{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,12,3]],"date-time":"2025-12-03T17:24:05Z","timestamp":1764782645323,"version":"3.46.0"},"publisher-location":"New York, NY, USA","reference-count":47,"publisher":"ACM","funder":[{"name":"the National Key R&amp;D Program of China","award":["2022YFB3103700, 2022YFB3103704"],"award-info":[{"award-number":["2022YFB3103700, 2022YFB3103704"]}]},{"name":"the Strategic Priority Research Program of the Chinese Academy of Sciences","award":["XDB0680201, XDB0680202"],"award-info":[{"award-number":["XDB0680201, XDB0680202"]}]},{"name":"the Beijing Natural Science Foundation","award":["4252023"],"award-info":[{"award-number":["4252023"]}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2025,12,7]]},"DOI":"10.1145\/3767695.3769483","type":"proceedings-article","created":{"date-parts":[[2025,12,3]],"date-time":"2025-12-03T17:14:58Z","timestamp":1764782098000},"page":"251-260","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":0,"title":["LLM4MEA: Data-free Model Extraction Attacks on Sequential Recommenders via Large Language Models"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0009-0001-8420-0311","authenticated-orcid":false,"given":"Shilong","family":"Zhao","sequence":"first","affiliation":[{"name":"State Key Lab of AI Safety, Institute of Computing Technology, CAS, Beijing, China and University of Chinese Academy of Sciences, Beijing, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-6146-148X","authenticated-orcid":false,"given":"Fei","family":"Sun","sequence":"additional","affiliation":[{"name":"State Key Lab of AI Safety, Institute of Computing Technology, CAS, Beijing, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-1197-5212","authenticated-orcid":false,"given":"Kaike","family":"Zhang","sequence":"additional","affiliation":[{"name":"State Key Lab of AI Safety, Institute of Computing Technology, CAS, Beijing, China and University of Chinese Academy of Science, Beijing, China"}]},{"ORCID":"https:\/\/orcid.org\/0009-0007-9450-6705","authenticated-orcid":false,"given":"Shaoling","family":"Jing","sequence":"additional","affiliation":[{"name":"State Key Lab of AI Safety, Institute of Computing Technology, CAS, Beijing, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-6767-6019","authenticated-orcid":false,"given":"Du","family":"Su","sequence":"additional","affiliation":[{"name":"State Key Lab of AI Safety, Institute of Computing Technology, CAS, Beijing, China"}]},{"ORCID":"https:\/\/orcid.org\/0009-0006-7835-7984","authenticated-orcid":false,"given":"Zhichao","family":"Shi","sequence":"additional","affiliation":[{"name":"State Key Lab of AI Safety, Institute of Computing Technology, CAS, Beijing, China and University of Chinese Academy of Sciences, Beijing, China"}]},{"ORCID":"https:\/\/orcid.org\/0009-0003-1683-8393","authenticated-orcid":false,"given":"Zhiyi","family":"Yin","sequence":"additional","affiliation":[{"name":"State Key Lab of AI Safety, Institute of Computing Technology, CAS, Beijing, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-1081-8119","authenticated-orcid":false,"given":"Huawei","family":"Shen","sequence":"additional","affiliation":[{"name":"State Key Lab of AI Safety, Institute of Computing Technology, CAS, Beijing, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-5201-8195","authenticated-orcid":false,"given":"Xueqi","family":"Cheng","sequence":"additional","affiliation":[{"name":"State Key Lab of AI Safety, Institute of Computing Technology, CAS, Beijing, China"}]}],"member":"320","published-online":{"date-parts":[[2025,12,6]]},"reference":[{"key":"e_1_3_2_1_1_1","volume-title":"Make Your LLM Fully Utilize the Context. arXiv preprint arXiv:2404.16811","author":"An Shengnan","year":"2024","unstructured":"Shengnan An, Zexiong Ma, Zeqi Lin, Nanning Zheng, and Jian-Guang Lou. 2024. Make Your LLM Fully Utilize the Context. arXiv preprint arXiv:2404.16811 (2024)."