Translate Your Gibberish: Black-Box Adversarial Attack on Machine Translation Systems

被引:0
|
作者
A. Chertkov [1 ]
O. Tsymboi [2 ]
M. Pautov [3 ]
I. Oseledets [1 ]
机构
[1] Skolkovo Institute of Science and Technology,Institute of Numerical Mathematics
[2] Moscow Institute of Physics and Technology,undefined
[3] Russian Academy of Sciences,undefined
[4] AIRI,undefined
关键词
D O I
10.1007/s10958-024-07428-y
中图分类号
学科分类号
摘要
Neural networks are deployed widely in natural language processing tasks on the industrial scale, and perhaps most often they are used as compounds of automatic machine translation systems. In this work, we present a simple approach to fool state of the art machine translation tools in the task of translation from Russian to English and vice versa. Using a novel black-box gradient-free tensor-based optimizer, we show that many online translation tools, such as Google, DeepL, and Yandex, may both produce wrong or offensive translations for nonsensical adversarial input queries and refuse to translate seemingly benign input phrases. This vulnerability may interfere with understanding a new language and simply worsen the user’s experience while using machine translation systems, and, hence, additional improvements of these tools are required to establish better translation.
引用
收藏
页码:221 / 233
页数:12
相关论文
共 50 条
  • [41] Local Black-box Adversarial Attack based on Random Segmentation Channel
    Xu, Li
    Yang, Zejin
    Guo, Huiting
    Wan, Xu
    Fan, Chunlong
    PROCEEDINGS OF THE 2024 27 TH INTERNATIONAL CONFERENCE ON COMPUTER SUPPORTED COOPERATIVE WORK IN DESIGN, CSCWD 2024, 2024, : 1437 - 1442
  • [42] Boosting Black-Box Attack with Partially Transferred Conditional Adversarial Distribution
    Feng, Yan
    Wu, Baoyuan
    Fan, Yanbo
    Liu, Li
    Li, Zhifeng
    Xia, Shu-Tao
    2022 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION (CVPR 2022), 2022, : 15074 - 15083
  • [43] Exploiting the Local Parabolic Landscapes of Adversarial Losses to Accelerate Black-Box Adversarial Attack
    Tran, Hoang
    Lu, Dan
    Zhang, Guannan
    COMPUTER VISION - ECCV 2022, PT V, 2022, 13665 : 317 - 334
  • [44] TSadv: Black-box adversarial attack on time series with local perturbations
    Yang, Wenbo
    Yuan, Jidong
    Wang, Xiaokang
    Zhao, Peixiang
    ENGINEERING APPLICATIONS OF ARTIFICIAL INTELLIGENCE, 2022, 114
  • [45] An adversarial attack on DNN-based black-box object detectors
    Wang, Yajie
    Tan, Yu-an
    Zhang, Wenjiao
    Zhao, Yuhang
    Kuang, Xiaohui
    JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2020, 161
  • [46] TSadv: Black-box adversarial attack on time series with local perturbations
    Yang, Wenbo
    Yuan, Jidong
    Wang, Xiaokang
    Zhao, Peixiang
    ENGINEERING APPLICATIONS OF ARTIFICIAL INTELLIGENCE, 2022, 114
  • [47] Data-free Universal Adversarial Perturbation and Black-box Attack
    Zhang, Chaoning
    Benz, Philipp
    Karjauv, Adil
    Kweon, In So
    2021 IEEE/CVF INTERNATIONAL CONFERENCE ON COMPUTER VISION (ICCV 2021), 2021, : 7848 - 7857
  • [48] Dual stage black-box adversarial attack against vision transformer
    Wang, Fan
    Shao, Mingwen
    Meng, Lingzhuang
    Liu, Fukang
    INTERNATIONAL JOURNAL OF MACHINE LEARNING AND CYBERNETICS, 2024, 15 (08) : 3367 - 3378
  • [49] Targeted Black-Box Adversarial Attack Method for Image Classification Models
    Zheng, Su
    Chen, Jialin
    Wang, Lingli
    2019 INTERNATIONAL JOINT CONFERENCE ON NEURAL NETWORKS (IJCNN), 2019,
  • [50] Black-Box Audio Adversarial Attack Using Particle Swarm Optimization
    Mun, Hyunjun
    Seo, Sunggwan
    Son, Baehoon
    Yun, Joobeom
    IEEE ACCESS, 2022, 10 : 23532 - 23544