{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,10,6]],"date-time":"2025-10-06T19:16:21Z","timestamp":1759778181756,"version":"3.40.3"},"publisher-location":"Cham","reference-count":39,"publisher":"Springer Nature Switzerland","isbn-type":[{"type":"print","value":"9783031306716"},{"type":"electronic","value":"9783031306723"}],"license":[{"start":{"date-parts":[[2023,1,1]],"date-time":"2023-01-01T00:00:00Z","timestamp":1672531200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2023,1,1]],"date-time":"2023-01-01T00:00:00Z","timestamp":1672531200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2023]]},"DOI":"10.1007\/978-3-031-30672-3_7","type":"book-chapter","created":{"date-parts":[[2023,4,13]],"date-time":"2023-04-13T11:10:49Z","timestamp":1681384249000},"page":"97-112","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":3,"title":["A New Reconstruction Attack: User Latent Vector Leakage in\u00a0Federated Recommendation"],"prefix":"10.1007","author":[{"given":"Zheng","family":"Zhang","sequence":"first","affiliation":[]},{"given":"Wei","family":"Song","sequence":"additional","affiliation":[]}],"member":"297","published-online":{"date-parts":[[2023,4,14]]},"reference":[{"key":"7_CR1","unstructured":"Ammad-ud-din, M., et al.: Federated collaborative filtering for privacy-preserving personalized recommendation system. CoRR abs\/1901.09888 (2019)"},{"key":"7_CR2","unstructured":"Bhagoji, A.N., Chakraborty, S., Mittal, P., Calo, S.B.: Analyzing federated learning through an adversarial lens. In: International Conference on Machine Learning, ICML 2019. Proceedings of Machine Learning Research, vol. 97, pp. 634\u2013643 (2019)"},{"key":"7_CR3","doi-asserted-by":"publisher","first-page":"59","DOI":"10.1016\/j.ijmedinf.2018.01.007","volume":"112","author":"TS Brisimi","year":"2018","unstructured":"Brisimi, T.S., Chen, R., Mela, T., Olshevsky, A., Paschalidis, I.C., Shi, W.: Federated learning of predictive models from federated electronic health records. Int. J. Med. Inf. 112, 59\u201367 (2018)","journal-title":"Int. J. Med. Inf."},{"key":"7_CR4","unstructured":"Cerda, G.C., Guzm\u00e1n, J., Parra, D.: Recommender systems for online video game platforms: the case of STEAM. In: Conference on World Wide Web, WWW 2019, pp. 763\u2013771 (2019)"},{"key":"7_CR5","doi-asserted-by":"crossref","unstructured":"Chen, L., Xu, Y., Xie, F., Huang, M., Zheng, Z.: Data poisoning attacks on neighborhood-based recommender systems. Trans. Emerg. Telecommun. Technol. 32(6) (2021)","DOI":"10.1002\/ett.3872"},{"key":"7_CR6","doi-asserted-by":"crossref","unstructured":"Fang, M., Gong, N.Z., Liu, J.: Influence function based data poisoning attacks to top-n recommender systems. In: The Web Conference 2020, WWW 2020, pp. 3019\u20133025 (2020)","DOI":"10.1145\/3366423.3380072"},{"key":"7_CR7","doi-asserted-by":"crossref","unstructured":"Fang, M., Yang, G., Gong, N.Z., Liu, J.: Poisoning attacks to graph-based recommender systems. In: Computer Security Applications Conference, ACSAC 2018, pp. 381\u2013392 (2018)","DOI":"10.1145\/3274694.3274706"},{"key":"7_CR8","unstructured":"Goodfellow, I.J., et al.: Generative adversarial nets. In: Advances in Neural Information Processing Systems, NIPS 2014, pp. 2672\u20132680 (2014)"},{"key":"7_CR9","doi-asserted-by":"crossref","unstructured":"Gupta, V., Kapoor, S., Kumar, R.: A review of attacks and its detection attributes on collaborative recommender systems. Int. J. Adv. Res. Comput. Sci. 8 (2017)","DOI":"10.26483\/ijarcs.v8i7.4550"},{"key":"7_CR10","unstructured":"Hard, A., et al.: Federated learning for mobile keyboard prediction. CoRR abs\/1811.03604 (2018)"},{"issue":"4","key":"7_CR11","doi-asserted-by":"publisher","first-page":"19:1","DOI":"10.1145\/2827872","volume":"5","author":"FM Harper","year":"2016","unstructured":"Harper, F.M., Konstan, J.A.: The movielens datasets: history and context. ACM Trans. Interact. Intell. Syst. 5(4), 19:1-19:19 (2016)","journal-title":"ACM Trans. Interact. Intell. Syst."