A Black-Box Attack Model for Visually-Aware Recommender Systems

11/05/2020
by   Rami Cohen, et al.
0

Due to the advances in deep learning, visually-aware recommender systems (RS) have recently attracted increased research interest. Such systems combine collaborative signals with images, usually represented as feature vectors outputted by pre-trained image models. Since item catalogs can be huge, recommendation service providers often rely on images that are supplied by the item providers. In this work, we show that relying on such external sources can make an RS vulnerable to attacks, where the goal of the attacker is to unfairly promote certain pushed items. Specifically, we demonstrate how a new visual attack model can effectively influence the item scores and rankings in a black-box approach, i.e., without knowing the parameters of the model. The main underlying idea is to systematically create small human-imperceptible perturbations of the pushed item image and to devise appropriate gradient approximation methods to incrementally raise the pushed item's score. Experimental evaluations on two datasets show that the novel attack model is effective even when the contribution of the visual features to the overall performance of the recommender system is modest.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
05/14/2023

Manipulating Visually-aware Federated Recommender Systems and Its Countermeasures

Federated recommender systems (FedRecs) have been widely explored recent...
research
08/28/2023

RecRec: Algorithmic Recourse for Recommender Systems

Recommender systems play an essential role in the choices people make in...
research
09/11/2018

Poisoning Attacks to Graph-Based Recommender Systems

Recommender system is an important component of many web services to hel...
research
06/02/2020

Adversarial Item Promotion: Vulnerabilities at the Core of Top-N Recommenders that Use Images to Address Cold Start

E-commerce platforms provide their customers with ranked lists of recomm...
research
05/17/2020

Attacking Recommender Systems with Augmented User Profiles

Recommendation Systems (RS) have become an essential part of many online...
research
06/23/2022

Shilling Black-box Recommender Systems by Learning to Generate Fake User Profiles

Due to the pivotal role of Recommender Systems (RS) in guiding customers...
research
03/24/2023

Where to Go Next for Recommender Systems? ID- vs. Modality-based Recommender Models Revisited

Recommendation models that utilize unique identities (IDs) to represent ...

Please sign up or login with your details

Forgot password? Click here to reset