Text Adversarial Attacks With Dynamic Outputs
Text adversarial attack methods are typically designed for static scenarios with fixed numbers of output labels and a predefined label space, relying on extensive querying of the victim model (query-based attacks) or the surrogate model (transfer-based attacks). However, real-world applications often involve non-static...