{"id":"https://openalex.org/W2972646741","doi":"https://doi.org/10.1145/3298689.3347031","title":"Adversarial attacks on an oblivious recommender","display_name":"Adversarial attacks on an oblivious recommender","publication_year":2019,"publication_date":"2019-09-10","ids":{"openalex":"https://openalex.org/W2972646741","doi":"https://doi.org/10.1145/3298689.3347031","mag":"2972646741"},"language":"en","primary_location":{"id":"doi:10.1145/3298689.3347031","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3298689.3347031","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3298689.3347031","source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 13th ACM Conference on Recommender Systems","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"https://dl.acm.org/doi/pdf/10.1145/3298689.3347031","any_repository_has_fulltext":null},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5068681271","display_name":"Konstantina Christakopoulou","orcid":"https://orcid.org/0000-0002-1650-1796"},"institutions":[{"id":"https://openalex.org/I1291425158","display_name":"Google (United States)","ror":"https://ror.org/00njsd438","country_code":"US","type":"company","lineage":["https://openalex.org/I1291425158","https://openalex.org/I4210128969"]},{"id":"https://openalex.org/I130238516","display_name":"University of Minnesota","ror":"https://ror.org/017zqws13","country_code":"US","type":"education","lineage":["https://openalex.org/I130238516"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Konstantina Christakopoulou","raw_affiliation_strings":["Google Inc. and University of Minnesota"],"affiliations":[{"raw_affiliation_string":"Google Inc. and University of Minnesota","institution_ids":["https://openalex.org/I1291425158","https://openalex.org/I130238516"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5014459472","display_name":"Arindam Banerjee","orcid":"https://orcid.org/0000-0002-7856-5699"},"institutions":[{"id":"https://openalex.org/I2800403580","display_name":"University of Minnesota System","ror":"https://ror.org/03grvy078","country_code":"US","type":"education","lineage":["https://openalex.org/I2800403580"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Arindam Banerjee","raw_affiliation_strings":["University of Minnesota"],"affiliations":[{"raw_affiliation_string":"University of Minnesota","institution_ids":["https://openalex.org/I2800403580"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":2,"corresponding_author_ids":["https://openalex.org/A5068681271"],"corresponding_institution_ids":["https://openalex.org/I1291425158","https://openalex.org/I130238516"],"apc_list":null,"apc_paid":null,"fwci":8.0924,"has_fulltext":true,"cited_by_count":107,"citation_normalized_percentile":{"value":0.97930955,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":96,"max":100},"biblio":{"volume":null,"issue":null,"first_page":"322","last_page":"330"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12072","display_name":"Machine Learning and Algorithms","score":0.9977999925613403,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11612","display_name":"Stochastic Gradient Optimization Techniques","score":0.9975000023841858,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.882594108581543},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8265441060066223},{"id":"https://openalex.org/keywords/recommender-system","display_name":"Recommender system","score":0.7854591608047485},{"id":"https://openalex.org/keywords/adversary","display_name":"Adversary","score":0.729583740234375},{"id":"https://openalex.org/keywords/context","display_name":"Context (archaeology)","score":0.5985289812088013},{"id":"https://openalex.org/keywords/focus","display_name":"Focus (optics)","score":0.5629115104675293},{"id":"https://openalex.org/keywords/vulnerability","display_name":"Vulnerability (computing)","score":0.4502425193786621},{"id":"https://openalex.org/keywords/adversarial-machine-learning","display_name":"Adversarial machine learning","score":0.4477616548538208},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.40347617864608765},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.36802589893341064},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.3621724545955658}],"concepts":[{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.882594108581543},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8265441060066223},{"id":"https://openalex.org/C557471498","wikidata":"https://www.wikidata.org/wiki/Q554950","display_name":"Recommender system","level":2,"score":0.7854591608047485},{"id":"https://openalex.org/C41065033","wikidata":"https://www.wikidata.org/wiki/Q2825412","display_name":"Adversary","level":2,"score":0.729583740234375},{"id":"https://openalex.org/C2779343474","wikidata":"https://www.wikidata.org/wiki/Q3109175","display_name":"Context (archaeology)","level":2,"score":0.5985289812088013},{"id":"https://openalex.org/C192209626","wikidata":"https://www.wikidata.org/wiki/Q190909","display_name":"Focus (optics)","level":2,"score":0.5629115104675293},{"id":"https://openalex.org/C95713431","wikidata":"https://www.wikidata.org/wiki/Q631425","display_name":"Vulnerability (computing)","level":2,"score":0.4502425193786621},{"id":"https://openalex.org/C2778403875","wikidata":"https://www.wikidata.org/wiki/Q20312394","display_name":"Adversarial machine