{"id":"https://openalex.org/W4385764993","doi":"https://doi.org/10.24963/ijcai.2023/60","title":"Towards Semantics- and Domain-Aware Adversarial Attacks","display_name":"Towards Semantics- and Domain-Aware Adversarial Attacks","publication_year":2023,"publication_date":"2023-08-01","ids":{"openalex":"https://openalex.org/W4385764993","doi":"https://doi.org/10.24963/ijcai.2023/60"},"language":"en","primary_location":{"id":"doi:10.24963/ijcai.2023/60","is_oa":true,"landing_page_url":"https://doi.org/10.24963/ijcai.2023/60","pdf_url":"https://www.ijcai.org/proceedings/2023/0060.pdf","source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the Thirty-Second International Joint Conference on Artificial Intelligence","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"https://www.ijcai.org/proceedings/2023/0060.pdf","any_repository_has_fulltext":null},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5100390066","display_name":"Jianping Zhang","orcid":"https://orcid.org/0000-0001-7141-9464"},"institutions":[{"id":"https://openalex.org/I177725633","display_name":"Chinese University of Hong Kong","ror":"https://ror.org/00t33hh48","country_code":"CN","type":"education","lineage":["https://openalex.org/I177725633"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Jianping Zhang","raw_affiliation_strings":["The Chinese University of Hong Kong","Department of Computer Science and Engineering, The Chinese University of Hong Kong"],"affiliations":[{"raw_affiliation_string":"The Chinese University of Hong Kong","institution_ids":["https://openalex.org/I177725633"]},{"raw_affiliation_string":"Department of Computer Science and Engineering, The Chinese University of Hong Kong","institution_ids":["https://openalex.org/I177725633"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5088032853","display_name":"Yung\u2010Chieh Huang","orcid":"https://orcid.org/0000-0003-2945-4404"},"institutions":[{"id":"https://openalex.org/I157725225","display_name":"University of Illinois Urbana-Champaign","ror":"https://ror.org/047426m28","country_code":"US","type":"education","lineage":["https://openalex.org/I157725225"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Yung-Chieh Huang","raw_affiliation_strings":["University of Illinois Urbana-Champaign","Department of Computer Science, University of Illinois Urbana-Champaign"],"affiliations":[{"raw_affiliation_string":"University of Illinois Urbana-Champaign","institution_ids":["https://openalex.org/I157725225"]},{"raw_affiliation_string":"Department of Computer Science, University of Illinois Urbana-Champaign","institution_ids":["https://openalex.org/I157725225"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5004605359","display_name":"Weibin Wu","orcid":"https://orcid.org/0000-0002-7262-6219"},"institutions":[{"id":"https://openalex.org/I157773358","display_name":"Sun Yat-sen University","ror":"https://ror.org/0064kty71","country_code":"CN","type":"education","lineage":["https://openalex.org/I157773358"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Weibin Wu","raw_affiliation_strings":["Sun Yat-sen University","School of Software Engineering, Sun Yat-sen University"],"affiliations":[{"raw_affiliation_string":"Sun Yat-sen University","institution_ids":["https://openalex.org/I157773358"]},{"raw_affiliation_string":"School of Software Engineering, Sun Yat-sen University","institution_ids":["https://openalex.org/I157773358"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5069596903","display_name":"Michael R. Lyu","orcid":"https://orcid.org/0000-0002-3666-5798"},"institutions":[{"id":"https://openalex.org/I177725633","display_name":"Chinese University of Hong Kong","ror":"https://ror.org/00t33hh48","country_code":"CN","type":"education","lineage":["https://openalex.org/I177725633"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Michael R. Lyu","raw_affiliation_strings":["The Chinese University of Hong Kong","Department of Computer Science and Engineering, The Chinese University of Hong Kong"],"affiliations":[{"raw_affiliation_string":"The Chinese University of Hong Kong","institution_ids":["https://openalex.org/I177725633"]},{"raw_affiliation_string":"Department of Computer Science and Engineering, The Chinese University of Hong Kong","institution_ids":["https://openalex.org/I177725633"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5100390066"],"corresponding_institution_ids":["https://openalex.org/I177725633"],"apc_list":null,"apc_paid":null,"fwci":1.5525,"has_fulltext":false,"cited_by_count":9,"citation_normalized_percentile":{"value":0.86292727,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":90,"max":98},"biblio":{"volume":null,"issue":null,"first_page":"536","last_page":"544"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10028","display_name":"Topic