},{"key":"7_CR12","doi-asserted-by":"crossref","unstructured":"He, R., McAuley, J.J.: Ups and downs: modeling the visual evolution of fashion trends with one-class collaborative filtering. In: Conference on World Wide Web, WWW 2016, pp. 507\u2013517 (2016)","DOI":"10.1145\/2872427.2883037"},{"key":"7_CR13","doi-asserted-by":"crossref","unstructured":"He, X., Liao, L., Zhang, H., Nie, L., Hu, X., Chua, T.: Neural collaborative filtering. In: Conference on World Wide Web, WWW 2017, pp. 173\u2013182 (2017)","DOI":"10.1145\/3038912.3052569"},{"key":"7_CR14","doi-asserted-by":"crossref","unstructured":"Huang, H., Mu, J., Gong, N.Z., Li, Q., Liu, B., Xu, M.: Data poisoning attacks to deep learning based recommender systems. In: Network and Distributed System Security Symposium, NDSS 2021 (2021)","DOI":"10.14722\/ndss.2021.24525"},{"key":"7_CR15","unstructured":"Li, B., Wang, Y., Singh, A., Vorobeychik, Y.: Data poisoning attacks on factorization-based collaborative filtering. In: Advances in Neural Information Processing Systems, NIPS 2016, pp. 1885\u20131893 (2016)"},{"key":"7_CR16","doi-asserted-by":"crossref","unstructured":"Liang, F., Pan, W., Ming, Z.: FedRec++: lossless federated recommendation with explicit feedback. In: 35th AAAI Conference on Artificial Intelligence, AAAI 2021, pp. 4224\u20134231 (2021)","DOI":"10.1609\/aaai.v35i5.16546"},{"key":"7_CR17","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"273","DOI":"10.1007\/978-3-030-00470-5_13","volume-title":"Research in Attacks, Intrusions, and Defenses","author":"K Liu","year":"2018","unstructured":"Liu, K., Dolan-Gavitt, B., Garg, S.: Fine-pruning: defending against backdooring attacks on deep neural networks. In: Bailey, M., Holz, T., Stamatogiannakis, M., Ioannidis, S. (eds.) RAID 2018. LNCS, vol. 11050, pp. 273\u2013294. Springer, Cham (2018). https:\/\/doi.org\/10.1007\/978-3-030-00470-5_13"},{"key":"7_CR18","doi-asserted-by":"crossref","unstructured":"Luo, X., Wu, Y., Xiao, X., Ooi, B.C.: Feature inference attack on model predictions in vertical federated learning. In: International Conference on Data Engineering, ICDE 2021, pp. 181\u2013192 (2021)","DOI":"10.1109\/ICDE51399.2021.00023"},{"key":"7_CR19","unstructured":"McMahan, B., Moore, E., Ramage, D., Hampson, S., y Arcas, B.A.: Communication-efficient learning of deep networks from decentralized data. In: International Conference on Artificial Intelligence and Statistics, AISTATS 2017. Proceedings of Machine Learning Research, vol. 54, pp. 1273\u20131282 (2017)"},{"key":"7_CR20","doi-asserted-by":"crossref","unstructured":"Melis, L., Song, C., Cristofaro, E.D., Shmatikov, V.: Exploiting unintended feature leakage in collaborative learning. In: Symposium on Security and Privacy, S &P 2019, pp. 691\u2013706 (2019)","DOI":"10.1109\/SP.2019.00029"},{"issue":"3","key":"7_CR21","doi-asserted-by":"publisher","first-page":"56","DOI":"10.1109\/MIS.2007.45","volume":"22","author":"B Mobasher","year":"2007","unstructured":"Mobasher, B., Burke, R.D., Bhaumik, R., Sandvig, J.J.: Attacks and remedies in collaborative recommendation. IEEE Intell. Syst. 22(3), 56\u201363 (2007)","journal-title":"IEEE Intell. Syst."