},{"key":"e_1_3_2_1_2_1","unstructured":"Yingpeng Du Di Luo Rui Yan Hongzhi Liu Yang Song Hengshu Zhu and Jie Zhang. 2023. Enhancing Job Recommendation through LLM-based Generative Adversarial Networks. arXiv:2307.10747 [cs.IR]"},{"key":"e_1_3_2_1_3_1","unstructured":"Yue Feng Shuchang Liu Zhenghai Xue Qingpeng Cai Lantao Hu Peng Jiang Kun Gai and Fei Sun. 2023. A Large Language Model Enhanced Conversational Recommender System. arXiv:2308.06212 [cs.IR]"},{"key":"e_1_3_2_1_4_1","unstructured":"Yunfan Gao Tao Sheng Youlin Xiang Yun Xiong Haofen Wang and Jiawei Zhang. 2023. Chat-REC: Towards Interactive and Explainable LLMs-Augmented Recommender System. arXiv:2303.14524 [cs.IR]"},{"key":"e_1_3_2_1_5_1","doi-asserted-by":"crossref","unstructured":"Shijie Geng Shuchang Liu Zuohui Fu Yingqiang Ge and Yongfeng Zhang. 2023. Recommendation as Language Processing (RLP): A Unified Pretrain Personalized Prompt and Predict Paradigm (P5). arXiv:2203.13366 [cs.IR]","DOI":"10.1145\/3523227.3546767"},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.1145\/2872427.2883037"},{"key":"e_1_3_2_1_7_1","doi-asserted-by":"publisher","DOI":"10.1109\/WACV57701.2024.00378"},{"key":"e_1_3_2_1_8_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICDM.2018.00035"},{"key":"e_1_3_2_1_9_1","volume-title":"Marich: A query-efficient distributionally equivalent model extraction attack using public data. arXiv preprint arXiv:2302.08466","author":"Karmakar Pratik","year":"2023","unstructured":"Pratik Karmakar and Debabrota Basu. 2023. Marich: A query-efficient distributionally equivalent model extraction attack using public data. arXiv preprint arXiv:2302.08466 (2023)."},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"crossref","unstructured":"Yuxuan Lei Jianxun Lian Jing Yao Xu Huang Defu Lian and Xing Xie. 2023. RecExplainer: Aligning Large Language Models for Recommendation Model Interpretability. arXiv:2311.10947 [cs.IR]","DOI":"10.1145\/3637528.3671802"},{"key":"e_1_3_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.1145\/3132847.3132926"},{"key":"e_1_3_2_1_12_1","volume-title":"Xiang Yue, and Wenhu Chen.","author":"Li Tianle","year":"2024","unstructured":"Tianle Li, Ge Zhang, Quy Duc Do, Xiang Yue, and Wenhu Chen. 2024b. Long-context llms struggle with long in-context learning. arXiv preprint arXiv:2404.02060 (2024)."},{"key":"e_1_3_2_1_13_1","volume-title":"Metaagents: Simulating interactions of human behaviors for llm-based task-oriented coordination via collaborative generative agents. arXiv preprint arXiv:2310.06500","author":"Li Yuan","year":"2023","unstructured":"Yuan Li, Yixuan Zhang, and Lichao Sun. 2023. Metaagents: Simulating interactions of human behaviors for llm-based task-oriented coordination via collaborative generative agents. arXiv preprint arXiv:2310.06500 (2023)."},{"key":"e_1_3_2_1_14_1","unstructured":"Zelong Li Jianchao Ji Yingqiang Ge Wenyue Hua and Yongfeng Zhang. 2024a. PAP-REC: Personalized Automatic Prompt for Recommendation Language Model. arXiv:2402.00284 [cs.IR]"},{"key":"e_1_3_2_1_15_1","unstructured":"Jiayi Liao Sihang Li Zhengyi Yang Jiancan Wu Yancheng Yuan and Xiang Wang. 2023. LLaRA: Aligning Large Language Models with Sequential Recommenders. arXiv:2312.02445 [cs.IR]"},{"key":"e_1_3_2_1_16_1","unstructured":"Yiyong Liu Rui Wen Michael Backes and Yang Zhang. [n.d.]