Over the past few years, various word-level textual attack approaches have been proposed to reveal vulnerability of deep neural networks used in natural language processing. Typically, these involve an important optimization step determine which substitute be for each word original input. However, current research on this is still rather limited, from perspectives both problem-understanding and...