{"id":"https://openalex.org/W4226493408","doi":"https://doi.org/10.1145/3488560.3498386","title":"PipAttack: Poisoning Federated Recommender Systems for Manipulating Item Promotion","display_name":"PipAttack: Poisoning Federated Recommender Systems for Manipulating Item Promotion","publication_year":2022,"publication_date":"2022-02-11","ids":{"openalex":"https://openalex.org/W4226493408","doi":"https://doi.org/10.1145/3488560.3498386"},"language":"en","primary_location":{"id":"doi:10.1145/3488560.3498386","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3488560.3498386","pdf_url":null,"source":{"id":"https://openalex.org/S4363608885","display_name":"Proceedings of the Fifteenth ACM International Conference on Web Search and Data Mining","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the Fifteenth ACM International Conference on Web Search and Data Mining","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5100669791","display_name":"Shijie Zhang","orcid":"https://orcid.org/0000-0003-4201-7399"},"institutions":[{"id":"https://openalex.org/I165143802","display_name":"University of Queensland","ror":"https://ror.org/00rqy9422","country_code":"AU","type":"education","lineage":["https://openalex.org/I165143802"]}],"countries":["AU"],"is_corresponding":true,"raw_author_name":"Shijie Zhang","raw_affiliation_strings":["The University of Queensland, Brisbane, QLD, Australia"],"affiliations":[{"raw_affiliation_string":"The University of Queensland, Brisbane, QLD, Australia","institution_ids":["https://openalex.org/I165143802"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5088492734","display_name":"Hongzhi Yin","orcid":"https://orcid.org/0000-0003-1395-261X"},"institutions":[{"id":"https://openalex.org/I165143802","display_name":"University of Queensland","ror":"https://ror.org/00rqy9422","country_code":"AU","type":"education","lineage":["https://openalex.org/I165143802"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Hongzhi Yin","raw_affiliation_strings":["The University of Queensland, Brisbane, QLD, Australia"],"affiliations":[{"raw_affiliation_string":"The University of Queensland, Brisbane, QLD, Australia","institution_ids":["https://openalex.org/I165143802"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100461265","display_name":"Tong Chen","orcid":"https://orcid.org/0000-0001-7269-146X"},"institutions":[{"id":"https://openalex.org/I165143802","display_name":"University of Queensland","ror":"https://ror.org/00rqy9422","country_code":"AU","type":"education","lineage":["https://openalex.org/I165143802"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Tong Chen","raw_affiliation_strings":["The University of Queensland, Brisbane, QLD, Australia"],"affiliations":[{"raw_affiliation_string":"The University of Queensland, Brisbane, QLD, Australia","institution_ids":["https://openalex.org/I165143802"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5078170935","display_name":"Zi Huang","orcid":"https://orcid.org/0000-0002-9738-4949"},"institutions":[{"id":"https://openalex.org/I165143802","display_name":"University of Queensland","ror":"https://ror.org/00rqy9422","country_code":"AU","type":"education","lineage":["https://openalex.org/I165143802"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Zi Huang","raw_affiliation_strings":["The University of Queensland, Brisbane, QLD, Australia"],"affiliations":[{"raw_affiliation_string":"The University of Queensland, Brisbane, QLD, Australia","institution_ids":["https://openalex.org/I165143802"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5051219382","display_name":"Quoc Viet Hung Nguyen","orcid":"https://orcid.org/0000-0002-9687-1315"},"institutions":[{"id":"https://openalex.org/I11701301","display_name":"Griffith University","ror":"https://ror.org/02sc3r913","country_code":"AU","type":"education","lineage":["https://openalex.org/I11701301"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Quoc Viet Hung Nguyen","raw_affiliation_strings":["Griffith University, Gold Coast, Australia"],"affiliations":[{"raw_affiliation_string":"Griffith University, Gold Coast, Australia","institution_ids":["https://openalex.org/I11701301"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5101414718","display_name":"Lizhen Cui","orcid":"https://orcid.org/0000-0002-8262-8883"},"institutions":[{"id":"https://openalex.org/I154099455","display_name":"Shandong University","ror":"https://ror.org/0207yh398","country_code":"CN","type":"education","lineage":["https://openalex.org/I154099455"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Lizhen Cui","raw_affiliation_strings":["ShanDong University, Jinan, China"],"affiliations":[{"raw_affiliation_string":"ShanDong