{"id":"https://openalex.org/W4400587428","doi":"https://doi.org/10.1145/3678007","title":"CBAs: Character-level Backdoor Attacks against Chinese Pre-trained Language Models","display_name":"CBAs: Character-level Backdoor Attacks against Chinese Pre-trained Language Models","publication_year":2024,"publication_date":"2024-07-12","ids":{"openalex":"https://openalex.org/W4400587428","doi":"https://doi.org/10.1145/3678007"},"language":"en","primary_location":{"id":"doi:10.1145/3678007","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3678007","pdf_url":null,"source":{"id":"https://openalex.org/S4210174050","display_name":"ACM Transactions on Privacy and Security","issn_l":"2471-2566","issn":["2471-2566","2471-2574"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319798","host_organization_name":"Association for Computing Machinery","host_organization_lineage":["https://openalex.org/P4310319798"],"host_organization_lineage_names":["Association for Computing Machinery"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"ACM Transactions on Privacy and Security","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5108536673","display_name":"Xiquan He","orcid":null},"institutions":[{"id":"https://openalex.org/I5343935","display_name":"Guilin University of Electronic Technology","ror":"https://ror.org/05arjae42","country_code":"CN","type":"education","lineage":["https://openalex.org/I5343935"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Xinyu He","raw_affiliation_strings":["Guilin University of Electronic Technology, Guilin, China"],"affiliations":[{"raw_affiliation_string":"Guilin University of Electronic Technology, Guilin, China","institution_ids":["https://openalex.org/I5343935"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5080178175","display_name":"Fengrui Hao","orcid":"https://orcid.org/0000-0002-5951-3789"},"institutions":[{"id":"https://openalex.org/I159948400","display_name":"Jinan University","ror":"https://ror.org/02xe5ns62","country_code":"CN","type":"education","lineage":["https://openalex.org/I159948400"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Fengrui Hao","raw_affiliation_strings":["Jinan University, Guangzhou, China"],"affiliations":[{"raw_affiliation_string":"Jinan University, Guangzhou, China","institution_ids":["https://openalex.org/I159948400"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101645356","display_name":"Tianlong Gu","orcid":"https://orcid.org/0000-0002-1593-1292"},"institutions":[{"id":"https://openalex.org/I159948400","display_name":"Jinan University","ror":"https://ror.org/02xe5ns62","country_code":"CN","type":"education","lineage":["https://openalex.org/I159948400"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Tianlong Gu","raw_affiliation_strings":["Jinan University, Guangzhou, China"],"affiliations":[{"raw_affiliation_string":"Jinan University, Guangzhou, China","institution_ids":["https://openalex.org/I159948400"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5015299890","display_name":"Liang Chang","orcid":"https://orcid.org/0000-0002-7262-4707"},"institutions":[{"id":"https://openalex.org/I5343935","display_name":"Guilin University of Electronic Technology","ror":"https://ror.org/05arjae42","country_code":"CN","type":"education","lineage":["https://openalex.org/I5343935"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Liang Chang","raw_affiliation_strings":["Guilin University of Electronic Technology, Guilin, China"],"affiliations":[{"raw_affiliation_string":"Guilin University of Electronic Technology, Guilin, China","institution_ids":["https://openalex.org/I5343935"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5108536673"],"corresponding_institution_ids":["https://openalex.org/I5343935"],"apc_list":null,"apc_paid":null,"fwci":1.0911,"has_fulltext":false,"cited_by_count":3,"citation_normalized_percentile":{"value":0.80567874,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":96,"max":97},"biblio":{"volume":"27","issue":"3","first_page":"1","last_page":"26"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T12262","display_name":"Hate Speech and Cyberbullying Detection","score":0.9991999864578247,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T12262","display_name":"Hate Speech and Cyberbullying Detection","score":0.9991999864578247,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.988099992275238,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10028","display_name":"Topic Modeling","score":0.9632999897003174,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/backdoor","display_name":"Backdoor","score":0.9866054654121399},{"id":"https://openalex.org/keywords/character","display_name":"Character (mathematics)","score":0.8235301375389099},{"id":"https://openalex.org/keywords/natural-language-processing","display_name":"Natural language processing","score":0.4729846715927124},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.4475555717945099},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.3899509906768799},{"id":"https://openalex.org/keywords/psychology","display_name":"Psychology","score":0.3429427742958069},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.28203415870666504},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.1542896330356598}],"concepts":[{"id":"https://openalex.org/C2781045450","wikidata":"https://www.wikidata.org/wiki/Q254569","display_name":"Backdoor","level":2,"score":0.9866054654121399},{"id":"https://openalex.org/C2780861071","wikidata":"https://www.wikidata.org/wiki/Q1062934","display_name":"Character (mathematics)","level":2,"score":0.8235301375389099},{"id":"https://openalex.org/C204321447","wikidata":"https://www.wikidata.org/wiki/Q30642","display_name":"Natural language