Fig. 1From: Towards the universal defense for query-based audio adversarial attacks on speech recognition systemThe correct transcription of x is “My friend, how are you”, and the adversary’s purpose is to add a careful perturbation “\(\delta\)” to x and then make it become \({x^{\mathrm{*}}}\) that can be transcribed as the target of “Call my wife”Back to article page