Attack Named Entity Recognition by Entity Boundary Interference

05/09/2023
by   Yifei Yang, et al.
0

Named Entity Recognition (NER) is a cornerstone NLP task while its robustness has been given little attention. This paper rethinks the principles of NER attacks derived from sentence classification, as they can easily violate the label consistency between the original and adversarial NER examples. This is due to the fine-grained nature of NER, as even minor word changes in the sentence can result in the emergence or mutation of any entities, resulting in invalid adversarial examples. To this end, we propose a novel one-word modification NER attack based on a key insight, NER models are always vulnerable to the boundary position of an entity to make their decision. We thus strategically insert a new boundary into the sentence and trigger the Entity Boundary Interference that the victim model makes the wrong prediction either on this boundary word or on other words in the sentence. We call this attack Virtual Boundary Attack (ViBA), which is shown to be remarkably effective when attacking both English and Chinese models with a 70 success rate on state-of-the-art language models (e.g. RoBERTa, DeBERTa) and also significantly faster than previous methods.

READ FULL TEXT
research
07/17/2017

Neural Reranking for Named Entity Recognition

We propose a neural reranking system for named entity recognition (NER)....
research
04/26/2022

Boundary Smoothing for Named Entity Recognition

Neural named entity recognition (NER) models may easily encounter the ov...
research
09/16/2023

Context-aware Adversarial Attack on Named Entity Recognition

In recent years, large pre-trained language models (PLMs) have achieved ...
research
09/30/2018

Neural Entity Reasoner for Global Consistency in NER

We propose Neural Entity Reasoner (NE-Reasoner), a framework to introduc...
research
09/23/2021

Breaking BERT: Understanding its Vulnerabilities for Biomedical Named Entity Recognition through Adversarial Attack

Biomedical named entity recognition (NER) is a key task in the extractio...
research
04/23/2020

On Adversarial Examples for Biomedical NLP Tasks

The success of pre-trained word embeddings has motivated its use in task...
research
11/04/2022

Unintended Memorization and Timing Attacks in Named Entity Recognition Models

Named entity recognition models (NER), are widely used for identifying n...

Please sign up or login with your details

Forgot password? Click here to reset