About | Contact Us | Register | Login
ProceedingsSeriesJournalsSearchEAI
Collaborative Computing: Networking, Applications and Worksharing. 17th EAI International Conference, CollaborateCom 2021, Virtual Event, October 16-18, 2021, Proceedings, Part II

Research Article

PATR: A Novel Poisoning Attack Based on Triangle Relations Against Deep Learning-Based Recommender Systems

Download(Requires a free EAI acccount)
3 downloads
Cite
BibTeX Plain Text
  • @INPROCEEDINGS{10.1007/978-3-030-92638-0_26,
        author={Meiling Chao and Min Gao and Junwei Zhang and Zongwei Wang and Quanwu Zhao and Yulin He},
        title={PATR: A Novel Poisoning Attack Based on Triangle Relations Against Deep Learning-Based Recommender Systems},
        proceedings={Collaborative Computing: Networking, Applications and Worksharing. 17th EAI International Conference, CollaborateCom 2021, Virtual Event, October 16-18, 2021, Proceedings, Part II},
        proceedings_a={COLLABORATECOM PART 2},
        year={2022},
        month={1},
        keywords={Deep learning Poisoning attack Recommender system Triangle relation},
        doi={10.1007/978-3-030-92638-0_26}
    }
    
  • Meiling Chao
    Min Gao
    Junwei Zhang
    Zongwei Wang
    Quanwu Zhao
    Yulin He
    Year: 2022
    PATR: A Novel Poisoning Attack Based on Triangle Relations Against Deep Learning-Based Recommender Systems
    COLLABORATECOM PART 2
    Springer
    DOI: 10.1007/978-3-030-92638-0_26
Meiling Chao1, Min Gao1,*, Junwei Zhang1, Zongwei Wang1, Quanwu Zhao2, Yulin He
  • 1: School of Big Data and Software Engineering
  • 2: School of Economics and Business Administration
*Contact email: gaomin@cqu.edu.cn

Abstract

Recommender systems (RSs) have emerged as an effective way to deal with information overload and are very popular in e-commerce. However, because of the open nature of collaborative characteristics of the systems, RSs are susceptible to poisoning attacks, which inject fake user profiles into RSs to increase or decrease the recommended frequency of the target item. The traditional poisoning attack methods (such as random attack and average attack) are easy to be detected and lack of generality since they usually use global statistics, e.g., the number of each user’s ratings and the average rating for filler items. Moreover, as deep learning (DL) becomes more widely used in RSs, attackers are likely to use related techniques to attack RSs. To explore the robustness of DL-based RSs under the possible attacks, we propose a novel poisoning attack with triangle relations (PATR). The triangle relations refer to the balance among a fake user and two real users, aiming to improve attack performance. We also present a novel fake & real sampling strategy, i.e., sampling a set of fake users from the real users, to decrease the possibility of being detected. Comprehensive experiments on three public datasets show that PATR outperforms traditional poisoning attacks on attack effectiveness and anti-detection capability.

Keywords
Deep learning Poisoning attack Recommender system Triangle relation
Published
2022-01-01
Appears in
SpringerLink
http://dx.doi.org/10.1007/978-3-030-92638-0_26
Copyright © 2021–2025 ICST
EBSCOProQuestDBLPDOAJPortico
EAI Logo

About EAI

  • Who We Are
  • Leadership
  • Research Areas
  • Partners
  • Media Center

Community

  • Membership
  • Conference
  • Recognition
  • Sponsor Us

Publish with EAI

  • Publishing
  • Journals
  • Proceedings
  • Books
  • EUDL