Banana Navy
Catalog FR
Lab · Threat modeling IA · Fiche détaillée

Audio replay (replayed or pre-recorded audio)

the attacker replays a recording (the victim's voice or pre-recorded answers, static cloned messages) instead of speaking live, to pass a voice check or a challenge.

SheetF3
CategoryS-TB7-01 (spoofing par réutilisation)
Layers3 · Audio Capture, 7 · Liveness Challenge
Systemvoicebot IA

audio stream fingerprinting (timestamps, RTP validation), anti-replay cache, unpredictable dynamic challenge (random phrase repetition), timing analysis.

The threat

the attacker replays a recording (the victim's voice or pre-recorded answers, static cloned messages) instead of speaking live, to pass a voice check or a challenge.

Angle mortWhy classic frameworks miss it

a simple is-a-voice-here check does not tell live speech from a recording; the reuse risk is invisible if the audio input is not profiled (timestamps, stream).

MitigationProposed approach

audio stream fingerprinting (timestamps, RTP validation), anti-replay cache, unpredictable dynamic challenge (random phrase repetition), timing analysis.

The proposed control
a previously-seen stream is refused, the challenge cannot be replayed.

Expected evidence
a replayed recording is rejected before any action.

SourcesReferences and public research

MITRE ATLAS 2026.07AML.T0043 Craft Adversarial Data
Recherche publiquePublic research sources: MITRE ATLAS 2026.07 (verified technique mapping), OWASP GenAI (catégories par abus de modèle), and the public risk-voicebot (aivansoul/risk-voicebot) template defining the 20 checkpoints. No client registry data: generic sheet, no rating, no verdict.
couche 3 · Audio Capturecouche 7 · Liveness Challenge

Explore the 20 security layers

MITRE ATLAS 2026.07 · OWASP GenAI · risk-voicebot