VENOMREC: Cross-Modal Interactive Poisoning for Targeted Promotion in Multimodal LLM Recommender Systems
Fuente:
arXiv
Saved in:
| Main Authors: | Guan, Guowei, Hao, Yurong, Zhang, Jiaming, Wu, Tiantong, Zhang, Fuyao, Chen, Tianxiang, Huang, Longtao, Leung, Cyril, Lim, Wei Yang Bryan |
|---|---|
| Format: | Preprint |
| Published: |
2026
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
DualTAP: A Dual-Task Adversarial Protector for Mobile MLLM Agents
by: Zhang, Fuyao, et al.
Published: (2025)
by: Zhang, Fuyao, et al.
Published: (2025)
Oblivionis: A Lightweight Learning and Unlearning Framework for Federated Large Language Models
by: Zhang, Fuyao, et al.
Published: (2025)
by: Zhang, Fuyao, et al.
Published: (2025)
Verifiably Forgotten? Gradient Differences Still Enable Data Reconstruction in Federated Unlearning
by: Zhang, Fuyao, et al.
Published: (2025)
by: Zhang, Fuyao, et al.
Published: (2025)
ICON: Indirect Prompt Injection Defense for Agents based on Inference-Time Correction
by: Wang, Che, et al.
Published: (2026)
by: Wang, Che, et al.
Published: (2026)
FraudBench: A Multimodal Benchmark for Detecting AI-Generated Fraudulent Refund Evidence
by: Yan, Xinyu, et al.
Published: (2026)
by: Yan, Xinyu, et al.
Published: (2026)
MPU: Towards Secure and Privacy-Preserving Knowledge Unlearning for Large Language Models
by: Wang, Tiantong, et al.
Published: (2026)
by: Wang, Tiantong, et al.
Published: (2026)
Spattack: Subgroup Poisoning Attacks on Federated Recommender Systems
by: Yan, Bo, et al.
Published: (2025)
by: Yan, Bo, et al.
Published: (2025)
IndirectAD: Practical Data Poisoning Attacks against Recommender Systems for Item Promotion
by: Wang, Zihao, et al.
Published: (2025)
by: Wang, Zihao, et al.
Published: (2025)
Reflected Search Poisoning for Illicit Promotion
by: Wu, Sangyi, et al.
Published: (2024)
by: Wu, Sangyi, et al.
Published: (2024)
PoisonCatcher: Revealing and Identifying LDP Poisoning Attacks in IIoT
by: Shuai, Lisha, et al.
Published: (2024)
by: Shuai, Lisha, et al.
Published: (2024)
Cross-Modal Backdoors in Multimodal Large Language Models
by: Wang, Runhe, et al.
Published: (2026)
by: Wang, Runhe, et al.
Published: (2026)
TRUSTDESC: Preventing Tool Poisoning in LLM Applications via Trusted Description Generation
by: Ye, Hengkai, et al.
Published: (2026)
by: Ye, Hengkai, et al.
Published: (2026)
Ethereum Crypto Wallets under Address Poisoning: How Usable and Secure Are They?
by: Guan, Shixuan, et al.
Published: (2025)
by: Guan, Shixuan, et al.
Published: (2025)
Securing Voice Authentication Applications Against Targeted Data Poisoning
by: Mohammadi, Alireza, et al.
Published: (2024)
by: Mohammadi, Alireza, et al.
Published: (2024)
Visual Inception: Compromising Long-term Planning in Agentic Recommenders via Multimodal Memory Poisoning
by: Qian, Jiachen
Published: (2026)
by: Qian, Jiachen
Published: (2026)
Sugar-Coated Poison: Benign Generation Unlocks LLM Jailbreaking
by: Wu, Yu-Hang, et al.
Published: (2025)
by: Wu, Yu-Hang, et al.
Published: (2025)
PolyJailbreak: Cross-Modal Jailbreaking Attacks on Black-Box Multimodal LLMs
by: Wang, Xinkai, et al.
Published: (2025)
by: Wang, Xinkai, et al.
Published: (2025)
MindGuard: Intrinsic Decision Inspection for Securing LLM Agents Against Metadata Poisoning
by: Wang, Zhiqiang, et al.
Published: (2025)
by: Wang, Zhiqiang, et al.
Published: (2025)
Poisoned-MRAG: Knowledge Poisoning Attacks to Multimodal Retrieval Augmented Generation
by: Liu, Yinuo, et al.
Published: (2025)
by: Liu, Yinuo, et al.
Published: (2025)
Mitigating Backdoor Triggered and Targeted Data Poisoning Attacks in Voice Authentication Systems
by: Mohammadi, Alireza, et al.
Published: (2025)
by: Mohammadi, Alireza, et al.
Published: (2025)
LoopTrap: Termination Poisoning Attacks on LLM Agents
by: Xu, Huiyu, et al.
