Generative Adversarial Examples for Text Classification, Moustafa Alzantot, Yash Sharma, Ahmed Elgohary, Bo-Jhang Ho, Mani Srivastava, Kai-Wei Chang, 2018EMNLP 2018 (Conference on Empirical Methods in Natural Language Processing)DOI: 10.48550/arXiv.1804.07998 - Introduces a pioneering word-level adversarial attack (TextFooler) using a genetic algorithm for synonym substitution based on word embeddings.
Is BERT Really Robust? A Strong Baseline for Text Adversarial Attacks, Di Jin, Zhijing Jin, Joey Tianyi Zhou, Peter Szolovits, 2020Proceedings of the AAAI Conference on Artificial Intelligence, Vol. 34DOI: 10.48550/arXiv.1907.11932 - Presents a strong baseline attack (PWWS) for text classification, effectively leveraging contextual embeddings like BERT for more semantic-preserving word substitutions.