no code implementations • 15 Oct 2021 • Tengfei Zhao, Zhaocheng Ge, Hanping Hu, Dingmeng Shi
For instance, it achieves a 100\% attack success rate higher than the state-of-the-art method when attacking BERT and BiLSTM on IMDB, but the number of queries for the victim models only is 1/4 and 1/6. 5 of the state-of-the-art method, respectively.