(5/5) We then propose two approaches to improve robustness: MAS augments input data with synonyms to increase lexical variation during training, and ADV uses adversarial training. Both are pretty effective at improving the performance. See the paper for more detail: