{"id":"https://openalex.org/W3189270598","doi":"https://doi.org/10.24963/ijcai.2021/453","title":"BESA: BERT-based Simulated Annealing for Adversarial Text Attacks","display_name":"BESA: BERT-based Simulated Annealing for Adversarial Text Attacks","publication_year":2021,"publication_date":"2021-08-01","ids":{"openalex":"https://openalex.org/W3189270598","doi":"https://doi.org/10.24963/ijcai.2021/453","mag":"3189270598"},"language":"en","primary_location":{"id":"doi:10.24963/ijcai.2021/453","is_oa":true,"landing_page_url":"https://doi.org/10.24963/ijcai.2021/453","pdf_url":"https://www.ijcai.org/proceedings/2021/0453.pdf","source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the Thirtieth International Joint Conference on Artificial Intelligence","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"https://www.ijcai.org/proceedings/2021/0453.pdf","any_repository_has_fulltext":null},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5034521535","display_name":"Xinghao Yang","orcid":"https://orcid.org/0000-0001-6487-3183"},"institutions":[{"id":"https://openalex.org/I114017466","display_name":"University of Technology Sydney","ror":"https://ror.org/03f0f6041","country_code":"AU","type":"education","lineage":["https://openalex.org/I114017466"]}],"countries":["AU"],"is_corresponding":true,"raw_author_name":"Xinghao Yang","raw_affiliation_strings":["School of Computer Science, University of Technology Sydney, Australia"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"School of Computer Science, University of Technology Sydney, Australia","institution_ids":["https://openalex.org/I114017466"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100444156","display_name":"Weifeng Liu","orcid":"https://orcid.org/0000-0002-5388-9080"},"institutions":[{"id":"https://openalex.org/I114017466","display_name":"University of Technology Sydney","ror":"https://ror.org/03f0f6041","country_code":"AU","type":"education","lineage":["https://openalex.org/I114017466"]},{"id":"https://openalex.org/I4210162190","display_name":"China University of Petroleum, East China","ror":"https://ror.org/05gbn2817","country_code":"CN","type":"education","lineage":["https://openalex.org/I4210162190"]}],"countries":["AU","CN"],"is_corresponding":false,"raw_author_name":"Weifeng Liu","raw_affiliation_strings":["College of Control Science and Engineering, China University of Petroleum (East China), China","School of Computer Science, University of Technology Sydney, Australia"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"College of Control Science and Engineering, China University of Petroleum (East China), China","institution_ids":["https://openalex.org/I4210162190"]},{"raw_affiliation_string":"School of Computer Science, University of Technology Sydney, Australia","institution_ids":["https://openalex.org/I114017466"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5074103823","display_name":"Dacheng Tao","orcid":"https://orcid.org/0000-0001-7225-5449"},"institutions":[{"id":"https://openalex.org/I4210103986","display_name":"Jingdong (China)","ror":"https://ror.org/01dkjkq64","country_code":"CN","type":"company","lineage":["https://openalex.org/I4210103986"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Dacheng Tao","raw_affiliation_strings":["JD Explore Academy, JD.com, China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"JD Explore Academy, JD.com, China","institution_ids":["https://openalex.org/I4210103986"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5062908102","display_name":"Wei Liu","orcid":"https://orcid.org/0000-0003-2968-2888"},"institutions":[{"id":"https://openalex.org/I114017466","display_name":"University of Technology Sydney","ror":"https://ror.org/03f0f6041","country_code":"AU","type":"education","lineage":["https://openalex.org/I114017466"]},{"id":"https://openalex.org/I4210162190","display_name":"China University of Petroleum, East China","ror":"https://ror.org/05gbn2817","country_code":"CN","type":"education","lineage":["https://openalex.org/I4210162190"]}],"countries":["AU","CN"],"is_corresponding":false,"raw_author_name":"Wei Liu","raw_affiliation_strings":["College of Control Science and Engineering, China University of Petroleum (East China), China","School of Computer Science, University of Technology Sydney, Australia"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"College of Control Science and Engineering, China University of Petroleum (East China), China","institution_ids":["https://openalex.org/I4210162190"]},{"raw_affiliation_string":"School