• Home
  • Search
  • BeamAttack: Generating High-quality Textual Adversarial Examples Through Beam Search and Mixed Semantic Spaces
  • Open Access IconOpen Access
  • Cite Icon4
  • https://doi.org/10.1007/978-3-031-33377-4_35Copy DOI Icon

BeamAttack: Generating High-quality Textual Adversarial Examples Through Beam Search and Mixed Semantic Spaces

  • Jan 1, 2023
  • Hai Zhu +2 more
Show More
  • Abstract
  • Literature Map
  • References
  • Citations
  • Similar Papers
Abstract

Natural language processing models based on neural networks are vulnerable to adversarial examples. These adversarial examples are imperceptible to human readers but can mislead models to make the wrong predictions. In a black-box setting, attacker can fool the model without knowing model’s parameters and architecture. Previous works on word-level attacks widely use single semantic space and greedy search as a search strategy. However, these methods fail to balance the attack success rate, quality of adversarial examples and time consumption. In this paper, we propose BeamAttack, a textual attack algorithm that makes use of mixed semantic spaces and improved beam search to craft high-quality adversarial examples. Extensive experiments demonstrate that BeamAttack can improve attack success rate while saving numerous queries and time, e.g., improving at most 7% attack success rate than greedy search when attacking the examples from MR dataset. Compared with heuristic search, BeamAttack can save at most 85% model queries and achieve a competitive attack success rate. The adversarial examples crafted by BeamAttack are highly transferable and can effectively improve model’s robustness during adversarial training. Code is available at https://github.com/zhuhai-ustc/beamattack/tree/master

Similar Papers
  • Research Article
  • Citations3

Explanation-Guided Adversarial Example Attacks

  • Mar 26, 2024
  • Big Data Research
  • Anli Yan +4
  • Research Article

Adversarial Example Generation Method Based on Wavelet Transform

  • Feb 10, 2026
  • Information
  • Meng Bi +5
  • PDF
  • Research Article
  • Citations4

Optimized Adversarial Example With Classification Score Pattern Vulnerability Removed

  • Jan 01, 2022
  • IEEE Access
  • Hyun Kwon +2
  • PDF
  • Research Article
  • Citations26

On the Effectiveness of Adversarial Training in Defending against Adversarial Example Attacks for Image Classification

  • Nov 14, 2020
  • Applied Sciences
  • Sanglee Park +1
  • Research Article
  • Citations1

Timing Attack on Random Forests: Experimental Evaluation and Detailed Analysis

  • Jan 01, 2021
  • Journal of Information Processing
  • Yuichiro Dan +2
  • Book Chapter

Query-Efficient Black-Box Adversarial Attack with Random Pattern Noises

  • Jan 01, 2022
  • Makoto Yuito +2
  • Research Article
  • Citations13

Adv-BDPM: Adversarial attack based on Boundary Diffusion Probability Model

  • Sep 09, 2023
  • Neural Networks
  • Dian Zhang +1
  • Research Article
  • Citations4

Evasion Attacks on Deep Learning-Based Helicopter Recognition Systems

  • Mar 22, 2024
  • Journal of Sensors
  • Jun Lee +4
  • Conference Article
  • Citations6

On Multiview Robustness of 3D Adversarial Attacks

  • Jul 26, 2020
  • Practice and Experience in Advanced Research Computing
  • Philip Yao +3
  • Research Article
  • Citations3

Priority Evasion Attack: An Adversarial Example That Considers the Priority of Attack on Each Classifier

  • Nov 01, 2022
  • IEICE Transactions on Information and Systems
  • Hyun Kwon +2
  • Conference Article

Regional Saliency Map Attack for Medical Image Segmentation

  • Oct 16, 2022
  • Pei Yang +1
  • Book Chapter

Searching for Textual Adversarial Examples with Learned Strategy

  • Jan 01, 2023
  • Xiangzhe Guo +3
  • PDF
  • Research Article
  • Citations2

Efficient Adversarial Attack Based on Moment Estimation and Lookahead Gradient

  • Jun 24, 2024
  • Electronics
  • Dian Hong +6
  • Book Chapter

GF-Attack: A Strategy to Improve the Performance of Adversarial Example

  • Jan 01, 2020
  • Jintao Zhang +5
  • Research Article
  • Citations27

Inconspicuous Adversarial Patches for Fooling Image-Recognition Systems on Mobile Devices

  • Jun 15, 2022
  • IEEE Internet of Things Journal
  • Tao Bai +2
Cactus Communications logo

Copyright 2026 Cactus Communications. All rights reserved.