Research Article
Medical Specialty Classification Based on Semiadversarial Data Augmentation
Table 1
The performance of different attacks.
| ||||||||||||||||||||||||||||||||||||||||
The victim model is BioBERT trained on the medical specialty classification dataset. Time is execution times for each method that attacks BioBERT based on 1000 test examples by the plain way and the proposed method. #Query is the number of queries that methods require for the victim model. To make a fair comparison, MSAA is simplified by SemiADA that just generates adversarial examples but does not save the intermediate perturbed examples. |