{"id":"https://openalex.org/W4416016948","doi":"https://doi.org/10.1145/3746252.3761032","title":"Budget and Frequency Controlled Cost-Aware Model Extraction Attack on Sequential Recommenders","display_name":"Budget and Frequency Controlled Cost-Aware Model Extraction Attack on Sequential Recommenders","publication_year":2025,"publication_date":"2025-11-07","ids":{"openalex":"https://openalex.org/W4416016948","doi":"https://doi.org/10.1145/3746252.3761032"},"language":null,"primary_location":{"id":"doi:10.1145/3746252.3761032","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3746252.3761032","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 34th ACM International Conference on Information and Knowledge Management","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5013115623","display_name":"Lei Zhou","orcid":"https://orcid.org/0009-0004-3970-1020"},"institutions":[{"id":"https://openalex.org/I158842170","display_name":"Chongqing University","ror":"https://ror.org/023rhb549","country_code":"CN","type":"education","lineage":["https://openalex.org/I158842170"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Lei Zhou","raw_affiliation_strings":["Chongqing University, Chongqing, China"],"affiliations":[{"raw_affiliation_string":"Chongqing University, Chongqing, China","institution_ids":["https://openalex.org/I158842170"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5002210013","display_name":"Min Gao","orcid":"https://orcid.org/0000-0003-0127-7477"},"institutions":[{"id":"https://openalex.org/I158842170","display_name":"Chongqing University","ror":"https://ror.org/023rhb549","country_code":"CN","type":"education","lineage":["https://openalex.org/I158842170"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Min Gao","raw_affiliation_strings":["Chongqing University, Chongqing, China"],"affiliations":[{"raw_affiliation_string":"Chongqing University, Chongqing, China","institution_ids":["https://openalex.org/I158842170"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5043190968","display_name":"Zongwei Wang","orcid":"https://orcid.org/0000-0002-9774-4596"},"institutions":[{"id":"https://openalex.org/I158842170","display_name":"Chongqing University","ror":"https://ror.org/023rhb549","country_code":"CN","type":"education","lineage":["https://openalex.org/I158842170"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Zongwei Wang","raw_affiliation_strings":["Chongqing University, Chongqing, China"],"affiliations":[{"raw_affiliation_string":"Chongqing University, Chongqing, China","institution_ids":["https://openalex.org/I158842170"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5100779889","display_name":"Yu Bai","orcid":"https://orcid.org/0000-0003-1087-5751"},"institutions":[{"id":"https://openalex.org/I158842170","display_name":"Chongqing University","ror":"https://ror.org/023rhb549","country_code":"CN","type":"education","lineage":["https://openalex.org/I158842170"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yibing Bai","raw_affiliation_strings":["Chongqing University, Chongqing, China"],"affiliations":[{"raw_affiliation_string":"Chongqing University, Chongqing, China","institution_ids":["https://openalex.org/I158842170"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5013115623"],"corresponding_institution_ids":["https://openalex.org/I158842170"],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.17190527,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":"4477","last_page":"4486"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.2551000118255615,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.2551000118255615,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.10849999636411667,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11273","display_name":"Advanced Graph Neural Networks","score":0.09769999980926514,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/ranking","display_name":"Ranking (information retrieval)","score":0.6100999712944031},{"id":"https://openalex.org/keywords/sequence","display_name":"Sequence (biology)","score":0.5246000289916992},{"id":"https://openalex.org/keywords/code","display_name":"Code (set theory)","score":0.4991999864578247},{"id":"https://openalex.org/keywords/information-extraction","display_name":"Information extraction","score":0.45419999957084656},{"id":"https://openalex.org/keywords/data-extraction","display_name":"Data extraction","score":0.3158000111579895},{"id":"https://openalex.org/keywords/extraction","display_name":"Extraction (chemistry)","score":0.30489999055862427}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7838000059127808},{"id":"https://openalex.org/C189430467","wikidata":"https://www.wikidata.org/wiki/Q7293293","display_name":"Ranking (information retrieval)","level":2,"score":0.6100999712944031},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.5760999917984009},{"id":"https://openalex.org/C2778112365","wikidata":"https://www.wikidata.org/wiki/Q3511065","display_name":"Sequence (biology)","level":2,"score":0.5246000289916992},{"id":"https://openalex.org/C2776760102","wikidata":"https://www.wikidata.org/wiki/Q5139990","display_name":"Code (set theory)","level":3,"score":0.4991999864578247},{"id":"https://openalex.org/C195807954","wikidata":"https://www.wikidata.org/wiki/Q1662562","display_name":"Information extraction","level":2,"score":0.45419999957084656},{"id":"https://openalex.org/C2777466982","wikidata":"https://www.wikidata.org/wiki/Q5227287","display_name":"Data