{"id":"W4385080277","doi":"10.1109/sp46215.2023.10179374","title":"Breaking Security-Critical Voice Authentication","year":2023,"lang":"en","type":"article","venue":"","topic":"Speech Recognition and Synthesis","field":"Computer Science","cited_by":14,"is_retracted":false,"has_abstract":true,"ca_institutions":"University of Waterloo","funders":"","keywords":"Spoofing attack; Computer science; Computer security; Vulnerability (computing); Authentication (law); Adversarial system; Key (lock); Task (project management); Artificial intelligence","routes":{"ca_aff":true,"ca_fund":false,"ca_venue":false,"about_ca":false,"invisible_to_affiliation_only":false},"retraction":null,"screen":null,"direct_labels":[],"prediction":{"model_version":"codex-gemma-dda1882f352a","candidate_categories":["insufficient_payload"],"consensus_categories":[],"category_scores_codex":[0.0002407205,0.0000500099,0.00005505087,0.000108671,0.00008692808,0.0001323343,0.0002922676,0.00003138182,0.000209248],"category_scores_gemma":[0.0002540548,0.00004562136,0.00003688024,0.0004907179,0.00002211431,0.0002693039,0.0000974517,0.00004735858,0.005428076],"about_ca_system_candidate":false,"about_ca_system_consensus":false,"about_ca_system_score_codex":0.00001060829,"about_ca_system_score_gemma":0.00001477082,"about_ca_topic_candidate":false,"about_ca_topic_consensus":false,"about_ca_topic_score_codex":0.000009141187,"about_ca_topic_score_gemma":0.00000438169,"domain_scores_codex":[0.9993193,0.00003808285,0.000101865,0.0001940299,0.0001767722,0.0001699101],"domain_scores_gemma":[0.9993274,0.0003087579,0.00001201452,0.0002335757,0.00005507886,0.00006320826],"domain_codex":null,"domain_gemma":null,"domain_candidate":null,"domain_consensus":null,"study_design_codex":"theoretical_or_conceptual","study_design_gemma":"simulation_or_modeling","study_design_scores_codex":[0.000001239118,0.00006151318,0.0001733045,0.00001839208,0.000009670256,0.00003188374,0.001052945,5.732437e-7,0.001847179,0.7291015,0.01057063,0.2571312],"study_design_scores_gemma":[0.0002831927,0.00003904552,0.01253921,0.00004802998,0.00001465056,0.0000878298,0.0003316314,0.6349572,0.02807827,0.2733268,0.04980638,0.0004876823],"study_design_candidate":"theoretical_or_conceptual","study_design_consensus":null,"genre_codex":"methods","genre_gemma":"empirical","genre_scores_codex":[0.0354284,0.00001611892,0.7860249,0.02720868,0.0009997534,0.000151781,0.000003054638,0.003127116,0.1470402],"genre_scores_gemma":[0.9757445,0.000004460662,0.02262033,0.0006187854,0.00005098072,0.00001044824,0.000002035861,0.00000441836,0.0009439943],"genre_candidate":"empirical","genre_consensus":null,"teacher_disagreement_score":0.9403161,"threshold_uncertainty_score":0.9953463,"prediction_status":"machine_predicted_unvalidated"},"machine_scores":{"provisional":true,"baseline":true,"maturity_gate_passed":false,"score_opus":0.02832442802116902,"score_gpt":0.298985352459725,"score_spread":0.2706609244385559,"validation_status":"score_only:v0-immature-baseline","note":"Baseline scores from an immature model (maturity gate not passed). Scores rank; they never assert a category."}}