IndirectAD: Practical Data Poisoning Attacks against Recommender Systems for Item Promotion
Fuente:
arXiv
Saved in:
| Main Authors: | Wang, Zihao, Mao, Tianhao, Wang, XiaoFeng, Tang, Di, Liu, Xiaozhong |
|---|---|
| Format: | Preprint |
| Published: |
2025
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
MAWSEO: Adversarial Wiki Search Poisoning for Illicit Online Promotion
by: Lin, Zilong, et al.
Published: (2023)
by: Lin, Zilong, et al.
Published: (2023)
LLM-Enhanced Software Patch Localization
by: Yu, Jinhong, et al.
Published: (2024)
by: Yu, Jinhong, et al.
Published: (2024)
LocalAlign: Enabling Generalizable Prompt Injection Defense via Generation of Near-Target Adversarial Examples for Alignment Training
by: Gong, Yuyang, et al.
Published: (2026)
by: Gong, Yuyang, et al.
Published: (2026)
Misrouter: Exploiting Routing Mechanisms for Input-Only Attacks on Mixture-of-Experts LLMs
by: Fei, Zekun, et al.
Published: (2026)
by: Fei, Zekun, et al.
Published: (2026)
Rethinking Side-Channel Analysis: Automated Discovery and Analysis of Side-Channel Leakage with LLM-Assisted Agents
by: Xu, Zhen, et al.
Published: (2026)
by: Xu, Zhen, et al.
Published: (2026)
DiscourseFlip: An Oblique Discourse-Level Opinion Manipulation Attack against Black-box Retrieval-Augmented Generation
by: Gong, Yuyang, et al.
Published: (2026)
by: Gong, Yuyang, et al.
Published: (2026)
Sharpness-Aware Data Poisoning Attack
by: He, Pengfei, et al.
Published: (2023)
by: He, Pengfei, et al.
Published: (2023)
Black-box Membership Inference Attacks against Fine-tuned Diffusion Models
by: Pang, Yan, et al.
Published: (2023)
by: Pang, Yan, et al.
Published: (2023)
System-Level Defense against Indirect Prompt Injection Attacks: An Information Flow Control Perspective
by: Wu, Fangzhou, et al.
Published: (2024)
by: Wu, Fangzhou, et al.
Published: (2024)
Poisoning Attacks and Defenses in Recommender Systems: A Survey
by: Wang, Zongwei, et al.
Published: (2024)
by: Wang, Zongwei, et al.
Published: (2024)
Practical Poisoning Attacks against Retrieval-Augmented Generation
by: Zhang, Baolei, et al.
Published: (2025)
by: Zhang, Baolei, et al.
Published: (2025)
Defense against Poisoning Attacks under Shuffle-DP
by: Wang, Siyi, et al.
Published: (2026)
by: Wang, Siyi, et al.
Published: (2026)
FATH: Authentication-based Test-time Defense against Indirect Prompt Injection Attacks
by: Wang, Jiongxiao, et al.
Published: (2024)
by: Wang, Jiongxiao, et al.
Published: (2024)
Defending against Data Poisoning Attacks in Federated Learning via User Elimination
by: Galanis, Nick
Published: (2024)
by: Galanis, Nick
Published: (2024)
Reference Recommendation based Membership Inference Attack against Hybrid-based Recommender Systems
by: Chi, Xiaoxiao, et al.
Published: (2025)
by: Chi, Xiaoxiao, et al.
Published: (2025)
Data Poisoning Attacks in Intelligent Transportation Systems: A Survey
by: Wang, Feilong, et al.
Published: (2024)
by: Wang, Feilong, et al.
Published: (2024)
Clues in Tweets: Twitter-Guided Discovery and Analysis of SMS Spam
by: Tang, Siyuan, et al.
Published: (2022)
by: Tang, Siyuan, et al.
Published: (2022)
Unveiling Vulnerabilities of Contrastive Recommender Systems to Poisoning Attacks
by: Wang, Zongwei, et al.
Published: (2023)
by: Wang, Zongwei, et al.
Published: (2023)
Mitigating Data Poisoning Attacks to Local Differential Privacy
by: Li, Xiaolin, et al.
Published: (2025)
by: Li, Xiaolin, et al.
Published: (2025)
PIDP-Attack: Combining Prompt Injection with Database Poisoning Attacks on Retrieval-Augmented Generation Systems
by: Wang, Haozhen, et al.
Published: (2026)
by: Wang, Haozhen, et al.
Published: (2026)
VENOMREC: Cross-Modal Interactive Poisoning for Targeted Promotion in Multimodal LLM Recommender Systems
by: Guan, Guowei, et al.
Published: (2026)
by: Guan, Guowei, et al.
