Research Article

Medical Specialty Classification Based on Semiadversarial Data Augmentation

Table 5

The robustness experiment results of the plain training mode and SemiADA + PI training mode, including accuracy under attack (AUA %) and attack successful rate (ASR %).

AttacksPlainSemiADA + PI
AUA %ASR%AUA %ASR%

None73.087.7
Textfooler [43]20.172.465.726.2
Deepwordbug [44]37.448.659.632.0
Textbugger [45]40.643.066.024.9
BERT-attack [37]17.276.440.953.6

The black bold values denote the stronger robustness capability among two modes.