Skip to main navigation Skip to search Skip to main content

GraphRAG-Based NLP at Risk: Graphemic Dot-Level Adversarial Attack on Arabic Sentiment and LLM Retrieval-Augmented Models

Research output: Chapter in Book/Report/Conference proceedingConference contribution

Abstract

While research on adversarial attacks has advanced significantly, most studies on Natural Language Processing (NLP) have predominantly focused on English, leaving the vulnerabilities of models trained on other languages largely unexplored. These attacks pose a direct challenge to the reliability of AI systems used to interpret Arabic-language content on social media platforms, where sentiment analysis and content moderation tools are routinely deployed. This study introduces a novel graphemic dot-level adversarial attack specifically designed to target large language models (LLMs) trained on Arabic text. Unlike traditional adversarial attacks, our method manipulates dots within Arabic characters, leveraging common spelling errors made by non-native Arabic speakers to create imperceptible, deceptive, and highly effective adversarial examples. These modifications, though minimal, significantly degrade the performance of widely used Arabic text Machine Learning (ML) classifiers such as sentiment analysis models, and the responses of LLMs such as GPT-4o-mini used in LLM-based Retrieval-Augmented Generation (RAG) systems. Our experiments reveal that even advanced LLM-driven retrieval models, which rely on graph knowledge to enhance response accuracy, remain highly susceptible to our fine-grained perturbations. Our results, using Telegram data sets, demonstrate that offensive AI is effective in NLP models for low-resource languages such as Arabic and emphasize the need for defense mechanisms to mitigate the impact of such adversarial manipulations. (The code and data are publicly available in the authors’ GitHub repository)This material is based upon research supported by the U.S. Office of Naval Research under award number N000142212549.)

Original languageEnglish (US)
Title of host publicationSocial Networks Analysis and Mining - 17th International Conference, ASONAM 2025, Proceedings
EditorsAijun An, Alfredo Cuzzocrea, Hongxin Hu
PublisherSpringer Science and Business Media Deutschland GmbH
Pages252-263
Number of pages12
ISBN (Print)9783032135124
DOIs
StatePublished - 2026
Event17th International Conference on Social Networks Analysis and Mining, ASONAM 2025 - Niagara Falls, Canada
Duration: Aug 25 2025Aug 28 2025

Publication series

NameLecture Notes in Computer Science
Volume16322 LNCS
ISSN (Print)0302-9743
ISSN (Electronic)1611-3349

Conference

Conference17th International Conference on Social Networks Analysis and Mining, ASONAM 2025
Country/TerritoryCanada
CityNiagara Falls
Period8/25/258/28/25

Keywords

  • AI
  • Adversarial attacks
  • Large language models
  • RAG
  • Sentiment analysis

ASJC Scopus subject areas

  • Theoretical Computer Science
  • General Computer Science

Fingerprint

Dive into the research topics of 'GraphRAG-Based NLP at Risk: Graphemic Dot-Level Adversarial Attack on Arabic Sentiment and LLM Retrieval-Augmented Models'. Together they form a unique fingerprint.

Cite this