From One Stolen Utterance: Assessing the Risks of Voice Cloning in the AIGC Era
The result's identifiers
Result code in IS VaVaI
<a href="https://www.isvavai.cz/riv?ss=detail&h=RIV%2F00216208%3A11320%2F26%3ARRGFJP62" target="_blank" >RIV/00216208:11320/26:RRGFJP62 - isvavai.cz</a>
Result on the web
<a href="https://ieeexplore.ieee.org/abstract/document/11023497" target="_blank" >https://ieeexplore.ieee.org/abstract/document/11023497</a>
DOI - Digital Object Identifier
<a href="http://dx.doi.org/10.1109/SP61157.2025.00238" target="_blank" >10.1109/SP61157.2025.00238</a>
Alternative languages
Result language
angličtina
Original language name
From One Stolen Utterance: Assessing the Risks of Voice Cloning in the AIGC Era
Original language description
The advent of voice cloning has fundamentally threatened the role of voice as a unique biometric. Many criminal incidents have already been reported to demonstrate its significant risks of identity forgery. Previous works explored the risks of voice cloning in constrained settings, which require victim speakers to either be already seen in the training data of voice cloning models, or leak dozens of minutes of their speech samples to adversaries. However, with the rapid progress of voice cloning in AIGC (Artificial Intelligence Generated Content) era, these requirements have largely been released, leaving the exact risks of state-of-the-art (SOTA) voice cloning techniques shrouded in a dense fog. To uncover it, this paper conducts a large-scale study in real-world scenarios to assess the risks of advanced voice cloning techniques. This study involves 5 SOTA voice cloning techniques (open-source and commercial), across 8 SOTA voice authentication systems (open-source and real-world) and 30 human listeners, using voice data of over 7,000 speakers (public and custom). By experimental and theoretical analysis, this study reveals that 1) state-of-the-art voice cloning techniques pose severe threats in spoofing voice authentication systems and human listeners; 2) demographic factors such as age and gender of victim speakers have a subtle impact on voice cloning attacks; 3) human listeners' subjective opinions and background about voice cloning play an important role in their susceptibility to attacks; 4) advanced detection methods still fail to identify voice cloning samples as expected.
Czech name
—
Czech description
—
Classification
Type
D - Article in proceedings
CEP classification
—
OECD FORD branch
10201 - Computer sciences, information science, bioinformathics (hardware development to be 2.2, social aspect to be 5.8)
Result continuities
Project
—
Continuities
—
Others
Publication year
2025
Confidentiality
S - Úplné a pravdivé údaje o projektu nepodléhají ochraně podle zvláštních právních předpisů
Data specific for result type
Article name in the collection
2025 IEEE Symposium on Security and Privacy (SP)
ISBN
979-8-3315-2236-0
ISSN
2375-1207
e-ISSN
—
Number of pages
19
Pages from-to
4663-4681
Publisher name
—
Place of publication
—
Event location
San Francisco
Event date
Jan 1, 2026
Type of event by nationality
WRD - Celosvětová akce
UT code for WoS article
—