{"id":"https://openalex.org/W2917779306","doi":"https://doi.org/10.1109/icassp.2019.8682430","title":"Universal Adversarial Attacks on Text Classifiers","display_name":"Universal Adversarial Attacks on Text Classifiers","publication_year":2019,"publication_date":"2019-04-17","ids":{"openalex":"https://openalex.org/W2917779306","doi":"https://doi.org/10.1109/icassp.2019.8682430","mag":"2917779306"},"language":"en","primary_location":{"id":"doi:10.1109/icassp.2019.8682430","is_oa":false,"landing_page_url":"https://doi.org/10.1109/icassp.2019.8682430","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"ICASSP 2019 - 2019 IEEE International Conference on Acoustics, Speech and Signal Processing (ICASSP)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://infoscience.epfl.ch/handle/20.500.14299/154841","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5025234653","display_name":"Melika Behjati","orcid":null},"institutions":[{"id":"https://openalex.org/I133529467","display_name":"Sharif University of Technology","ror":"https://ror.org/024c2fq17","country_code":"IR","type":"education","lineage":["https://openalex.org/I133529467"]}],"countries":["IR"],"is_corresponding":true,"raw_author_name":"Melika Behjati","raw_affiliation_strings":["Sharif University of Technology, Tehran, Iran"],"affiliations":[{"raw_affiliation_string":"Sharif University of Technology, Tehran, Iran","institution_ids":["https://openalex.org/I133529467"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5053991440","display_name":"Seyed-Mohsen Moosavi-Dezfooli","orcid":null},"institutions":[{"id":"https://openalex.org/I5124864","display_name":"\u00c9cole Polytechnique F\u00e9d\u00e9rale de Lausanne","ror":"https://ror.org/02s376052","country_code":"CH","type":"education","lineage":["https://openalex.org/I2799323385","https://openalex.org/I5124864"]}],"countries":["CH"],"is_corresponding":false,"raw_author_name":"Seyed-Mohsen Moosavi-Dezfooli","raw_affiliation_strings":["\u00c9cole Polytechnique F\u00e9d\u00e9rale de Lausanne (EPFL), Lausanne, Switzerland"],"affiliations":[{"raw_affiliation_string":"\u00c9cole Polytechnique F\u00e9d\u00e9rale de Lausanne (EPFL), Lausanne, Switzerland","institution_ids":["https://openalex.org/I5124864"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5069082023","display_name":"Mahdieh Soleymani Baghshah","orcid":"https://orcid.org/0000-0002-1971-6231"},"institutions":[{"id":"https://openalex.org/I133529467","display_name":"Sharif University of Technology","ror":"https://ror.org/024c2fq17","country_code":"IR","type":"education","lineage":["https://openalex.org/I133529467"]}],"countries":["IR"],"is_corresponding":false,"raw_author_name":"Mahdieh Soleymani Baghshah","raw_affiliation_strings":["Sharif University of Technology, Tehran, Iran"],"affiliations":[{"raw_affiliation_string":"Sharif University of Technology, Tehran, Iran","institution_ids":["https://openalex.org/I133529467"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5000947076","display_name":"Pascal Frossard","orcid":"https://orcid.org/0000-0002-4010-714X"},"institutions":[{"id":"https://openalex.org/I5124864","display_name":"\u00c9cole Polytechnique F\u00e9d\u00e9rale de Lausanne","ror":"https://ror.org/02s376052","country_code":"CH","type":"education","lineage":["https://openalex.org/I2799323385","https://openalex.org/I5124864"]}],"countries":["CH"],"is_corresponding":false,"raw_author_name":"Pascal Frossard","raw_affiliation_strings":["\u00c9cole Polytechnique F\u00e9d\u00e9rale de Lausanne (EPFL), Lausanne, Switzerland"],"affiliations":[{"raw_affiliation_string":"\u00c9cole Polytechnique F\u00e9d\u00e9rale de Lausanne (EPFL), Lausanne, Switzerland","institution_ids":["https://openalex.org/I5124864"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5025234653"],"corresponding_institution_ids":["https://openalex.org/I133529467"],"apc_list":null,"apc_paid":null,"fwci":8.8264,"has_fulltext":false,"cited_by_count":98,"citation_normalized_percentile":{"value":0.9815656,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":98,"max":100},"biblio":{"volume":null,"issue":null,"first_page":"7345","last_page":"7349"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9995999932289124,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9995999932289124,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9900000095367432,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11147","display_name":"Misinformation