The following publications are possibly variants of this publication:
- Weight Perturbation as Defense against Adversarial Word SubstitutionsJianhan Xu, Linyang Li, Jiping Zhang, Xiaoqing Zheng, Kai-Wei Chang, Cho-Jui Hsieh, Xuanjing Huang. emnlp 2022: 7054-7063 [doi]
- Searching for an Effective Defender: Benchmarking Defense against Adversarial Word SubstitutionZongyi Li, Jianhan Xu, Jiehang Zeng, Linyang Li, Xiaoqing Zheng, Qi Zhang, Kai-Wei Chang, Cho-Jui Hsieh. emnlp 2021: 3137-3147 [doi]
- Joint contrastive learning and frequency domain defense against adversarial examplesJin Yang, Zhi Li, Shuaiwei Liu, Bo Hong, Weidong Wang. nca, 35(25):18623-18639, September 2023. [doi]