{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,4]],"date-time":"2026-03-04T03:31:52Z","timestamp":1772595112954,"version":"3.50.1"},"publisher-location":"New York, NY, USA","reference-count":44,"publisher":"ACM","funder":[{"name":"Ahold Delhaize","award":["AIRLab Amsterdam"],"award-info":[{"award-number":["AIRLab Amsterdam"]}]},{"name":"Dutch Research Council (NWO)","award":["024.004.022, NWA.1389.20.-183, KICH3.-LTP.-20.006"],"award-info":[{"award-number":["024.004.022, NWA.1389.20.-183, KICH3.-LTP.-20.006"]}]},{"name":"European Union Horizon Europe","award":["101070212"],"award-info":[{"award-number":["101070212"]}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2025,9,22]]},"DOI":"10.1145\/3705328.3748081","type":"proceedings-article","created":{"date-parts":[[2025,9,6]],"date-time":"2025-09-06T10:46:13Z","timestamp":1757155573000},"page":"197-206","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":1,"title":["LANCE: Exploration and Reflection for LLM-based Textual Attacks on News Recommender Systems"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-5298-0309","authenticated-orcid":false,"given":"Yuyue","family":"Zhao","sequence":"first","affiliation":[{"name":"University of Science and Technology of China, Hefei, China and University of Amsterdam, Amsterdam, Netherlands"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-9273-9037","authenticated-orcid":false,"given":"Jin","family":"Huang","sequence":"additional","affiliation":[{"name":"University of Cambridge, Cambridge, United Kingdom"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-1440-911X","authenticated-orcid":false,"given":"Shuchang","family":"Liu","sequence":"additional","affiliation":[{"name":"Rutgers University, New Jersey, USA"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-6941-5218","authenticated-orcid":false,"given":"Jiancan","family":"Wu","sequence":"additional","affiliation":[{"name":"University of Science and Technology of China, Hefei, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-6148-6329","authenticated-orcid":false,"given":"Xiang","family":"Wang","sequence":"additional","affiliation":[{"name":"University of Science and Technology of China, Hefei, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-1086-0202","authenticated-orcid":false,"given":"Maarten","family":"de Rijke","sequence":"additional","affiliation":[{"name":"University of Amsterdam, Amsterdam, Netherlands"}]}],"member":"320","published-online":{"date-parts":[[2025,9,7]]},"reference":[{"key":"e_1_3_3_2_2_2","doi-asserted-by":"publisher","DOI":"10.1145\/3298689.3347050"},{"key":"e_1_3_3_2_3_2","doi-asserted-by":"publisher","DOI":"10.1145\/3487553.3524674"},{"key":"e_1_3_3_2_4_2","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/P19-1033"},{"key":"e_1_3_3_2_5_2","doi-asserted-by":"publisher","DOI":"10.1145\/3357384.3358116"},{"key":"e_1_3_3_2_6_2","doi-asserted-by":"publisher","DOI":"10.1145\/3580305.3599502"},{"key":"e_1_3_3_2_7_2","unstructured":"Jacob Devlin Ming-Wei Chang Kenton Lee and Kristina Toutanova. 2018. BERT: Pre-training of deep bidirectional transformers for language understanding. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/1810.04805 (2018)."},{"key":"e_1_3_3_2_8_2","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/2024.findings-acl.97"},{"key":"e_1_3_3_2_9_2","doi-asserted-by":"publisher","DOI":"10.1109\/SPW.2018.00016"},{"key":"e_1_3_3_2_10_2","doi-asserted-by":"publisher","DOI":"10.1145\/3106426.3109436"},{"key":"e_1_3_3_2_11_2","unstructured":"Edward\u00a0J Hu Yelong Shen Phillip Wallis Zeyuan Allen-Zhu Yuanzhi Li Shean Wang Lu Wang and Weizhu Chen. 2021. Lora: Low-rank adaptation of large language models. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2106.09685 (2021)."},{"key":"e_1_3_3_2_12_2","doi-asserted-by":"crossref","unstructured":"Hai Huang Jiaming Mu Neil\u00a0Zhenqiang Gong Qi Li Bin Liu and Mingwei Xu. 2021. Data poisoning attacks to deep learning based recommender systems. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2101.02644 (2021).","DOI":"10.14722\/ndss.2021.24525"},{"key":"e_1_3_3_2_13_2","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v34i05.6311"},{"key":"e_1_3_3_2_14_2","doi-asserted-by":"crossref","unstructured":"Johannes Kruse Kasper Lindskow Saikishore Kalloori Marco Polignano Claudio Pomo Abhishek Srivastava Anshuk Uppal Michael\u00a0Riis Andersen and J. Frellsen. 2024. EB-NeRD: A large-scale dataset for news recommendation. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2410.03432 (Oct. 2024).","DOI":"10.1145\/3687151.3687152"},{"key":"e_1_3_3_2_15_2","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/2022.findings-acl.29"},{"key":"e_1_3_3_2_16_2","doi-asserted-by":"crossref","unstructured":"Miaomiao Li and Licheng Wang. 2019. A survey on personalized news recommendation technology. IEEE Access 7 (2019) 145861\u2013145879.","DOI":"10.1109\/ACCESS.2019.2944927"},{"key":"e_1_3_3_2_17_2","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-031-56060-6_5"},{"key":"e_1_3_3_2_18_2","first-page":"74","volume-title":"Text summarization branches out","author":"Lin Chin-Yew","year":"2004","unstructured":"Chin-Yew Lin. 2004. Rouge: A package for automatic evaluation of summaries. In Text summarization branches out. 74\u201381."},{"key":"e_1_3_3_2_19_2","doi-asserted-by":"publisher","DOI":"10.1145\/3616855.3635845"},{"key":"e_1_3_3_2_20_2","unstructured":"Yinhan Liu. 2019. RoBERTa: A robustly optimized BERT pretraining approach. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/1907.11692 (2019)."},{"key":"e_1_3_3_2_21_2","doi-asserted-by":"publisher","DOI":"10.1145\/3626772.3657704"},{"key":"e_1_3_3_2_22_2","doi-asserted-by":"publisher","DOI":"10.1145\/3627673.3679592"},{"key":"e_1_3_3_2_23_2","unstructured":"Long Ouyang Jeffrey Wu Xu Jiang Diogo Almeida Carroll Wainwright Pamela Mishkin Chong Zhang Sandhini Agarwal Katarina Slama Alex Ray et\u00a0al. 2022. Training language models to follow instructions with human feedback. Advances in neural information processing systems 35 (2022) 27730\u201327744."},{"key":"e_1_3_3_2_24_2","first-page":"311","volume-title":"Proceedings of the 40th annual meeting of the Association for Computational Linguistics","author":"Papineni Kishore","year":"2002","unstructured":"Kishore Papineni, Salim Roukos, Todd Ward, and Wei-Jing Zhu. 2002. Bleu: a method for automatic evaluation of machine translation. In Proceedings of the 40th annual meeting of the Association for Computational Linguistics. 311\u2013318."},{"key":"e_1_3_3_2_25_2","doi-asserted-by":"publisher","DOI":"10.3115\/v1\/D14-1162"},{"key":"e_1_3_3_2_26_2","unstructured":"Rafael Rafailov Archit Sharma Eric Mitchell Christopher\u00a0D Manning Stefano Ermon and Chelsea Finn. 2024. Direct preference optimization: Your language model is secretly a reward model. Advances in Neural Information Processing Systems 36 (2024)."},{"key":"e_1_3_3_2_27_2","doi-asserted-by":"crossref","unstructured":"Shaina Raza and Chen Ding. 2022. News recommender system: a review of recent progress challenges and opportunities. Artificial Intelligence Review (2022) 1\u201352.","DOI":"10.1007\/s10462-021-10043-x"},{"key":"e_1_3_3_2_28_2","doi-asserted-by":"publisher","DOI":"10.1109\/ICDE48307.2020.00021"},{"key":"e_1_3_3_2_29_2","doi-asserted-by":"crossref","unstructured":"Lawrence Van\u00a0den Bogaert David Geerts and Jaron Harambam. 2024. Putting a human face on the algorithm: co-designing recommender personae to democratize news recommender systems. Digital Journalism 12 8 (2024) 1097\u20131117.","DOI":"10.1080\/21670811.2022.2097101"},{"key":"e_1_3_3_2_30_2","doi-asserted-by":"publisher","DOI":"10.1145\/3523227.3546780"},{"key":"e_1_3_3_2_31_2","unstructured":"Zongwei Wang Min Gao Junliang Yu Xinyi Gao Quoc Viet\u00a0Hung Nguyen Shazia Sadiq and Hongzhi Yin. 2024. LLM-Powered Text Simulation Attack Against ID-Free Recommender Systems. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2409.11690 (2024)."},{"key":"e_1_3_3_2_32_2","unstructured":"Zongwei Wang Junliang Yu Min Gao Wei Yuan Guanhua Ye Shazia Sadiq and Hongzhi Yin. 2024. Poisoning Attacks and Defenses in Recommender Systems: A Survey. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2406.01022 (2024)."},{"key":"e_1_3_3_2_33_2","doi-asserted-by":"publisher","DOI":"10.1145\/3447548.3467335"},{"key":"e_1_3_3_2_34_2","doi-asserted-by":"publisher","DOI":"10.5555\/3367471.3367578"},{"key":"e_1_3_3_2_35_2","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/D19-1671"},{"key":"e_1_3_3_2_36_2","doi-asserted-by":"publisher","DOI":"10.1145\/3404835.3463069"},{"key":"e_1_3_3_2_37_2","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/2020.acl-main.331"},{"key":"e_1_3_3_2_38_2","unstructured":"Yuting Yang Juan Cao Mingyan Lu Jintao Li and Chia-Wen Lin. 2019. How to write high-quality news on social network? predicting news quality by mining writing style. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/1902.00750 (2019)."},{"key":"e_1_3_3_2_39_2","doi-asserted-by":"publisher","DOI":"10.1145\/3447548.3467233"},{"key":"e_1_3_3_2_40_2","unstructured":"Jinghao Zhang Yuting Liu Qiang Liu Shu Wu Guibing Guo and Liang Wang. 2024. Stealthy attack on large language model based recommendation. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2402.14836 (2024)."},{"key":"e_1_3_3_2_41_2","unstructured":"Susan Zhang Stephen Roller Naman Goyal Mikel Artetxe Moya Chen Shuohui Chen Christopher Dewan Mona Diab Xian Li Xi\u00a0Victoria Lin et\u00a0al. 2022. Opt: Open pre-trained transformer language models. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2205.01068 (2022)."},{"key":"e_1_3_3_2_42_2","unstructured":"Tianyi Zhang Varsha Kishore Felix Wu Kilian\u00a0Q Weinberger and Yoav Artzi. 2019. Bertscore: Evaluating text generation with bert. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/1904.09675 (2019)."},{"key":"e_1_3_3_2_43_2","unstructured":"Xudong Zhang Zan Wang Jingke Zhao and Lanjun Wang. 2022. Targeted Data Poisoning Attack on News Recommendation System by Content Perturbation. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2203.03560 (2022)."},{"key":"e_1_3_3_2_44_2","doi-asserted-by":"crossref","unstructured":"Huanhuan Zhao Haihua Chen Thomas\u00a0A Ruggles Yunhe Feng Debjani Singh and Hong-Jun Yoon. 2024. Improving text classification with large language model-based data augmentation. Electronics 13 13 (2024) 2535.","DOI":"10.3390\/electronics13132535"},{"key":"e_1_3_3_2_45_2","unstructured":"Yuyue Zhao Jin Huang David Vos and Maarten de Rijke. 2025. Revisiting Language Models in Neural News Recommender Systems. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2501.11391 (2025)."}],"event":{"name":"RecSys '25: Nineteenth ACM Conference on Recommender Systems","location":"Prague Czech Republic","acronym":"RecSys '25","sponsor":["SIGCHI ACM Special Interest Group on Computer-Human Interaction","SIGAI ACM Special Interest Group on Artificial Intelligence","SIGIR ACM Special Interest Group on Information Retrieval","SIGKDD ACM Special Interest Group on Knowledge Discovery in Data","SIGWEB ACM Special Interest Group on Hypertext, Hypermedia, and Web"]},"container-title":["Proceedings of the Nineteenth ACM Conference on Recommender Systems"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3705328.3748081","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,9,6]],"date-time":"2025-09-06T11:48:02Z","timestamp":1757159282000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3705328.3748081"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,9,7]]},"references-count":44,"alternative-id":["10.1145\/3705328.3748081","10.1145\/3705328"],"URL":"https:\/\/doi.org\/10.1145\/3705328.3748081","relation":{},"subject":[],"published":{"date-parts":[[2025,9,7]]},"assertion":[{"value":"2025-09-07","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}