Audio Adversarial Examples
nicholas.carlini.com
nicholas.carlini.com
So is this just a proof of concept or can this be exploited in the wild?
Based on my understanding you need to have access to network itself (weights, baisses, activation function, architectural topography) to pull off this kind of attack. Doesn't seem like this could be easily be duplicated as an outside agent.
https://arxiv.org/abs/1602.02697
"Our attack strategy consists in training a local model to substitute for the target DNN, using inputs synthetically generated by an adversary and labeled by the target DNN"
I'd bet they could be engineered to affect a higher proportion of the population.
I'd expect a malicious adversarial example to be more like the ones discussed in Snow Crash or BLIT ( https://en.wikipedia.org/wiki/BLIT_(short_story) )
However prior work [1] was shown to work on google phones, it is just much more noticeable.