{"id":"https://openalex.org/W3012798016","doi":"https://doi.org/10.1145/3366423.3379992","title":"Practical Data Poisoning Attack against Next-Item Recommendation","display_name":"Practical Data Poisoning Attack against Next-Item Recommendation","publication_year":2020,"publication_date":"2020-04-20","ids":{"openalex":"https://openalex.org/W3012798016","doi":"https://doi.org/10.1145/3366423.3379992","mag":"3012798016"},"language":"en","primary_location":{"id":"doi:10.1145/3366423.3379992","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3366423.3379992","pdf_url":null,"source":null,"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of The Web Conference 2020","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"https://doi.org/10.1145/3366423.3379992","any_repository_has_fulltext":null},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5085578723","display_name":"Hengtong Zhang","orcid":null},"institutions":[{"id":"https://openalex.org/I63190737","display_name":"University at Buffalo, State University of New York","ror":"https://ror.org/01y64my43","country_code":"US","type":"education","lineage":["https://openalex.org/I63190737"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Hengtong Zhang","raw_affiliation_strings":["SUNY at Buffalo"],"affiliations":[{"raw_affiliation_string":"SUNY at Buffalo","institution_ids":["https://openalex.org/I63190737"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5046576694","display_name":"Yaliang Li","orcid":"https://orcid.org/0000-0002-4204-6096"},"institutions":[{"id":"https://openalex.org/I4210095624","display_name":"Alibaba Group (United States)","ror":"https://ror.org/00rn0m335","country_code":"US","type":"company","lineage":["https://openalex.org/I4210095624","https://openalex.org/I45928872"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Yaliang Li","raw_affiliation_strings":["Alibaba Group"],"affiliations":[{"raw_affiliation_string":"Alibaba Group","institution_ids":["https://openalex.org/I4210095624"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5040297543","display_name":"Bolin Ding","orcid":"https://orcid.org/0000-0003-1535-9692"},"institutions":[{"id":"https://openalex.org/I4210095624","display_name":"Alibaba Group (United States)","ror":"https://ror.org/00rn0m335","country_code":"US","type":"company","lineage":["https://openalex.org/I4210095624","https://openalex.org/I45928872"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Bolin Ding","raw_affiliation_strings":["Alibaba Group"],"affiliations":[{"raw_affiliation_string":"Alibaba Group","institution_ids":["https://openalex.org/I4210095624"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5100781384","display_name":"Jing Gao","orcid":"https://orcid.org/0000-0001-5083-2241"},"institutions":[{"id":"https://openalex.org/I63190737","display_name":"University at Buffalo, State University of New York","ror":"https://ror.org/01y64my43","country_code":"US","type":"education","lineage":["https://openalex.org/I63190737"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Jing Gao","raw_affiliation_strings":["University at Buffalo"],"affiliations":[{"raw_affiliation_string":"University at Buffalo","institution_ids":["https://openalex.org/I63190737"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5085578723"],"corresponding_institution_ids":["https://openalex.org/I63190737"],"apc_list":null,"apc_paid":null,"fwci":5.1698,"has_fulltext":false,"cited_by_count":67,"citation_normalized_percentile":{"value":0.96182669,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":89,"max":100},"biblio":{"volume":null,"issue":null,"first_page":"2458","last_page":"2464"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9997000098228455,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9997000098228455,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.9986000061035156,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11273","display_name":"Advanced Graph Neural Networks","score":0.9854999780654907,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8241381645202637},{"id":"https://openalex.org/keywords/recommender-system","display_name":"Recommender system","score":0.7538701295852661},{"id":"https://openalex.org/keywords/leverage","display_name":"Leverage (statistics)","score":0.6807807683944702},{"id":"https://openalex.org/keywords/heuristic","display_name":"Heuristic","score":0.507080078125},{"id":"https://openalex.org/keywords/focus","display_name":"Focus (optics)","score":0.4985020160675049},{"id":"https://openalex.org/keywords/reinforcement-learning","display_name":"Reinforcement learning","score":0.47634318470954895},{"id":"https://openalex.org/keywords/variety","display_name":"Variety (cybernetics)","score":0.46055400371551514},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.4565032422542572},{"id":"https://openalex.org/keywords/retraining","display_name":"Retraining","score":0.4136057496070862},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.41040733456611633},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.34498631954193115}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8241381645202637},{"id":"https://openalex.org/C557471498","wikidata":"https://www.wikidata.org/wiki/Q554950","display_name":"Recommender system","level":2,"score":0.7538701295852661},{"id":"https://openalex.org/C153083717","wikidata":"https://www.wikidata.org/wiki/Q6535263","display_name":"Leverage (statistics)","level":2,"score":0.6807807683944702},{"id":"https://openalex.org/C173801870","wikidata":"https://www.wikidata.org/wiki/Q201413","display_name":"Heuristic","level":2,"score":0.507080078125},{"id":"https://openalex.org/C192209626","wikidata":"https://www.wikidata.org/wiki/Q190909","display_name":"Focus (optics)","level":2,"score":0.4985020160675049},{"id":"https://openalex.org/C97541855","wikidata":"https://www.wikidata.org/wiki/Q830687","display_name":"Reinforcement learning","level":2,"score":0.47634318470954895},{"id":"https://openalex.org/C136197465","wikidata":"https://www.wikidata.org/wiki/Q1729295","display_name":"Variety (cybernetics)","level":2,"score":0.46055400371551514},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.4565032422542572},{"id":"https://openalex.org/C2778712577","wikidata":"https://www.wikidata.org/wiki/Q3505966","display_name":"Retraining","level":2,"score":0.4136057496070862},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.41040733456611633},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.34498631954193115},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.0},{"id":"https://openalex.org/C144133560","wikidata":"https://www.wikidata.org/wiki/Q4830453","display_name":"Business","level":0,"score":0.0},{"id":"https://openalex.org/C155202549","wikidata":"https://www.wikidata.org/wiki/Q178803","display_name":"International trade","level":1,"score":0.0},{"id":"https://openalex.org/C120665830","wikidata":"https://www.wikidata.org/wiki/Q14620","display_name":"Optics","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3366423.3379992","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3366423.3379992","pdf_url":null,"source":null,"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of The Web Conference 2020","raw_type":"proceedings-article"}],"best_oa_location":{"id":"doi:10.1145/3366423.3379992","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3366423.3379992","pdf_url":null,"source":null,"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of The Web Conference 2020","raw_type":"proceedings-article"},"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/16","score":0.6600000262260437,"display_name":"Peace, Justice and strong institutions"}],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":18,"referenced_works":["https://openalex.org/W9657784","https://openalex.org/W290150691","https://openalex.org/W1989279326","https://openalex.org/W2000855935","https://openalex.org/W2072651985","https://openalex.org/W2127218421","https://openalex.org/W2145147745","https://openalex.org/W2171279286","https://openalex.org/W2603766943","https://openalex.org/W2613314732","https://openalex.org/W2783272285","https://openalex.org/W2913754224","https://openalex.org/W2963367478","https://openalex.org/W2964043980","https://openalex.org/W3098649723","https://openalex.org/W3103836116","https://openalex.org/W3143596294","https://openalex.org/W4297971002"],"related_works":["https://openalex.org/W2968745142","https://openalex.org/W2809363009","https://openalex.org/W3013360982","https://openalex.org/W2348159088","https://openalex.org/W2045871438","https://openalex.org/W4287598984","https://openalex.org/W2499363748","https://openalex.org/W2781763969","https://openalex.org/W3170628611","https://openalex.org/W4319083788"],"abstract_inverted_index":{"Online":[0],"recommendation":[1,31,80,93,122,128,140,163,197,214],"systems":[2,32],"make":[3],"use":[4,183],"of":[5,8,27,67,126,160,169,192],"a":[6,77,84,139,156],"variety":[7],"information":[9],"sources":[10],"to":[11,24,35,103,112,150,174,182,187],"provide":[12],"users":[13,17,137],"the":[14,25,28,62,68,99,105,124,133,152,161,167,170,176,184,190,196,201,204,218],"items":[15],"that":[16,217],"are":[18,33,42],"potentially":[19],"interested":[20],"in.":[21],"However,":[22],"due":[23],"openness":[26],"online":[29],"platform,":[30],"vulnerable":[34],"data":[36,118],"poisoning":[37,86],"attacks.":[38],"Existing":[39],"attack":[40,87,106],"approaches":[41],"either":[43],"based":[44],"on":[45,76,195,208],"simple":[46],"heuristic":[47],"rules":[48],"or":[49],"designed":[50],"against":[51,91,211],"specific":[52],"recommendations":[53],"approaches.":[54],"The":[55,95],"former":[56],"often":[57],"suffers":[58],"unsatisfactory":[59],"performance,":[60],"while":[61],"latter":[63],"requires":[64],"strong":[65],"knowledge":[66],"target":[69,162,177],"system.":[70,178],"In":[71,120],"this":[72],"paper,":[73],"we":[74,148],"focus":[75],"general":[78],"next-item":[79],"setting":[81],"and":[82,132,138,165],"propose":[83,149,181],"practical":[85],"approach":[88],"named":[89],"LOKI":[90,97,220],"blackbox":[92],"systems.":[94],"proposed":[96,219],"utilizes":[98],"reinforcement":[100],"learning":[101],"algorithm":[102],"train":[104],"agent,":[107],"which":[108],"can":[109],"be":[110],"used":[111],"generate":[113],"user":[114],"behavior":[115],"samples":[116,173,194],"for":[117],"poisoning.":[119],"real-world":[121,146],"systems,":[123],"cost":[125],"retraining":[127],"models":[129,202,215],"is":[130,142],"high,":[131],"interaction":[134],"frequency":[135],"between":[136],"system":[141,164],"restricted.":[143],"Given":[144],"these":[145],"restrictions,":[147],"let":[151],"agent":[153],"interact":[154],"with":[155],"recommender":[157],"simulator":[158],"instead":[159],"leverage":[166],"transferability":[168],"generated":[171],"adversarial":[172],"poison":[175],"We":[179],"also":[180],"influence":[185,191],"function":[186],"efficiently":[188],"estimate":[189],"injected":[193],"results,":[198],"without":[199],"re-training":[200],"within":[203],"simulator.":[205],"Extensive":[206],"experiments":[207],"two":[209],"datasets":[210],"four":[212],"representative":[213],"show":[216],"achieves":[221],"better":[222],"attacking":[223],"performance":[224],"than":[225],"existing":[226],"methods.":[227]},"counts_by_year":[{"year":2025,"cited_by_count":8},{"year":2024,"cited_by_count":20},{"year":2023,"cited_by_count":16},{"year":2022,"cited_by_count":9},{"year":2021,"cited_by_count":13},{"year":2020,"cited_by_count":1}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