. On the Importance of Diversity in Data-free Model Stealing. ([n.d.])."},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"crossref","unstructured":"Yue Liu Shihao Zhu Jun Xia Yingwei Ma Jian Ma Wenliang Zhong Guannan Zhang Kejun Zhang and Xinwang Liu. 2024. End-to-end Learnable Clustering for Intent Learning in Recommendation. arXiv:2401.05975 [cs.IR]","DOI":"10.52202\/079017-0192"},{"key":"e_1_3_2_1_18_1","unstructured":"Haokai Ma Ruobing Xie Lei Meng Xin Chen Xu Zhang Leyu Lin and Zhanhui Kang. 2024. Plug-in Diffusion Model for Sequential Recommendation. arXiv:2401.02913 [cs.IR]"},{"key":"e_1_3_2_1_19_1","doi-asserted-by":"publisher","DOI":"10.1145\/2766462.2767755"},{"key":"e_1_3_2_1_20_1","doi-asserted-by":"crossref","unstructured":"Sheshera Mysore Andrew McCallum and Hamed Zamani. 2023. Large Language Model Augmented Narrative Driven Recommendations. arXiv:2306.02250 [cs.IR]","DOI":"10.1145\/3604915.3608829"},{"key":"e_1_3_2_1_21_1","doi-asserted-by":"publisher","DOI":"10.1145\/3077136.3080724"},{"key":"e_1_3_2_1_22_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.jksuci.2023.02.019"},{"key":"e_1_3_2_1_23_1","volume-title":"Petrov and Craig Macdonald","author":"Aleksandr","year":"2023","unstructured":"Aleksandr V. Petrov and Craig Macdonald. 2023. Generative Sequential Recommendation with GPTRec. arXiv:2306.11114 [cs.IR]"},{"key":"e_1_3_2_1_24_1","volume-title":"Data-free Black-box Attack based on Diffusion Model. arXiv preprint arXiv:2307.12872","author":"Shao Mingwen","year":"2023","unstructured":"Mingwen Shao, Lingzhuang Meng, Yuanjian Qiao, Lixu Zhang, and Wangmeng Zuo. 2023. Data-free Black-box Attack based on Diffusion Model. arXiv preprint arXiv:2307.12872 (2023)."},{"key":"e_1_3_2_1_25_1","doi-asserted-by":"publisher","DOI":"10.1145\/3357384.3357895"},{"key":"e_1_3_2_1_26_1","volume-title":"Exploring the Impact of Large Language Models on Recommender Systems: An Extensive Review. arXiv preprint arXiv:2402.18590","author":"Vats Arpita","year":"2024","unstructured":"Arpita Vats, Vinija Jain, Rahul Raja, and Aman Chadha. 2024. Exploring the Impact of Large Language Models on Recommender Systems: An Extensive Review. arXiv preprint arXiv:2402.18590 (2024)."},{"key":"e_1_3_2_1_27_1","doi-asserted-by":"publisher","DOI":"10.1145\/3583780.3615181"},{"key":"e_1_3_2_1_28_1","doi-asserted-by":"publisher","DOI":"10.1145\/3240323.3240369"},{"key":"e_1_3_2_1_29_1","doi-asserted-by":"publisher","DOI":"10.1145\/3604915.3608789"},{"key":"e_1_3_2_1_30_1","volume-title":"Jun Xu, Zhicheng Dou, Jun Wang, and Ji-Rong Wen.","author":"Wang Lei","year":"2023","unstructured":"Lei Wang, Jingsen Zhang, Hao Yang, Zhiyuan Chen, Jiakai Tang, Zeyu Zhang, Xu Chen, Yankai Lin, Ruihua Song, Wayne Xin Zhao, Jun Xu, Zhicheng Dou, Jun Wang, and Ji-Rong Wen. 2023d. When Large Language Model based Agent Meets User Behavior Analysis: A Novel User Simulation Paradigm. arXiv:2306.02552 [cs.IR]"},{"key":"e_1_3_2_1_31_1","doi-asserted-by":"crossref","unstructured":"Lei Wang Songheng Zhang Yun Wang Ee-Peng Lim and Yong Wang. 2023c. LLM4Vis: Explainable Visualization Recommendation using ChatGPT. arXiv:2310.07652 [cs.HC]","DOI":"10.18653\/v1\/2023.emnlp-industry.64"},{"key":"e_1_3_2_1_32_1","doi-asserted-by":"crossref","unstructured":"Yan Wang Zhixuan Chu Xin Ouyang Simeng Wang Hongyan Hao and Yue. 2024. Enhancing Recommender Systems with Large Language Model Reasoning Graphs. arXiv:2308.10835 [cs.IR]","DOI":"10.1609\/aaai.v38i17.29887"},{"key":"e_1_3_2_1_33_1","unstructured":"Zifeng Wang Chufan Gao Cao Xiao and Jimeng Sun. 2023a. MediTab: Scaling Medical Tabular Data Predictors via Data Consolidation Enrichment and Refinement. arXiv:2305.12081 [cs.LG]"},{"key":"e_1_3_2_1_34_1","volume-title":"Serial position effect: How to create better user interfaces. INTERACTION DESIGN FOUNDATION","author":"Wong Euphemia","year":"2018","unstructured":"Euphemia Wong. 2018. Serial position effect: How to create better user interfaces. INTERACTION DESIGN FOUNDATION (2018)."