of Computer Science, University of Technology Sydney, Australia","institution_ids":["https://openalex.org/I114017466"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5034521535"],"corresponding_institution_ids":["https://openalex.org/I114017466"],"apc_list":null,"apc_paid":null,"fwci":1.3991,"has_fulltext":false,"cited_by_count":15,"citation_normalized_percentile":{"value":0.8499605,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":90,"max":98},"biblio":{"volume":null,"issue":null,"first_page":"3293","last_page":"3299"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10028","display_name":"Topic Modeling","score":0.9991000294685364,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10028","display_name":"Topic Modeling","score":0.9991000294685364,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10181","display_name":"Natural Language Processing Techniques","score":0.9929999709129333,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9677000045776367,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7594619989395142},{"id":"https://openalex.org/keywords/leverage","display_name":"Leverage (statistics)","score":0.5791575312614441},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.5761025547981262},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.5690922737121582},{"id":"https://openalex.org/keywords/simulated-annealing","display_name":"Simulated annealing","score":0.5396985411643982},{"id":"https://openalex.org/keywords/local-optimum","display_name":"Local optimum","score":0.50559401512146},{"id":"https://openalex.org/keywords/grammar","display_name":"Grammar","score":0.4994168281555176},{"id":"https://openalex.org/keywords/word","display_name":"Word (group theory)","score":0.45928123593330383},{"id":"https://openalex.org/keywords/correctness","display_name":"Correctness","score":0.41521236300468445},{"id":"https://openalex.org/keywords/natural-language-processing","display_name":"Natural language processing","score":0.4077124297618866},{"id":"https://openalex.org/keywords/algorithm","display_name":"Algorithm","score":0.31092381477355957},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.10797363519668579},{"id":"https://openalex.org/keywords/linguistics","display_name":"Linguistics","score":0.07950198650360107}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7594619989395142},{"id":"https://openalex.org/C153083717","wikidata":"https://www.wikidata.org/wiki/Q6535263","display_name":"Leverage (statistics)","level":2,"score":0.5791575312614441},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.5761025547981262},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5690922737121582},{"id":"https://openalex.org/C126980161","wikidata":"https://www.wikidata.org/wiki/Q863783","display_name":"Simulated annealing","level":2,"score":0.5396985411643982},{"id":"https://openalex.org/C141934464","wikidata":"https://www.wikidata.org/wiki/Q3305386","display_name":"Local optimum","level":2,"score":0.50559401512146},{"id":"https://openalex.org/C26022165","wikidata":"https://www.wikidata.org/wiki/Q8091","display_name":"Grammar","level":2,"score":0.4994168281555176},{"id":"https://openalex.org/C90805587","wikidata":"https://www.wikidata.org/wiki/Q10944557","display_name":"Word (group theory)","level":2,"score":0.45928123593330383},{"id":"https://openalex.org/C55439883","wikidata":"https://www.wikidata.org/wiki/Q360812","display_name":"Correctness","level":2,"score":0.41521236300468445},{"id":"https://openalex.org/C204321447","wikidata":"https://www.wikidata.org/wiki/Q30642","display_name":"Natural language processing","level":1,"score":0.4077124297618866},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.31092381477355957},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.10797363519668579},{"id":"https://openalex.org/C41895202","wikidata":"https://www.wikidata.org/wiki/Q8162","display_name":"Linguistics","level":1,"score":0.07950198650360107},{"id":"https://openalex.org/C2524010","wikidata":"https://www.wikidata.org/wiki/Q8087","display_name":"Geometry","level":1,"score":0.0},{"id":"https://openalex.org/C138885662","wikidata":"https://www.wikidata.org/wiki/Q5891","display_name":"Philosophy","level":0,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.24963/ijcai.2021/453","is_oa":true,"landing_page_url":"https://doi.org/10.24963/ijcai.2021/453","pdf_url":"https://www.ijcai.org/proceedings/2021/0453.pdf","source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the Thirtieth International Joint Conference on Artificial