(Press-News.org) (SAN ANTONIO) MARCH 23, 2023 - Guenevere Chen, an associate professor in the UTSA Department of Electrical and Computer Engineering, recently published a paper on USENIX Security 2023 that demonstrates a novel inaudible voice trojan attack to exploit vulnerabilities of smart device microphones and voice assistants — like Siri, Google Assistant, Alexa or Amazon’s Echo and Microsoft Cortana — and provide defense mechanisms for users.
The researchers developed Near-Ultrasound Inaudible Trojan, or NUIT (French for “nighttime”) to study how hackers exploit speakers and attack voice assistants remotely and silently through the internet.
Chen, her doctoral student Qi Xia, and Shouhuai Xu, a professor in computer science at the University of Colorado Colorado Springs (UCCS), used NUIT to attack different types of smart devices from smart phones to smart home devices. The results of their demonstrations show that NUIT is effective in maliciously controlling the voice interfaces of popular tech products and that those tech products, despite being on the market, have vulnerabilities.
"The technically interesting thing about this project is that the defense solution is simple; however, in order to get the solution, we must discover what the attack is first,” said Xu.
The most popular approach that hackers use to access devices is social engineering, Chen explained. Attackers lure individuals to install malicious apps, visit malicious websites or listen to malicious audio.
For example, an individual’s smart device becomes vulnerable once they watch a malicious YouTube video embedded with NUIT audio or video attacks, either on a laptop or mobile device. Signals can discreetly attack the microphone on the same device or infiltrate the microphone via speakers from other devices such as laptops, vehicle audio systems, and smart home devices.
“If you play YouTube on your smart TV, that smart TV has a speaker, right? The sound of NUIT malicious commands will become inaudible, and it can attack your cell phone too and communicate with your Google Assistant or Alexa devices. It can even happen in Zooms during meetings. If someone unmutes themselves, they can embed the attack signal to hack your phone that’s placed next to your computer during the meeting,” Chen explained.
Once they have unauthorized access to a device, hackers can send inaudible action commands to reduce a device’s volume and prevent a voice assistant’s response from being heard by the user before proceeding with further attacks. The speaker must be above a certain noise level to successfully allow an attack, Chen noted, while to wage a successful attack against voice assistant devices, the length of malicious commands must be below 77 milliseconds (or 0.77 seconds).
“This is not only a software issue or malware. It’s a hardware attack that uses the internet. The vulnerability is the nonlinearity of the microphone design, which the manufacturer would need to address,” Chen said. “Out of the 17 smart devices we tested, Apple Siri devices need to steal the user’s voice while other voice assistant devices can get activated by using any voice or a robot voice.”
NUIT can silence Siri’s response to achieve an unnoticeable attack as the iPhone’s volume of the response and the volume of the media are separately controlled. With these vulnerabilities identified, Chen and team are offering potential lines of defense for consumers. Awareness is the best defense, the UTSA researcher says. Chen recommends users authenticate their voice assistants and exercise caution when they are clicking links and grant microphone permissions.
She also advises the use of earphones in lieu of speakers.
“If you don’t use the speaker to broadcast sound, you’re less likely to get attacked by NUIT. Using earphones sets a limitation where the sound from earphones is too low to transmit to the microphone. If the microphone cannot receive the inaudible malicious command, the underlying voice assistant can’t be maliciously activated by NUIT,” Chen explained.
Research toward the development of NUIT was partially funded by a grant from the Department of Energy National Nuclear Security Administration’s (NNSA) Minority Serving Institutions Partnership Program (MSIPP). The $5 million grant supports research by the Consortium On National Critical Infrastructure Security (CONCISE) and allows the creation of certification related to leveraging Artificial Intelligence (AI) and block-chain technology to enhance critical infrastructure cybersecurity posture.
UTSA is a nationally recognized leader in cybersecurity. It is one of few colleges or universities in the nation – and the only Hispanic Serving Institution – to have three National Centers of Academic Excellence designations from the U.S. Department of Homeland Security and National Security Agency.
Additionally, the university is home to five cybersecurity research centers and institutes— the Cybersecurity Manufacturing Innovation Institute, the National Security Collaboration Center, the Institute for Cyber Security, the Center for Infrastructure Assurance and Security and the Cyber Center for Security and Analytics.
