500

1/50

1/50

1/50

± 17500

10/50

6/50

13/50

± 20,000

30/50

30/50

28/50

± 25,000

5/50

0/50

1/50

Dropout (p = 0.5)

32/50

30/50

28/50

Scale-Invariant (m = 4)

35/50

32/50

30/50

  1. The “±N” indicates noise range is \([-N,N]\). The success rate of attack “A/B” indicates that there is A out of B AEs that trigger the command on the black-box platforms