},{"key":"7_CR22","doi-asserted-by":"crossref","unstructured":"Muhammad, K., et al.: FedFast: going beyond average for faster training of federated recommender systems. In: Conference on Knowledge Discovery and Data Mining, 2020, pp. 1234\u20131242 (2020)","DOI":"10.1145\/3394486.3403176"},{"key":"7_CR23","doi-asserted-by":"crossref","unstructured":"Nasr, M., Shokri, R., Houmansadr, A.: Comprehensive privacy analysis of deep learning: passive and active white-box inference attacks against centralized and federated learning. In: Symposium on Security and Privacy, SP 2019, pp. 739\u2013753 (2019)","DOI":"10.1109\/SP.2019.00065"},{"key":"7_CR24","unstructured":"O\u2019Mahony, M.P., Hurley, N.J., Silvestre, G.C.M.: Recommender systems: attack types and strategies. In: Conference on Artificial Intelligence, AAAI 2005, pp. 334\u2013339 (2005)"},{"issue":"2","key":"7_CR25","doi-asserted-by":"publisher","first-page":"117","DOI":"10.1016\/j.jpdc.2008.09.002","volume":"69","author":"P Patarasuk","year":"2009","unstructured":"Patarasuk, P., Yuan, X.: Bandwidth optimal all-reduce algorithms for clusters of workstations. J. Parallel Distrib. Comput. 69(2), 117\u2013124 (2009)","journal-title":"J. Parallel Distrib. Comput."},{"key":"7_CR26","doi-asserted-by":"crossref","unstructured":"Rong, D., He, Q., Chen, J.: Poisoning deep learning based recommender model in federated learning scenario. In: Advances in Neural Information Processing Systems, NIPS 2022 (2022)","DOI":"10.24963\/ijcai.2022\/306"},{"key":"7_CR27","doi-asserted-by":"crossref","unstructured":"Rong, D., Ye, S., Zhao, R., Yuen, H.N., Chen, J., He, Q.: FedRecAttack: model poisoning attack to federated recommendation. CoRR abs\/2204.01499 (2022)","DOI":"10.1109\/ICDE53745.2022.00243"},{"key":"7_CR28","unstructured":"Shafahi, A., et al.: Poison frogs! targeted clean-label poisoning attacks on neural networks. In: Advances in Neural Information Processing Systems, NeurIPS 2018, pp. 6106\u20136116 (2018)"},{"key":"7_CR29","doi-asserted-by":"crossref","unstructured":"Shokri, R., Stronati, M., Song, C., Shmatikov, V.: Membership inference attacks against machine learning models. In: Symposium on Security and Privacy, S &P, 2017, pp. 3\u201318 (2017)","DOI":"10.1109\/SP.2017.41"},{"issue":"6","key":"7_CR30","doi-asserted-by":"publisher","first-page":"1159","DOI":"10.14778\/3514061.3514064","volume":"15","author":"Y Tong","year":"2022","unstructured":"Tong, Y., et al.: Hu-fu: Efficient and secure spatial queries over data federation. Proc. VLDB Endow. 15(6), 1159\u20131172 (2022)","journal-title":"Proc. VLDB Endow."},{"key":"7_CR31","doi-asserted-by":"crossref","unstructured":"Wang, Z., Song, M., Zhang, Z., Song, Y., Wang, Q., Qi, H.: Beyond inferring class representatives: User-level privacy leakage from federated learning. In: Conference on Computer Communications, INFOCOM 2019, pp. 2512\u20132520 (2019)","DOI":"10.1109\/INFOCOM.2019.8737416"},{"key":"7_CR32","doi-asserted-by":"crossref","unstructured":"Wu, J., et al.: Hierarchical personalized federated learning for user modeling. In: The Web Conference 2021, WWW 2021, pp. 957\u2013968 (2021)","DOI":"10.1145\/3442381.3449926"},{"key":"7_CR33","unstructured":"Xie, C., Huang, K., Chen, P., Li, B.: DBA: distributed backdoor attacks against federated learning. In: International Conference on Learning Representations, ICLR 2020 (2020)"},{"key":"7_CR34","unstructured":"Xing, X., et al.: Take this personally: Pollution attacks on personalized services. In: 2013 Proceedings of the 22th USENIX Security Symposium, pp. 671\u2013686 (2013)"},{"key":"7_CR35","doi-asserted-by":"crossref","unstructured":"Yang, G., Gong, N.Z., Cai, Y.: Fake co-visitation injection attacks to recommender systems. In: Network and Distributed System Security Symposium, NDSS 2017 (2017)","DOI":"10.14722\/ndss.2017.23020"},{"key":"7_CR36","unstructured":"Zeller, W., Felten, E.W.: Cross-site request