{"id":"https://openalex.org/W4399835044","doi":"https://doi.org/10.1109/tifs.2024.3416849","title":"NUAT-GAN: Generating Black-Box Natural Universal Adversarial Triggers for Text Classifiers Using Generative Adversarial Networks","display_name":"NUAT-GAN: Generating Black-Box Natural Universal Adversarial Triggers for Text Classifiers Using Generative Adversarial Networks","publication_year":2024,"publication_date":"2024-01-01","ids":{"openalex":"https://openalex.org/W4399835044","doi":"https://doi.org/10.1109/tifs.2024.3416849"},"language":"en","primary_location":{"id":"doi:10.1109/tifs.2024.3416849","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tifs.2024.3416849","pdf_url":null,"source":{"id":"https://openalex.org/S61310614","display_name":"IEEE Transactions on Information Forensics and Security","issn_l":"1556-6013","issn":["1556-6013","1556-6021"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Information Forensics and Security","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5049080515","display_name":"Haoran Gao","orcid":"https://orcid.org/0000-0002-9596-3066"},"institutions":[{"id":"https://openalex.org/I139759216","display_name":"Beijing University of Posts and Telecommunications","ror":"https://ror.org/04w9fbh59","country_code":"CN","type":"education","lineage":["https://openalex.org/I139759216"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Haoran Gao","raw_affiliation_strings":["State Key Laboratory of Networking and Switching Technology, Beijing University of Posts and Telecommunications, Beijing, China"],"affiliations":[{"raw_affiliation_string":"State Key Laboratory of Networking and Switching Technology, Beijing University of Posts and Telecommunications, Beijing, China","institution_ids":["https://openalex.org/I139759216"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100408679","display_name":"Hua Zhang","orcid":"https://orcid.org/0000-0002-0532-9783"},"institutions":[{"id":"https://openalex.org/I125839683","display_name":"Beijing Institute of Technology","ror":"https://ror.org/01skt4w74","country_code":"CN","type":"education","lineage":["https://openalex.org/I125839683","https://openalex.org/I890469752"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Hua Zhang","raw_affiliation_strings":["Beijing Institute of Computer Technology and Application, Beijing, China"],"affiliations":[{"raw_affiliation_string":"Beijing Institute of Computer Technology and Application, Beijing, China","institution_ids":["https://openalex.org/I125839683"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5090357947","display_name":"Jiahui Wang","orcid":"https://orcid.org/0000-0003-2552-0726"},"institutions":[{"id":"https://openalex.org/I139759216","display_name":"Beijing University of Posts and Telecommunications","ror":"https://ror.org/04w9fbh59","country_code":"CN","type":"education","lineage":["https://openalex.org/I139759216"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Jiahui Wang","raw_affiliation_strings":["State Key Laboratory of Networking and Switching Technology, Beijing University of Posts and Telecommunications, Beijing, China"],"affiliations":[{"raw_affiliation_string":"State Key Laboratory of Networking and Switching Technology, Beijing University of Posts and Telecommunications, Beijing, China","institution_ids":["https://openalex.org/I139759216"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100327449","display_name":"Xin Zhang","orcid":"https://orcid.org/0000-0002-4086-1943"},"institutions":[{"id":"https://openalex.org/I125839683","display_name":"Beijing Institute of Technology","ror":"https://ror.org/01skt4w74","country_code":"CN","type":"education","lineage":["https://openalex.org/I125839683","https://openalex.org/I890469752"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xin Zhang","raw_affiliation_strings":["Beijing Institute of Computer Technology and Application, Beijing, China"],"affiliations":[{"raw_affiliation_string":"Beijing Institute of Computer Technology and Application, Beijing, China","institution_ids":["https://openalex.org/I125839683"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100701118","display_name":"Huawei Wang","orcid":"https://orcid.org/0000-0002-6360-1116"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Huawei Wang","raw_affiliation_strings":["Beijing Institute of Control Engineering, Beijing, China"],"affiliations":[{"raw_affiliation_string":"Beijing Institute of Control Engineering, Beijing, China","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5108781441","display_name":"Wenmin Li","orcid":null},"institutions":[{"id":"https://openalex.org/I139759216","display_name":"Beijing University of Posts and Telecommunications","ror":"https://ror.org/04w9fbh59","country_code":"CN","type":"education","lineage":["https://openalex.org/I139759216"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Wenmin Li","raw_affiliation_strings":["State Key Laboratory of Networking and Switching Technology, Beijing University of Posts and