{"id":"https://openalex.org/W4308644260","doi":"https://doi.org/10.1145/3548606.3560683","title":"Order-Disorder","display_name":"Order-Disorder","publication_year":2022,"publication_date":"2022-11-07","ids":{"openalex":"https://openalex.org/W4308644260","doi":"https://doi.org/10.1145/3548606.3560683"},"language":"en","primary_location":{"id":"doi:10.1145/3548606.3560683","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3548606.3560683","pdf_url":null,"source":{"id":"https://openalex.org/S4363608815","display_name":"Proceedings of the 2022 ACM SIGSAC Conference on Computer and Communications Security","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2022 ACM SIGSAC Conference on Computer and Communications Security","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5100320744","display_name":"Jiawei Liu","orcid":"https://orcid.org/0000-0002-2774-1509"},"institutions":[{"id":"https://openalex.org/I37461747","display_name":"Wuhan University","ror":"https://ror.org/033vjfk17","country_code":"CN","type":"education","lineage":["https://openalex.org/I37461747"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Jiawei Liu","raw_affiliation_strings":["Wuhan University, Wuhan, UNK, China"],"affiliations":[{"raw_affiliation_string":"Wuhan University, Wuhan, UNK, China","institution_ids":["https://openalex.org/I37461747"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5046397000","display_name":"Yangyang Kang","orcid":"https://orcid.org/0000-0002-8537-0208"},"institutions":[{"id":"https://openalex.org/I45928872","display_name":"Alibaba Group (China)","ror":"https://ror.org/00k642b80","country_code":"CN","type":"company","lineage":["https://openalex.org/I45928872"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yangyang Kang","raw_affiliation_strings":["Alibaba Group, Hangzhou, UNK, China"],"affiliations":[{"raw_affiliation_string":"Alibaba Group, Hangzhou, UNK, China","institution_ids":["https://openalex.org/I45928872"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5025881980","display_name":"Di Tang","orcid":"https://orcid.org/0000-0003-4770-4788"},"institutions":[{"id":"https://openalex.org/I4210119109","display_name":"Indiana University Bloomington","ror":"https://ror.org/02k40bc56","country_code":"US","type":"education","lineage":["https://openalex.org/I4210119109","https://openalex.org/I592451"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Di Tang","raw_affiliation_strings":["Indiana University Bloomington, Bloomington, IN, USA"],"affiliations":[{"raw_affiliation_string":"Indiana University Bloomington, Bloomington, IN, USA","institution_ids":["https://openalex.org/I4210119109"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5078512486","display_name":"Kaisong Song","orcid":null},"institutions":[{"id":"https://openalex.org/I45928872","display_name":"Alibaba Group (China)","ror":"https://ror.org/00k642b80","country_code":"CN","type":"company","lineage":["https://openalex.org/I45928872"]},{"id":"https://openalex.org/I9224756","display_name":"Northeastern University","ror":"https://ror.org/03awzbc87","country_code":"CN","type":"education","lineage":["https://openalex.org/I9224756"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Kaisong Song","raw_affiliation_strings":["Northeastern University &amp; Alibaba Group, Shenyang, UNK, China"],"affiliations":[{"raw_affiliation_string":"Northeastern University &amp; Alibaba Group, Shenyang, UNK, China","institution_ids":["https://openalex.org/I45928872","https://openalex.org/I9224756"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5102337084","display_name":"Changlong Sun","orcid":"https://orcid.org/0000-0002-4012-1099"},"institutions":[{"id":"https://openalex.org/I45928872","display_name":"Alibaba Group (China)","ror":"https://ror.org/00k642b80","country_code":"CN","type":"company","lineage":["https://openalex.org/I45928872"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Changlong Sun","raw_affiliation_strings":["Alibaba Group, Hangzhou, UNK, China"],"affiliations":[{"raw_affiliation_string":"Alibaba Group, Hangzhou, UNK, China","institution_ids":["https://openalex.org/I45928872"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100333272","display_name":"Xiaofeng Wang","orcid":"https://orcid.org/0009-0001-6453-1826"},"institutions":[{"id":"https://openalex.org/I4210119109","display_name":"Indiana University Bloomington","ror":"https://ror.org/02k40bc56","country_code":"US","type":"education","lineage":["https://openalex.org/I4210119109","https://openalex.org/I592451"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Xiaofeng Wang","raw_affiliation_strings":["Indiana University Bloomington, Bloomington, IN, USA"],"affiliations":[{"raw_affiliation_string":"Indiana University Bloomington, Bloomington, IN, USA","institution_ids":["https://openalex.org/I4210119109"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5113599845","display_name":"Wei Lu","orcid":"https://orcid.org/0000-0002-0929-7416"},"institutions":[{"id":"https://openalex.org/I37461747","display_name":"Wuhan