Defending Against Poisoning Attacks in Open-Domain Question Answering

12/20/2022
by   Orion Weller, et al.
3

Recent work in open-domain question answering (ODQA) has shown that adversarial poisoning of the input contexts can cause large drops in accuracy for production systems. However, little to no work has proposed methods to defend against these attacks. To do so, we introduce a new method that uses query augmentation to search for a diverse set of retrieved passages that could answer the original question. We integrate these new passages into the model through the design of a novel confidence method, comparing the predicted answer to its appearance in the retrieved contexts (what we call Confidence from Answer Redundancy, e.g. CAR). Together these methods allow for a simple but effective way to defend against poisoning attacks and provide gains of 5-20 exact match across varying levels of data poisoning.

READ FULL TEXT
research
01/01/2021

Reader-Guided Passage Reranking for Open-Domain Question Answering

Current open-domain question answering (QA) systems often follow a Retri...
research
10/27/2022

TASA: Deceiving Question Answering Models by Twin Answer Sentences Attack

We present Twin Answer Sentences Attack (TASA), an adversarial attack me...
research
06/02/2021

Knowing More About Questions Can Help: Improving Calibration in Question Answering

We study calibration in question answering, estimating whether model cor...
research
05/27/2020

Sybil-proof Answer Querying Mechanism

We study a question answering problem on a social network, where a reque...
research
09/23/2021

Towards Universal Dense Retrieval for Open-domain Question Answering

In open-domain question answering, a model receives a text question as i...
research
11/18/2022

FiE: Building a Global Probability Space by Leveraging Early Fusion in Encoder for Open-Domain Question Answering

Generative models have recently started to outperform extractive models ...
research
03/06/2023

Confidence-based Event-centric Online Video Question Answering on a Newly Constructed ATBS Dataset

Deep neural networks facilitate video question answering (VideoQA), but ...

Please sign up or login with your details

Forgot password? Click here to reset