University, Jinan, China","institution_ids":["https://openalex.org/I154099455"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":6,"corresponding_author_ids":["https://openalex.org/A5100669791"],"corresponding_institution_ids":["https://openalex.org/I165143802"],"apc_list":null,"apc_paid":null,"fwci":13.5458,"has_fulltext":false,"cited_by_count":93,"citation_normalized_percentile":{"value":0.99202436,"is_in_top_1_percent":true,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":97,"max":100},"biblio":{"volume":null,"issue":null,"first_page":"1415","last_page":"1423"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10203","display_name":"Recommender Systems and Techniques","score":0.9994999766349792,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10203","display_name":"Recommender Systems and Techniques","score":0.9994999766349792,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.9991000294685364,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11478","display_name":"Caching and Content Delivery","score":0.9864000082015991,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/recommender-system","display_name":"Recommender system","score":0.8837223052978516},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8375466465950012},{"id":"https://openalex.org/keywords/context","display_name":"Context (archaeology)","score":0.6073216199874878},{"id":"https://openalex.org/keywords/popularity","display_name":"Popularity","score":0.5964149832725525},{"id":"https://openalex.org/keywords/upload","display_name":"Upload","score":0.5376781821250916},{"id":"https://openalex.org/keywords/promotion","display_name":"Promotion (chess)","score":0.43746417760849},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.42877593636512756},{"id":"https://openalex.org/keywords/world-wide-web","display_name":"World Wide Web","score":0.41207194328308105},{"id":"https://openalex.org/keywords/internet-privacy","display_name":"Internet privacy","score":0.37411361932754517}],"concepts":[{"id":"https://openalex.org/C557471498","wikidata":"https://www.wikidata.org/wiki/Q554950","display_name":"Recommender system","level":2,"score":0.8837223052978516},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8375466465950012},{"id":"https://openalex.org/C2779343474","wikidata":"https://www.wikidata.org/wiki/Q3109175","display_name":"Context (archaeology)","level":2,"score":0.6073216199874878},{"id":"https://openalex.org/C2780586970","wikidata":"https://www.wikidata.org/wiki/Q1357284","display_name":"Popularity","level":2,"score":0.5964149832725525},{"id":"https://openalex.org/C71901391","wikidata":"https://www.wikidata.org/wiki/Q7126699","display_name":"Upload","level":2,"score":0.5376781821250916},{"id":"https://openalex.org/C98147612","wikidata":"https://www.wikidata.org/wiki/Q215599","display_name":"Promotion (chess)","level":3,"score":0.43746417760849},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.42877593636512756},{"id":"https://openalex.org/C136764020","wikidata":"https://www.wikidata.org/wiki/Q466","display_name":"World Wide Web","level":1,"score":0.41207194328308105},{"id":"https://openalex.org/C108827166","wikidata":"https://www.wikidata.org/wiki/Q175975","display_name":"Internet privacy","level":1,"score":0.37411361932754517},{"id":"https://openalex.org/C151730666","wikidata":"https://www.wikidata.org/wiki/Q7205","display_name":"Paleontology","level":1,"score":0.0},{"id":"https://openalex.org/C77805123","wikidata":"https://www.wikidata.org/wiki/Q161272","display_name":"Social psychology","level":1,"score":0.0},{"id":"https://openalex.org/C86803240","wikidata":"https://www.wikidata.org/wiki/Q420","display_name":"Biology","level":0,"score":0.0},{"id":"https://openalex.org/C94625758","wikidata":"https://www.wikidata.org/wiki/Q7163","display_name":"Politics","level":2,"score":0.0},{"id":"https://openalex.org/C199539241","wikidata":"https://www.wikidata.org/wiki/Q7748","display_name":"Law","level":1,"score":0.0},{"id":"https://openalex.org/C17744445","wikidata":"https://www.wikidata.org/wiki/Q36442","display_name":"Political science","level":0,"score":0.0},{"id":"https://openalex.org/C15744967","wikidata":"https://www.wikidata.org/wiki/Q9418","display_name":"Psychology","level":0,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3488560.3498386","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3488560.3498386","pdf_url":null,"source":{"id":"https://openalex.org/S4363608885","display_name":"Proceedings of the Fifteenth ACM International Conference on Web Search and Data Mining","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the Fifteenth ACM International Conference on Web Search and Data Mining","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"display_name":"Peace, Justice and strong