{"id":"https://openalex.org/W4389316263","doi":"https://doi.org/10.1145/3636341.3636360","title":"Adversarial Machine Learning in Recommender Systems","display_name":"Adversarial Machine Learning in Recommender Systems","publication_year":2023,"publication_date":"2023-06-01","ids":{"openalex":"https://openalex.org/W4389316263","doi":"https://doi.org/10.1145/3636341.3636360"},"language":"en","primary_location":{"id":"doi:10.1145/3636341.3636360","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3636341.3636360","pdf_url":null,"source":{"id":"https://openalex.org/S6756005","display_name":"ACM SIGIR Forum","issn_l":"0163-5840","issn":["0163-5840","1558-0229"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319798","host_organization_name":"Association for Computing Machinery","host_organization_lineage":["https://openalex.org/P4310319798"],"host_organization_lineage_names":["Association for Computing Machinery"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"ACM SIGIR Forum","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5067588342","display_name":"Felice Antonio Merra","orcid":"https://orcid.org/0009-0003-8429-3487"},"institutions":[{"id":"https://openalex.org/I4210089985","display_name":"Amazon (Germany)","ror":"https://ror.org/00b9ktm87","country_code":"DE","type":"company","lineage":["https://openalex.org/I1311688040","https://openalex.org/I4210089985"]}],"countries":["DE"],"is_corresponding":true,"raw_author_name":"Felice Antonio Merra","raw_affiliation_strings":["Amazon, Germany"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Amazon, Germany","institution_ids":["https://openalex.org/I4210089985"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":1,"corresponding_author_ids":["https://openalex.org/A5067588342"],"corresponding_institution_ids":["https://openalex.org/I4210089985"],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.16134542,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":"57","issue":"1","first_page":"1","last_page":"2"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10775","display_name":"Generative Adversarial Networks and Image Synthesis","score":0.9165999889373779,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.9101312756538391},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8689838647842407},{"id":"https://openalex.org/keywords/recommender-system","display_name":"Recommender system","score":0.6826175451278687},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.6220977306365967},{"id":"https://openalex.org/keywords/robustification","display_name":"Robustification","score":0.6146262288093567},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.5427600741386414},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.5182328224182129},{"id":"https://openalex.org/keywords/quality","display_name":"Quality (philosophy)","score":0.43587782979011536},{"id":"https://openalex.org/keywords/adversarial-machine-learning","display_name":"Adversarial machine learning","score":0.4191795587539673}],"concepts":[{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.9101312756538391},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8689838647842407},{"id":"https://openalex.org/C557471498","wikidata":"https://www.wikidata.org/wiki/Q554950","display_name":"Recommender system","level":2,"score":0.6826175451278687},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.6220977306365967},{"id":"https://openalex.org/C2778584072","wikidata":"https://www.wikidata.org/wiki/Q7353545","display_name":"Robustification","level":3,"score":0.6146262288093567},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5427600741386414},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.5182328224182129},{"id":"https://openalex.org/C2779530757","wikidata":"https://www.wikidata.org/wiki/Q1207505","display_name":"Quality (philosophy)","level":2,"score":0.43587782979011536},{"id":"https://openalex.org/C2778403875","wikidata":"https://www.wikidata.org/wiki/Q20312394","display_name":"Adversarial machine learning","level":3,"score":0.4191795587539673},{"id":"https://openalex.org/C138885662","wikidata":"https://www.wikidata.org/wiki/Q5891","display_name":"Philosophy","level":0,"score":0.0},{"id":"https://openalex.org/C111472728","wikidata":"https://www.wikidata.org/wiki/Q9471","display_name":"Epistemology","level":1,"score":0.0},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0},{"id":"https://openalex.org/C79337645","wikidata":"https://www.wikidata.org/wiki/Q779824","display_name":"Outlier","level":2,"score":0.0},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3636341.3636360","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3636341.3636360","pdf_url":null,"source":{"id":"https://openalex.org/S6756005","display_name":"ACM SIGIR Forum","issn_l":"0163-5840","issn":["0163-5840","1558-0229"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319798","host_organization_name":"Association for Computing Machinery","host_organization_lineage":["https://openalex.org/P4310319798"],"host_organization_lineage_names":["Association for Computing Machinery"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"ACM SIGIR Forum","raw_type":"journal-article"}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.8299999833106995,"id":"https://metadata.un.org/sdg/16","display_name":"Peace, Justice