extraction","level":3,"score":0.3158000111579895},{"id":"https://openalex.org/C4725764","wikidata":"https://www.wikidata.org/wiki/Q844704","display_name":"Extraction (chemistry)","level":2,"score":0.30489999055862427},{"id":"https://openalex.org/C2776709221","wikidata":"https://www.wikidata.org/wiki/Q6031040","display_name":"Information Criteria","level":3,"score":0.28290000557899475},{"id":"https://openalex.org/C43126263","wikidata":"https://www.wikidata.org/wiki/Q128751","display_name":"Source code","level":2,"score":0.2775999903678894},{"id":"https://openalex.org/C2777212361","wikidata":"https://www.wikidata.org/wiki/Q5127848","display_name":"Class (philosophy)","level":2,"score":0.27709999680519104},{"id":"https://openalex.org/C557471498","wikidata":"https://www.wikidata.org/wiki/Q554950","display_name":"Recommender system","level":2,"score":0.2734000086784363},{"id":"https://openalex.org/C67186912","wikidata":"https://www.wikidata.org/wiki/Q367664","display_name":"Data modeling","level":2,"score":0.2599000036716461},{"id":"https://openalex.org/C86426650","wikidata":"https://www.wikidata.org/wiki/Q7452504","display_name":"Sequential estimation","level":2,"score":0.25440001487731934}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3746252.3761032","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3746252.3761032","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 34th ACM International Conference on Information and Knowledge Management","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G4787383871","display_name":null,"funder_award_id":"62176028","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":34,"referenced_works":["https://openalex.org/W2027731328","https://openalex.org/W2219888463","https://openalex.org/W2798385737","https://openalex.org/W2963303354","https://openalex.org/W2963367478","https://openalex.org/W2964044287","https://openalex.org/W2971196067","https://openalex.org/W2972646741","https://openalex.org/W2984100107","https://openalex.org/W3012798016","https://openalex.org/W3031339255","https://openalex.org/W3034530016","https://openalex.org/W3048511744","https://openalex.org/W3158290514","https://openalex.org/W3175142666","https://openalex.org/W3182668916","https://openalex.org/W3200953672","https://openalex.org/W4220897279","https://openalex.org/W4226493408","https://openalex.org/W4283445889","https://openalex.org/W4296591822","https://openalex.org/W4299959846","https://openalex.org/W4384642300","https://openalex.org/W4385562552","https://openalex.org/W4387846550","https://openalex.org/W4387868958","https://openalex.org/W4390041316","https://openalex.org/W4393160749","https://openalex.org/W4393161077","https://openalex.org/W4400524801","https://openalex.org/W4401857325","https://openalex.org/W4407953118","https://openalex.org/W4409365300","https://openalex.org/W4412378248"],"related_works":[],"abstract_inverted_index":{"Sequential":[0],"recommenders":[1],"are":[2],"integral":[3],"to":[4,10,27,123,145],"many":[5],"applications":[6],"yet":[7],"remain":[8],"vulnerable":[9],"model":[11,23,122],"extraction":[12,109,168],"attacks,":[13],"in":[14,51,73,141],"which":[15,105],"adversaries":[16],"can":[17],"recover":[18],"information":[19,77,151],"about":[20],"the":[21,34,57,107,120,142],"deployed":[22],"by":[24,68],"issuing":[25],"queries":[26,64],"a":[28,40,87],"black-box":[29,102],"without":[30],"internal":[31],"access.":[32],"From":[33],"attacker's":[35],"perspective,":[36],"existing":[37],"studies":[38],"impose":[39],"fixed":[41],"and":[42,76,92,127,149,157],"limited":[43],"query":[44,125],"budget":[45],"but":[46],"overlook":[47],"optimal":[48],"allocation,":[49],"resulting":[50,72],"redundant":[52],"or":[53],"low-value":[54],"requests.":[55],"Furthermore,":[56],"scarce":[58],"data":[59],"obtained":[60],"through":[61],"these":[62],"costly":[63],"is":[65,172],"typically":[66],"handled":[67],"crude":[69],"random":[70],"sampling,":[71],"low":[74],"diversity":[75],"coverage":[78],"with":[79,111,138],"actual":[80],"data.":[81],"In":[82],"this":[83],"paper,":[84],"we":[85],"propose":[86],"novel":[88],"approach,":[89],"named":[90],"Budget":[91],"Frequency":[93,133],"Controlled":[94],"Cost-Aware":[95],"Model":[96],"Extraction":[97],"Attack":[98],"(BECOME),":[99],"for":[100],"extracting":[101],"sequential":[103,159],"recommenders,":[104],"extends":[106],"standard":[108],"framework":[110],"two":[112],"cost-aware":[113],"innovations:":[114],"Feedback-Driven":[115],"Dynamic":[116],"Budgeting":[117],"periodically":[118],"evaluates":[119],"victim":[121],"refine":[124],"allocation":[126],"steer":[128],"sequence":[129],"generation":[130],"adaptively.":[131],"Rank-Aware":[132],"Controlling":[134],"integrates":[135],"frequency":[136],"constraints":[137],"ranking":[139],"guidance":[140],"next-item":[143],"sampler":[144],"select":[146],"high-value":[147],"items":[148],"broaden":[150],"coverage.":[152],"Experiments":[153],"on":[154],"public":[155],"datasets":[156],"representative":[158],"recommender":[160],"architectures":[161],"demonstrate":[162],"that":[163],"our":[164],"method":[165],"achieves":[166],"superior":[167],"performance.":[169],"Our":[170],"code":[171],"released":[173],"at":[174],"https://github.com/Loche2/BECOME.":[175]},"counts_by_year":[],"updated_date":"2026-04-09T08:11:56.329763","created_date":"2025-11-08T00:00:00"}
