{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,12,12]],"date-time":"2025-12-12T13:47:33Z","timestamp":1765547253538,"version":"3.37.3"},"reference-count":52,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","license":[{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62072051"],"award-info":[{"award-number":["62072051"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100002766","name":"Beijing University of Posts and Telecommunications (BUPT) Excellent Ph.D. Students Foundation","doi-asserted-by":"publisher","award":["CX2022229"],"award-info":[{"award-number":["CX2022229"]}],"id":[{"id":"10.13039\/501100002766","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans.Inform.Forensic Secur."],"published-print":{"date-parts":[[2024]]},"DOI":"10.1109\/tifs.2024.3416849","type":"journal-article","created":{"date-parts":[[2024,6,19]],"date-time":"2024-06-19T17:22:46Z","timestamp":1718817766000},"page":"6484-6498","source":"Crossref","is-referenced-by-count":3,"title":["NUAT-GAN: Generating Black-Box Natural Universal Adversarial Triggers for Text Classifiers Using Generative Adversarial Networks"],"prefix":"10.1109","volume":"19","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-9596-3066","authenticated-orcid":false,"given":"Haoran","family":"Gao","sequence":"first","affiliation":[{"name":"State Key Laboratory of Networking and Switching Technology, Beijing University of Posts and Telecommunications, Beijing, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-0532-9783","authenticated-orcid":false,"given":"Hua","family":"Zhang","sequence":"additional","affiliation":[{"name":"Beijing Institute of Computer Technology and Application, Beijing, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-2552-0726","authenticated-orcid":false,"given":"Jiahui","family":"Wang","sequence":"additional","affiliation":[{"name":"State Key Laboratory of Networking and Switching Technology, Beijing University of Posts and Telecommunications, Beijing, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-4086-1943","authenticated-orcid":false,"given":"Xin","family":"Zhang","sequence":"additional","affiliation":[{"name":"Beijing Institute of Computer Technology and Application, Beijing, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-6360-1116","authenticated-orcid":false,"given":"Huawei","family":"Wang","sequence":"additional","affiliation":[{"name":"Beijing Institute of Control Engineering, Beijing, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-1546-4364","authenticated-orcid":false,"given":"Wenmin","family":"Li","sequence":"additional","affiliation":[{"name":"State Key Laboratory of Networking and Switching Technology, Beijing University of Posts and Telecommunications, Beijing, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-5683-5347","authenticated-orcid":false,"given":"Tengfei","family":"Tu","sequence":"additional","affiliation":[{"name":"State Key Laboratory of Networking and Switching Technology, Beijing University of Posts and Telecommunications, Beijing, China"}]}],"member":"263","reference":[{"key":"ref1","first-page":"1","article-title":"Intriguing properties of neural networks","volume-title":"Proc. 2nd Int. Conf. Learn. Represent. (ICLR)","author":"Szegedy"},{"key":"ref2","first-page":"1","article-title":"Explaining and harnessing adversarial examples","volume-title":"Proc. 3rd Int. Conf. Learn. Represent. (ICLR)","author":"Goodfellow"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.282"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.49"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00465"},{"article-title":"Nesterov accelerated gradient and scale invariance for adversarial attacks","volume-title":"Proc. Int. Conf. Learn. Represent.","author":"Lin","key":"ref6"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/P19-1559"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v34i05.6311"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/2021.emnlp-main.464"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/2022.findings-naacl.14"},{"key":"ref11","first-page":"12478","article-title":"Query-efficient and scalable black-box adversarial attacks on discrete sequential data via Bayesian optimization","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Lee"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/SPW.2018.00016"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/P19-1103"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/2020.acl-main.540"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v35i15.17595"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v37i11.26553"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/D19-1221"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/2021.naacl-main.291"},{"key":"ref19","first-page":"138","article-title":"Exploring the vulnerability of natural language processing models via universal adversarial texts","volume-title":"Proc. 19th Annu. Workshop Australas. Language Technol. Assoc.","author":"Li"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/2023.findings-acl.10"},{"key":"ref21","first-page":"5902","article-title":"Adversarially regularized autoencoders","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Zhao"},{"key":"ref22","article-title":"SmoothGrad: Removing noise by adding noise","author":"Smilkov","year":"2017","journal-title":"arXiv:1706.03825"},{"key":"ref23","first-page":"3319","article-title":"Axiomatic attribution for deep networks","volume-title":"Proc. Int. Conf. Mach. Learn.","volume":"70","author":"Sundararajan"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.5555\/2969033.2969125"},{"key":"ref25","first-page":"1057","article-title":"Policy gradient methods for reinforcement learning with function approximation","volume-title":"Proc. Adv. Neural Inf. Process. Syst.","volume":"12","author":"Sutton"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1162\/neco.1997.9.8.1735"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.48550\/ARXIV.1406.1078"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.3115\/v1\/d14-1181"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.48550\/arXiv.1810.04805"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/P18-1031"},{"key":"ref31","first-page":"380","article-title":"Utilizing BERT for aspect-based sentiment analysis via constructing auxiliary sentence","volume-title":"Proc. Conf. North Amer. Chapter Assoc. Comput. Linguistics","author":"Sun"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/P18-1215"},{"key":"ref33","first-page":"5753","article-title":"XLNet: Generalized autoregressive pretraining for language understanding","volume-title":"Proc. Adv. Neural Inf. Process. Syst.","author":"Yang"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.1145\/3014812.3014815"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1109\/IEMCON.2019.8936148"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.90"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2017.322"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.48550\/ARXIV.1706.03762"},{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.1145\/219717.219748"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.1142\/5935"},{"key":"ref41","doi-asserted-by":"publisher","DOI":"10.1007\/BF00992696"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v31i1.10804"},{"key":"ref43","article-title":"How (not) to train your generative model: Scheduled sampling, likelihood, adversary?","author":"Husz\u00e1r","year":"2015","journal-title":"arXiv:1511.05101"},{"key":"ref44","first-page":"1631","article-title":"Recursive deep models for semantic compositionality over a sentiment treebank","volume-title":"Proc. Conf. Empir. Methods Nat. Lang. Process.","author":"Socher"},{"key":"ref45","doi-asserted-by":"publisher","DOI":"10.3115\/1219840.1219855"},{"key":"ref46","first-page":"649","article-title":"Character-level convolutional networks for text classification","volume-title":"Proc. Adv. Neural Inf. Process. Syst.","author":"Zhang"},{"key":"ref47","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2019.23138"},{"key":"ref48","doi-asserted-by":"publisher","DOI":"10.3115\/v1\/D14-1162"},{"issue":"8","key":"ref49","first-page":"9","article-title":"Language models are unsupervised multitask learners","volume":"1","author":"Radford","year":"2019","journal-title":"OpenAI Blog"},{"key":"ref50","article-title":"Universal sentence encoder","author":"Cer","year":"2018","journal-title":"arXiv:1803.11175"},{"key":"ref51","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/2023.findings-emnlp.477"},{"key":"ref52","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/D16-1264"}],"container-title":["IEEE Transactions on Information Forensics and Security"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/10206\/10319981\/10562350.pdf?arnumber=10562350","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,7,7]],"date-time":"2024-07-07T05:34:02Z","timestamp":1720330442000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10562350\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024]]},"references-count":52,"URL":"https:\/\/doi.org\/10.1109\/tifs.2024.3416849","relation":{},"ISSN":["1556-6013","1556-6021"],"issn-type":[{"type":"print","value":"1556-6013"},{"type":"electronic","value":"1556-6021"}],"subject":[],"published":{"date-parts":[[2024]]}}}