Telecommunications, Beijing, China"],"affiliations":[{"raw_affiliation_string":"State Key Laboratory of Networking and Switching Technology, Beijing University of Posts and Telecommunications, Beijing, China","institution_ids":["https://openalex.org/I139759216"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5046654644","display_name":"Tengfei Tu","orcid":"https://orcid.org/0000-0001-5683-5347"},"institutions":[{"id":"https://openalex.org/I139759216","display_name":"Beijing University of Posts and Telecommunications","ror":"https://ror.org/04w9fbh59","country_code":"CN","type":"education","lineage":["https://openalex.org/I139759216"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Tengfei Tu","raw_affiliation_strings":["State Key Laboratory of Networking and Switching Technology, Beijing University of Posts and Telecommunications, Beijing, China"],"affiliations":[{"raw_affiliation_string":"State Key Laboratory of Networking and Switching Technology, Beijing University of Posts and Telecommunications, Beijing, China","institution_ids":["https://openalex.org/I139759216"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":7,"corresponding_author_ids":["https://openalex.org/A5049080515"],"corresponding_institution_ids":["https://openalex.org/I139759216"],"apc_list":null,"apc_paid":null,"fwci":1.0878,"has_fulltext":false,"cited_by_count":3,"citation_normalized_percentile":{"value":0.80258582,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":96,"max":97},"biblio":{"volume":"19","issue":null,"first_page":"6484","last_page":"6498"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9794999957084656,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9794999957084656,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10028","display_name":"Topic Modeling","score":0.9652000069618225,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10181","display_name":"Natural Language Processing Techniques","score":0.9631999731063843,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8002585172653198},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.7966597676277161},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.5664333701133728},{"id":"https://openalex.org/keywords/black-box","display_name":"Black box","score":0.5296245217323303},{"id":"https://openalex.org/keywords/generative-adversarial-network","display_name":"Generative adversarial network","score":0.507808268070221},{"id":"https://openalex.org/keywords/generative-grammar","display_name":"Generative grammar","score":0.47146493196487427},{"id":"https://openalex.org/keywords/natural","display_name":"Natural (archaeology)","score":0.42341798543930054},{"id":"https://openalex.org/keywords/natural-language-processing","display_name":"Natural language processing","score":0.3328927755355835},{"id":"https://openalex.org/keywords/deep-learning","display_name":"Deep learning","score":0.19584646821022034}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8002585172653198},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.7966597676277161},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5664333701133728},{"id":"https://openalex.org/C94966114","wikidata":"https://www.wikidata.org/wiki/Q29256","display_name":"Black box","level":2,"score":0.5296245217323303},{"id":"https://openalex.org/C2988773926","wikidata":"https://www.wikidata.org/wiki/Q25104379","display_name":"Generative adversarial network","level":3,"score":0.507808268070221},{"id":"https://openalex.org/C39890363","wikidata":"https://www.wikidata.org/wiki/Q36108","display_name":"Generative grammar","level":2,"score":0.47146493196487427},{"id":"https://openalex.org/C2776608160","wikidata":"https://www.wikidata.org/wiki/Q4785462","display_name":"Natural (archaeology)","level":2,"score":0.42341798543930054},{"id":"https://openalex.org/C204321447","wikidata":"https://www.wikidata.org/wiki/Q30642","display_name":"Natural language processing","level":1,"score":0.3328927755355835},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.19584646821022034},{"id":"https://openalex.org/C166957645","wikidata":"https://www.wikidata.org/wiki/Q23498","display_name":"Archaeology","level":1,"score":0.0},{"id":"https://openalex.org/C95457728","wikidata":"https://www.wikidata.org/wiki/Q309","display_name":"History","level":0,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/tifs.2024.3416849","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tifs.2024.3416849","pdf_url":null,"source":{"id":"https://openalex.org/S61310614","display_name":"IEEE Transactions on Information Forensics and Security","issn_l":"1556-6013","issn":["1556-6013","1556-6021"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Information Forensics and Security","raw_type":"journal-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G2100080609","display_name":null,"funder_award_id":"CX2022229","funder_id":"https://openalex.org/F4320321470","funder_display_name":"Beijing University of Posts and Telecommunications"},{"id":"https://openalex.org/G6567475578","display_name":null,"funder_award_id":"62072051","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"},{"id":"https://openalex.org/F4320321470","display_name":"Beijing