{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,3]],"date-time":"2026-06-03T10:16:48Z","timestamp":1780481808647,"version":"3.54.1"},"reference-count":45,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","license":[{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/501100001809","name":"NSFC","doi-asserted-by":"publisher","award":["U20B2049"],"award-info":[{"award-number":["U20B2049"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"NSFC","doi-asserted-by":"publisher","award":["U21B2018"],"award-info":[{"award-number":["U21B2018"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"NSFC","doi-asserted-by":"publisher","award":["62302344"],"award-info":[{"award-number":["62302344"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100012226","name":"Fundamental Research Funds for the Central Universities","doi-asserted-by":"publisher","award":["2042023kf0122"],"award-info":[{"award-number":["2042023kf0122"]}],"id":[{"id":"10.13039\/501100012226","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans.Inform.Forensic Secur."],"published-print":{"date-parts":[[2024]]},"DOI":"10.1109\/tifs.2024.3350376","type":"journal-article","created":{"date-parts":[[2024,1,5]],"date-time":"2024-01-05T19:30:45Z","timestamp":1704483045000},"page":"2398-2411","source":"Crossref","is-referenced-by-count":16,"title":["FastTextDodger: Decision-Based Adversarial Attack Against Black-Box NLP Models With Extremely High Efficiency"],"prefix":"10.1109","volume":"19","author":[{"given":"Xiaoxue","family":"Hu","sequence":"first","affiliation":[{"name":"Key Laboratory of Aerospace Information Security and Trusted Computing, Ministry of Education, School of Cyber Science and Engineering, Wuhan University, Wuhan, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Geling","family":"Liu","sequence":"additional","affiliation":[{"name":"Key Laboratory of Aerospace Information Security and Trusted Computing, Ministry of Education, School of Cyber Science and Engineering, Wuhan University, Wuhan, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Baolin","family":"Zheng","sequence":"additional","affiliation":[{"name":"Alibaba Group, Beijing, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-1700-3836","authenticated-orcid":false,"given":"Lingchen","family":"Zhao","sequence":"additional","affiliation":[{"name":"Key Laboratory of Aerospace Information Security and Trusted Computing, Ministry of Education, School of Cyber Science and Engineering, Wuhan University, Wuhan, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-8967-8525","authenticated-orcid":false,"given":"Qian","family":"Wang","sequence":"additional","affiliation":[{"name":"Key Laboratory of Aerospace Information Security and Trusted Computing, Ministry of Education, School of Cyber Science and Engineering, Wuhan University, Wuhan, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Yufei","family":"Zhang","sequence":"additional","affiliation":[{"name":"Department of Computer Science, ETH Z&#x00FC;rich, Z&#x00FC;rich, Switzerland"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-6620-6923","authenticated-orcid":false,"given":"Minxin","family":"Du","sequence":"additional","affiliation":[{"name":"Department of Information Engineering, The Chinese University of Hong Kong, Ma Liu Shui, Hong Kong"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"263","reference":[{"key":"ref1","first-page":"1","article-title":"Explaining and harnessing adversarial examples","volume-title":"Proc. ICLR","author":"Goodfellow"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.48550\/ARXIV.1706.06083"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/SP40000.2020.00045"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2019.23362"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/P18-2006"},{"key":"ref6","volume-title":"Komprehend Pricing","year":"2023"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v34i05.6311"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/P19-1103"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2019.23138"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v35i15.17595"},{"key":"ref11","article-title":"TextDecepter: Hard label black box attack on text classifiers","author":"Saxena","year":"2020","journal-title":"arXiv:2008.06860"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1145\/3534678.3539357"},{"key":"ref13","volume-title":"fastText","year":"2023"},{"key":"ref14","first-page":"1","article-title":"Intriguing properties of neural networks","volume-title":"Proc. ICLR","author":"Szegedy"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1145\/3128572.3140448"},{"key":"ref16","first-page":"1","article-title":"Decision-based adversarial attacks: Reliable attacks against black-box machine learning models","volume-title":"Proc. ICLR","author":"Brendel"},{"key":"ref17","first-page":"1","article-title":"Query-efficient hard-label black-box attack: An optimization-based approach","volume-title":"Proc. ICLR","author":"Cheng"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.24963\/ijcai.2018\/585"},{"key":"ref19","first-page":"653","article-title":"On adversarial examples for character-level neural machine translation","volume-title":"Proc. COLING","author":"Ebrahimi"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/D18-1316"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1109\/SPW.2018.00016"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/P19-1559"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/2020.acl-main.540"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v34i04.5767"},{"key":"ref25","first-page":"1","article-title":"Generating natural adversarial examples","volume-title":"Proc. ICLR","author":"Zhao"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/p19-1459"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/2021.emnlp-main.661"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1142\/5935"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/n16-1018"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1016\/j.neucom.2023.126489"},{"key":"ref31","first-page":"1","article-title":"Devign: Effective vulnerability identification by learning comprehensive program semantics via graph neural networks","volume-title":"Proc. NeurIPS","volume":"32","author":"Zhou"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/N16-1174"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/D16-1244"},{"key":"ref34","first-page":"649","article-title":"Character-level convolutional networks for text classification","volume-title":"Proc. NeurIPS","author":"Zhang"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.3115\/1219840.1219855"},{"key":"ref36","first-page":"142","article-title":"Learning word vectors for sentiment analysis","volume-title":"Proc. ACL","author":"Maas"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/D15-1075"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/N18-1101"},{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.3115\/v1\/D14-1181"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.1162\/neco.1997.9.8.1735"},{"key":"ref41","first-page":"4171","article-title":"BERT: Pre-training of deep bidirectional transformers for language understanding","volume-title":"Proc. NAACL-HLT","author":"Devlin"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/P17-1152"},{"key":"ref43","doi-asserted-by":"publisher","DOI":"10.4324\/9781315657257-3"},{"key":"ref44","first-page":"1","article-title":"Adversarial training methods for semi-supervised text classification","volume-title":"Proc. ICLR","author":"Miyato"},{"key":"ref45","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/2021.eacl-main.13"}],"container-title":["IEEE Transactions on Information Forensics and Security"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/10206\/10319981\/10381813.pdf?arnumber=10381813","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,1,18]],"date-time":"2024-01-18T01:43:59Z","timestamp":1705542239000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10381813\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024]]},"references-count":45,"URL":"https:\/\/doi.org\/10.1109\/tifs.2024.3350376","relation":{},"ISSN":["1556-6013","1556-6021"],"issn-type":[{"value":"1556-6013","type":"print"},{"value":"1556-6021","type":"electronic"}],"subject":[],"published":{"date-parts":[[2024]]}}}