A Data-Free Substitute Model Training Method for Textual Adversarial Attacks

对抗制 计算机科学 黑匣子 生成语法 生成对抗网络 人工智能 样品(材料) 机器学习 生成模型 自然语言处理 深度学习 化学 色谱法
作者
F. Frank Chen,Zhidong Shen
出处
期刊:Communications in computer and information science 卷期号:: 295-307
标识
DOI:10.1007/978-981-99-8181-6_23
摘要

BERT and other pre-trained language models are vulnerable to textual adversarial attacks. While current transfer-based textual adversarial attacks in black-box environments rely on real datasets to train substitute models, obtaining the datasets can be challenging for attackers. To address this issue, we propose a data-free substitute training method (DaST-T) for textual adversarial attacks, which can train substitute models without the assistance of real data. DaST-T consists of two major steps. Firstly, DaST-T creates a special Generative Adversarial Network (GAN) to train substitute models without any real data. The training procedure utilizes samples synthesized at random by the generative model, where labels are generated by the attacked model. In particular, DaST-T designs a data augmenter for the generative model to facilitate rapid exploration of the entire sample space, thereby accelerating the performance of substitute model training. Secondly, DaST-T applies existing white-box textual adversarial attack methods to the substitute model to generate adversarial text, which is then migrated to the attacked model. DaST-T can effectively address the issue of limited access to real datasets in black-box textual adversarial attacks. Experimental results on text classification tasks in NLP show that DaST-T can achieve superior attack performance compared to other baselines of black-box textual adversarial attacks while requiring fewer sample queries.
最长约 10秒,即可获得该文献文件

科研通智能强力驱动
Strongly Powered by AbleSci AI
更新
大幅提高文件上传限制,最高150M (2024-4-1)

科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
次次发布了新的文献求助10
4秒前
6秒前
卷筒洗衣机完成签到,获得积分10
7秒前
7秒前
8秒前
9秒前
Mike001发布了新的文献求助10
10秒前
卷筒洗衣机发布了新的文献求助100
10秒前
上官若男应助wocala采纳,获得10
11秒前
13秒前
15秒前
充电宝应助Jeffery426采纳,获得10
15秒前
花开富贵完成签到,获得积分10
16秒前
想睡觉完成签到 ,获得积分10
16秒前
17秒前
18秒前
Singularity应助花开彼岸采纳,获得10
18秒前
Singularity应助花开彼岸采纳,获得10
18秒前
Singularity应助花开彼岸采纳,获得10
18秒前
荷兰香猪完成签到,获得积分10
19秒前
Orange应助科研通管家采纳,获得10
19秒前
李爱国应助科研通管家采纳,获得10
19秒前
田様应助科研通管家采纳,获得10
19秒前
充电宝应助科研通管家采纳,获得10
19秒前
takeru应助科研通管家采纳,获得20
19秒前
21秒前
韦老虎发布了新的文献求助10
22秒前
YingFengLi发布了新的文献求助10
22秒前
荷兰香猪发布了新的文献求助10
23秒前
范先生发布了新的文献求助20
25秒前
25秒前
科研通AI2S应助稞小弟采纳,获得10
26秒前
科研狗宁完成签到,获得积分20
26秒前
阳光的雁玉关注了科研通微信公众号
28秒前
28秒前
30秒前
ZSmile完成签到,获得积分10
30秒前
Felicity发布了新的文献求助30
30秒前
上官若男应助人各有痣采纳,获得10
31秒前
无花果应助荷兰香猪采纳,获得10
32秒前
高分求助中
Teaching Social and Emotional Learning in Physical Education 900
Plesiosaur extinction cycles; events that mark the beginning, middle and end of the Cretaceous 800
Recherches Ethnographiques sue les Yao dans la Chine du Sud 500
Two-sample Mendelian randomization analysis reveals causal relationships between blood lipids and venous thromboembolism 500
Chinese-English Translation Lexicon Version 3.0 500
[Lambert-Eaton syndrome without calcium channel autoantibodies] 440
Wisdom, Gods and Literature Studies in Assyriology in Honour of W. G. Lambert 400
热门求助领域 (近24小时)
化学 材料科学 医学 生物 有机化学 工程类 生物化学 纳米技术 物理 内科学 计算机科学 化学工程 复合材料 遗传学 基因 物理化学 催化作用 电极 光电子学 量子力学
热门帖子
关注 科研通微信公众号,转发送积分 2389673
求助须知:如何正确求助?哪些是违规求助? 2095689
关于积分的说明 5278424
捐赠科研通 1822839
什么是DOI,文献DOI怎么找? 909185
版权声明 559575
科研通“疑难数据库(出版商)”最低求助积分说明 485849