{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,6]],"date-time":"2026-06-06T06:21:21Z","timestamp":1780726881630,"version":"3.54.1"},"publisher-location":"New York, NY, USA","reference-count":30,"publisher":"ACM","license":[{"start":{"date-parts":[[2021,8,14]],"date-time":"2021-08-14T00:00:00Z","timestamp":1628899200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"funder":[{"DOI":"10.13039\/100000001","name":"National Science Foundation","doi-asserted-by":"publisher","award":["IIS-2027689"],"award-info":[{"award-number":["IIS-2027689"]}],"id":[{"id":"10.13039\/100000001","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2021,8,14]]},"DOI":"10.1145\/3447548.3467390","type":"proceedings-article","created":{"date-parts":[[2021,8,12]],"date-time":"2021-08-12T06:13:10Z","timestamp":1628748790000},"page":"575-584","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":18,"title":["PETGEN"],"prefix":"10.1145","author":[{"given":"Bing","family":"He","sequence":"first","affiliation":[{"name":"Georgia Institute of Technology, Atlanta, GA, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Mustaque","family":"Ahamad","sequence":"additional","affiliation":[{"name":"Georgia Institute of Technology, Atlanta, GA, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Srijan","family":"Kumar","sequence":"additional","affiliation":[{"name":"Georgia Institute of Technology, Atlanta, GA, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2021,8,14]]},"reference":[{"key":"e_1_3_2_2_1_1","volume-title":"Deep learning for anomaly detection: A survey. arXiv preprint arXiv:1901.03407","author":"Chalapathy Raghavendra","year":"2019","unstructured":"Raghavendra Chalapathy and Sanjay Chawla . 2019. Deep learning for anomaly detection: A survey. arXiv preprint arXiv:1901.03407 ( 2019 ). Raghavendra Chalapathy and Sanjay Chawla. 2019. Deep learning for anomaly detection: A survey. arXiv preprint arXiv:1901.03407 (2019)."},{"key":"e_1_3_2_2_2_1","volume-title":"https:\/\/review42.com\/what-percentage-of-amazon-reviews-are-fake\/. [Online","author":"Dobrilova Teodora","year":"2021","unstructured":"Teodora Dobrilova . 2020. https:\/\/review42.com\/what-percentage-of-amazon-reviews-are-fake\/. [Online ; accessed 02-02- 2021 ]. Teodora Dobrilova. 2020. https:\/\/review42.com\/what-percentage-of-amazon-reviews-are-fake\/. [Online; accessed 02-02-2021]."},{"key":"e_1_3_2_2_3_1","doi-asserted-by":"publisher","DOI":"10.1145\/3394486.3403135"},{"key":"e_1_3_2_2_4_1","volume-title":"Hotflip: White-box adversarial examples for text classification. ACL","author":"Ebrahimi Javid","year":"2017","unstructured":"Javid Ebrahimi , Anyi Rao , Daniel Lowd , and Dejing Dou . 2017 . Hotflip: White-box adversarial examples for text classification. ACL (2017). Javid Ebrahimi, Anyi Rao, Daniel Lowd, and Dejing Dou. 2017. Hotflip: White-box adversarial examples for text classification. ACL (2017)."},{"key":"e_1_3_2_2_5_1","volume-title":"Generative adversarial networks. arXiv preprint arXiv:1406.2661","author":"Goodfellow Ian J","year":"2014","unstructured":"Ian J Goodfellow , Jean Pouget-Abadie , Mehdi Mirza , Bing Xu , David Warde-Farley , Sherjil Ozair , Aaron Courville , and Yoshua Bengio . 2014. Generative adversarial networks. arXiv preprint arXiv:1406.2661 ( 2014 ). Ian J Goodfellow, Jean Pouget-Abadie, Mehdi Mirza, Bing Xu, David Warde-Farley, Sherjil Ozair, Aaron Courville, and Yoshua Bengio. 2014. Generative adversarial networks. arXiv preprint arXiv:1406.2661 (2014)."},{"key":"e_1_3_2_2_6_1","volume-title":"Deep learning: The MIT Press","author":"Heaton Jeff","year":"2016","unstructured":"Jeff Heaton . 