{"id":"https://openalex.org/W4312522056","doi":"https://doi.org/10.1109/ijcnn55064.2022.9892715","title":"Improving the Semantic Consistency of Textual Adversarial Attacks via Prompt","display_name":"Improving the Semantic Consistency of Textual Adversarial Attacks via Prompt","publication_year":2022,"publication_date":"2022-07-18","ids":{"openalex":"https://openalex.org/W4312522056","doi":"https://doi.org/10.1109/ijcnn55064.2022.9892715"},"language":"en","primary_location":{"id":"doi:10.1109/ijcnn55064.2022.9892715","is_oa":false,"landing_page_url":"https://doi.org/10.1109/ijcnn55064.2022.9892715","pdf_url":null,"source":{"id":"https://openalex.org/S4363607707","display_name":"2022 International Joint Conference on Neural Networks (IJCNN)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2022 International Joint Conference on Neural Networks (IJCNN)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5100695163","display_name":"Xiaoyan Yu","orcid":"https://orcid.org/0000-0003-0351-8393"},"institutions":[{"id":"https://openalex.org/I4210156404","display_name":"Institute of Information Engineering","ror":"https://ror.org/04r53se39","country_code":"CN","type":"facility","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210156404"]},{"id":"https://openalex.org/I19820366","display_name":"Chinese Academy of Sciences","ror":"https://ror.org/034t30j35","country_code":"CN","type":"funder","lineage":["https://openalex.org/I19820366"]},{"id":"https://openalex.org/I4210165038","display_name":"University of Chinese Academy of Sciences","ror":"https://ror.org/05qbk4x57","country_code":"CN","type":"education","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210165038"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Xiaoyan Yu","raw_affiliation_strings":["Institute of Information Engineering,Chinese Academy of Sciences,Beijing,China","School of Cyber Security, University of Chinese Academy of Sciences, Beijing, China","Institute of Information Engineering,Chinese Academy of Sciences, Beijing, China"],"affiliations":[{"raw_affiliation_string":"Institute of Information Engineering,Chinese Academy of Sciences,Beijing,China","institution_ids":["https://openalex.org/I4210156404","https://openalex.org/I19820366"]},{"raw_affiliation_string":"School of Cyber Security, University of Chinese Academy of Sciences, Beijing, China","institution_ids":["https://openalex.org/I4210165038"]},{"raw_affiliation_string":"Institute of Information Engineering,Chinese Academy of Sciences, Beijing, China","institution_ids":["https://openalex.org/I4210156404","https://openalex.org/I19820366"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5001953231","display_name":"Qilei Yin","orcid":"https://orcid.org/0000-0002-0148-2772"},"institutions":[{"id":"https://openalex.org/I99065089","display_name":"Tsinghua University","ror":"https://ror.org/03cve4549","country_code":"CN","type":"education","lineage":["https://openalex.org/I99065089"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Qilei Yin","raw_affiliation_strings":["Tsinghua University,Institute for Network Sciences and Cyberspace,Beijing,China","Institute for Network Sciences and Cyberspace, Tsinghua University, Beijing, China"],"affiliations":[{"raw_affiliation_string":"Tsinghua University,Institute for Network Sciences and Cyberspace,Beijing,China","institution_ids":["https://openalex.org/I99065089"]},{"raw_affiliation_string":"Institute for Network Sciences and Cyberspace, Tsinghua University, Beijing, China","institution_ids":["https://openalex.org/I99065089"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5108660469","display_name":"Zhixin Shi","orcid":null},"institutions":[{"id":"https://openalex.org/I4210156404","display_name":"Institute of Information Engineering","ror":"https://ror.org/04r53se39","country_code":"CN","type":"facility","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210156404"]},{"id":"https://openalex.org/I19820366","display_name":"Chinese Academy of Sciences","ror":"https://ror.org/034t30j35","country_code":"CN","type":"funder","lineage":["https://openalex.org/I19820366"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Zhixin Shi","raw_affiliation_strings":["Institute of Information Engineering,Chinese Academy of Sciences,Beijing,China","Institute of Information Engineering,Chinese Academy of Sciences, Beijing, China"],"affiliations":[{"raw_affiliation_string":"Institute of Information Engineering,Chinese Academy of Sciences,Beijing,China","institution_ids":["https://openalex.org/I4210156404","https://openalex.org/I19820366"]},{"raw_affiliation_string":"Institute of Information Engineering,Chinese Academy of Sciences, Beijing, China","institution_ids":["https://openalex.org/I4210156404","https://openalex.org/I19820366"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5058123394","display_name":"Yuru Ma","orcid":null},"institutions":[{"id":"https://openalex.org/I4210165038","display_name":"University of Chinese Academy of Sciences","ror":"https://ror.org/05qbk4x57","country_code":"CN","type":"education","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210165038"]},{"id":"https://openalex.org/I4210156404","display_name":"Institute