University","ror":"https://ror.org/033vjfk17","country_code":"CN","type":"education","lineage":["https://openalex.org/I37461747"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Wei Lu","raw_affiliation_strings":["Wuhan University, Wuhan, UNK, China"],"affiliations":[{"raw_affiliation_string":"Wuhan University, Wuhan, UNK, China","institution_ids":["https://openalex.org/I37461747"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5101985030","display_name":"Xiaozhong Liu","orcid":"https://orcid.org/0000-0003-3477-8323"},"institutions":[{"id":"https://openalex.org/I107077323","display_name":"Worcester Polytechnic Institute","ror":"https://ror.org/05ejpqr48","country_code":"US","type":"education","lineage":["https://openalex.org/I107077323"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Xiaozhong Liu","raw_affiliation_strings":["Worcester Polytechnic Institute, Worcester, MA, USA"],"affiliations":[{"raw_affiliation_string":"Worcester Polytechnic Institute, Worcester, MA, USA","institution_ids":["https://openalex.org/I107077323"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":8,"corresponding_author_ids":["https://openalex.org/A5100320744"],"corresponding_institution_ids":["https://openalex.org/I37461747"],"apc_list":null,"apc_paid":null,"fwci":2.0979,"has_fulltext":false,"cited_by_count":22,"citation_normalized_percentile":{"value":0.89384142,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":98,"max":99},"biblio":{"volume":null,"issue":null,"first_page":"2025","last_page":"2039"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11307","display_name":"Domain Adaptation and Few-Shot Learning","score":0.9616000056266785,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11147","display_name":"Misinformation and Its Impacts","score":0.9596999883651733,"subfield":{"id":"https://openalex.org/subfields/3312","display_name":"Sociology and Political Science"},"field":{"id":"https://openalex.org/fields/33","display_name":"Social Sciences"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/ranking","display_name":"Ranking (information retrieval)","score":0.8462482690811157},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.750924289226532},{"id":"https://openalex.org/keywords/ranking-svm","display_name":"Ranking SVM","score":0.6394753456115723},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.6391241550445557},{"id":"https://openalex.org/keywords/pairwise-comparison","display_name":"Pairwise comparison","score":0.6341953873634338},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.6285812854766846},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.6070964336395264},{"id":"https://openalex.org/keywords/imitation","display_name":"Imitation","score":0.5437347888946533},{"id":"https://openalex.org/keywords/sentence","display_name":"Sentence","score":0.5340399146080017},{"id":"https://openalex.org/keywords/function","display_name":"Function (biology)","score":0.486131876707077},{"id":"https://openalex.org/keywords/language-model","display_name":"Language model","score":0.4245692491531372},{"id":"https://openalex.org/keywords/psychology","display_name":"Psychology","score":0.0850348174571991}],"concepts":[{"id":"https://openalex.org/C189430467","wikidata":"https://www.wikidata.org/wiki/Q7293293","display_name":"Ranking (information retrieval)","level":2,"score":0.8462482690811157},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.750924289226532},{"id":"https://openalex.org/C124975894","wikidata":"https://www.wikidata.org/wiki/Q7293290","display_name":"Ranking SVM","level":3,"score":0.6394753456115723},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.6391241550445557},{"id":"https://openalex.org/C184898388","wikidata":"https://www.wikidata.org/wiki/Q1435712","display_name":"Pairwise comparison","level":2,"score":0.6341953873634338},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.6285812854766846},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.6070964336395264},{"id":"https://openalex.org/C126388530","wikidata":"https://www.wikidata.org/wiki/Q1131737","display_name":"Imitation","level":2,"score":0.5437347888946533},{"id":"https://openalex.org/C2777530160","wikidata":"https://www.wikidata.org/wiki/Q41796","display_name":"Sentence","level":2,"score":0.5340399146080017},{"id":"https://openalex.org/C14036430","wikidata":"https://www.wikidata.org/wiki/Q3736076","display_name":"Function (biology)","level":2,"score":0.486131876707077},{"id":"https://openalex.org/C137293760","wikidata":"https://www.wikidata.org/wiki/Q3621696","display_name":"Language model","level":2,"score":0.4245692491531372},{"id":"https://openalex.org/C15744967","wikidata":"https://www.wikidata.org/wiki/Q9418","display_name":"Psychology","level":0,"score":0.0850348174571991},{"id":"https://openalex.org/C77805123","wikidata":"https://www.wikidata.org/wiki/Q161272","display_name":"Social psychology","level":1,"score":0.0},{"id":"https://openalex.org/C78458016","wikidata":"https://www.wikidata.org/wiki/Q840400","display_name":"Evolutionary