2017. Ian Goodfellow , Yoshua Bengio , and Aaron Courville : Deep learning: The MIT Press , 2016 , 800 pp, ISBN: 0262035618. Genetic Programming and Evolvable Machines , Vol. 19 , 1--2 (2017). Jeff Heaton. 2017. Ian Goodfellow, Yoshua Bengio, and Aaron Courville: Deep learning: The MIT Press, 2016, 800 pp, ISBN: 0262035618. Genetic Programming and Evolvable Machines, Vol. 19, 1--2 (2017)."},{"key":"e_1_3_2_2_7_1","doi-asserted-by":"publisher","DOI":"10.1609\/icwsm.v8i1.14550"},{"key":"e_1_3_2_2_8_1","volume-title":"Categorical Reparameterization with Gumbel-Softmax. ICLR","author":"Jang Eric","year":"2017","unstructured":"Eric Jang , Shixiang Gu , and Ben Poole . 2017. Categorical Reparameterization with Gumbel-Softmax. ICLR ( 2017 ). Eric Jang, Shixiang Gu, and Ben Poole. 2017. Categorical Reparameterization with Gumbel-Softmax. ICLR (2017)."},{"key":"e_1_3_2_2_9_1","unstructured":"Xiaowei Jia Sheng Li Handong Zhao Sungchul Kim and Vipin Kumar. 2019. Towards robust and discriminative sequential data learning: When and how to perform adversarial training?. In SIGKDD. 1665--1673.  Xiaowei Jia Sheng Li Handong Zhao Sungchul Kim and Vipin Kumar. 2019. Towards robust and discriminative sequential data learning: When and how to perform adversarial training?. In SIGKDD. 1665--1673."},{"key":"e_1_3_2_2_10_1","doi-asserted-by":"crossref","unstructured":"Srijan Kumar Justin Cheng Jure Leskovec and VS Subrahmanian. 2017. An army of me: Sockpuppets in online discussion communities. In WWW. 857--866.  Srijan Kumar Justin Cheng Jure Leskovec and VS Subrahmanian. 2017. An army of me: Sockpuppets in online discussion communities. In WWW. 857--866.","DOI":"10.1145\/3038912.3052677"},{"key":"e_1_3_2_2_11_1","doi-asserted-by":"crossref","unstructured":"Srijan Kumar Bryan Hooi Disha Makhija Mohit Kumar Christos Faloutsos and VS Subrahmanian. 2018. Rev2: Fraudulent user prediction in rating platforms. In WSDM. 333--341.  Srijan Kumar Bryan Hooi Disha Makhija Mohit Kumar Christos Faloutsos and VS Subrahmanian. 2018. Rev2: Fraudulent user prediction in rating platforms. In WSDM. 333--341.","DOI":"10.1145\/3159652.3159729"},{"key":"e_1_3_2_2_12_1","doi-asserted-by":"publisher","DOI":"10.1145\/2783258.2783367"},{"key":"e_1_3_2_2_13_1","doi-asserted-by":"crossref","unstructured":"Srijan Kumar Xikun Zhang and J. Leskovec. 2019. Predicting Dynamic Embedding Trajectory in Temporal Interaction Networks. SIGKDD (2019).  Srijan Kumar Xikun Zhang and J. Leskovec. 2019. Predicting Dynamic Embedding Trajectory in Temporal Interaction Networks. SIGKDD (2019).","DOI":"10.1145\/3292500.3330895"},{"key":"e_1_3_2_2_14_1","volume-title":"Ying Zhang, Saizheng Zhang, Aaron C Courville, and Yoshua Bengio.","author":"Lamb Alex M","year":"2016","unstructured":"Alex M Lamb , Anirudh Goyal Alias Parth Goyal , Ying Zhang, Saizheng Zhang, Aaron C Courville, and Yoshua Bengio. 2016 . Professor forcing: A new algorithm for training recurrent networks. In NeuIPS. 4601--4609. Alex M Lamb, Anirudh Goyal Alias Parth Goyal, Ying Zhang, Saizheng Zhang, Aaron C Courville, and Yoshua Bengio. 2016. Professor forcing: A new algorithm for training recurrent networks. In NeuIPS. 4601--4609."},{"key":"e_1_3_2_2_15_1","volume-title":"Malcom: Generating malicious comments to attack neural fake news detection models. ICDM","author":"Le Thai","year":"2020","unstructured":"Thai Le , Suhang Wang , and Dongwon Lee . 2020 . Malcom: Generating malicious comments to attack neural fake news detection models. ICDM (2020). Thai Le, Suhang Wang, and Dongwon Lee. 2020. Malcom: Generating malicious comments to attack neural fake news detection models. ICDM (2020)."