of Information Engineering","ror":"https://ror.org/04r53se39","country_code":"CN","type":"facility","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210156404"]},{"id":"https://openalex.org/I19820366","display_name":"Chinese Academy of Sciences","ror":"https://ror.org/034t30j35","country_code":"CN","type":"funder","lineage":["https://openalex.org/I19820366"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yuru Ma","raw_affiliation_strings":["Institute of Information Engineering,Chinese Academy of Sciences,Beijing,China","School of Cyber Security, University of Chinese Academy of Sciences, Beijing, China","Institute of Information Engineering,Chinese Academy of Sciences, Beijing, China"],"affiliations":[{"raw_affiliation_string":"Institute of Information Engineering,Chinese Academy of Sciences,Beijing,China","institution_ids":["https://openalex.org/I4210156404","https://openalex.org/I19820366"]},{"raw_affiliation_string":"School of Cyber Security, University of Chinese Academy of Sciences, Beijing, China","institution_ids":["https://openalex.org/I4210165038"]},{"raw_affiliation_string":"Institute of Information Engineering,Chinese Academy of Sciences, Beijing, China","institution_ids":["https://openalex.org/I4210156404","https://openalex.org/I19820366"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5100695163"],"corresponding_institution_ids":["https://openalex.org/I19820366","https://openalex.org/I4210156404","https://openalex.org/I4210165038"],"apc_list":null,"apc_paid":null,"fwci":0.1039,"has_fulltext":false,"cited_by_count":2,"citation_normalized_percentile":{"value":0.32126697,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":89,"max":99},"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"8"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10028","display_name":"Topic Modeling","score":0.996999979019165,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10028","display_name":"Topic Modeling","score":0.996999979019165,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9955999851226807,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10181","display_name":"Natural Language Processing Techniques","score":0.9563000202178955,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.9017059803009033},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8118073344230652},{"id":"https://openalex.org/keywords/consistency","display_name":"Consistency (knowledge bases)","score":0.7917095422744751},{"id":"https://openalex.org/keywords/semantics","display_name":"Semantics (computer science)","score":0.7492315173149109},{"id":"https://openalex.org/keywords/correctness","display_name":"Correctness","score":0.6936249732971191},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.43176528811454773},{"id":"https://openalex.org/keywords/identification","display_name":"Identification (biology)","score":0.42177045345306396},{"id":"https://openalex.org/keywords/natural-language-processing","display_name":"Natural language processing","score":0.3255513310432434},{"id":"https://openalex.org/keywords/algorithm","display_name":"Algorithm","score":0.18382945656776428},{"id":"https://openalex.org/keywords/programming-language","display_name":"Programming language","score":0.10630109906196594}],"concepts":[{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.9017059803009033},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8118073344230652},{"id":"https://openalex.org/C2776436953","wikidata":"https://www.wikidata.org/wiki/Q5163215","display_name":"Consistency (knowledge bases)","level":2,"score":0.7917095422744751},{"id":"https://openalex.org/C184337299","wikidata":"https://www.wikidata.org/wiki/Q1437428","display_name":"Semantics (computer science)","level":2,"score":0.7492315173149109},{"id":"https://openalex.org/C55439883","wikidata":"https://www.wikidata.org/wiki/Q360812","display_name":"Correctness","level":2,"score":0.6936249732971191},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.43176528811454773},{"id":"https://openalex.org/C116834253","wikidata":"https://www.wikidata.org/wiki/Q2039217","display_name":"Identification (biology)","level":2,"score":0.42177045345306396},{"id":"https://openalex.org/C204321447","wikidata":"https://www.wikidata.org/wiki/Q30642","display_name":"Natural language processing","level":1,"score":0.3255513310432434},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.18382945656776428},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.10630109906196594},{"id":"https://openalex.org/C86803240","wikidata":"https://www.wikidata.org/wiki/Q420","display_name":"Biology","level":0,"score":0.0},{"id":"https://openalex.org/C59822182","wikidata":"https://www.wikidata.org/wiki/Q441","display_name":"Botany","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/ijcnn55064.2022.9892715","is_oa":false,"landing_page_url":"https://doi.org/10.1109/ijcnn55064.2022.9892715","pdf_url":null,"source":{"id":"https://openalex.org/S4363607707","display_name":"2022 International Joint Conference on Neural Networks (IJCNN)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2022 