and strong institutions"}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":2,"referenced_works":["https://openalex.org/W3030822388","https://openalex.org/W3161146257"],"related_works":["https://openalex.org/W3048732067","https://openalex.org/W4383468834","https://openalex.org/W4384648009","https://openalex.org/W4303645823","https://openalex.org/W4285263558","https://openalex.org/W2900159906","https://openalex.org/W4287828318","https://openalex.org/W2406556600","https://openalex.org/W4283221438","https://openalex.org/W2899811703"],"abstract_inverted_index":{"Recommender":[0],"systems":[1],"are":[2,7,198],"ubiquitous.":[3],"Our":[4],"digital":[5],"lives":[6],"influenced":[8],"by":[9,304],"their":[10],"use":[11],"when,":[12],"for":[13],"instance,":[14],"we":[15],"select":[16],"the":[17,21,25,31,60,73,76,81,105,117,129,143,150,158,168,185,199,211,214,220,227,247,255,261,271,287,301,308,326,337,354,361],"news":[18],"to":[19,23,27,33,48,58,98,136,166,179,243,253,307],"read,":[20],"product":[22,126],"buy,":[24],"friend":[26],"connect":[28],"with,":[29],"and":[30,62,80,160,196,226,315,347],"movie":[32],"watch.":[34],"While":[35],"enormous":[36],"academic":[37],"research":[38,237],"efforts":[39],"have":[40],"been":[41,56],"mainly":[42],"focused":[43],"on":[44,213,260,379],"getting":[45,208],"high-quality":[46],"recommendations":[47],"reach":[49],"maximum":[50],"user":[51,113],"satisfaction,":[52],"little":[53],"effort":[54],"has":[55],"devoted":[57],"studying":[59],"integrity":[61,303],"security":[63,215],"of":[64,75,83,85,107,120,131,187,191,193,203,216,222,230,249,257,263,273,289,293,318,328,334,339,356,364],"these":[65],"systems.":[66],"Is":[67,128,153],"there":[68],"an":[69],"underlying":[70],"relationship":[71],"between":[72],"characteristics":[74,259],"historical":[77],"user-item":[78],"interactions":[79],"efficacy":[82],"injection":[84],"false":[86],"users/feedback":[87],"strategies":[88,276],"against":[89,219],"collaborative":[90,217,264],"models?":[91],"Can":[92,110],"public":[93],"semantic":[94,280],"data":[95,119,258,281],"be":[96],"used":[97],"perform":[99],"attacks":[100],"more":[101,134,171],"potent":[102],"in":[103,149,189,235,359],"raising":[104],"recommendability":[106],"victim":[108],"items?":[109],"a":[111,181,250,313,349],"malicious":[112],"poison":[114],"or":[115],"evade":[116],"image":[118],"visual":[121],"recommenders":[122,133,265,342,367],"with":[123,176,312],"adversarial":[124,139,144,201,231,291,330,357],"perturbed":[125],"images?":[127],"family":[130],"model-based":[132,366],"vulnerable":[135],"multi-step":[137],"gradient-based":[138],"perturbations?":[140],"Furthermore,":[141],"is":[142,184],"training":[145,155,358],"robustification":[146],"still":[147],"effective":[148],"last":[151],"scenario?":[152],"this":[154],"defense":[156],"influencing":[157],"beyond-accuracy":[159],"bias":[161],"performance?":[162],"This":[163,206],"dissertation":[164],"intends":[165],"pave":[167],"way":[169],"towards":[170],"robust":[172,329],"recommender":[173,295],"systems,":[174],"beginning":[175],"understanding":[177],"how":[178],"robustify":[180],"model,":[182],"what":[183],"cost":[186],"robustness":[188,262],"terms":[190],"reduction":[192],"recommendation":[194,302,310,362],"accuracy,":[195],"which":[197],"novel":[200],"risks":[202],"modern":[204],"recommenders.":[205],"thesis,":[207],"inspiration":[209],"from":[210],"literature":[212],"models":[218,296],"insertion":[221],"hand-engineered":[223],"fake":[224],"profiles":[225],"recent":[228],"advances":[229],"machine":[232],"learning":[233],"methods":[234,332],"other":[236],"areas":[238],"like":[239],"computer":[240],"vision,":[241],"contributes":[242],"several":[244],"directions:":[245],"(i)":[246],"proposal":[248,327],"practical":[251],"framework":[252],"interpret":[254],"impact":[256],"[Deldjoo":[266],"et":[267,283,322,344,369],"al.,":[268,284,323,345],"2020],":[269,285],"(ii)":[270],"design":[272],"powerful":[274],"attack":[275],"using":[277],"publicly":[278],"available":[279],"[Anelli":[282,321,343],"(iii)":[286],"identification":[288],"severe":[290],"vulnerabilities":[292],"visual-based":[294],"where":[297],"adversaries":[298],"can":[299],"break":[300],"pushing":[305],"products":[306],"highest":[309],"positions":[311],"simple":[314],"human-imperceptible":[316],"perturbation":[317,331],"products'":[319],"images":[320],"2021b],":[324],"(iv)":[325],"capable":[333],"completely":[335],"breaking":[336],"accuracy":[338],"matrix":[340],"factorization":[341],"2021a],":[346],"(v)":[348],"formal":[350],"study":[351],"that":[352],"examines":[353],"effects":[355],"reducing":[360],"quality":[363],"state-of-the-art":[365],"Anelli":[368],"al.":[370],"[2021c].":[371],"Awarded":[372],"by:":[373,384],"Politecnico":[374],"di":[375],"Bari,":[376,377],"Italy":[378],"24":[380],"January":[381],"2022.":[382],"Supervised":[383],"Tommaso":[385],"DI":[386],"Noia.":[387],"Available":[388],"at:":[389],"https://iris.poliba.it/retrieve/dd89f8a6-faa4-ccdd-e053-6605fe0a1b87/Adversarial_Machine_Learning_in_Recommender_Systems.pdf.":[390]},"counts_by_year":[],"updated_date":"2026-05-21T06:26:12.895304","created_date":"2025-10-10T00:00:00"}