biology","level":1,"score":0.0},{"id":"https://openalex.org/C86803240","wikidata":"https://www.wikidata.org/wiki/Q420","display_name":"Biology","level":0,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3548606.3560683","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3548606.3560683","pdf_url":null,"source":{"id":"https://openalex.org/S4363608815","display_name":"Proceedings of the 2022 ACM SIGSAC Conference on Computer and Communications Security","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2022 ACM SIGSAC Conference on Computer and Communications Security","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.6200000047683716,"display_name":"Peace, Justice and strong institutions","id":"https://metadata.un.org/sdg/16"}],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":36,"referenced_works":["https://openalex.org/W2021581601","https://openalex.org/W2115584760","https://openalex.org/W2131876387","https://openalex.org/W2250539671","https://openalex.org/W2514714814","https://openalex.org/W2536015822","https://openalex.org/W2539671052","https://openalex.org/W2603766943","https://openalex.org/W2610935556","https://openalex.org/W2747329762","https://openalex.org/W2781528640","https://openalex.org/W2799194071","https://openalex.org/W2912924812","https://openalex.org/W2945127593","https://openalex.org/W2950733407","https://openalex.org/W2963615308","https://openalex.org/W2985913519","https://openalex.org/W3023553115","https://openalex.org/W3029021318","https://openalex.org/W3035053358","https://openalex.org/W3098772125","https://openalex.org/W3099126561","https://openalex.org/W3099446234","https://openalex.org/W3099700870","https://openalex.org/W3099729825","https://openalex.org/W3101033885","https://openalex.org/W3101449015","https://openalex.org/W3101754922","https://openalex.org/W3112689365","https://openalex.org/W3157758108","https://openalex.org/W3176237992","https://openalex.org/W4214645465","https://openalex.org/W4239019441","https://openalex.org/W4251326898","https://openalex.org/W4285145730","https://openalex.org/W4286696412"],"related_works":["https://openalex.org/W4387497383","https://openalex.org/W3183948672","https://openalex.org/W3173606202","https://openalex.org/W3110381201","https://openalex.org/W2948807893","https://openalex.org/W2935909890","https://openalex.org/W2778153218","https://openalex.org/W2758277628","https://openalex.org/W1531601525","https://openalex.org/W2502115930"],"abstract_inverted_index":{"Neural":[0],"text":[1],"ranking":[2,64,73,88,93,101,111,167,173,184],"models":[3],"have":[4,26],"witnessed":[5],"significant":[6],"advancement":[7],"and":[8,78,84,103,153,177,190,212,220],"are":[9],"increasingly":[10],"being":[11],"deployed":[12],"in":[13],"practice.":[14],"Unfortunately,":[15],"they":[16],"also":[17],"inherit":[18,37],"adversarial":[19,38,58,131,178],"vulnerabilities":[20,39],"of":[21,171,196],"general":[22],"neural":[23,62,183],"models,":[24],"which":[25,133],"been":[27],"detected":[28],"but":[29],"remain":[30],"underexplored":[31],"by":[32,43,80,124],"prior":[33],"studies.":[34],"Moreover,":[35],"the":[36,70,92,100,105,109,125,143,148,154,160,169,172,194,217],"might":[40],"be":[41,76],"leveraged":[42],"blackhat":[44],"SEO":[45],"to":[46,108,129,159,207],"defeat":[47],"better-protected":[48],"search":[49],"engines.":[50],"In":[51],"this":[52,114,210],"study,":[53],"we":[54,96,116,146,215],"propose":[55,117],"an":[56,118],"imitation":[57,89,94,174],"attack":[59,107,121,175],"on":[60,165],"black-box":[61],"passage":[63,72,166],"models.":[65,185],"We":[66],"first":[67],"show":[68,193],"that":[69],"target":[71,110],"model":[74,156,176],"can":[75,97],"transparentized":[77],"imitated":[79],"enumerating":[81],"critical":[82],"queries/candidates":[83],"then":[85],"train":[86],"a":[87],"model.":[90,112],"Leveraging":[91],"model,":[95],"elaborately":[98],"manipulate":[99],"results":[102,164],"transfer":[104],"manipulation":[106],"For":[113],"purpose,":[115],"innovative":[119],"gradient-based":[120],"method,":[122],"empowered":[123],"pairwise":[126],"objective":[127,161],"function,":[128],"generate":[130],"triggers,":[132],"causes":[134],"premeditated":[135],"disorderliness":[136],"with":[137],"very":[138],"few":[139],"tokens.":[140],"To":[141,203],"equip":[142],"trigger":[144],"camouflages,":[145],"add":[147],"next":[149],"sentence":[150],"prediction":[151],"loss":[152],"language":[155],"fluency":[157],"constraint":[158],"function.":[162],"Experimental":[163],"demonstrate":[168],"effectiveness":[170,195],"triggers":[179],"against":[180],"various":[181,187],"SOTA":[182],"Furthermore,":[186],"mitigation":[188,201],"analyses":[189],"human":[191],"evaluation":[192],"camouflages":[197],"when":[198],"facing":[199],"potential":[200],"approaches.":[202],"motivate":[204],"other":[205],"scholars":[206],"further":[208],"investigate":[209],"novel":[211],"important":[213],"problem,":[214],"make":[216],"experiment":[218],"data":[219],"code":[221],"publicly":[222],"available.":[223]},"counts_by_year":[{"year":2026,"cited_by_count":2},{"year":2025,"cited_by_count":5},{"year":2024,"cited_by_count":9},{"year":2023,"cited_by_count":6}],"updated_date":"2026-03-14T08:43:22.919905","created_date":"2022-11-13T00:00:00"}