UCCS has a uniquely integrated campus cybersecurity model and is considered the center of cybersecurity education for the University of Colorado system. The university is primed to meet the cybersecurity needs of our nation, from education and research partnerships to developing the cybersecurity workforce of the future.
END
UTSA researchers exploit vulnerabilities of smart device microphones and voice assistants
Researchers developed Near-Ultrasound Inaudible Trojan to study how hackers exploit speakers
2023-03-23
ELSE PRESS RELEASES FROM THIS DATE:
Without this, plants cannot respond to temperature
2023-03-23
UC Riverside scientists have significantly advanced the race to control plant responses to temperature on a rapidly warming planet. Key to this breakthrough is miRNA, a molecule nearly 200,000 times smaller than the width of a human hair.
With moderate increases in temperature, plants grow taller to avoid hotter ground and get fresher air. A landmark study published in the journal Nature Communications demonstrates that microRNA or miRNA is required for this growth. The study also identifies which miRNA molecules — out of more than 100 possibilities — are the essential ones.
“We found that without miRNA plants will not grow, even ...
Use of melatonin linked to decreased self-harm in young people
2023-03-23
Medical sleep treatment may reduce self-harm in young people with anxiety and depression, an observational study from Karolinska Institutet in Sweden suggests. The risk of self-harm increased in the months preceding melatonin prescription and decreased thereafter, especially in girls. The study is published in The Journal of Child Psychology and Psychiatry.
Melatonin is a hormone that controls the sleep-wake cycle and is the most commonly prescribed drug for sleep disturbances in children and adolescents in Sweden. Melatonin use has dramatically increased in recent years, and it is available over the counter in Sweden since 2020.
“Given the established link between sleep ...
Pressure-based control enables tunable singlet fission materials for efficient photoconversion
2023-03-23
Applying hydrostatic pressure as an external stimulus, Tokyo Tech and Keio University researchers demonstrate a new way to regulate singlet fission (SF), a process in which two electrons are generated from a single photon, in chromophores, opening doors to the design of SF-based materials with enhanced (photo)energy conversion. Their method overrides the strict requirements that limit the molecular design of such materials by realizing an alternative control strategy.
Singlet fission (SF) is a process in which ...
New wood-based technology removes 80% of dye pollutants in wastewater
2023-03-23
Researchers at Chalmers University of Technology, Sweden, have developed a new method that can easily purify contaminated water using a cellulose-based material. This discovery could have implications for countries with poor water treatment technologies and combat the widespread problem of toxic dye discharge from the textile industry.
Clean water is a prerequisite for our health and living environment, but far from a given for everyone. According to the World Health Organization, WHO, there are currently over two billion people living with limited or no access to clean water.
This global challenge ...
Optical switching at record speeds opens door for ultrafast, light-based electronics and computers
2023-03-23
Imagine a home computer operating 1 million times faster than the most expensive hardware on the market. Now, imagine that level of computing power as the industry standard. University of Arizona researchers hope to pave the way for that reality using light-based optical computing, a marked improvement from the semiconductor-based transistors that currently run the world.
"Semiconductor-based transistors are in all of the electronics that we use today," said Mohammed Hassan, assistant professor of physics and optical sciences. "They're part of every industry – from kids' toys to ...
Depressed, and aging fast
2023-03-23
Older adults with depression are actually aging faster than their peers, UConn Center on Aging researchers report.
“These patients show evidence of accelerated biological aging, and poor physical and brain health,” which are the main drivers of this association, says Breno Diniz, a UConn School of Medicine geriatric psychiatrist and author of the study, which appears in Nature Mental Health on March 22.
Diniz and colleagues from several other institutions looked at 426 people with late-in-life ...
Study finds “considerable uncertainty” around effectiveness and safety of analgesics for low back pain
2023-03-23
Despite nearly 60 years of research, there is still a lack of high certainty evidence on the effectiveness and safety of commonly used painkillers (analgesics) for short bouts of low back pain, finds an analysis of the evidence published by The BMJ.