institutions","id":"https://metadata.un.org/sdg/16","score":0.7699999809265137}],"awards":[{"id":"https://openalex.org/G7315286496","display_name":null,"funder_award_id":"FT210100624,DP190101985,DE200101465","funder_id":"https://openalex.org/F4320334704","funder_display_name":"Australian Research Council"}],"funders":[{"id":"https://openalex.org/F4320334704","display_name":"Australian Research Council","ror":"https://ror.org/05mmh0f86"}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":20,"referenced_works":["https://openalex.org/W2002834872","https://openalex.org/W2605350416","https://openalex.org/W2748058847","https://openalex.org/W2783466287","https://openalex.org/W2783792211","https://openalex.org/W2972646741","https://openalex.org/W3012794253","https://openalex.org/W3012798016","https://openalex.org/W3025378468","https://openalex.org/W3034790665","https://openalex.org/W3035298482","https://openalex.org/W3035446616","https://openalex.org/W3045200674","https://openalex.org/W3047789363","https://openalex.org/W3102496129","https://openalex.org/W3104956872","https://openalex.org/W3115418111","https://openalex.org/W3156842467","https://openalex.org/W3156939347","https://openalex.org/W3175142666"],"related_works":["https://openalex.org/W2368605798","https://openalex.org/W2518037665","https://openalex.org/W2348524959","https://openalex.org/W2477036161","https://openalex.org/W2368049389","https://openalex.org/W2384861574","https://openalex.org/W4294565801","https://openalex.org/W2170801710","https://openalex.org/W2945899969","https://openalex.org/W2517223877"],"abstract_inverted_index":{"Due":[0],"to":[1,24,44,63,78,102,122,135,155,170,267],"the":[2,31,46,53,68,87,93,97,139,158,167,172,178,195,202,211,228,232,241,244,256],"growing":[3],"privacy":[4],"concerns,":[5],"decentralization":[6],"emerges":[7],"rapidly":[8],"in":[9,146,157,177,210,235],"personalized":[10],"services,":[11],"especially":[12],"recommendation.":[13],"Also,":[14],"recent":[15],"studies":[16],"have":[17,171],"shown":[18],"that":[19,143,221],"centralized":[20],"models":[21],"are":[22,152,251],"vulnerable":[23],"poisoning":[25,41,112,265],"attacks,":[26],"compromising":[27],"their":[28],"integrity.":[29],"In":[30,114],"context":[32],"of":[33,39,96,138,174,191,205,231,243],"recommender":[34,65,83,98,125,269],"systems,":[35],"a":[36,59,81,119,188,206,236],"typical":[37],"goal":[38],"such":[40,104],"attacks":[42,266],"is":[43,62,107,134],"promote":[45],"adversary's":[47],"target":[48,168,207,233],"items":[49,151,176],"by":[50,182],"interfering":[51],"with":[52],"training":[54],"dataset":[55,101],"and/or":[56],"process.":[57],"Hence,":[58],"common":[60],"practice":[61],"subsume":[64],"systems":[66,126],"under":[67],"decentralized":[69],"federated":[70,105,124,213,268],"learning":[71],"paradigm,":[72],"which":[73],"enables":[74,166],"all":[75,86],"user":[76],"devices":[77],"collaboratively":[79],"learn":[80],"global":[82],"while":[84],"retaining":[85],"sensitive":[88],"data":[89],"locally.":[90],"Without":[91],"exposing":[92],"full":[94],"knowledge":[95],"and":[99,247],"entire":[100],"end-users,":[103],"recommendation":[106,159],"widely":[108],"regarded":[109],"'safe'":[110],"towards":[111],"attacks.":[113],"this":[115],"paper,":[116],"we":[117,198],"present":[118],"systematic":[120],"approach":[121],"backdooring":[123],"for":[127,258],"targeted":[128],"item":[129,169,209,234],"promotion.":[130],"The":[131],"core":[132],"tactic":[133],"take":[136],"advantage":[137],"inherent":[140],"popularity":[141],"bias":[142],"commonly":[144],"exists":[145],"data-driven":[147],"recommenders.":[148],"As":[149],"popular":[150,175],"more":[153],"likely":[154],"appear":[156],"list,":[160],"our":[161,223,262],"innovatively":[162],"designed":[163],"attack":[164,224],"model":[165,196,225,264],"characteristics":[173],"embedding":[179],"space.":[180],"Then,":[181],"uploading":[183],"carefully":[184],"crafted":[185],"gradients":[186],"via":[187],"small":[189],"number":[190],"malicious":[192],"users":[193],"during":[194],"update,":[197],"can":[199],"effectively":[200],"increase":[201],"exposure":[203,229],"rate":[204,230],"(unpopular)":[208],"resulted":[212],"recommender.":[214],"Evaluations":[215],"on":[216],"two":[217],"real-world":[218],"datasets":[219],"show":[220],"1)":[222],"significantly":[226],"boosts":[227],"stealthy":[237],"way,":[238],"without":[239],"harming":[240],"accuracy":[242],"poisoned":[245],"recommender;":[246],"2)":[248],"existing":[249],"defenses":[250,260],"not":[252],"effective":[253],"enough,":[254],"highlighting":[255],"need":[257],"new":[259],"against":[261],"local":[263],"systems.":[270]},"counts_by_year":[{"year":2025,"cited_by_count":22},{"year":2024,"cited_by_count":39},{"year":2023,"cited_by_count":28},{"year":2022,"cited_by_count":4}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
