The 6th edition of the Symposium on Security & Privacy in Speech Communication focuses on speech and voice as central media through which humans convey intentions, emotions, and identity in both everyday and professional contexts. Spoken interaction now underpins virtual assistants, biometric services, and sensitive applications in sectors such as healthcare, forensics, and commerce. The symposium invites contributions that address how we can strengthen security and privacy for diverse speech representation types in user-centric human–machine interaction, while preserving usability and trust. To this end, it fosters interdisciplinary exchange and aims to bring together researchers and practitioners from multiple fields, including signal processing, cryptography, security, human–computer interaction, law, ethics, and anthropology. This symposium continues the successful series of events stemming from the ISCA special interest group on Security & Privacy in Speech Communication (SPSC-SIG), where perspectives from technological and humanities communities mutually inform and enrich one another to develop multidisciplinary and interdisciplinary skills.
For the general symposium, we welcome contributions on related topics, as well as progress reports, project dissemination, theoretical discussions, and “work in progress”. In addition, guests from academia, industry, and public institutions, as well as interested students, are welcome to attend the conference without submitting their own contribution. Building on community efforts such as the VoicePrivacy Challenge and related benchmarks, the symposium explicitly welcomes VoicePrivacy 2026 Challenge participants to submit papers related to their challenge contributions and broader work on voice privacy and speaker anonymization. While we aim to meet all participants on-site, virtual presentations will also be possible during the symposium. More details regarding the challenge can be found at VPC Challenge Webside.
The Symposium aims at laying the first building blocks required to address the question of how researchers and practitioners might bridge the gap between social perceptions and their technical counterparts with respect to what it means for our voices and speech to be secure and private. The symposium brings together researchers and practitioners across multiple disciplines – more specifically: signal processing, cryptography, security, human-computer interaction, law, and anthropology. By integrating different disciplinary perspectives on speech-enabled technology and applications, the SPSC Symposium opens opportunities to collect and merge input regarding technical and social practices, as well as a deeper understanding of the situated ethics at play.
The SPSC Symposium addresses interdisciplinary topics.
For more details, see Full CFP
Papers intended for the SPSC Symposium should be up to eight pages of text. The length should be chosen appropriately to present the topic to an interdisciplinary community. Paper submissions must conform to the format defined in the paper preparation guidelines and as detailed in the author's kit. Papers must be submitted via the online paper submission system via the Link on the SPSC Website. The working language of the conference is English, and papers must be written in English. All accepted papers will be published in the ISCA archive alongside Interspeech papers and related ISCA workshops. The overleaf template can be found here or use the Overleaf Template.
At least three double-blind reviews are provided, and we aim to obtain feedback from interdisciplinary experts for each submission.
We are glad to announce the preliminary program. All times are in Australian Eastern Standard Time (AEST) (UTC+10).
| Time | Event |
|---|---|
| 09:00 - 09:30 | Welcome and Opening |
| 09:30 - 10:30 | SPSC Oral Session 1 – Voice Anonymization, Representation & Utility |
| 09:30 - 09:45 |
Davis Sterns Goodbye Equal Error Rate, Hello Local Information Disclosure: Evaluating Voice Anonymisation against 1-to-N Linkage Threats |
| 09:45 - 10:00 |
Yamini Sinha Prosodic Conditioning and Identity Leakage in Speaker Anonymization for Pathological Speech |
| 10:00 - 10:15 |
Sebastian Möller Evaluating Parkinson’s Disease Detection in Anonymized Speech: A Performance and Acoustic Analysis |
| 10:15 - 10:30 |
Xin Wang In Defense of Using Worst-case Privacy Disclosure as Privacy Evaluation Metric of Voice Anonymization |
| 10:30 - 11:00 | Morning Coffee Break |
| 11:00 - 12:00 | SPSC Oral Session 2 – Privacy Threats, Evaluation & Longitudinal Effects |
| 11:00 - 11:15 |
Chenyi Lin Non-Uniform Privacy Leakage: Subgroup Disparities in Membership Inference Attacks on Speaker Recognition Systems |
| 11:15 - 11:30 |
Ingo Siegert How Much Do Speaker Embeddings Age? Model-Dependent Longitudinal Drift Across Parliamentary and Web Speech |
| 11:30 - 11:45 |
Hannaneh Pasandi Beyond the Signal: A Threat Model and Evaluation Lens for Privacy in Agentic Voice Assistants Remote presentation |
| 11:45 - 12:00 |
Jiusi Zheng Towards Interpretable Speaker Representations for Controllable Voice Privacy Protection Remote presentation |
| 12:00 - 12:20 | VoicePrivacy Challenge 2026 – Overview, Results & Key Findings |
| 12:30 - 13:00 |