Published: (2026)
White-box Membership Inference Attacks against Diffusion Models
by: Pang, Yan, et al.
Published: (2023)
by: Pang, Yan, et al.
Published: (2023)
Provable Watermarking for Data Poisoning Attacks
by: Zhu, Yifan, et al.
Published: (2025)
by: Zhu, Yifan, et al.
Published: (2025)
Consiglieres in the Shadow: Understanding the Use of Uncensored Large Language Models in Cybercrimes
by: Lin, Zilong, et al.
Published: (2025)
by: Lin, Zilong, et al.
Published: (2025)
The Early Bird Catches the Leak: Unveiling Timing Side Channels in LLM Serving Systems
by: Song, Linke, et al.
Published: (2024)
by: Song, Linke, et al.
Published: (2024)
Transferable Availability Poisoning Attacks
by: Liu, Yiyong, et al.
Published: (2023)
by: Liu, Yiyong, et al.
Published: (2023)
DETOUR: A Practical Backdoor Attack against Object Detection
by: Liu, Dazhuang, et al.
Published: (2026)
by: Liu, Dazhuang, et al.
Published: (2026)
Thought-Transfer: Indirect Targeted Poisoning Attacks on Chain-of-Thought Reasoning Models
by: Chaudhari, Harsh, et al.
Published: (2026)
by: Chaudhari, Harsh, et al.
Published: (2026)
Low Rank Comes with Low Security: Gradient Assembly Poisoning Attacks against Distributed LoRA-based LLM Systems
by: Dong, Yueyan, et al.
Published: (2026)
by: Dong, Yueyan, et al.
Published: (2026)
Partner in Crime: Boosting Targeted Poisoning Attacks against Federated Learning
by: Sun, Shihua, et al.
Published: (2024)
by: Sun, Shihua, et al.
Published: (2024)
FedRecAttack: Model Poisoning Attack to Federated Recommendation
by: Rong, Dazhong, et al.
Published: (2022)
by: Rong, Dazhong, et al.
Published: (2022)
Stealthy Peers: Understanding Security Risks of WebRTC-Based Peer-Assisted Video Streaming
by: Tang, Siyuan, et al.
Published: (2022)
by: Tang, Siyuan, et al.
Published: (2022)
VortexPIA: Indirect Prompt Injection Attack against LLMs for Efficient Extraction of User Privacy
by: Cui, Yu, et al.
Published: (2025)
by: Cui, Yu, et al.
Published: (2025)
Mitigating Backdoor Triggered and Targeted Data Poisoning Attacks in Voice Authentication Systems
by: Mohammadi, Alireza, et al.
Published: (2025)
by: Mohammadi, Alireza, et al.
Published: (2025)
LDPRecover: Recovering Frequencies from Poisoning Attacks against Local Differential Privacy
by: Sun, Xinyue, et al.
Published: (2024)
by: Sun, Xinyue, et al.
Published: (2024)
KeTS: Kernel-based Trust Segmentation against Model Poisoning Attacks
by: Gangwal, Ankit, et al.
Published: (2025)
by: Gangwal, Ankit, et al.
Published: (2025)
Enhancing the Antidote: Improved Pointwise Certifications against Poisoning Attacks
by: Liu, Shijie, et al.
Published: (2023)
by: Liu, Shijie, et al.
Published: (2023)
Understanding the Security Risks of Decentralized Exchanges by Uncovering Unfair Trades in the Wild
by: Chen, Jiaqi, et al.
Published: (2024)
by: Chen, Jiaqi, et al.
Published: (2024)
An Automated Attack Investigation Approach Leveraging Threat-Knowledge-Augmented Large Language Models
by: Dai, Rujie, et al.
Published: (2025)
by: Dai, Rujie, et al.
Published: (2025)
Data Poisoning for In-context Learning
by: He, Pengfei, et al.
Published: (2024)
by: He, Pengfei, et al.
Published: (2024)
Similar Items
-
MAWSEO: Adversarial Wiki Search Poisoning for Illicit Online Promotion
by: Lin, Zilong, et al.
Published: (2023) -
LLM-Enhanced Software Patch Localization
by: Yu, Jinhong, et al.
Published: (2024) -
LocalAlign: Enabling Generalizable Prompt Injection Defense via Generation of Near-Target Adversarial Examples for Alignment Training
by: Gong, Yuyang, et al.
Published: (2026) -
Misrouter: Exploiting Routing Mechanisms for Input-Only Attacks on Mixture-of-Experts LLMs
by: Fei, Zekun, et al.
Published: (2026) -
Rethinking Side-Channel Analysis: Automated Discovery and Analysis of Side-Channel Leakage with LLM-Assisted Agents
by: Xu, Zhen, et al.
Published: (2026)