processing","level":1,"score":0.4729846715927124},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.4475555717945099},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.3899509906768799},{"id":"https://openalex.org/C15744967","wikidata":"https://www.wikidata.org/wiki/Q9418","display_name":"Psychology","level":0,"score":0.3429427742958069},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.28203415870666504},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.1542896330356598},{"id":"https://openalex.org/C2524010","wikidata":"https://www.wikidata.org/wiki/Q8087","display_name":"Geometry","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3678007","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3678007","pdf_url":null,"source":{"id":"https://openalex.org/S4210174050","display_name":"ACM Transactions on Privacy and Security","issn_l":"2471-2566","issn":["2471-2566","2471-2574"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319798","host_organization_name":"Association for Computing Machinery","host_organization_lineage":["https://openalex.org/P4310319798"],"host_organization_lineage_names":["Association for Computing Machinery"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"ACM Transactions on Privacy and Security","raw_type":"journal-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G8087145726","display_name":null,"funder_award_id":"U22A2099, 62336003","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":46,"referenced_works":["https://openalex.org/W1516184288","https://openalex.org/W2170240176","https://openalex.org/W2531563875","https://openalex.org/W2593831809","https://openalex.org/W2740887992","https://openalex.org/W2890727387","https://openalex.org/W2892181857","https://openalex.org/W2912568927","https://openalex.org/W2916719435","https://openalex.org/W2956090150","https://openalex.org/W2965373594","https://openalex.org/W2996035354","https://openalex.org/W3035367371","https://openalex.org/W3042368254","https://openalex.org/W3048984387","https://openalex.org/W3087792431","https://openalex.org/W3093239278","https://openalex.org/W3204619801","https://openalex.org/W3206387060","https://openalex.org/W3209721572","https://openalex.org/W4221165593","https://openalex.org/W4224315096","https://openalex.org/W4238846128","https://openalex.org/W4285285977","https://openalex.org/W4285297805","https://openalex.org/W4287824654","https://openalex.org/W4288072399","https://openalex.org/W4288562632","https://openalex.org/W4295838474","https://openalex.org/W4319793479","https://openalex.org/W4321012155","https://openalex.org/W4324108774","https://openalex.org/W4376123083","https://openalex.org/W4380136227","https://openalex.org/W4382246105","https://openalex.org/W4384561707","https://openalex.org/W4385570794","https://openalex.org/W4385573759","https://openalex.org/W4385679845","https://openalex.org/W4385734153","https://openalex.org/W4386754881","https://openalex.org/W4388491638","https://openalex.org/W4391453730","https://openalex.org/W6771626834","https://openalex.org/W6780292011","https://openalex.org/W6852383101"],"related_works":["https://openalex.org/W4391375266","https://openalex.org/W2748952813","https://openalex.org/W4320031223","https://openalex.org/W4200629851","https://openalex.org/W4281902577","https://openalex.org/W4309417370","https://openalex.org/W4292107232","https://openalex.org/W3009072493","https://openalex.org/W4386080799","https://openalex.org/W3204019825"],"abstract_inverted_index":{"Pre-trained":[0],"language":[1,16,161,186],"models":[2,43],"(PLMs)":[3],"aim":[4],"to":[5,11,32,44,47,71,120,173],"assist":[6],"computers":[7],"in":[8,189],"various":[9,190],"domains":[10],"provide":[12],"natural":[13,185],"and":[14,18,67,100,169,193,199],"efficient":[15],"interaction":[17],"text":[19],"processing":[20,187],"capabilities.":[21],"However,":[22],"recent":[23],"studies":[24],"have":[25,207],"shown":[26],"that":[27,122],"PLMs":[28,66,192,195],"are":[29],"highly":[30],"vulnerable":[31],"malicious":[33],"backdoor":[34,59,77,95,104,124,134,178,214],"attacks,":[35],"where":[36],"triggers":[37],"could":[38],"be":[39],"injected":[40],"into":[41],"the":[42,49,53,91,102,108,123,130,133,139,144,154,159,165,171,175,197],"guide":[45],"them":[46],"exhibit":[48],"expected":[50],"behavior":[51],"of":[52,93,132,142,177,201],"attackers.":[54],"Unfortunately,":[55],"existing":[56],"research":[57],"on":[58,64,138,182],"attacks":[60,78,96,105],"has":[61],"mainly":[62],"focused":[63],"English":[65,94,194],"paid":[68],"less":[69],"attention":[70],"Chinese":[72,84,98,109,116,191],"PLMs.":[73,85,110],"Moreover,":[74],"these":[75],"extant":[76],"do":[79],"not":[80],"work":[81],"well":[82],"against":[83,97,107,211],"In":[86,204],"this":[87],"article,":[88],"we":[89,112,147],"disclose":[90],"limitations":[92],"PLMs,":[99],"propose":[101],"character-level":[103],"(CBAs)":[106],"Specifically,":[111],"first":[113],"design":[114],"three":[115,183,212],"trigger":[117,149,172],"generation":[118],"strategies":[119],"ensure":[121],"is":[125],"effectively":[126],"triggered":[127],"while":[128],"improving":[129],"effectiveness":[131,198],"attacks.":[135,179],"Then,":[136],"based":[137],"attacker\u2019s":[140],"capabilities":[141],"accessing":[143],"training":[145],"dataset,":[146],"develop":[148],"injection":[150],"mechanisms":[151],"with":[152],"either":[153],"target":[155],"label":[156],"similarity":[157],"or":[158],"masked":[160],"model,":[162],"which":[163],"select":[164],"most":[166],"influential":[167],"position":[168],"insert":[170],"maximize":[174],"stealth":[176],"Extensive":[180],"experiments":[181],"major":[184],"tasks":[188],"demonstrate":[196],"stealthiness":[200],"our":[202],"method.":[203],"addition,":[205],"CBAs":[206],"very":[208],"strong":[209],"resistance":[210],"state-of-the-art":[213],"defense":[215],"methods.":[216],"1":[217]},"counts_by_year":[{"year":2025,"cited_by_count":3}],"updated_date":"2025-12-23T23:11:35.936235","created_date":"2025-10-10T00:00:00"}