and Its Impacts","score":0.9693999886512756,"subfield":{"id":"https://openalex.org/subfields/3312","display_name":"Sociology and Political Science"},"field":{"id":"https://openalex.org/fields/33","display_name":"Social Sciences"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.8758223652839661},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7336989641189575},{"id":"https://openalex.org/keywords/classifier","display_name":"Classifier (UML)","score":0.7153292298316956},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.6006125211715698},{"id":"https://openalex.org/keywords/word","display_name":"Word (group theory)","score":0.5762543678283691},{"id":"https://openalex.org/keywords/sequence","display_name":"Sequence (biology)","score":0.5111539959907532},{"id":"https://openalex.org/keywords/deep-neural-networks","display_name":"Deep neural networks","score":0.46869492530822754},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.4026838541030884},{"id":"https://openalex.org/keywords/pattern-recognition","display_name":"Pattern recognition (psychology)","score":0.40008631348609924},{"id":"https://openalex.org/keywords/algorithm","display_name":"Algorithm","score":0.3624919354915619},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.32820743322372437},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.16418445110321045}],"concepts":[{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.8758223652839661},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7336989641189575},{"id":"https://openalex.org/C95623464","wikidata":"https://www.wikidata.org/wiki/Q1096149","display_name":"Classifier (UML)","level":2,"score":0.7153292298316956},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.6006125211715698},{"id":"https://openalex.org/C90805587","wikidata":"https://www.wikidata.org/wiki/Q10944557","display_name":"Word (group theory)","level":2,"score":0.5762543678283691},{"id":"https://openalex.org/C2778112365","wikidata":"https://www.wikidata.org/wiki/Q3511065","display_name":"Sequence (biology)","level":2,"score":0.5111539959907532},{"id":"https://openalex.org/C2984842247","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep neural networks","level":3,"score":0.46869492530822754},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.4026838541030884},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.40008631348609924},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.3624919354915619},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.32820743322372437},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.16418445110321045},{"id":"https://openalex.org/C86803240","wikidata":"https://www.wikidata.org/wiki/Q420","display_name":"Biology","level":0,"score":0.0},{"id":"https://openalex.org/C2524010","wikidata":"https://www.wikidata.org/wiki/Q8087","display_name":"Geometry","level":1,"score":0.0},{"id":"https://openalex.org/C54355233","wikidata":"https://www.wikidata.org/wiki/Q7162","display_name":"Genetics","level":1,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1109/icassp.2019.8682430","is_oa":false,"landing_page_url":"https://doi.org/10.1109/icassp.2019.8682430","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"ICASSP 2019 - 2019 IEEE International Conference on Acoustics, Speech and Signal Processing (ICASSP)","raw_type":"proceedings-article"},{"id":"pmh:oai:infoscience.epfl.ch:264189","is_oa":true,"landing_page_url":"https://infoscience.epfl.ch/handle/20.500.14299/154841","pdf_url":null,"source":{"id":"https://openalex.org/S4306400487","display_name":"Infoscience (Ecole Polytechnique F\u00e9d\u00e9rale de Lausanne)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by-nc-nd","license_id":"https://openalex.org/licenses/cc-by-nc-nd","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"conference