{"id":"https://openalex.org/W2950606982","doi":"https://doi.org/10.18653/v1/p19-1559","title":"Generating Fluent Adversarial Examples for Natural Languages","display_name":"Generating Fluent Adversarial Examples for Natural Languages","publication_year":2019,"publication_date":"2019-01-01","ids":{"openalex":"https://openalex.org/W2950606982","doi":"https://doi.org/10.18653/v1/p19-1559","mag":"2950606982"},"language":"en","primary_location":{"id":"doi:10.18653/v1/p19-1559","is_oa":true,"landing_page_url":"https://doi.org/10.18653/v1/p19-1559","pdf_url":"https://www.aclweb.org/anthology/P19-1559.pdf","source":null,"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 57th Annual Meeting of the Association for Computational Linguistics","raw_type":"proceedings-article"},"type":"preprint","indexed_in":["arxiv","crossref","datacite"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"https://www.aclweb.org/anthology/P19-1559.pdf","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5008116021","display_name":"Huangzhao Zhang","orcid":"https://orcid.org/0000-0002-0324-4591"},"institutions":[{"id":"https://openalex.org/I20231570","display_name":"Peking University","ror":"https://ror.org/02v51f717","country_code":"CN","type":"education","lineage":["https://openalex.org/I20231570"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Huangzhao Zhang","raw_affiliation_strings":["Institute of Computer Science and Technology, Peking University, China","Peking University, Beijing, China"],"affiliations":[{"raw_affiliation_string":"Institute of Computer Science and Technology, Peking University, China","institution_ids":["https://openalex.org/I20231570"]},{"raw_affiliation_string":"Peking University, Beijing, China","institution_ids":["https://openalex.org/I20231570"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5022574607","display_name":"Hao Zhou","orcid":"https://orcid.org/0000-0002-0173-0393"},"institutions":[{"id":"https://openalex.org/I881766915","display_name":"Nanjing University","ror":"https://ror.org/01rxvg760","country_code":"CN","type":"education","lineage":["https://openalex.org/I881766915"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Hao Zhou","raw_affiliation_strings":["ByteDance AI Lab, Beijing, China","Nanjing University, Nanjing, China"],"affiliations":[{"raw_affiliation_string":"ByteDance AI Lab, Beijing, China","institution_ids":[]},{"raw_affiliation_string":"Nanjing University, Nanjing, China","institution_ids":["https://openalex.org/I881766915"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5090188393","display_name":"Ning Miao","orcid":"https://orcid.org/0000-0002-1783-5827"},"institutions":[{"id":"https://openalex.org/I20231570","display_name":"Peking University","ror":"https://ror.org/02v51f717","country_code":"CN","type":"education","lineage":["https://openalex.org/I20231570"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Ning Miao","raw_affiliation_strings":["ByteDance AI Lab, Beijing, China","Peking University, Beijing, China"],"affiliations":[{"raw_affiliation_string":"ByteDance AI Lab, Beijing, China","institution_ids":[]},{"raw_affiliation_string":"Peking University, Beijing, China","institution_ids":["https://openalex.org/I20231570"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5100440407","display_name":"Lei Li","orcid":"https://orcid.org/0000-0003-3095-9776"},"institutions":[{"id":"https://openalex.org/I881766915","display_name":"Nanjing University","ror":"https://ror.org/01rxvg760","country_code":"CN","type":"education","lineage":["https://openalex.org/I881766915"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Lei Li","raw_affiliation_strings":["ByteDance AI Lab, Beijing, China","Nanjing University, Nanjing, China"],"affiliations":[{"raw_affiliation_string":"ByteDance AI Lab, Beijing, China","institution_ids":[]},{"raw_affiliation_string":"Nanjing University, Nanjing, China","institution_ids":["https://openalex.org/I881766915"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5008116021"],"corresponding_institution_ids":["https://openalex.org/I20231570"],"apc_list":null,"apc_paid":null,"fwci":11.5749,"has_fulltext":true,"cited_by_count":84,"citation_normalized_percentile":{"value":0.98738986,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":90,"max":100},"biblio":{"volume":null,"issue":null,"first_page":"5564","last_page":"5569"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9980000257492065,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9980000257492065,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10028","display_name":"Topic