University of Posts and Telecommunications","ror":"https://ror.org/04w9fbh59"}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":54,"referenced_works":["https://openalex.org/W1832693441","https://openalex.org/W2064675550","https://openalex.org/W2081580037","https://openalex.org/W2119717200","https://openalex.org/W2163455955","https://openalex.org/W2174424190","https://openalex.org/W2194775991","https://openalex.org/W2243397390","https://openalex.org/W2250539671","https://openalex.org/W2475757000","https://openalex.org/W2565439473","https://openalex.org/W2794557536","https://openalex.org/W2798754355","https://openalex.org/W2896457183","https://openalex.org/W2905526464","https://openalex.org/W2949128310","https://openalex.org/W2950635152","https://openalex.org/W2962818281","https://openalex.org/W2963026768","https://openalex.org/W2963150697","https://openalex.org/W2963748441","https://openalex.org/W2963855547","https://openalex.org/W2963857521","https://openalex.org/W2963859254","https://openalex.org/W2964268978","https://openalex.org/W2982756474","https://openalex.org/W2988194011","https://openalex.org/W2996568036","https://openalex.org/W2996851481","https://openalex.org/W3035736465","https://openalex.org/W3117433489","https://openalex.org/W3158360872","https://openalex.org/W3169306793","https://openalex.org/W4229022551","https://openalex.org/W4288953700","https://openalex.org/W4293861706","https://openalex.org/W4382202524","https://openalex.org/W4385245566","https://openalex.org/W4385570668","https://openalex.org/W4389519854","https://openalex.org/W6637162671","https://openalex.org/W6640425456","https://openalex.org/W6683204974","https://openalex.org/W6685053522","https://openalex.org/W6691459498","https://openalex.org/W6734194636","https://openalex.org/W6739575509","https://openalex.org/W6747262243","https://openalex.org/W6749879876","https://openalex.org/W6760568010","https://openalex.org/W6763701032","https://openalex.org/W6768366551","https://openalex.org/W6839264443","https://openalex.org/W7028269038"],"related_works":["https://openalex.org/W3009622996","https://openalex.org/W3037859390","https://openalex.org/W2888032422","https://openalex.org/W3156763702","https://openalex.org/W4385421777","https://openalex.org/W4377980832","https://openalex.org/W2897769091","https://openalex.org/W2845413374","https://openalex.org/W3005996785","https://openalex.org/W4297411772"],"abstract_inverted_index":{"Recent":[0],"works":[1],"have":[2],"demonstrated":[3],"that":[4,158,227],"text":[5,20,26,136],"classifiers":[6],"are":[7,15,33,182,219],"vulnerable":[8],"to":[9,17,24,35,44,221],"universal":[10],"adversarial":[11,90],"triggers":[12],"(UATs),":[13],"which":[14,70,118],"concatenated":[16],"any":[18],"original":[19],"from":[21],"the":[22,40,45,49,53,58,63,67,72,94,101,104,119,122,128,141,144,165,172,202,206,211,214,235],"dataset":[23],"mislead":[25,164],"classifiers.":[27],"Existing":[28],"methods":[29],"for":[30,84],"generating":[31,85],"UATs":[32,87,148,159,181,188,218],"limited":[34],"a":[36,82,109],"white-box":[37],"setting,":[38,57,106],"where":[39],"adversary":[41,59],"needs":[42],"access":[43,62],"gradient":[46,115,120,130],"information":[47],"about":[48],"target":[50,68,123],"model.":[51,237],"In":[52,77],"more":[54],"practical":[55],"black-box":[56,95,105],"can":[60,163,189,232],"only":[61],"logit":[64],"output":[65],"of":[66,74,100,121,131,147,171,180,217,223],"model,":[69],"increases":[71],"difficulty":[73],"crafting":[75],"UATs.":[76],"this":[78],"paper,":[79],"we":[80,107,139,200],"propose":[81],"framework":[83],"natural":[86,145,215],"using":[88],"generative":[89],"networks":[91],"(NUAT-GAN)":[92],"in":[93,103,117],"setting.":[96],"To":[97],"update":[98],"parameters":[99],"generator":[102,111],"design":[108],"training":[110],"algorithm":[112],"with":[113,127,208,234],"policy":[114,129],"(TGPG),":[116],"model":[124],"is":[125,229],"replaced":[126],"reinforcement":[132],"learning.":[133],"On":[134],"three":[135],"classification":[137],"datasets,":[138],"evaluate":[140],"attack":[142,191,212],"and":[143,153,177,184,197,213,231],"performance":[146,216],"generated":[149,160],"on":[150],"LSTM,":[151],"CNN":[152],"BERT":[154],"models.":[155,167],"Results":[156],"show":[157],"by":[161,205],"NUAT-GAN":[162,228],"above":[166],"The":[168,187],"average":[169],"values":[170],"Attack":[173],"Success":[174],"Rate":[175],"(ASR)":[176],"GPT-2":[178,209],"Loss":[179],"0.81":[183],"9.10,":[185],"respectively.":[186],"effectively":[190],"online":[192],"models,":[193],"such":[194],"as":[195],"AllenNLP":[196],"ChatGPT.":[198],"Moreover,":[199],"replace":[201],"reward":[203],"given":[204],"discriminator":[207],"Loss,":[210],"close":[220],"those":[222],"NUAT-GAN.":[224],"This":[225],"shows":[226],"extensible":[230],"combined":[233],"language":[236]},"counts_by_year":[{"year":2025,"cited_by_count":3}],"updated_date":"2025-12-22T23:10:17.713674","created_date":"2025-10-10T00:00:00"}
