Article

A Comprehensive Analysis of Adversarial Attacks against Spam Filters

Details

Citation

Hotoğlu E, Sen S & Can B (2026) A Comprehensive Analysis of Adversarial Attacks against Spam Filters. Computers and Security, 171, Art. No.: 105066. https://doi.org/10.1016/j.cose.2026.105066

Abstract
Deep learning has revolutionized email filtering, which is critical to protect users from cyber threats such as spam, malware, and phishing. However, the increasing sophistication of adversarial attacks poses a significant challenge to the effectiveness of these filters. This study investigates the impact of adversarial attacks on deep learning-based spam detection systems using real-world datasets. Six prominent deep learning models are evaluated on these datasets, analyzing attacks at the word, character sentence, and AI-generated paragraph-levels. Novel scoring functions, including spam weights and attention weights, are introduced to improve attack effectiveness. A key contribution of this study is the analysis of spam-weight-and attention-weight-based scoring functions, highlighting their role in improving the effectiveness and efficiency of adversarial attacks. This comprehensive analysis sheds light on the vulnerabilities of spam filters and contributes to efforts to improve their security against evolving adversarial threats. Experimental results show that word-and sentence-level attacks markedly increase false negatives, while character-level perturbations disrupt token representations with minimal semantic change. AI-generated paragraph-level attacks remain challenging even for transformer-based models. In addition, spam-weight-based scoring consistently enables more effective adversarial attacks than alternative scoring strategies with lower computational cost.

Keywords
Email security; Spam detection; Adversarial learning; Natural language processing; Deep learning * Corresponding author

Notes
(Sevil Sen)

StatusPublished
FundersUniversity of Stirling
Publication date31/12/2026
Publication date online31/07/2026
Date accepted by journal12/07/2026
ISSN0167-4048

People (1)

Dr Burcu Can Buglalilar

Dr Burcu Can Buglalilar

Senior Lecturer, Computing Science