Modeling","score":0.9986000061035156,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10028","display_name":"Topic Modeling","score":0.9986000061035156,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9908000230789185,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10181","display_name":"Natural Language Processing Techniques","score":0.9650999903678894,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8553624153137207},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.8230652213096619},{"id":"https://openalex.org/keywords/semantics","display_name":"Semantics (computer science)","score":0.7215138673782349},{"id":"https://openalex.org/keywords/domain","display_name":"Domain (mathematical analysis)","score":0.6238771677017212},{"id":"https://openalex.org/keywords/sentence","display_name":"Sentence","score":0.5814244747161865},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.5524289011955261},{"id":"https://openalex.org/keywords/word","display_name":"Word (group theory)","score":0.5075165033340454},{"id":"https://openalex.org/keywords/natural-language-processing","display_name":"Natural language processing","score":0.42595523595809937},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.3486945331096649},{"id":"https://openalex.org/keywords/programming-language","display_name":"Programming language","score":0.08029264211654663},{"id":"https://openalex.org/keywords/linguistics","display_name":"Linguistics","score":0.07854115962982178}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8553624153137207},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.8230652213096619},{"id":"https://openalex.org/C184337299","wikidata":"https://www.wikidata.org/wiki/Q1437428","display_name":"Semantics (computer science)","level":2,"score":0.7215138673782349},{"id":"https://openalex.org/C36503486","wikidata":"https://www.wikidata.org/wiki/Q11235244","display_name":"Domain (mathematical analysis)","level":2,"score":0.6238771677017212},{"id":"https://openalex.org/C2777530160","wikidata":"https://www.wikidata.org/wiki/Q41796","display_name":"Sentence","level":2,"score":0.5814244747161865},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5524289011955261},{"id":"https://openalex.org/C90805587","wikidata":"https://www.wikidata.org/wiki/Q10944557","display_name":"Word (group theory)","level":2,"score":0.5075165033340454},{"id":"https://openalex.org/C204321447","wikidata":"https://www.wikidata.org/wiki/Q30642","display_name":"Natural language processing","level":1,"score":0.42595523595809937},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.3486945331096649},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.08029264211654663},{"id":"https://openalex.org/C41895202","wikidata":"https://www.wikidata.org/wiki/Q8162","display_name":"Linguistics","level":1,"score":0.07854115962982178},{"id":"https://openalex.org/C138885662","wikidata":"https://www.wikidata.org/wiki/Q5891","display_name":"Philosophy","level":0,"score":0.0},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.0},{"id":"https://openalex.org/C134306372","wikidata":"https://www.wikidata.org/wiki/Q7754","display_name":"Mathematical analysis","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.24963/ijcai.2023/60","is_oa":true,"landing_page_url":"https://doi.org/10.24963/ijcai.2023/60","pdf_url":"https://www.ijcai.org/proceedings/2023/0060.pdf","source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the Thirty-Second International Joint Conference on Artificial Intelligence","raw_type":"proceedings-article"}],"best_oa_location":{"id":"doi:10.24963/ijcai.2023/60","is_oa":true,"landing_page_url":"https://doi.org/10.24963/ijcai.2023/60","pdf_url":"https://www.ijcai.org/proceedings/2023/0060.pdf","source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the Thirty-Second International Joint Conference on Artificial Intelligence","raw_type":"proceedings-article"},"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G2087396116","display_name":null,"funder_award_id":"China","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G3085993365","display_name":null,"funder_award_id":"(Grant No.","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G3317480652","display_name":null,"funder_award_id":"Science","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G4327764537","display_name":null,"funder_award_id":"62206318","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G5249178904","display_name":null,"funder_award_id":"Grant No. 6","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G5994120800","display_name":null,"funder_award_id":"Natural","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G6361378377","display_name":null,"funder_award_id":"14206921","funder_id":"https://openalex.org/F4320322942","funder_display_name":"Chinese