{"id":"https://openalex.org/W4376132596","doi":"https://doi.org/10.1109/tpami.2023.3274759","title":"Influence-Driven Data Poisoning for Robust Recommender Systems","display_name":"Influence-Driven Data Poisoning for Robust Recommender Systems","publication_year":2023,"publication_date":"2023-05-11","ids":{"openalex":"https://openalex.org/W4376132596","doi":"https://doi.org/10.1109/tpami.2023.3274759","pmid":"https://pubmed.ncbi.nlm.nih.gov/37163407"},"language":"en","primary_location":{"id":"doi:10.1109/tpami.2023.3274759","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tpami.2023.3274759","pdf_url":null,"source":{"id":"https://openalex.org/S199944782","display_name":"IEEE Transactions on Pattern Analysis and Machine Intelligence","issn_l":"0162-8828","issn":["0162-8828","1939-3539","2160-9292"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320439","host_organization_name":"IEEE Computer Society","host_organization_lineage":["https://openalex.org/P4310320439","https://openalex.org/P4310319808"],"host_organization_lineage_names":["IEEE Computer Society","Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Pattern Analysis and Machine Intelligence","raw_type":"journal-article"},"type":"article","indexed_in":["crossref","pubmed"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5033069158","display_name":"Chenwang Wu","orcid":"https://orcid.org/0000-0003-4937-0590"},"institutions":[{"id":"https://openalex.org/I126520041","display_name":"University of Science and Technology of China","ror":"https://ror.org/04c4dkn09","country_code":"CN","type":"education","lineage":["https://openalex.org/I126520041","https://openalex.org/I19820366"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Chenwang Wu","raw_affiliation_strings":["School of Data Science, University of Science and Technology of China, Hefei, Anhui, China"],"affiliations":[{"raw_affiliation_string":"School of Data Science, University of Science and Technology of China, Hefei, Anhui, China","institution_ids":["https://openalex.org/I126520041"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5085254654","display_name":"Defu Lian","orcid":"https://orcid.org/0000-0002-3507-9607"},"institutions":[{"id":"https://openalex.org/I126520041","display_name":"University of Science and Technology of China","ror":"https://ror.org/04c4dkn09","country_code":"CN","type":"education","lineage":["https://openalex.org/I126520041","https://openalex.org/I19820366"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Defu Lian","raw_affiliation_strings":["Anhui Province Key Laboratory of Big Data Analysis and Application, School of Computer Science and Technology, University of Science and Technology of China, Hefei, Anhui, China"],"affiliations":[{"raw_affiliation_string":"Anhui Province Key Laboratory of Big Data Analysis and Application, School of Computer Science and Technology, University of Science and Technology of China, Hefei, Anhui, China","institution_ids":["https://openalex.org/I126520041"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101744165","display_name":"Yong Ge","orcid":"https://orcid.org/0000-0001-8094-4180"},"institutions":[{"id":"https://openalex.org/I138006243","display_name":"University of Arizona","ror":"https://ror.org/03m2x1q45","country_code":"US","type":"education","lineage":["https://openalex.org/I138006243"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Yong Ge","raw_affiliation_strings":["Eller College of Management, University of Arizona, Tucson, AZ, USA"],"affiliations":[{"raw_affiliation_string":"Eller College of Management, University of Arizona, Tucson, AZ, USA","institution_ids":["https://openalex.org/I138006243"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5048511473","display_name":"Zhihao Zhu","orcid":"https://orcid.org/0000-0001-5814-1939"},"institutions":[{"id":"https://openalex.org/I126520041","display_name":"University of Science and Technology of China","ror":"https://ror.org/04c4dkn09","country_code":"CN","type":"education","lineage":["https://openalex.org/I126520041","https://openalex.org/I19820366"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Zhihao Zhu","raw_affiliation_strings":["School of Data Science, University of Science and Technology of China, Hefei, Anhui, China"],"affiliations":[{"raw_affiliation_string":"School of Data Science, University of Science and Technology of