International Joint Conference on Neural Networks (IJCNN)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.7400000095367432,"display_name":"Peace, Justice and strong institutions","id":"https://metadata.un.org/sdg/16"}],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":50,"referenced_works":["https://openalex.org/W1945616565","https://openalex.org/W2038721957","https://openalex.org/W2113459411","https://openalex.org/W2170240176","https://openalex.org/W2794557536","https://openalex.org/W2799007037","https://openalex.org/W2799194071","https://openalex.org/W2893554781","https://openalex.org/W2896457183","https://openalex.org/W2923014074","https://openalex.org/W2949128310","https://openalex.org/W2963846996","https://openalex.org/W2963859254","https://openalex.org/W2964232431","https://openalex.org/W2965373594","https://openalex.org/W2970476646","https://openalex.org/W2970641574","https://openalex.org/W2978017171","https://openalex.org/W2988194011","https://openalex.org/W2996428491","https://openalex.org/W2996851481","https://openalex.org/W2997395473","https://openalex.org/W3011411500","https://openalex.org/W3025408396","https://openalex.org/W3035736465","https://openalex.org/W3096580779","https://openalex.org/W3101449015","https://openalex.org/W3103491646","https://openalex.org/W3104423855","https://openalex.org/W3118032223","https://openalex.org/W3164159877","https://openalex.org/W3169948074","https://openalex.org/W3170083118","https://openalex.org/W4292779060","https://openalex.org/W6640425456","https://openalex.org/W6676984168","https://openalex.org/W6685053522","https://openalex.org/W6696511012","https://openalex.org/W6749879876","https://openalex.org/W6755038706","https://openalex.org/W6755207826","https://openalex.org/W6763411964","https://openalex.org/W6766401332","https://openalex.org/W6766673545","https://openalex.org/W6768021236","https://openalex.org/W6768851824","https://openalex.org/W6775094808","https://openalex.org/W6777683407","https://openalex.org/W6778883912","https://openalex.org/W6795642784"],"related_works":["https://openalex.org/W2502115930","https://openalex.org/W1667647204","https://openalex.org/W2404647514","https://openalex.org/W4247536566","https://openalex.org/W2482350142","https://openalex.org/W4246396837","https://openalex.org/W3126451824","https://openalex.org/W4241418540","https://openalex.org/W3087250444","https://openalex.org/W4323929292"],"abstract_inverted_index":{"Adversarial":[0],"examples":[1,74,121],"can":[2,131,218],"expose":[3],"the":[4,21,35,39,43,47,50,72,79,85,89,93,96,102,107,113,119,124,134,152,161,165,179,184,195,209,212],"vulnerabilities":[5],"of":[6,23,49,95,164,183,190,200,206],"neural":[7],"networks.":[8],"State-of-the-art":[9],"textual":[10,64],"adversarial":[11,40,65,73,120,167],"attacks":[12,30,51,186],"have":[13],"demonstrated":[14],"their":[15,128],"effectiveness":[16],"in":[17,20,222],"triggering":[18],"errors":[19],"output":[22],"natural":[24],"language":[25,225],"processing":[26],"models.":[27],"However,":[28],"these":[29],"are":[31],"limited":[32],"to":[33,70,105,146,159,208,232],"ensuring":[34],"semantic":[36,180],"consistency":[37,181],"between":[38],"example":[41],"and":[42,154,227],"original":[44,80,103],"input,":[45,104],"increasing":[46],"possibility":[48],"being":[52],"detected":[53],"by":[54,122,187],"human":[55],"judges.":[56],"In":[57],"this":[58],"paper,":[59],"we":[60],"propose":[61],"a":[62,141,155],"novel":[63,156],"attack,":[66],"Prompt-Attack,":[67],"which":[68],"aims":[69],"generate":[71],"having":[75,109],"consistent":[76,110],"semantics":[77,87,94,111],"with":[78,88,112,127],"input.":[81],"Specifically,":[82],"Prompt-Attack":[83,139,176,193,217,228],"enhances":[84],"input's":[86],"prompts":[90],"that":[91,130,175,216],"represent":[92],"different":[97,224,233],"target":[98,114,149],"segments":[99,126,150],"extracted":[100],"from":[101,151],"predict":[106],"substitutions":[108,129],"segments.":[115],"Then,":[116],"it":[117],"crafts":[118],"replacing":[123],"important":[125],"most":[132],"affect":[133],"victim":[135],"model's":[136],"output.":[137],"Besides,":[138],"proposes":[140],"span-level":[142],"segment":[143],"identification":[144],"strategy":[145,158],"extract":[147],"more":[148],"input":[153],"masking":[157],"ensure":[160],"grammatical":[162],"correctness":[163],"generated":[166],"examples.":[168],"Extensive":[169],"experiments":[170],"on":[171],"public":[172],"datasets":[173],"illustrate":[174],"significantly":[177],"improves":[178],"score":[182],"baseline":[185],"an":[188,203],"average":[189,204],"48%.":[191],"Further,":[192],"achieves":[194],"best":[196],"attack":[197],"success":[198],"rate":[199],"0.906,":[201],"showing":[202],"improvement":[205],"40%":[207],"baselines.":[210],"Moreover,":[211],"experimental":[213],"results":[214],"demonstrate":[215],"achieve":[219],"good":[220],"performance":[221],"attacking":[223],"models":[226],"is":[229],"not":[230],"sensitive":[231],"settings.":[234]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2023,"cited_by_count":1}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