Modeling","score":0.9951000213623047,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10181","display_name":"Natural Language Processing Techniques","score":0.9599000215530396,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.9141886234283447},{"id":"https://openalex.org/keywords/fluency","display_name":"Fluency","score":0.8720211982727051},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7855695486068726},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.6309962868690491},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.5768218040466309},{"id":"https://openalex.org/keywords/sentence","display_name":"Sentence","score":0.5718055963516235},{"id":"https://openalex.org/keywords/baseline","display_name":"Baseline (sea)","score":0.4674343168735504},{"id":"https://openalex.org/keywords/sampling","display_name":"Sampling (signal processing)","score":0.42910832166671753},{"id":"https://openalex.org/keywords/space","display_name":"Space (punctuation)","score":0.42819884419441223},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.4122496247291565},{"id":"https://openalex.org/keywords/natural-language-processing","display_name":"Natural language processing","score":0.41102200746536255},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.11640578508377075},{"id":"https://openalex.org/keywords/computer-vision","display_name":"Computer vision","score":0.09283295273780823}],"concepts":[{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.9141886234283447},{"id":"https://openalex.org/C2777413886","wikidata":"https://www.wikidata.org/wiki/Q3276013","display_name":"Fluency","level":2,"score":0.8720211982727051},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7855695486068726},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.6309962868690491},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5768218040466309},{"id":"https://openalex.org/C2777530160","wikidata":"https://www.wikidata.org/wiki/Q41796","display_name":"Sentence","level":2,"score":0.5718055963516235},{"id":"https://openalex.org/C12725497","wikidata":"https://www.wikidata.org/wiki/Q810247","display_name":"Baseline (sea)","level":2,"score":0.4674343168735504},{"id":"https://openalex.org/C140779682","wikidata":"https://www.wikidata.org/wiki/Q210868","display_name":"Sampling (signal processing)","level":3,"score":0.42910832166671753},{"id":"https://openalex.org/C2778572836","wikidata":"https://www.wikidata.org/wiki/Q380933","display_name":"Space (punctuation)","level":2,"score":0.42819884419441223},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.4122496247291565},{"id":"https://openalex.org/C204321447","wikidata":"https://www.wikidata.org/wiki/Q30642","display_name":"Natural language processing","level":1,"score":0.41102200746536255},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.11640578508377075},{"id":"https://openalex.org/C31972630","wikidata":"https://www.wikidata.org/wiki/Q844240","display_name":"Computer vision","level":1,"score":0.09283295273780823},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0},{"id":"https://openalex.org/C145420912","wikidata":"https://www.wikidata.org/wiki/Q853077","display_name":"Mathematics education","level":1,"score":0.0},{"id":"https://openalex.org/C127313418","wikidata":"https://www.wikidata.org/wiki/Q1069","display_name":"Geology","level":0,"score":0.0},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C106131492","wikidata":"https://www.wikidata.org/wiki/Q3072260","display_name":"Filter (signal processing)","level":2,"score":0.0},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0},{"id":"https://openalex.org/C111368507","wikidata":"https://www.wikidata.org/wiki/Q43518","display_name":"Oceanography","level":1,"score":0.0},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.0}],"mesh":[],"locations_count":5,"locations":[{"id":"doi:10.18653/v1/p19-1559","is_oa":true,"landing_page_url":"https://doi.org/10.18653/v1/p19-1559","pdf_url":"https://www.aclweb.org/anthology/P19-1559.pdf","source":null,"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 