Papers
Topics
Authors
Recent
Gemini 2.5 Flash
Gemini 2.5 Flash
41 tokens/sec
GPT-4o
59 tokens/sec
Gemini 2.5 Pro Pro
41 tokens/sec
o3 Pro
7 tokens/sec
GPT-4.1 Pro
50 tokens/sec
DeepSeek R1 via Azure Pro
28 tokens/sec
2000 character limit reached

Stumbling Blocks: Stress Testing the Robustness of Machine-Generated Text Detectors Under Attacks (2402.11638v1)

Published 18 Feb 2024 in cs.CL

Abstract: The widespread use of LLMs is increasing the demand for methods that detect machine-generated text to prevent misuse. The goal of our study is to stress test the detectors' robustness to malicious attacks under realistic scenarios. We comprehensively study the robustness of popular machine-generated text detectors under attacks from diverse categories: editing, paraphrasing, prompting, and co-generating. Our attacks assume limited access to the generator LLMs, and we compare the performance of detectors on different attacks under different budget levels. Our experiments reveal that almost none of the existing detectors remain robust under all the attacks, and all detectors exhibit different loopholes. Averaging all detectors, the performance drops by 35% across all attacks. Further, we investigate the reasons behind these defects and propose initial out-of-the-box patches to improve robustness.

User Edit Pencil Streamline Icon: https://streamlinehq.com
Authors (8)
  1. Yichen Wang (61 papers)
  2. Shangbin Feng (53 papers)
  3. Abe Bohan Hou (6 papers)
  4. Xiao Pu (16 papers)
  5. Chao Shen (168 papers)
  6. Xiaoming Liu (145 papers)
  7. Yulia Tsvetkov (142 papers)
  8. Tianxing He (36 papers)
Citations (12)