forgeries: exploitation and prevention. The New York Times, pp. 1\u201313 (2009)"},{"key":"7_CR37","doi-asserted-by":"crossref","unstructured":"Zhang, S., Yin, H., Chen, T., Huang, Z., Nguyen, Q.V.H., Cui, L.: PipAttack: poisoning federated recommender systems formanipulating item promotion. CoRR abs\/2110.10926 (2021)","DOI":"10.1145\/3488560.3498386"},{"key":"7_CR38","doi-asserted-by":"crossref","unstructured":"Zheng, W., Yan, L., Gou, C., Wang, F.: Federated meta-learning for fraudulent credit card detection. In: International Joint Conference on Artificial Intelligence, IJCAI 2020, pp. 4654\u20134660 (2020)","DOI":"10.24963\/ijcai.2020\/642"},{"key":"7_CR39","unstructured":"Zhu, L., Liu, Z., Han, S.: Deep leakage from gradients. In: Advances in Neural Information Processing Systems, NIPS 2019, pp. 14747\u201314756 (2019)"}],"container-title":["Lecture Notes in Computer Science","Database Systems for Advanced Applications"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-031-30672-3_7","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,3,12]],"date-time":"2024-03-12T17:21:09Z","timestamp":1710264069000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-031-30672-3_7"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023]]},"ISBN":["9783031306716","9783031306723"],"references-count":39,"URL":"https:\/\/doi.org\/10.1007\/978-3-031-30672-3_7","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2023]]},"assertion":[{"value":"14 April 2023","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"DASFAA","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Database Systems for Advanced Applications","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Tianjin","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"China","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2023","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"17 April 2023","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"20 April 2023","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"28","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"dasfaa2023","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"http:\/\/www.tjudb.cn\/dasfaa2023\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Double-blind","order":1,"name":"type","label":"Type","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"Microsoft CMT","order":2,"name":"conference_management_system","label":"Conference Management System","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"652","order":3,"name":"number_of_submissions_sent_for_review","label":"Number of Submissions Sent for Review","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"125","order":4,"name":"number_of_full_papers_accepted","label":"Number of Full Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"66","order":5,"name":"number_of_short_papers_accepted","label":"Number of Short Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"19% - The value is computed by the equation \"Number of Full Papers Accepted \/ Number of Submissions Sent for Review * 100\" and then rounded to a whole number.","order":6,"name":"acceptance_rate_of_full_papers","label":"Acceptance Rate of Full Papers","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"3","order":7,"name":"average_number_of_reviews_per_paper","label":"Average Number of Reviews per Paper","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"7.3","order":8,"name":"average_number_of_papers_per_reviewer","label":"Average Number of Papers per Reviewer","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"No","order":9,"name":"external_reviewers_involved","label":"External Reviewers Involved","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}}]}}