},{"key":"e_1_3_2_2_16_1","volume-title":"Sequential short-text classification with recurrent and convolutional neural networks. NAACL","author":"Lee Ji Young","year":"2016","unstructured":"Ji Young Lee and Franck Dernoncourt . 2016. Sequential short-text classification with recurrent and convolutional neural networks. NAACL ( 2016 ). Ji Young Lee and Franck Dernoncourt. 2016. Sequential short-text classification with recurrent and convolutional neural networks. NAACL (2016)."},{"key":"e_1_3_2_2_17_1","volume-title":"Textbugger: Generating adversarial text against real-world applications. NDSS.","author":"Li Jinfeng","year":"2018","unstructured":"Jinfeng Li , Shouling Ji , Tianyu Du , Bo Li , and Ting Wang . 2018 . Textbugger: Generating adversarial text against real-world applications. NDSS. Jinfeng Li, Shouling Ji, Tianyu Du, Bo Li, and Ting Wang. 2018. Textbugger: Generating adversarial text against real-world applications. NDSS."},{"key":"e_1_3_2_2_18_1","doi-asserted-by":"crossref","unstructured":"Yang Liu and Mirella Lapata. 2019. Hierarchical Transformers for Multi-Document Summarization. In ACL.  Yang Liu and Mirella Lapata. 2019. Hierarchical Transformers for Multi-Document Summarization. In ACL.","DOI":"10.18653\/v1\/P19-1500"},{"key":"e_1_3_2_2_19_1","volume-title":"Relgan: Relational generative adversarial networks for text generation. In ICLR.","author":"Nie Weili","year":"2018","unstructured":"Weili Nie , Nina Narodytska , and Ankit Patel . 2018 . Relgan: Relational generative adversarial networks for text generation. In ICLR. Weili Nie, Nina Narodytska, and Ankit Patel. 2018. Relgan: Relational generative adversarial networks for text generation. In ICLR."},{"key":"e_1_3_2_2_20_1","doi-asserted-by":"publisher","DOI":"10.1145\/3394486.3403364"},{"key":"e_1_3_2_2_21_1","volume-title":"EuroS&P","author":"Papernot Nicolas","unstructured":"Nicolas Papernot , Patrick McDaniel , Somesh Jha , Matt Fredrikson , Z Berkay Celik , and Ananthram Swami . 2016. The limitations of deep learning in adversarial settings . In EuroS&P . IEEE , 372--387. Nicolas Papernot, Patrick McDaniel, Somesh Jha, Matt Fredrikson, Z Berkay Celik, and Ananthram Swami. 2016. The limitations of deep learning in adversarial settings. In EuroS&P. IEEE, 372--387."},{"key":"e_1_3_2_2_22_1","volume-title":"Combating adversarial misspellings with robust word recognition. ACL","author":"Pruthi Danish","year":"2019","unstructured":"Danish Pruthi , Bhuwan Dhingra , and Zachary C Lipton . 2019. Combating adversarial misspellings with robust word recognition. ACL ( 2019 ). Danish Pruthi, Bhuwan Dhingra, and Zachary C Lipton. 2019. Combating adversarial misspellings with robust word recognition. ACL (2019)."},{"key":"e_1_3_2_2_23_1","doi-asserted-by":"crossref","unstructured":"Shebuti Rayana and Leman Akoglu. 2015. Collective opinion spam detection: Bridging review networks and metadata. In SIGKDD. 985--994.  Shebuti Rayana and Leman Akoglu. 2015. Collective opinion spam detection: Bridging review networks and metadata. In SIGKDD. 985--994.","DOI":"10.1145\/2783258.2783370"},{"key":"e_1_3_2_2_24_1","doi-asserted-by":"crossref","unstructured":"Gisela Redeker. 2000. Coherence and structure in text and discourse.  Gisela Redeker. 2000. Coherence and structure in text and discourse.","DOI":"10.1075\/nlp.1.06red"},{"key":"e_1_3_2_2_25_1","volume-title":"Equivalence of distance-based and RKHS-based statistics in hypothesis testing. The Annals of Statistics","author":"Sejdinovic Dino","year":"2013","unstructured":"Dino Sejdinovic , Bharath Sriperumbudur , Arthur Gretton , and Kenji Fukumizu . 2013. Equivalence of distance-based and RKHS-based statistics in hypothesis testing. The Annals of Statistics ( 2013 ), 2263--2291. Dino Sejdinovic, Bharath Sriperumbudur, Arthur Gretton, and Kenji Fukumizu. 