China, Hefei, Anhui, China","institution_ids":["https://openalex.org/I126520041"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5048237545","display_name":"Enhong Chen","orcid":"https://orcid.org/0000-0002-4835-4102"},"institutions":[{"id":"https://openalex.org/I126520041","display_name":"University of Science and Technology of China","ror":"https://ror.org/04c4dkn09","country_code":"CN","type":"education","lineage":["https://openalex.org/I126520041","https://openalex.org/I19820366"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Enhong Chen","raw_affiliation_strings":["Anhui Province Key Laboratory of Big Data Analysis and Application, School of Computer Science and Technology, University of Science and Technology of China, Hefei, Anhui, China"],"affiliations":[{"raw_affiliation_string":"Anhui Province Key Laboratory of Big Data Analysis and Application, School of Computer Science and Technology, University of Science and Technology of China, Hefei, Anhui, China","institution_ids":["https://openalex.org/I126520041"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5033069158"],"corresponding_institution_ids":["https://openalex.org/I126520041"],"apc_list":null,"apc_paid":null,"fwci":19.0042,"has_fulltext":false,"cited_by_count":42,"citation_normalized_percentile":{"value":0.99289803,"is_in_top_1_percent":true,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":97,"max":100},"biblio":{"volume":"45","issue":"10","first_page":"11915","last_page":"11931"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11644","display_name":"Spam and Phishing Detection","score":0.9980000257492065,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11644","display_name":"Spam and Phishing Detection","score":0.9980000257492065,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11273","display_name":"Advanced Graph Neural Networks","score":0.9972000122070312,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10664","display_name":"Sentiment Analysis and Opinion Mining","score":0.9952999949455261,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8033713102340698},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.7439864873886108},{"id":"https://openalex.org/keywords/recommender-system","display_name":"Recommender system","score":0.7207883596420288},{"id":"https://openalex.org/keywords/harm","display_name":"Harm","score":0.542185366153717},{"id":"https://openalex.org/keywords/counterintuitive","display_name":"Counterintuitive","score":0.4955681562423706},{"id":"https://openalex.org/keywords/generator","display_name":"Generator (circuit theory)","score":0.4878285229206085},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.44950544834136963},{"id":"https://openalex.org/keywords/empirical-research","display_name":"Empirical research","score":0.4328610897064209},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.41753843426704407},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.38072454929351807},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.34181204438209534}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8033713102340698},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.7439864873886108},{"id":"https://openalex.org/C557471498","wikidata":"https://www.wikidata.org/wiki/Q554950","display_name":"Recommender system","level":2,"score":0.7207883596420288},{"id":"https://openalex.org/C2777363581","wikidata":"https://www.wikidata.org/wiki/Q15098235","display_name":"Harm","level":2,"score":0.542185366153717},{"id":"https://openalex.org/C101097943","wikidata":"https://www.wikidata.org/wiki/Q5176983","display_name":"Counterintuitive","level":2,"score":0.4955681562423706},{"id":"https://openalex.org/C2780992000","wikidata":"https://www.wikidata.org/wiki/Q17016113","display_name":"Generator (circuit theory)","level":3,"score":0.4878285229206085},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.44950544834136963},{"id":"https://openalex.org/C120936955","wikidata":"https://www.wikidata.org/wiki/Q2155640","display_name":"Empirical research","level":2,"score":0.4328610897064209},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.41753843426704407},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.38072454929351807},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.34181204438209534},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.0},{"id":"https://openalex.org/C199539241","wikidata":"https://www.wikidata.org/wiki/Q7748","display_name":"Law","level":1,"score":0.0},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C111472728","wikidata":"https://www.wikidata.org/wiki/Q9471","display_name":"Epistemology","level":1,"score":0.0},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0},{"id":"https://openalex.org/C163258240","wikidata":"https://www.wikidata.org/wiki/Q25342","display_name":"Power (physics)","level":2,"score":0.0},{"id":"https://openalex.org/C17744445","wikidata":"https://www.wikidata.org/wiki/Q36442","display_name":"Political science","level":0,"score":0.0},{"id":"https://openalex.org/C138885662","wikidata":"https://www.wikidata.org/wiki/Q5891","display_name":"Philosophy","level":0,"score":0.0},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0},{"id":"https://openalex.org/C62520636","wikidata":"https://www.wikidata.org/wiki/Q944","display_name":"Quantum mechanics","level":1,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1109/tpami.2023.3274759","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tpami.2023.3274759","pdf_url":null,"source":{"id":"https://openalex.org/S199944782","display_name":"IEEE Transactions on Pattern Analysis and Machine Intelligence","issn_l":"0162-8828","issn":["0162-8828","1939-3539","2160-9292"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320439","host_organization_name":"IEEE Computer Society","host_organization_lineage":["https://openalex.org/P4310320439","https://openalex.org/P4310319808"],"host_organization_lineage_names":["IEEE Computer Society","Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Pattern Analysis and Machine Intelligence","raw_type":"journal-article"},{"id":"pmid:37163407","is_oa":false,"landing_page_url":"https://pubmed.ncbi.nlm.nih.gov/37163407","pdf_url":null,"source":{"id":"https://openalex.org/S4306525036","display_name":"PubMed","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I1299303238","host_organization_name":"National Institutes of Health","host_organization_lineage":["https://openalex.org/I1299303238"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE transactions on pattern analysis and machine intelligence","raw_type":null}],"best_oa_location":null,"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/16","score":0.5600000023841858,"display_name":"Peace, Justice and strong institutions"}],"awards":[{"id":"https://openalex.org/G3179083445","display_name":null,"funder_award_id":"62022077","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G4799459813","display_name":null,"funder_award_id":"61976198","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":81,"referenced_works":["https://openalex.org/W107297539","https://openalex.org/W392919349","https://openalex.org/W1987431925","https://openalex.org/W1989279326","https://openalex.org/W2019313057","https://openalex.org/W2022613648","https://openalex.org/W2029424893","https://openalex.org/W2048672094","https://openalex.org/W2054141820","https://openalex.org/W2069480896","https://openalex.org/W2072651985","https://openalex.org/W2110096996","https://openalex.org/W2117017885","https://openalex.org/W2133699849","https://openalex.org/W2137028279","https://openalex.org/W2152208379","https://openalex.org/W2463645429","https://openalex.org/W2509109313","https://openalex.org/W2597603852","https://openalex.org/W2604662567","https://openalex.org/W2605350416","https://openalex.org/W2613314732","https://openalex.org/W2614794251","https://openalex.org/W2765407302","https://openalex.org/W2794121917","https://openalex.org/W2798868970","https://openalex.org/W2799032844","https://openalex.org/W2801109448","https://openalex.org/W2890884621","https://openalex.org/W2892160417","https://openalex.org/W2897212375","https://openalex.org/W2903574258","https://openalex.org/W2903665338","https://openalex.org/W2913696151","https://openalex.org/W2950491307","https://openalex.org/W2954667104","https://openalex.org/W2962907114","https://openalex.org/W2964218010","https://openalex.org/W2972630152","https://openalex.org/W2972646741","https://openalex.org/W2972965281","https://openalex.org/W2997340900","https://openalex.org/W3012794253","https://openalex.org/W3012798016","https://openalex.org/W3025378468","https://openalex.org/W3031339255","https://openalex.org/W3034339445","https://openalex.org/W3034758058","https://openalex.org/W3035258980","https://openalex.org/W3035298482","https://openalex.org/W3048511744","https://openalex.org/W3080292238","https://openalex.org/W3084139925","https://openalex.org/W3101291735","https://openalex.org/W3102030627","https://openalex.org/W3103801