proceedings"}],"best_oa_location":{"id":"pmh:oai:infoscience.epfl.ch:264189","is_oa":true,"landing_page_url":"https://infoscience.epfl.ch/handle/20.500.14299/154841","pdf_url":null,"source":{"id":"https://openalex.org/S4306400487","display_name":"Infoscience (Ecole Polytechnique F\u00e9d\u00e9rale de Lausanne)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by-nc-nd","license_id":"https://openalex.org/licenses/cc-by-nc-nd","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"conference proceedings"},"sustainable_development_goals":[{"display_name":"Reduced inequalities","score":0.4300000071525574,"id":"https://metadata.un.org/sdg/10"}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":47,"referenced_works":["https://openalex.org/W1522301498","https://openalex.org/W1673923490","https://openalex.org/W1945616565","https://openalex.org/W2064675550","https://openalex.org/W2097117768","https://openalex.org/W2102605133","https://openalex.org/W2131774270","https://openalex.org/W2170240176","https://openalex.org/W2194775991","https://openalex.org/W2243397390","https://openalex.org/W2251939518","https://openalex.org/W2327501763","https://openalex.org/W2519091744","https://openalex.org/W2521709538","https://openalex.org/W2525778437","https://openalex.org/W2543927648","https://openalex.org/W2609368435","https://openalex.org/W2735135478","https://openalex.org/W2799194071","https://openalex.org/W2949382160","https://openalex.org/W2962718684","https://openalex.org/W2962772361","https://openalex.org/W2963012544","https://openalex.org/W2963207607","https://openalex.org/W2963834268","https://openalex.org/W2963969878","https://openalex.org/W2964121744","https://openalex.org/W2964153729","https://openalex.org/W2964197269","https://openalex.org/W2964253222","https://openalex.org/W2964307104","https://openalex.org/W3013371788","https://openalex.org/W4293846201","https://openalex.org/W4294367149","https://openalex.org/W4298580827","https://openalex.org/W6631190155","https://openalex.org/W6637162671","https://openalex.org/W6640425456","https://openalex.org/W6685053522","https://openalex.org/W6691459498","https://openalex.org/W6737220129","https://openalex.org/W6739868092","https://openalex.org/W6741419198","https://openalex.org/W6747248625","https://openalex.org/W6748204703","https://openalex.org/W6748409065","https://openalex.org/W6752083044"],"related_works":["https://openalex.org/W2950183588","https://openalex.org/W3080754722","https://openalex.org/W3093978547","https://openalex.org/W3203790781","https://openalex.org/W2997056298","https://openalex.org/W2738001131","https://openalex.org/W4285785480","https://openalex.org/W3127875750","https://openalex.org/W4383221314","https://openalex.org/W2953536436"],"abstract_inverted_index":{"Despite":[0],"the":[1,25,32,69,92,100],"vast":[2],"success":[3],"neural":[4],"networks":[5],"have":[6,13],"achieved":[7],"in":[8,24,65],"different":[9],"application":[10],"domains,":[11],"they":[12],"been":[14],"proven":[15],"to":[16,19,30,62,67,82,91,104],"be":[17,60],"vulnerable":[18,81],"adversarial":[20,50,89],"perturbations":[21,51],"(small":[22],"changes":[23],"input),":[26],"which":[27],"lead":[28],"them":[29],"produce":[31],"wrong":[33],"output.":[34],"In":[35],"this":[36],"paper,":[37],"we":[38],"propose":[39],"a":[40,87],"novel":[41],"method,":[42],"based":[43],"on":[44],"gradient":[45],"projection,":[46],"for":[47,52],"generating":[48],"universal":[49],"text;":[53],"namely":[54],"sequence":[55,97],"of":[56,94],"words":[57],"that":[58,76],"can":[59,98],"added":[61],"any":[63],"input":[64,96],"order":[66],"fool":[68],"classifier":[70],"with":[71],"high":[72],"probability.":[73],"We":[74],"observed":[75],"text":[77],"classifiers":[78],"are":[79],"quite":[80],"such":[83],"perturbations:":[84],"inserting":[85],"even":[86],"single":[88],"word":[90],"beginning":[93],"every":[95],"drop":[99],"accuracy":[101],"from":[102],"93%":[103],"50%.":[105]},"counts_by_year":[{"year":2025,"cited_by_count":7},{"year":2024,"cited_by_count":7},{"year":2023,"cited_by_count":21},{"year":2022,"cited_by_count":18},{"year":2021,"cited_by_count":24},{"year":2020,"cited_by_count":13},{"year":2019,"cited_by_count":8}],"updated_date":"2026-02-26T06:29:33.603293","created_date":"2025-10-10T00:00:00"}
