@inproceedings{d6579b7122a14083b1ebb953dc543468,
title = "Generating Adversarial Texts for Recurrent Neural Networks",
abstract = "Adversarial examples have received increasing attention recently due to their significant values in evaluating and improving the robustness of deep neural networks. Existing adversarial attack algorithms have achieved good result for most images. However, those algorithms cannot be directly applied to texts as the text data is discrete in nature. In this paper, we extend two state-of-the-art attack algorithms, PGD and C\&W, to craft adversarial text examples for RNN-based models. For Extend-PGD attack, it identifies the words that are important for classification by computing the Jacobian matrix of the classifier, to effectively generate adversarial text examples. For Extend-C\&W attack, it utilizes regularization to minimize the alteration of the original input text. We conduct comparison experiments on two recurrent neural networks trained for classifying texts in two real-world datasets. Experimental results show that our Extend-PGD and Extend-C\&W attack algorithms have advantages of attack success rate and semantics-preserving ability, respectively.",
keywords = "Adversarial text, C\&W, PGD, Recurrent neural network",
author = "Chang Liu and Wang Lin and Zhengfeng Yang",
note = "Publisher Copyright: {\textcopyright} 2020, Springer Nature Switzerland AG.; 29th International Conference on Artificial Neural Networks, ICANN 2020 ; Conference date: 15-09-2020 Through 18-09-2020",
year = "2020",
doi = "10.1007/978-3-030-61609-0\_4",
language = "英语",
isbn = "9783030616083",
series = "Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)",
publisher = "Springer Science and Business Media Deutschland GmbH",
pages = "39--51",
editor = "Igor Farka{\v s} and Paolo Masulli and Stefan Wermter",
booktitle = "Artificial Neural Networks and Machine Learning – ICANN 2020 - 29th International Conference on Artificial Neural Networks, Proceedings",
address = "德国",
}