The researchers say that until higher quality trials comparing analgesics with each other are published, “clinicians and patients are advised to take a cautious approach to manage acute non-specific low back pain with analgesic medicines.”
Analgesics such as paracetamol, ibuprofen, and codeine ...
Ending GP performance pay in Scotland linked to decline in quality of some care
2023-03-23
Ending performance related payments for NHS GPs in Scotland was associated with a decline in the quality of some aspects of care compared with England where financial incentives have continued, finds a study published by The BMJ today.
The researchers say further research is needed to better understand the full impact of withdrawal and the accompanying refocusing of quality improvement resources.
The NHS Quality and Outcomes Framework (QOF) pay-for-performance scheme began in 2004. It was designed to remunerate general practices for providing good quality care across a range of key areas such as cancer, diabetes, heart disease, mental health, and obesity.
In 2016, Scotland abolished ...
CHOP researchers develop first-of-its-kind prediction model for newborn seizures
2023-03-23
Philadelphia, March 22, 2023 – Researchers from the Neuroscience Center at Children’s Hospital of Philadelphia (CHOP) have developed a prediction model that determines which newborn babies are likely to experience seizures in the Neonatal Intensive Care Unit (NICU). This model could be incorporated into routine care to help the clinical team decide which babies will need electroencephalograms (EEGs) and which babies can be safely managed in the Neonatal Care Unit without monitoring through EEGs. This would allow families and providers to care for babies ...
A higher dose of magnesium each day keeps dementia at bay
2023-03-23
More magnesium in our daily diet leads to better brain health as we age, according to scientists from the Neuroimaging and Brain Lab at The Australian National University (ANU).
The researchers say increased intake of magnesium-rich foods such as spinach and nuts could also help reduce the risk of dementia, which is the second leading cause of death in Australia and the seventh biggest killer globally.
The study of more than 6,000 cognitively healthy participants in the United Kingdom aged 40 to 73 found ...
LAST 30 PRESS RELEASES:
New perspective highlights urgent need for US physician strike regulations
An eye-opening year of extreme weather and climate
Scientists engineer substrates hostile to bacteria but friendly to cells
New tablet shows promise for the control and elimination of intestinal worms
Project to redesign clinical trials for neurologic conditions for underserved populations funded with $2.9M grant to UTHealth Houston
Depression – discovering faster which treatment will work best for which individual
Breakthrough study reveals unexpected cause of winter ozone pollution
nTIDE January 2025 Jobs Report: Encouraging signs in disability employment: A slow but positive trajectory
Generative AI: Uncovering its environmental and social costs
Lower access to air conditioning may increase need for emergency care for wildfire smoke exposure
Dangerous bacterial biofilms have a natural enemy
Food study launched examining bone health of women 60 years and older
CDC awards $1.25M to engineers retooling mine production and safety
Using AI to uncover hospital patients’ long COVID care needs
$1.9M NIH grant will allow researchers to explore how copper kills bacteria
New fossil discovery sheds light on the early evolution of animal nervous systems
A battle of rafts: How molecular dynamics in CAR T cells explain their cancer-killing behavior
Study shows how plant roots access deeper soils in search of water
Study reveals cost differences between Medicare Advantage and traditional Medicare patients in cancer drugs
‘What is that?’ UCalgary scientists explain white patch that appears near northern lights
How many children use Tik Tok against the rules? Most, study finds
Scientists find out why aphasia patients lose the ability to talk about the past and future
Tickling the nerves: Why crime content is popular
Intelligent fight: AI enhances cervical cancer detection
Breakthrough study reveals the secrets behind cordierite’s anomalous thermal expansion
Patient-reported influence of sociopolitical issues on post-Dobbs vasectomy decisions
Radon exposure and gestational diabetes
EMBARGOED UNTIL 1600 GMT, FRIDAY 10 JANUARY 2025: Northumbria space physicist honoured by Royal Astronomical Society
Medicare rules may reduce prescription steering
Red light linked to lowered risk of blood clots
[Press-News.org] UTSA researchers exploit vulnerabilities of smart device microphones and voice assistantsResearchers developed Near-Ultrasound Inaudible Trojan to study how hackers exploit speakers