learning","level":3,"score":0.4477616548538208},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.40347617864608765},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.36802589893341064},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.3621724545955658},{"id":"https://openalex.org/C86803240","wikidata":"https://www.wikidata.org/wiki/Q420","display_name":"Biology","level":0,"score":0.0},{"id":"https://openalex.org/C120665830","wikidata":"https://www.wikidata.org/wiki/Q14620","display_name":"Optics","level":1,"score":0.0},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.0},{"id":"https://openalex.org/C151730666","wikidata":"https://www.wikidata.org/wiki/Q7205","display_name":"Paleontology","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3298689.3347031","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3298689.3347031","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3298689.3347031","source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 13th ACM Conference on Recommender Systems","raw_type":"proceedings-article"}],"best_oa_location":{"id":"doi:10.1145/3298689.3347031","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3298689.3347031","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3298689.3347031","source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 13th ACM Conference on Recommender Systems","raw_type":"proceedings-article"},"sustainable_development_goals":[{"score":0.6600000262260437,"id":"https://metadata.un.org/sdg/16","display_name":"Peace, Justice and strong institutions"}],"awards":[{"id":"https://openalex.org/G1211320294","display_name":null,"funder_award_id":"IIS-1029711","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G1377627663","display_name":"BIGDATA: F: DKA: Collaborative Research: High-Dimensional Statistical Machine Learning for Spatio-Temporal Climate Data","funder_award_id":"1447566","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G1638804382","display_name":null,"funder_award_id":"44756","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G1648129465","display_name":null,"funder_award_id":"CNS-1314560","funder_id":"https://openalex.org/F4320306101","funder_display_name":"National Aeronautics and Space Administration"},{"id":"https://openalex.org/G208115193","display_name":"TWC: Medium: Collaborative: HIMALAYAS: Hierarchical Machine Learning Stack for Fine-Grained Analysis of Malware Domain Groups","funder_award_id":"1314560","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G2501928946","display_name":null,"funder_award_id":"IIS-1029711","funder_id":"https://openalex.org/F4320306101","funder_display_name":"National Aeronautics and Space Administration"},{"id":"https://openalex.org/G2692851364","display_name":null,"funder_award_id":"IIS-0953274","funder_id":"https://openalex.org/F4320306101","funder_display_name":"National Aeronautics and Space Administration"},{"id":"https://openalex.org/G2781174226","display_name":null,"funder_award_id":"IIS-1563950","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G4319621678","display_name":"BIGDATA: F: DKA: Collaborative Research: High-Dimensional Statistical Machine Learning for Spatio-Temporal Climate Data","funder_award_id":"1447574","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G4753362727","display_name":null,"funder_award_id":"NNX12AQ39A","funder_id":"https://openalex.org/F4320306101","funder_display_name":"National Aeronautics and Space Administration"},{"id":"https://openalex.org/G5521036603","display_name":"III: Medium: Collaborative Research: Bayesian Modeling and Inference for Quantifying Terrestrial Ecosystem Functions","funder_award_id":"1563950","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G590079505","display_name":"RI: Small: Finding Patterns in Complex Data with Probablistic Graphical Models","funder_award_id":"1422557","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G5930584660","display_name":null,"funder_award_id":"1451986","funder_id":"https://openalex.org/F4320306267","funder_display_name":"California Community Foundation"},{"id":"https://openalex.org/G6073761981","display_name":null,"funder_award_id":"CCF-1451986","funder_id":"https://openalex.org/F4320306101","funder_display_name":"National Aeronautics and Space Administration"},{"id":"https://openalex.org/G6139495888","display_name":null,"funder_award_id":"IIS-0953274","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G7227591233","display_name":null,"funder_award_id":"IIS-1447566","funder_id":"https://openalex.org/F4320306101","funder_display_name":"National Aeronautics and Space Administration"},{"id":"https://openalex.org/G7403353761","display_name":null,"funder_award_id":"1447566","funder_id":"https://openalex.org/F4320337389","funder_display_name":"Division of Information and Intelligent Systems"},{"id":"https://openalex.org/G7544741629","display_name":null,"funder_award_id":"IIS-1447566","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G8022001571","display_name":null,"funder_award_id":"1029711","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G8025912458","display_name":null,"funder_award_id":"IIS-1422557","funder_id":"https://openalex.org/F4320306101","funder_display_name":"National Aeronautics and Space Administration"},{"id":"https://openalex.org/G8236381349","display_name":null,"funder_award_id":"IIS-1447574","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G8532230576","display_name":"CAREER: Combinatorial Online Learning and its Applications","funder_award_id":"0953274","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G947792794","display_name":"EAGER: Collaborative Research: Learning Relations between Extreme Weather Events and Planet-Wide Environmental Trends","funder_award_id":"1451986","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"}],"funders":[{"id":"https://openalex.org/F4320306076","display_name":"National Science Foundation","ror":"https://ror.org/021nxhr62"},{"id":"https://openalex.org/F4320306101","display_name":"National Aeronautics and Space Administration","ror":"https://ror.org/027ka1x80"},{"id":"https://openalex.org/F4320306267","display_name":"California Community Foundation","ror":"https://ror.org/00w3rj542"},{"id":"https://openalex.org/F4320337389","display_name":"Division of Information and Intelligent Systems","ror":"https://ror.org/053a2cp42"}],"has_content":{"grobid_xml":true,"pdf":true},"content_urls":{"pdf":"https://content.openalex.org/works/W2972646741.pdf","grobid_xml":"https://content.openalex.org/works/W2972646741.grobid-xml"},"referenced_works_count":29,"referenced_works":["https://openalex.org/W153281708","https://openalex.org/W359561291","https://openalex.org/W1536558110","https://openalex.org/W1945616565","https://openalex.org/W1989279326","https://openalex.org/W2000855935","https://openalex.org/W2099471712","https://openalex.org/W2112036188","https://openalex.org/W2137245235","https://openalex.org/W2171830216","https://openalex.org/W2173520492","https://openalex.org/W2219888463","https://openalex.org/W2243397390","https://openalex.org/W2417902114","https://openalex.org/W2543927648","https://openalex.org/W2603931454","https://openalex.org/W2618098489","https://openalex.org/W2619206542","https://openalex.org/W2798868970","https://openalex.org/W2803831897","https://openalex.org/W2809895662","https://openalex.org/W2892160417","https://openalex.org/W2897167574","https://openalex.org/W2963900085","https://openalex.org/W2963903822","https://openalex.org/W3098276446","https://openalex.org/W3101023724","https://openalex.org/W3101291735","https://openalex.org/W4226280022"],"related_works":["https://openalex.org/W4320018150","https://openalex.org/W4239582170","https://openalex.org/W3048732067","https://openalex.org/W2918664383","https://openalex.org/W106056076","https://openalex.org/W4320855730","https://openalex.org/W4383468834","https://openalex.org/W2135200719","https://openalex.org/W4283221438","https://openalex.org/W2900159906"],"abstract_inverted_index":{"Can":[0],"machine":[1,221],"learning":[2,49],"models":[3],"be":[4],"easily":[5],"fooled?":[6],"Despite":[7],"the":[8,21,70,75,84,88,104,112,122,128,136,139,145,148,154,176,180,183,193,196],"recent":[9],"surge":[10],"of":[11,23,78,87,98,121,138,147,173,182,187,195,202],"interest":[12],"in":[13,17,20],"learned":[14,222],"adversarial":[15,93,113,129,203],"attacks":[16],"other":[18],"domains,":[19],"context":[22],"recommendation":[24,106],"systems":[25],"this":[26,42],"question":[27],"has":[28],"mainly":[29],"been":[30],"answered":[31],"using":[32],"hand-engineered":[33],"fake":[34,130,155],"user":[35,94,114,124,131,156],"profles.":[36],"This":[37],"paper":[38],"attempts":[39],"to":[40,50,69,127,144,153,199],"reduce":[41],"gap.":[43],"We":[44,73,91,168],"provide":[45,159],"a":[46,52,55,66,160,170,188,200,210],"formulation":[47],"for":[48,179,213],"attack":[51],"recommender":[53,67,89,217],"as":[54,209],"repeated":[56],"general-sum":[57],"game":[58],"between":[59],"two":[60],"players,":[61],"i.e.,":[62],"an":[63],"adversary":[64,140],"and":[65,191],"oblivious":[68],"adversary's":[71],"existence.":[72],"consider":[74],"challenging":[76],"case":[77,181],"poisoning":[79],"attacks,":[80],"which":[81],"focus":[82],"on":[83],"training":[85],"phase":[86],"model.":[90],"generate":[92],"profles":[95,115],"targeting":[96],"subsets":[97],"users":[99],"or":[100,102],"items,":[101],"generally":[103],"top-K":[105],"quality.":[107],"Moreover,":[108],"we":[109,158],"ensure":[110],"that":[111],"remain":[116],"unnoticeable":[117],"by":[118],"preserving":[119],"proximity":[120],"real":[123],"rating/interaction":[125],"distribution":[126],"distribution.":[132],"To":[133],"cope":[134],"with":[135,151],"challenge":[137],"not":[141],"having":[142],"access":[143],"gradient":[146],"recommender's":[149,197],"objective":[150],"respect":[152],"profles,":[157],"non-trivial":[161],"algorithm":[162],"building":[163],"upon":[164],"zero-order":[165],"optimization":[166],"techniques.":[167],"ofer":[169],"wide":[171],"range":[172],"experiments,":[174],"instantiating":[175],"proposed":[177],"method":[178],"classic":[184],"popular":[185],"approach":[186],"low-rank":[189],"recommender,":[190],"illustrating":[192],"extent":[194],"vulnerability":[198],"variety":[201],"intents.":[204],"These":[205],"results":[206],"can":[207],"serve":[208],"motivating":[211],"point":[212],"more":[214],"research":[215],"into":[216],"defense":[218],"strategies":[219],"against":[220],"attacks.":[223]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":10},{"year":2024,"cited_by_count":21},{"year":2023,"cited_by_count":19},{"year":2022,"cited_by_count":12},{"year":2021,"cited_by_count":29},{"year":2020,"cited_by_count":15}],"updated_date":"2026-04-10T15:06:20.359241","created_date":"2025-10-10T00:00:00"}
