Multi-Agent Attacks for Black-Box Social Recommendations

被引:0
|
作者
Wang, Shijie [1 ]
Fan, Wenqi [1 ]
Wei, Xiao-yong [1 ]
Mei, Xiaowei [1 ]
Lin, Shanru [2 ]
Li, Qing [1 ]
机构
[1] Hong Kong Polytech Univ, Hong Kong, Peoples R China
[2] City Univ Hong Kong, Hong Kong, Peoples R China
基金
中国国家自然科学基金;
关键词
Social Recommendations; Adversarial Attacks; Multi-agent Reinforcement Learning; Recommender Systems; Graph Neural Networks; Black-box Attacks;
D O I
10.1145/3696105
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The rise of online social networks has facilitated the evolution of social recommender systems, which incorporate social relations to enhance users' decision-making process. With the great success of Graph Neural Networks (GNNs) in learning node representations, GNN-based social recommendations have been widely studied to model user-item interactions and user-user social relations simultaneously. Despite their great successes, recent studies have shown that these advanced recommender systems are highly vulnerable to adversarial attacks, in which attackers can inject well-designed fake user profiles to disrupt recommendation performances. While most existing studies mainly focus on targeted attacks to promote target items on vanilla recommender systems, untargeted attacks to degrade the overall prediction performance are less explored on social recommendations under a black-box scenario. To perform untargeted attacks on social recommender systems, attackers can construct malicious social relationships for fake users to enhance the attack performance. However, the coordination of social relations and item profiles is challenging for attacking black-box social recommendations. To address this limitation, we first conduct several preliminary studies to demonstrate the effectiveness of cross-community connections and cold-start items in degrading recommendations performance. Specifically, we propose a novel framework MultiAttack based on multi-agent reinforcement learning to coordinate the generation of cold-start item profiles and cross-community social relations for conducting untargeted attacks on black-box social recommendations. Comprehensive experiments on various real-world datasets demonstrate the effectiveness of our proposed attacking framework under the black-box setting.
引用
收藏
页数:26
相关论文
共 50 条
  • [1] Multi-Agent Intention Progression with Black-Box Agents
    Dann, Michael
    Yao, Yuan
    Logan, Brian
    Thangarajah, John
    PROCEEDINGS OF THE THIRTIETH INTERNATIONAL JOINT CONFERENCE ON ARTIFICIAL INTELLIGENCE, IJCAI 2021, 2021, : 132 - 138
  • [2] Multi-Agent Active Learning for Distributed Black-Box Optimization
    Cannelli, Loris
    Zhu, Mengjia
    Farina, Francesco
    Bemporad, Alberto
    Piga, Dario
    IEEE CONTROL SYSTEMS LETTERS, 2023, 7 : 1488 - 1493
  • [3] Governing Black-Box Agents in Competitive Multi-Agent Systems
    Pernpeintner, Michael
    Bartelt, Christian
    Stuckenschmidt, Heiner
    MULTI-AGENT SYSTEMS, EUMAS 2021, 2021, 12802 : 19 - 36
  • [4] Knowledge-enhanced Black-box Attacks for Recommendations
    Chen, Jingfan
    Fan, Wenqi
    Zhu, Guanghui
    Zhao, Xiangyu
    Yuan, Chunfeng
    Li, Qing
    Huang, Yihua
    PROCEEDINGS OF THE 28TH ACM SIGKDD CONFERENCE ON KNOWLEDGE DISCOVERY AND DATA MINING, KDD 2022, 2022, : 108 - 117
  • [5] Self-learning Governance of Black-Box Multi-Agent Systems
    Oesterle, Michael
    Bartelt, Christian
    Luedtke, Stefan
    Stuckenschmidt, Heiner
    COORDINATION, ORGANIZATIONS, INSTITUTIONS, NORMS, AND ETHICS FOR GOVERNANCE OF MULTI-AGENT SYSTEMS XV, 2022, 13549 : 73 - 91
  • [6] The black-box simplex architecture for runtime assurance of multi-agent CPS
    Sheikhi, Sanaz
    Mehmood, Usama
    Bak, Stanley
    Smolka, Scott A.
    Stoller, Scott D.
    INNOVATIONS IN SYSTEMS AND SOFTWARE ENGINEERING, 2024,
  • [7] A Cost-Aware Multi-Agent System for Black-Box Design Space Exploration
    Chen, Siyu
    Bayrak, Alparslan Emrah
    Sha, Zhenghui
    JOURNAL OF MECHANICAL DESIGN, 2025, 147 (01)
  • [8] Multi-agent Black-box Optimization using a Bayesian Approach to Alternating Direction Method of Multipliers
    Krishnamoorthy, Dinesh
    Paulson, Joel A.
    IFAC PAPERSONLINE, 2023, 56 (02): : 2232 - 2237
  • [9] A hierarchical multi-agent architecture based on virtual identities to explain black-box personalization policies
    Amador-Dominguez, Elvira
    Serrano, Emilio
    Manrique, Daniel
    EXPERT SYSTEMS WITH APPLICATIONS, 2021, 186
  • [10] Simple Black-box Adversarial Attacks
    Guo, Chuan
    Gardner, Jacob R.
    You, Yurong
    Wilson, Andrew Gordon
    Weinberger, Kilian Q.
    INTERNATIONAL CONFERENCE ON MACHINE LEARNING, VOL 97, 2019, 97