Papers
Topics
Authors
Recent
Gemini 2.5 Flash
Gemini 2.5 Flash
41 tokens/sec
GPT-4o
59 tokens/sec
Gemini 2.5 Pro Pro
41 tokens/sec
o3 Pro
7 tokens/sec
GPT-4.1 Pro
50 tokens/sec
DeepSeek R1 via Azure Pro
28 tokens/sec
2000 character limit reached

Adversarial Attacks on Tables with Entity Swap (2309.08650v1)

Published 15 Sep 2023 in cs.CL, cs.AI, and cs.CR

Abstract: The capabilities of LLMs have been successfully applied in the context of table representation learning. The recently proposed tabular LLMs have reported state-of-the-art results across various tasks for table interpretation. However, a closer look into the datasets commonly used for evaluation reveals an entity leakage from the train set into the test set. Motivated by this observation, we explore adversarial attacks that represent a more realistic inference setup. Adversarial attacks on text have been shown to greatly affect the performance of LLMs, but currently, there are no attacks targeting tabular LLMs. In this paper, we propose an evasive entity-swap attack for the column type annotation (CTA) task. Our CTA attack is the first black-box attack on tables, where we employ a similarity-based sampling strategy to generate adversarial examples. The experimental results show that the proposed attack generates up to a 70% drop in performance.

User Edit Pencil Streamline Icon: https://streamlinehq.com
Authors (3)
  1. Aneta Koleva (6 papers)
  2. Martin Ringsquandl (14 papers)
  3. Volker Tresp (158 papers)
Citations (2)