Lune

USENIX Security2023顶会

PORE: Provably Robust Recommender Systems against Data Poisoning Attacks

Jinyuan Jia, Yupei Liu, Yuepeng Hu, Neil Zhenqiang Gong

2023年份
6顶会引用

摘要

Data poisoning attacks spoof a recommender system to make arbitrary, attacker-desired recommendations via injecting fake users with carefully crafted rating scores into the recommender system. We envision a cat-and-mouse game for such data poisoning attacks and their defenses, i.e., new defenses are designed to defend against existing attacks and new attacks are designed to break them. To prevent such a cat-and-mouse game, we propose PORE, the first framework to build provably robust recommender systems in this work. PORE can transform any existing recommender system to be provably robust against any untargeted data poisoning attacks, which aim to reduce the overall performance of a recommender system. Suppose PORE recommends top-NN items to a user when there is no attack. We prove that PORE still recommends at least rr of the NN items to the user under any data poisoning attack, where rr is a function of the number of fake users in the attack. Moreover, we design an efficient algorithm to compute rr for each user. We empirically evaluate PORE on popular benchmark datasets.

问问这篇 Paper

智能体会读完全文。

Lune 把这篇 Paper 索引到了每一个公式,引用它的顶会 Paper 也一样。你提问,回答直接引用原文。

可以从这些问题问起

智能体调用

Luneget_paper_fulltext

在 Lune 里问

免费开始,无需绑卡

引用它的顶会 Paper6

问问它们各自怎么用它

它引用的顶会 Paper9

相关 Paper

黄昏的海面,两侧是细线勾勒的悬崖