2013. Equivalence of distance-based and RKHS-based statistics in hypothesis testing. The Annals of Statistics (2013), 2263--2291."},{"key":"e_1_3_2_2_26_1","doi-asserted-by":"publisher","DOI":"10.1145\/3137597.3137600"},{"key":"e_1_3_2_2_27_1","doi-asserted-by":"crossref","unstructured":"Eric Wallace Shi Feng Nikhil Kandpal Matt Gardner and Sameer Singh. 2019. Universal Adversarial Triggers for Attacking and Analyzing NLP. In EMNLP.  Eric Wallace Shi Feng Nikhil Kandpal Matt Gardner and Sameer Singh. 2019. Universal Adversarial Triggers for Attacking and Analyzing NLP. In EMNLP.","DOI":"10.18653\/v1\/D19-1221"},{"key":"e_1_3_2_2_28_1","doi-asserted-by":"crossref","unstructured":"Zichao Yang Diyi Yang Chris Dyer Xiaodong He Alex Smola and Eduard Hovy. 2016. Hierarchical attention networks for document classification. In NAACL.  Zichao Yang Diyi Yang Chris Dyer Xiaodong He Alex Smola and Eduard Hovy. 2016. Hierarchical attention networks for document classification. In NAACL.","DOI":"10.18653\/v1\/N16-1174"},{"key":"e_1_3_2_2_29_1","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1145\/3374217","article-title":"Adversarial attacks on deep-learning models in natural language processing: A survey","volume":"11","author":"Zhang Wei Emma","year":"2020","unstructured":"Wei Emma Zhang , Quan Z Sheng , Ahoud Alhazmi , and Chenliang Li . 2020 . Adversarial attacks on deep-learning models in natural language processing: A survey . ACM TIST , Vol. 11 , 3 (2020), 1 -- 41 . Wei Emma Zhang, Quan Z Sheng, Ahoud Alhazmi, and Chenliang Li. 2020. Adversarial attacks on deep-learning models in natural language processing: A survey. ACM TIST, Vol. 11, 3 (2020), 1--41.","journal-title":"ACM TIST"},{"key":"e_1_3_2_2_30_1","doi-asserted-by":"crossref","unstructured":"Yi Zhao Yanyan Shen and Junjie Yao. 2019. Recurrent Neural Network for Text Classification with Hierarchical Multiscale Dense Connections.. In IJCAI.  Yi Zhao Yanyan Shen and Junjie Yao. 2019. Recurrent Neural Network for Text Classification with Hierarchical Multiscale Dense Connections.. In IJCAI.","DOI":"10.24963\/ijcai.2019\/757"}],"event":{"name":"KDD '21: The 27th ACM SIGKDD Conference on Knowledge Discovery and Data Mining","location":"Virtual Event Singapore","acronym":"KDD '21","sponsor":["SIGMOD ACM Special Interest Group on Management of Data","SIGKDD ACM Special Interest Group on Knowledge Discovery in Data"]},"container-title":["Proceedings of the 27th ACM SIGKDD Conference on Knowledge Discovery &amp; Data Mining"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3447548.3467390","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/abs\/10.1145\/3447548.3467390","content-type":"text\/html","content-version":"vor","intended-application":"syndication"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3447548.3467390","content-type":"application\/pdf","content-version":"vor","intended-application":"syndication"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3447548.3467390","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,17]],"date-time":"2025-06-17T20:18:36Z","timestamp":1750191516000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3447548.3467390"}},"subtitle":["Personalized Text Generation Attack on Deep Sequence Embedding-based Classification Models"],"short-title":[],"issued":{"date-parts":[[2021,8,14]]},"references-count":30,"alternative-id":["10.1145\/3447548.3467390","10.1145\/3447548"],"URL":"https:\/\/doi.org\/10.1145\/3447548.3467390","relation":{},"subject":[],"published":{"date-parts":[[2021,8,14]]},"assertion":[{"value":"2021-08-14","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}