Adversarial Sample Generation Method for Spam SMS Classification

被引:0
|
作者
Su, Ling [1 ]
Liu, Yu [1 ]
Chen, Feiyan [1 ]
Zhang, Yingqi [1 ]
Zhao, Haiming [1 ]
Long, Yujie [1 ]
机构
[1] Hubei Normal Univ, Coll Comp & Informat Engn, Huangshi, Hubei, Peoples R China
关键词
Adversarial samples; Spam messages; Attention mechanism; Black-box attack;
D O I
10.1109/WI-IAT55865.2022.00149
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Research shows that adding small perturbation information to the deep neural network (DNN) can lead to DNN classification errors, which is called an adversarial sample attack. Adversarial sample attack also exists in the detection of spam messages in deep neural networks. Therefore, this paper proposes an adversarial sample generation method SWordAttacker for spam messages in the black-box situation. This method designed a new calculation method of word importance, found key clauses by combining attention mechanisms, and used the scoring function to find keywords in key clauses. Finally, the adversarial samples were generated by combining attack strategies such as insertion, exchange, and similar substitution. The experiments were conducted on two DNN models, long-short memory networks(LSTM) and convolutional neural networks(CNN), using short message service(SMS) Spam datasets, and AG's News datasets to verify the effectiveness of the proposed method. The experimental results show that SWordAttacker can greatly reduce the accuracy of the model with small perturbations and improve efficiency.
引用
收藏
页码:922 / 929
页数:8
相关论文
共 50 条
  • [1] Open-Category Classification by Adversarial Sample Generation
    Yu, Yang
    Qu, Wei-Yang
    Li, Nan
    Guo, Zimin
    PROCEEDINGS OF THE TWENTY-SIXTH INTERNATIONAL JOINT CONFERENCE ON ARTIFICIAL INTELLIGENCE, 2017, : 3357 - 3363
  • [2] A Game Model for Adversarial Classification in Spam Filtering
    Deng, Wei
    Qu, Zehui
    Ye, Li
    Qin, Zhiguang
    MATERIALS SCIENCE AND INFORMATION TECHNOLOGY, PTS 1-8, 2012, 433-440 : 5053 - 5057
  • [3] Rule-based adversarial sample generation for text classification
    Zhou, Nai
    Yao, Nianmin
    Zhao, Jian
    Zhang, Yanan
    NEURAL COMPUTING & APPLICATIONS, 2022, 34 (13): : 10575 - 10586
  • [4] Rule-based adversarial sample generation for text classification
    Nai Zhou
    Nianmin Yao
    Jian Zhao
    Yanan Zhang
    Neural Computing and Applications, 2022, 34 : 10575 - 10586
  • [5] A deep learning method for automatic SMS spam classification: Performance of learning algorithms on indigenous dataset
    Abayomi-Alli, Olusola
    Misra, Sanjay
    Abayomi-Alli, Adebayo
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2022, 34 (17):
  • [6] Adversarial Sample Generation Method Based on Chinese Features
    Li X.-G.
    Luo H.
    Sun Y.
    Ruan Jian Xue Bao/Journal of Software, 2023, 34 (11): : 5143 - 5161
  • [7] SMS Spam Filtering based on Text Classification and Expert System
    Bozan, Yavuz Selim
    Coban, Onder
    Ozyer, Gulsah Tumuklu
    Ozyer, Baris
    2015 23RD SIGNAL PROCESSING AND COMMUNICATIONS APPLICATIONS CONFERENCE (SIU), 2015, : 2345 - 2348
  • [8] Multiclass SMS Message Categorization: Beyond Spam Binary Classification
    Dewi, Fatia Kusuma
    Fadhlurrahman, Mgs M. Rizqi
    Rahmanianto, Mohamad Dwiyan
    Mahendra, Rahmad
    2017 INTERNATIONAL CONFERENCE ON ADVANCED COMPUTER SCIENCE AND INFORMATION SYSTEMS (ICACSIS), 2017, : 210 - 215
  • [9] A Method of SMS Spam Filtering Based on AdaBoost Algorithm
    Zhang, Xipeng
    Xiong, Gang
    Hu, Yuexiang
    Zhu, Fenghua
    Dong, Xisong
    Nyberg, Timo R.
    PROCEEDINGS OF THE 2016 12TH WORLD CONGRESS ON INTELLIGENT CONTROL AND AUTOMATION (WCICA), 2016, : 2328 - 2332
  • [10] Supervised Generative Adversarial Network Based Sample Generation for Scene Classification
    Han, Wei
    Feng, Ruyi
    Wang, Lizhe
    Chen, Jia
    2019 IEEE INTERNATIONAL GEOSCIENCE AND REMOTE SENSING SYMPOSIUM (IGARSS 2019), 2019, : 3041 - 3044