215","https://openalex.org/W3104774544","https://openalex.org/W3104956872","https://openalex.org/W3119520312","https://openalex.org/W3133578111","https://openalex.org/W3133706083","https://openalex.org/W3136856676","https://openalex.org/W3156766660","https://openalex.org/W3170976035","https://openalex.org/W3175142666","https://openalex.org/W3202472958","https://openalex.org/W4221150126","https://openalex.org/W4293846201","https://openalex.org/W6604367445","https://openalex.org/W6613483283","https://openalex.org/W6725794477","https://openalex.org/W6734641875","https://openalex.org/W6735632633","https://openalex.org/W6739868092","https://openalex.org/W6745136726","https://openalex.org/W6773424267","https://openalex.org/W6777413920","https://openalex.org/W6779361924","https://openalex.org/W6782505119","https://openalex.org/W6785012031","https://openalex.org/W6810055804"],"related_works":["https://openalex.org/W2809491669","https://openalex.org/W3005839474","https://openalex.org/W4379988549","https://openalex.org/W2139510495","https://openalex.org/W2016376779","https://openalex.org/W1992379025","https://openalex.org/W2768389068","https://openalex.org/W2403993643","https://openalex.org/W2118007841","https://openalex.org/W2906574076"],"abstract_inverted_index":{"Recent":[0],"studies":[1],"have":[2],"shown":[3],"that":[4],"recommender":[5,105],"systems":[6,163],"are":[7],"vulnerable,":[8],"and":[9,34,57,88,242],"it":[10,40],"is":[11,110],"easy":[12],"for":[13,112],"attackers":[14],"to":[15,42,66,103,191,195,201,209],"inject":[16],"well-designed":[17],"malicious":[18],"profiles":[19],"into":[20],"the":[21,53,58,94,100,104,132,135,141,148,181,206,211,220],"system,":[22],"resulting":[23],"in":[24,227,235],"biased":[25],"recommendations.":[26],"We":[27],"cannot":[28],"deprive":[29],"these":[30],"data's":[31],"injection":[32],"right":[33],"deny":[35],"their":[36],"existence's":[37],"rationality,":[38],"making":[39],"imperative":[41],"study":[43],"recommendation":[44,162,237],"robustness.":[45],"Despite":[46],"impressive":[47],"emerging":[48],"work,":[49],"threat":[50,86,136],"assessment":[51],"of":[52,60,83,134,215,222],"bi-level":[54,212],"poisoning":[55,61,77,176,182],"problem":[56],"imperceptibility":[59],"users":[62,142,187],"remain":[63],"key":[64],"challenges":[65],"be":[67],"solved.":[68],"To":[69],"this":[70],"end,":[71],"we":[72,169,203,231],"propose":[73,170],"Infmix,":[74,202],"an":[75,84],"efficient":[76],"attack":[78],"strategy.":[79],"Specifically,":[80],"Infmix":[81,138],"consists":[82],"influence-based":[85,95],"estimator":[87,96],"a":[89,117,127,171,197],"user":[90],"generator,":[91,119],"Usermix.":[92,153],"First,":[93],"can":[97,120,139],"efficiently":[98],"evaluate":[99],"user's":[101],"harm":[102],"system":[106],"without":[107],"retraining,":[108],"which":[109],"challenging":[111],"existing":[113],"attacks.":[114],"Second,":[115],"Usermix,":[116],"distribution-agnostic":[118],"generate":[121],"unnoticeable":[122],"fake":[123,186],"data":[124],"even":[125],"with":[126,143,164,225],"few":[128],"known":[129],"users.":[130,218],"Under":[131],"guidance":[133],"estimator,":[137],"select":[140],"large":[144],"attacking":[145,160],"impacts":[146],"from":[147],"quasi-real":[149],"candidates":[150],"generated":[151],"by":[152,159,184],"Extensive":[154],"experiments":[155],"demonstrate":[156],"Infmix's":[157],"superiority":[158],"six":[161],"four":[165],"real":[166],"datasets.":[167],"Additionally,":[168],"novel":[172],"defense":[173],"strategy,":[174],"adversarial":[175],"training":[177],"(APT).":[178],"It":[179],"mimics":[180],"process":[183],"injecting":[185],"(ERM":[188],"users)":[189],"committed":[190],"minimizing":[192],"empirical":[193,243],"risk":[194],"build":[196],"robust":[198],"system.":[199],"Similar":[200],"also":[204],"utilize":[205],"influence":[207],"function":[208],"solve":[210],"optimization":[213],"challenge":[214],"generating":[216],"ERM":[217],"Although":[219],"idea":[221],"\"fighting":[223],"fire":[224],"fire\"":[226],"APT":[228],"seems":[229],"counterintuitive,":[230],"prove":[232],"its":[233],"effectiveness":[234],"improving":[236],"robustness":[238],"through":[239],"theoretical":[240],"analysis":[241],"experiments.":[244]},"counts_by_year":[{"year":2026,"cited_by_count":4},{"year":2025,"cited_by_count":21},{"year":2024,"cited_by_count":13},{"year":2023,"cited_by_count":4}],"updated_date":"2026-04-12T07:58:50.170612","created_date":"2025-10-10T00:00:00"}
