{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,3]],"date-time":"2026-04-03T14:15:47Z","timestamp":1775225747335,"version":"3.50.1"},"reference-count":40,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","license":[{"start":{"date-parts":[[2025,1,1]],"date-time":"2025-01-01T00:00:00Z","timestamp":1735689600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by-nc-nd\/4.0\/"}],"funder":[{"name":"AI Research and Development Center of Korea Military Academy","award":["2025-AI-02"],"award-info":[{"award-number":["2025-AI-02"]}]},{"name":"NationalResearch Foundation of Korea (NRF) grant, funded by the Korean government","award":["RS-2025-00516065"],"award-info":[{"award-number":["RS-2025-00516065"]}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Access"],"published-print":{"date-parts":[[2025]]},"DOI":"10.1109\/access.2022.3216075","type":"journal-article","created":{"date-parts":[[2023,4,5]],"date-time":"2023-04-05T13:52:59Z","timestamp":1680702779000},"page":"122464-122472","source":"Crossref","is-referenced-by-count":7,"title":["Audio Adversarial Example Detection Using the Audio Style Transfer Learning Method"],"prefix":"10.1109","volume":"13","author":[{"ORCID":"https:\/\/orcid.org\/0000-0003-1169-9892","authenticated-orcid":false,"given":"Hyun","family":"Kwon","sequence":"first","affiliation":[{"name":"Department of Artificial Intelligence and Data Science, Korea Military Academy, Seoul, Republic of Korea"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-0788-721X","authenticated-orcid":false,"given":"Kangjun","family":"Lee","sequence":"additional","affiliation":[{"name":"Department of Computer Science and Engineering, Sungkyunkwan University, Suwon, Republic of Korea"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Junyeol","family":"Ryu","sequence":"additional","affiliation":[{"name":"Department of Systems and Mechanical Engineering, Korea Military Academy, Seoul, South Korea"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jun","family":"Lee","sequence":"additional","affiliation":[{"name":"Department of Artificial Intelligence and Data Science, Korea Military Academy, Seoul, Republic of Korea"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.48550\/ARXIV.1404.7828"},{"key":"ref2","article-title":"Very deep convolutional networks for large-scale image recognition","volume-title":"Proc. Int. Conf. Learn. Represent.","author":"Simonyan"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/MSP.2012.2205597"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1145\/1390156.1390177"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.13140\/RG.2.2.18893.74727"},{"key":"ref6","article-title":"Intriguing properties of neural networks","volume-title":"Proc. Int. Conf. Learn. Represent.","author":"Szegedy"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2022.102695"},{"key":"ref8","article-title":"Explaining and harnessing adversarial examples","volume-title":"Proc. Int. Conf. Learn. Represent.","author":"Goodfellow"},{"key":"ref9","article-title":"Ensemble methods as a defense to adversarial perturbations against deep neural networks","author":"Strauss","year":"2017","journal-title":"arXiv:1709.03423"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1109\/SPW.2018.00009"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1109\/TASLP.2021.3110137"},{"key":"ref13","article-title":"Deep speech: Scaling up end-to-end speech recognition","author":"Hannun","year":"2014","journal-title":"arXiv:1412.5567"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1016\/S0959-440X(96)80056-X"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1145\/1143844.1143891"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.21437\/Interspeech.2010-343"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1109\/MM.2010.41"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.5334\/tismir.85"},{"key":"ref19","article-title":"Boosting gradient for white-box adversarial attacks","author":"Liu","year":"2020","journal-title":"arXiv:2010.10712"},{"key":"ref20","article-title":"Black-box adversarial example generation with normalizing flows","author":"Dolatabadi","year":"2020","journal-title":"arXiv:2007.02734"},{"key":"ref21","first-page":"2484","article-title":"Simple black-box adversarial attacks","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Guo"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2020.3006130"},{"key":"ref23","first-page":"5231","article-title":"Imperceptible, robust, and targeted adversarial examples for automatic speech recognition","volume-title":"Proc. Annu. Comput. Secur. Appl. Conf.","author":"Sch\u00f6nherr"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1016\/j.patcog.2022.109048"},{"key":"ref25","article-title":"Understanding and enhancing the transferability of adversarial examples","author":"Wu","year":"2018","journal-title":"arXiv:1802.09707"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.49"},{"key":"ref27","first-page":"10","article-title":"Cocaine noodles: Exploiting the gap between human and machine speech recognition","volume-title":"Proc. WOOT","volume":"15","author":"Vaidya"},{"key":"ref28","first-page":"513","article-title":"Hidden voice commands","volume-title":"Proc. USENIX Secur. Symp.","author":"Carlini"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3134052"},{"key":"ref30","article-title":"Houdini: Fooling deep structured prediction models","author":"Cisse","year":"2017","journal-title":"arXiv:1707.05373"},{"key":"ref31","article-title":"Did you hear that? Adversarial examples against automatic speech recognition","author":"Alzantot","year":"2018","journal-title":"arXiv:1801.00554"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1109\/TNNLS.2017.2771947"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1109\/TASLP.2020.2982297"},{"key":"ref34","first-page":"517","article-title":"Perception-based clipping of audio signals","volume-title":"Proc. 18th Eur. Signal Process. Conf.","author":"Defraene"},{"key":"ref35","first-page":"672","article-title":"Beyond Lp clipping: Equalization based psychoacoustic attacks against ASRs","volume-title":"Proc. Asian Conf. Mach. Learn.","author":"Abdullah"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1142\/S0218126621502108"},{"key":"ref37","first-page":"2273","article-title":"WaveGuard: Understanding and mitigating audio adversarial examples","volume-title":"Proc. 30th USENIX Secur. Symp. (USENIX Secur.)","author":"Hussain"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.1007\/978-981-15-7533-4_48"},{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.5555\/3026877.3026899"},{"key":"ref41","article-title":"Adam: A method for stochastic optimization","volume-title":"Proc. Int. Conf. Learn. Represent. (ICLR)","author":"Kingma"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.5555\/2969033.2969125"}],"container-title":["IEEE Access"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/6287639\/10820123\/10093765.pdf?arnumber=10093765","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,7,29]],"date-time":"2025-07-29T05:25:48Z","timestamp":1753766748000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10093765\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025]]},"references-count":40,"URL":"https:\/\/doi.org\/10.1109\/access.2022.3216075","relation":{},"ISSN":["2169-3536"],"issn-type":[{"value":"2169-3536","type":"electronic"}],"subject":[],"published":{"date-parts":[[2025]]}}}