Intelligence","raw_type":"proceedings-article"}],"best_oa_location":{"id":"doi:10.24963/ijcai.2021/453","is_oa":true,"landing_page_url":"https://doi.org/10.24963/ijcai.2021/453","pdf_url":"https://www.ijcai.org/proceedings/2021/0453.pdf","source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the Thirtieth International Joint Conference on Artificial Intelligence","raw_type":"proceedings-article"},"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/4","display_name":"Quality Education","score":0.8100000023841858}],"awards":[],"funders":[],"has_content":{"pdf":true,"grobid_xml":true},"content_urls":{"pdf":"https://content.openalex.org/works/W3189270598.pdf","grobid_xml":"https://content.openalex.org/works/W3189270598.grobid-xml"},"referenced_works_count":24,"referenced_works":["https://openalex.org/W1840435438","https://openalex.org/W2024060531","https://openalex.org/W2113459411","https://openalex.org/W2163455955","https://openalex.org/W2251939518","https://openalex.org/W2609368435","https://openalex.org/W2794557536","https://openalex.org/W2896457183","https://openalex.org/W2949128310","https://openalex.org/W2952186591","https://openalex.org/W2962718684","https://openalex.org/W2963341956","https://openalex.org/W2963748441","https://openalex.org/W2963834268","https://openalex.org/W2963969878","https://openalex.org/W2965373594","https://openalex.org/W2970597249","https://openalex.org/W2978017171","https://openalex.org/W2996851481","https://openalex.org/W3035736465","https://openalex.org/W3101449015","https://openalex.org/W3104423855","https://openalex.org/W3105604018","https://openalex.org/W4288953700"],"related_works":["https://openalex.org/W2502115930","https://openalex.org/W3008339103","https://openalex.org/W1667647204","https://openalex.org/W2404647514","https://openalex.org/W4247536566","https://openalex.org/W2482350142","https://openalex.org/W4246396837","https://openalex.org/W3126451824","https://openalex.org/W2371075315","https://openalex.org/W4212897237"],"abstract_inverted_index":{"Modern":[0],"Natural":[1],"Language":[2,79],"Processing":[3],"(NLP)":[4],"models":[5],"are":[6,33],"known":[7],"immensely":[8],"brittle":[9],"towards":[10],"text":[11,91],"adversarial":[12,31,90],"examples.":[13],"Recent":[14],"attack":[15,127,159],"algorithms":[16],"usually":[17],"adopt":[18],"word-level":[19],"substitution":[20,107,134],"strategies":[21],"following":[22],"a":[23,63,125,131,148],"pre-computed":[24],"word":[25,51,106,113,133],"replacement":[26,114],"mechanism.":[27],"However,":[28],"their":[29,48],"resultant":[30],"examples":[32],"still":[34],"imperfect":[35],"in":[36],"achieving":[37],"grammar":[38,94],"correctness":[39],"and":[40,53,92,130,183],"semantic":[41],"similarities,":[42],"which":[43],"is":[44,139],"largely":[45],"because":[46],"of":[47,144,172],"unsuitable":[49],"candidate":[50,85],"selections":[52],"static":[54],"optimization":[55],"methods.":[56],"In":[57],"this":[58],"research,":[59],"we":[60,74,97],"propose":[61],"BESA,":[62],"BERT-based":[64],"Simulated":[65,99],"Annealing":[66,100],"algorithm,":[67],"to":[68,82,87,102,122,141,154],"address":[69],"these":[70],"two":[71],"problems.":[72],"Firstly,":[73],"leverage":[75],"the":[76,105,156,161,170],"BERT":[77],"Masked":[78],"Model":[80],"(MLM)":[81],"generate":[83],"contextual-aware":[84],"words":[86],"produce":[88],"fluent":[89],"avoid":[93],"errors.":[95],"Secondly,":[96],"employ":[98],"(SA)":[101],"adaptively":[103],"determine":[104],"order.":[108],"The":[109],"SA":[110],"provides":[111],"sufficient":[112],"options":[115],"via":[116],"internal":[117],"simulations,":[118],"with":[119,147,175],"an":[120],"objective":[121],"obtain":[123],"both":[124],"high":[126],"success":[128],"rate":[129],"low":[132],"rate.":[135],"Besides,":[136],"our":[137],"algorithm":[138],"able":[140],"jump":[142],"out":[143],"local":[145],"optima":[146],"controlled":[149],"probability,":[150],"making":[151],"it":[152],"closer":[153],"achieve":[155],"best":[157],"possible":[158],"(i.e.,":[160],"global":[162],"optima).":[163],"Experiments":[164],"on":[165],"five":[166],"popular":[167],"datasets":[168],"manifest":[169],"superiority":[171],"BESA":[173],"compared":[174],"existing":[176],"methods,":[177],"including":[178],"TextFooler,":[179],"BAE,":[180],"BERT-Attack,":[181],"PWWS,":[182],"PSO.":[184]},"counts_by_year":[{"year":2025,"cited_by_count":5},{"year":2024,"cited_by_count":3},{"year":2023,"cited_by_count":6},{"year":2022,"cited_by_count":1}],"updated_date":"2026-05-21T06:26:12.895304","created_date":"2025-10-10T00:00:00"}