VPC Oral Session – Part 1 3 contributions, 7 min talk + 3 min Q&A each |
| 12:30 - 12:40 |
Yibo Duan. T3 Voicecode, VoxCPM2 Voice-Design Anonymization for VoicePrivacy 2026: English and Multilingual Systems Remote presentation |
| 12:40 - 12:50 |
Jiusi Zheng. T15 ZZZ, Radboud-Aalto Submission to the Voice Privacy Challenge 2026 Remote presentation |
| 12:50 - 13:00 |
Gia Huy Bui. T18 RocknRiver, RocknRiver: Multilingual Speaker Anonymization System for Voice Privacy 2026 Challenge Remote presentation |
| 13:00 - 14:00 | Lunch Break |
| 14:00 - 15:00 |
VPC Oral Session – Part 2 6 contributions, 7 min talk + 3 min Q&A each |
| 14:00 - 14:10 |
Alef Iury Siqueira Ferreira. T24 Caramelo, Emotion-Aware Speaker Anonymization with Zero-Shot TTS Foundation Models for VoicePrivacy 2026 |
| 14:10 - 14:20 |
Jiarui Xu. T32 Chameleos, Two-Stage Speaker Anonymization with Emotion-Conditioned Resynthesis and Mild McAdams Post-Processing: A CosyVoice2 System for the VoicePrivacy 2026 Challenge Remote presentation |
| 14:20 - 14:30 |
Rayane Bakari. T37 SHIVA, Natural Language Instructions for Voice Anonymization – Orange Research submission for the VoicePrivacy 2026 Challenge Remote presentation |
| 14:30 - 14:40 |
Hanbing Tian. T1 Xihua, AR-CAP-DSF System for the VoicePrivacy 2026 Challenge Remote presentation |
| 14:40 - 14:50 |
Yilin Han. T11 AI4AI, Enhanced Selection-Based Voice Anonymization via Soft-HuBERT and Statistical Pitch Transformation Remote presentation |
| 14:50 - 15:00 |
Xiang Shi. T23 DKU, A Training-Free Projection-Guided Conditional Flow-Matching System for VoicePrivacy 2026 Remote presentation |
| 15:00 - 15:30 | Afternoon Coffee Break |
| 15:30 - 16:50 |
Joint SPSC + VPC Poster Session 8 SPSC + 4 VPC posters |
|
Tom Bäckström Can You Simulate Privacy Disclosure with LLM Agents in Conversations? |
|
|
Anton Firc The Last Mile of Deepfake Speech Detection: An Industry–Academia Experience Report |
|
|
Kamil Malinka Tracking the Trend in How Speech Synthesizers Deceive People |
|
|
Jule Pohlhausen The Unseen Threat: How Complementary Combinations of Acoustic Features Compromise Speech Privacy |
|
|
Poppy Welch Modality-Centric Privacy for Audio-Visual Hearing Assistive Devices |
|
|
Thomas Thebaud Leveraging Gradient Reversal Loss and Multitask Learning for Datasets-Aware Audio Deepfake Detection |
|
|
Anjana Rajasekhar Is Word Error Rate Enough? Rethinking Privacy Evaluation in Speech with Entity-Aware Metrics |
|
|
Natalia Tomashenko Learning Temporal-Dynamics Metrics for Voice Anonymization Attacks |
|
|
Le Ngoc Hung. T7 AISRC, AISRC System Description for Voice Privacy 2026 Challenge |
|
|
Théo Nguyen. T2 PSST1, PSST1 System description for VoicePrivacy Challenge 2026 |
|
|
Adrien Schneider. T12 M-PSIvacy, Listen to the Features: Voice Anonymization Driven by Content Embedding Matching over Signal Reconstruction |
|
|
Siavosh Sepanta. T13 SpeechTek, Discrete Units, Adversarial Vocoding, and the Identity That Remains: The FBK-SpeechTek Systems for VoicePrivacy 2026 |
|
| 16:50 - 17:00 | Closing Remarks |
All times are given with respect to the UTC+10:00 zone (Australian Eastern Standard Time, AEST).
You can use a time zone converter to check the times in your local time zone.
Paper submission opens
SPSC regular papers
VPC papers and results submission
Acceptance Notification
Final (camera ready) paper submission
Symposium
Proceedings available
The 6th SPSC Symposium will be held at the UNSW Kensington Campus in the Civil Engineering Building (K-H20).
Registration opens at 08:30 on Saturday, 26 September 2026.
Civil Engineering Building (K-H20)
Lecture Theatre K-H20-G1
UNSW Sydney – Kensington Campus
High Street
Kensington NSW 2052, Australia
The following map shows
From marker 3, the symposium venue is only about a 4–5 minute walk.
Ingo SIEGERT, Otto von Guericke University Magdeburg, Germany
Sneha DAS, Technical University of Denmark, Denmark
Brij Mohan Lal SRIVASTAVA, Co-founder and CEO of Nijta, France
Natalia TOMASHENKO, Inria, France
Xiaoxiao MIAO, Duke Kunshan University, China
(alphabetical)
Ajinkya Kulkarni, Idiap Research Institute, Switzerland
Brij Mohan Lal Srivastava, Nijta, France
Candy Olivia Mawalim, Japan Advanced Institute of Science and Technology, Japan
David Boyle, Imperial College London, UK
Emmanuel Vincent, Inria, France
Gerald Penn, University of Toronto, Canada
Hemlata Tak, Pindrop, USA
Ingo Siegert, Otto von Guericke University Magdeburg, Germany
Jennifer Williams, University of Southampton, UK
Junichi Yamagishi, National Institute of Informatics, Japan
Korbinian Riedhammer, Nuremberg Institute of Technology, Germany
Lin Zhang, National Institute of Informatics, Japan
Md Sahidullah, TCG CREST & Academy of Scientific and Innovative Research (AcSIR), India
Natalia Tomashenko, Inria, France
Nick Evans, EURECOM, France
Pierre Champion, Inria, France
Sarina Meyer, University of Stuttgart, Germany
Sebastian Le Maguer, University of Helsinki, Finland
Simon King, University of Edinburgh, UK
Sneha Das, Technical University of Denmark, Denmark
Tim Polzehl, DFKI, Germany
Tom Bäckström, Aalto University, Finland
Xiaoxiao Miao, Singapore Institute of Technology, Singapore
Xin Wang, National Institute of Informatics, Japan
You (Neil) Zhang, University of Rochester, USA
Ziqian Luo, Carnegie Mellon University, USA