57th Annual Meeting of the Association for Computational Linguistics","raw_type":"proceedings-article"},{"id":"pmh:oai:arXiv.org:2007.06174","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2007.06174","pdf_url":"https://arxiv.org/pdf/2007.06174","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"text"},{"id":"doi:10.48550/arxiv.2007.06174","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2007.06174","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"article"},{"id":"doi:10.60692/wpxx9-w1t92","is_oa":true,"landing_page_url":"https://doi.org/10.60692/wpxx9-w1t92","pdf_url":null,"source":{"id":"https://openalex.org/S7407051682","display_name":"Greater South Information System","issn_l":null,"issn":[],"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"article-journal"},{"id":"doi:10.60692/z2f9e-n4149","is_oa":true,"landing_page_url":"https://doi.org/10.60692/z2f9e-n4149","pdf_url":null,"source":{"id":"https://openalex.org/S7407051682","display_name":"Greater South Information System","issn_l":null,"issn":[],"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"article-journal"}],"best_oa_location":{"id":"doi:10.18653/v1/p19-1559","is_oa":true,"landing_page_url":"https://doi.org/10.18653/v1/p19-1559","pdf_url":"https://www.aclweb.org/anthology/P19-1559.pdf","source":null,"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 57th Annual Meeting of the Association for Computational Linguistics","raw_type":"proceedings-article"},"sustainable_development_goals":[{"score":0.8399999737739563,"id":"https://metadata.un.org/sdg/4","display_name":"Quality Education"}],"awards":[],"funders":[],"has_content":{"pdf":true,"grobid_xml":true},"content_urls":{"pdf":"https://content.openalex.org/works/W2950606982.pdf","grobid_xml":"https://content.openalex.org/works/W2950606982.grobid-xml"},"referenced_works_count":13,"referenced_works":["https://openalex.org/W38739846","https://openalex.org/W193524605","https://openalex.org/W1840435438","https://openalex.org/W2056760934","https://openalex.org/W2108207895","https://openalex.org/W2113459411","https://openalex.org/W2138309709","https://openalex.org/W2551396370","https://openalex.org/W2563364736","https://openalex.org/W2799194071","https://openalex.org/W2962718684","https://openalex.org/W2966746916","https://openalex.org/W3037859269"],"related_works":["https://openalex.org/W14719935","https://openalex.org/W11990303","https://openalex.org/W90294","https://openalex.org/W14378890","https://openalex.org/W4867410","https://openalex.org/W14574355","https://openalex.org/W881173","https://openalex.org/W2060686","https://openalex.org/W4538592","https://openalex.org/W7619760"],"abstract_inverted_index":{"Efficiently":[0],"building":[1],"an":[2],"adversarial":[3],"attacker":[4],"for":[5],"natural":[6],"language":[7],"processing":[8],"(NLP)":[9],"tasks":[10],"is":[11,20,23,60],"a":[12],"real":[13],"challenge.":[14],"Firstly,":[15],"as":[16],"the":[17,30,35,38,63,78],"sentence":[18],"space":[19],"discrete,":[21],"it":[22],"difficult":[24],"to":[25,90],"make":[26],"small":[27],"perturbations":[28],"along":[29],"direction":[31],"of":[32,37,65],"gradients.":[33,66],"Secondly,":[34],"fluency":[36],"generated":[39],"examples":[40],"cannot":[41],"be":[42],"guaranteed.":[43],"In":[44],"this":[45],"paper,":[46],"we":[47],"propose":[48],"MHA,":[49],"which":[50],"addresses":[51],"both":[52],"problems":[53],"by":[54],"performing":[55],"Metropolis-Hastings":[56],"sampling,":[57],"whose":[58],"proposal":[59],"designed":[61],"with":[62,86],"guidance":[64],"Experiments":[67],"on":[68,81],"IMDB":[69],"and":[70,93],"SNLI":[71],"show":[72],"that":[73],"our":[74],"proposed":[75],"MHA":[76,87],"outperforms":[77],"baseline":[79],"model":[80],"attacking":[82],"capability.":[83],"Adversarial":[84],"training":[85],"also":[88],"leads":[89],"better":[91],"robustness":[92],"performance.":[94]},"counts_by_year":[{"year":2024,"cited_by_count":1},{"year":2023,"cited_by_count":3},{"year":2022,"cited_by_count":6},{"year":2021,"cited_by_count":41},{"year":2020,"cited_by_count":28},{"year":2019,"cited_by_count":5}],"updated_date":"2026-03-27T14:29:43.386196","created_date":"2025-10-10T00:00:00"}
