Topic: #spam-filters

Defeating Bayesian Spam Filters


This 2005 paper is a kind of precursor to the current literature about adversarial examples: It shows how to modify an e-mail that a naive Bayesian spam filter correctly classifies as spam so as to induce the same filter to misclassify it as ham. The modification consists in replacing a small number of words.

“Adversarial Learning”
Daniel Lowd and Christopher Meek, ACM Conference on Knowledge Discovery and Data Mining, August 2005

#adversarial-examples #spam-filters #Bayesian-models

John David Stone

created June 1, 2014 · last revised December 10, 2018