Published: (2026)
by: Xu, Huiyu, et al.
Published: (2026)
Low Rank Comes with Low Security: Gradient Assembly Poisoning Attacks against Distributed LoRA-based LLM Systems
by: Dong, Yueyan, et al.
Published: (2026)
by: Dong, Yueyan, et al.
Published: (2026)
Poisoning Decentralized Collaborative Recommender System and Its Countermeasures
by: Zheng, Ruiqi, et al.
Published: (2024)
by: Zheng, Ruiqi, et al.
Published: (2024)
Poisoning Attacks and Defenses in Recommender Systems: A Survey
by: Wang, Zongwei, et al.
Published: (2024)
by: Wang, Zongwei, et al.
Published: (2024)
Human-Imperceptible Retrieval Poisoning Attacks in LLM-Powered Applications
by: Zhang, Quan, et al.
Published: (2024)
by: Zhang, Quan, et al.
Published: (2024)
Poisoning the Pixels: Revisiting Backdoor Attacks on Semantic Segmentation
by: Zhang, Guangsheng, et al.
Published: (2026)
by: Zhang, Guangsheng, et al.
Published: (2026)
PACE: Poisoning Attacks on Learned Cardinality Estimation
by: Zhang, Jintao, et al.
Published: (2024)
by: Zhang, Jintao, et al.
Published: (2024)
Poison to Detect: Detection of Targeted Overfitting in Federated Learning
by: Mestari, Soumia Zohra El, et al.
Published: (2025)
by: Mestari, Soumia Zohra El, et al.
Published: (2025)
FedRecAttack: Model Poisoning Attack to Federated Recommendation
by: Rong, Dazhong, et al.
Published: (2022)
by: Rong, Dazhong, et al.
Published: (2022)
Confused ChatGPT: Cross-App Context Poisoning via First-Party APIs
by: Wang, Chao, et al.
Published: (2026)
by: Wang, Chao, et al.
Published: (2026)
Visualizing the Shadows: Unveiling Data Poisoning Behaviors in Federated Learning
by: Zhang, Xueqing, et al.
Published: (2024)
by: Zhang, Xueqing, et al.
Published: (2024)
Deep-Research Agents Can Be Poisoned via User-Generated Content
by: Zhang, Tingwei, et al.
Published: (2026)
by: Zhang, Tingwei, et al.
Published: (2026)
Pandora: Jailbreak GPTs by Retrieval Augmented Generation Poisoning
by: Deng, Gelei, et al.
Published: (2024)
by: Deng, Gelei, et al.
Published: (2024)
Knowledge Poisoning Attacks on Medical Multi-Modal Retrieval-Augmented Generation
by: Yang, Peiru, et al.
Published: (2026)
by: Yang, Peiru, et al.
Published: (2026)
Intelligent Carrier Allocation: A Cross-Modal Reasoning Framework for Adaptive Multimodal Steganography
by: Das, Abhirup, et al.
Published: (2025)
by: Das, Abhirup, et al.
Published: (2025)
Blockchain Address Poisoning
by: Tsuchiya, Taro, et al.
Published: (2025)
by: Tsuchiya, Taro, et al.
Published: (2025)
Multimodal Large Language Models for Phishing Webpage Detection and Identification
by: Lee, Jehyun, et al.
Published: (2024)
by: Lee, Jehyun, et al.
Published: (2024)
PEEL: A Poisoning-Exposing Encoding Theoretical Framework for Local Differential Privacy
by: Shuai, Lisha, et al.
Published: (2025)
by: Shuai, Lisha, et al.
Published: (2025)
Activation Gradient based Poisoned Sample Detection Against Backdoor Attacks
by: Yuan, Danni, et al.
Published: (2023)
by: Yuan, Danni, et al.
Published: (2023)
Transferable Availability Poisoning Attacks
by: Liu, Yiyong, et al.
Published: (2023)
by: Liu, Yiyong, et al.
Published: (2023)
Similar Items
-
DualTAP: A Dual-Task Adversarial Protector for Mobile MLLM Agents
by: Zhang, Fuyao, et al.
Published: (2025) -
Oblivionis: A Lightweight Learning and Unlearning Framework for Federated Large Language Models
by: Zhang, Fuyao, et al.
Published: (2025) -
Verifiably Forgotten? Gradient Differences Still Enable Data Reconstruction in Federated Unlearning
by: Zhang, Fuyao, et al.
Published: (2025) -
ICON: Indirect Prompt Injection Defense for Agents based on Inference-Time Correction
by: Wang, Che, et al.
Published: (2026) -
FraudBench: A Multimodal Benchmark for Detecting AI-Generated Fraudulent Refund Evidence
by: Yan, Xinyu, et al.
Published: (2026)