University of Hong Kong"},{"id":"https://openalex.org/G7033253288","display_name":null,"funder_award_id":"Grants","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G7726157001","display_name":null,"funder_award_id":"Grant No.","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"},{"id":"https://openalex.org/F4320322942","display_name":"Chinese University of Hong Kong","ror":"https://ror.org/00t33hh48"}],"has_content":{"grobid_xml":false,"pdf":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4385764993.pdf"},"referenced_works_count":37,"referenced_works":["https://openalex.org/W1647671624","https://openalex.org/W1673923490","https://openalex.org/W1840435438","https://openalex.org/W2038721957","https://openalex.org/W2113459411","https://openalex.org/W2131774270","https://openalex.org/W2251939518","https://openalex.org/W2811010710","https://openalex.org/W2896457183","https://openalex.org/W2949128310","https://openalex.org/W2952186591","https://openalex.org/W2962718684","https://openalex.org/W2963126845","https://openalex.org/W2963846996","https://openalex.org/W2963969878","https://openalex.org/W2965373594","https://openalex.org/W2978017171","https://openalex.org/W2996851481","https://openalex.org/W3030469652","https://openalex.org/W3034238904","https://openalex.org/W3035736465","https://openalex.org/W3087231533","https://openalex.org/W3089472875","https://openalex.org/W3099987998","https://openalex.org/W3101449015","https://openalex.org/W3156636935","https://openalex.org/W3163841364","https://openalex.org/W3196893172","https://openalex.org/W3205964992","https://openalex.org/W4224215750","https://openalex.org/W4280605341","https://openalex.org/W4285270642","https://openalex.org/W4312790346","https://openalex.org/W4362597844","https://openalex.org/W4384302825","https://openalex.org/W4386072305","https://openalex.org/W4386076570"],"related_works":["https://openalex.org/W2502115930","https://openalex.org/W2482350142","https://openalex.org/W4246396837","https://openalex.org/W3126451824","https://openalex.org/W1561927205","https://openalex.org/W3191453585","https://openalex.org/W4297672492","https://openalex.org/W4310988119","https://openalex.org/W4285226279","https://openalex.org/W2369835347"],"abstract_inverted_index":{"Language":[0],"models":[1],"are":[2],"known":[3],"to":[4,7,15,18,25,30,65,68,78,114,126,144],"be":[5,115],"vulnerable":[6],"textual":[8],"adversarial":[9,60,131,190],"attacks,":[10],"which":[11],"add":[12],"human-imperceptible":[13],"perturbations":[14],"the":[16,32,51,54,69,95,102,128,134,146,151,162,187],"input":[17],"mislead":[19],"DNNs.":[20],"It":[21],"is":[22,112],"thus":[23],"imperative":[24],"devise":[26],"effective":[27],"attack":[28,89,135,180],"algorithms":[29],"identify":[31],"deficiencies":[33],"of":[34,53,71,130,164,189],"DNNs":[35],"before":[36],"real-world":[37],"deployment.":[38],"However,":[39],"existing":[40],"word-level":[41,88],"attacks":[42],"have":[43],"two":[44],"major":[45],"deficiencies:":[46],"(1)":[47],"They":[48],"may":[49],"change":[50],"semantics":[52],"original":[55],"sentence.":[56],"(2)":[57],"The":[58,109],"generated":[59],"sample":[61],"can":[62,174],"appear":[63],"unnatural":[64],"humans":[66],"due":[67],"introduction":[70],"out-of-domain":[72],"substitute":[73],"words.":[74],"In":[75],"this":[76],"paper,":[77],"address":[79],"such":[80],"drawbacks,":[81],"we":[82,92,138],"propose":[83,139],"a":[84,99,106],"semantics-":[85,116],"and":[86,117,122,133,150,183],"domain-aware":[87,118],"method.":[90],"Specifically,":[91],"greedily":[93],"replace":[94],"important":[96],"words":[97],"in":[98,155,179,186],"sentence":[100],"with":[101,169],"ones":[103],"suggested":[104],"by":[105],"language":[107,110],"model.":[108],"model":[111],"trained":[113],"via":[119],"contrastive":[120,147],"learning":[121,148],"in-domain":[123,152],"pre-training.":[124],"Furthermore,":[125],"balance":[127],"quality":[129,188],"examples":[132],"success":[136,181],"rate,":[137],"an":[140],"iterative":[141],"updating":[142],"framework":[143],"optimize":[145],"loss":[149,154],"pre-training":[153],"circular":[156],"order.":[157],"Comprehensive":[158],"experimental":[159],"comparisons":[160],"confirm":[161],"superiority":[163],"our":[165,172],"approach.":[166],"Notably,":[167],"compared":[168],"state-of-the-art":[170],"benchmarks,":[171],"strategy":[173],"achieve":[175],"over":[176],"3\\%":[177],"improvement":[178,185],"rates":[182],"9.8\\%":[184],"examples.":[191]},"counts_by_year":[{"year":2025,"cited_by_count":4},{"year":2024,"cited_by_count":4},{"year":2023,"cited_by_count":1}],"updated_date":"2026-04-13T07:58:08.660418","created_date":"2025-10-10T00:00:00"}