},{"key":"e_1_3_2_1_35_1","unstructured":"Yunjia Xi Weiwen Liu Jianghao Lin and Xiaoling Cai. 2023b. Towards Open-World Recommendation with Knowledge Augmentation from Large Language Models. arXiv:2306.10933 [cs.IR]"},{"key":"e_1_3_2_1_36_1","unstructured":"Zhiheng Xi Wenxiang Chen Xin Guo Wei He Yiwen Ding Boyang Hong Ming Zhang Junzhe Wang Senjie Jin Enyu Zhou et al. 2023a. The rise and potential of large language model based agents: A survey. arXiv preprint arXiv:2309.07864 (2023)."},{"key":"e_1_3_2_1_37_1","doi-asserted-by":"crossref","unstructured":"Youshao Xiao Shangchun Zhao Zhenglei Zhou Zhaoxin Huan Lin Ju Xiaolu Zhang Lin Wang and Jun Zhou. 2024. G-Meta: Distributed Meta Learning in GPU Clusters for Large-Scale Recommender Systems. arXiv:2401.04338 [cs.LG]","DOI":"10.1145\/3583780.3615208"},{"key":"e_1_3_2_1_38_1","volume-title":"PALR: Personalization Aware LLMs for Recommendation. arXiv:2305.07622 [cs.IR]","author":"Yang Fan","year":"2023","unstructured":"Fan Yang, Zheng Chen, Ziyan Jiang, Eunah Cho, Xiaojiang Huang, and Yanbin Lu. 2023. PALR: Personalization Aware LLMs for Recommendation. arXiv:2305.07622 [cs.IR]"},{"key":"e_1_3_2_1_39_1","doi-asserted-by":"publisher","DOI":"10.1145\/3460231.3474275"},{"key":"e_1_3_2_1_40_1","volume-title":"Dong Wang, and Even Oldridge.","author":"Yue Zhenrui","year":"2023","unstructured":"Zhenrui Yue, Sara Rabhi, Gabriel de Souza Pereira Moreira, Dong Wang, and Even Oldridge. 2023. LlamaRec: Two-stage recommendation using large language models for ranking. arXiv preprint arXiv:2311.02089 (2023)."},{"key":"e_1_3_2_1_41_1","volume-title":"Few-shot Model Extraction Attacks against Sequential Recommender Systems. arXiv preprint arXiv:2411.11677","author":"Zhang Hui","year":"2024","unstructured":"Hui Zhang and Fu Liu. 2024. Few-shot Model Extraction Attacks against Sequential Recommender Systems. arXiv preprint arXiv:2411.11677 (2024)."},{"key":"e_1_3_2_1_42_1","volume-title":"Leyu Lin, and Ji-Rong Wen.","author":"Zhang Junjie","year":"2023","unstructured":"Junjie Zhang, Ruobing Xie, Yupeng Hou, Wayne Xin Zhao, Leyu Lin, and Ji-Rong Wen. 2023b. Recommendation as Instruction Following: A Large Language Model Empowered Recommendation Approach. arXiv:2305.07001 [cs.IR]"},{"key":"e_1_3_2_1_43_1","doi-asserted-by":"publisher","DOI":"10.1145\/3616855.3635751"},{"key":"e_1_3_2_1_44_1","unstructured":"Yang Zhang Fuli Feng Jizhi Zhang Keqin Bao Qifan Wang and Xiangnan He. 2023a. CoLLM: Integrating Collaborative Embeddings into Large Language Models for Recommendation. arXiv:2310.19488 [cs.IR]"},{"key":"e_1_3_2_1_45_1","volume-title":"Extracting Cloud-based Model with Prior Knowledge. arXiv preprint arXiv:2306.04192","author":"Zhao Shiqian","year":"2023","unstructured":"Shiqian Zhao, Kangjie Chen, Meng Hao, Jian Zhang, Guowen Xu, Hongwei Li, and Tianwei Zhang. 2023. Extracting Cloud-based Model with Prior Knowledge. arXiv preprint arXiv:2306.04192 (2023)."},{"key":"e_1_3_2_1_46_1","volume-title":"Model Stealing Attack against Recommender System. arXiv preprint arXiv:2312.11571","author":"Zhu Zhihao","year":"2023","unstructured":"Zhihao Zhu, Rui Fan, Chenwang Wu, Yi Yang, Defu Lian, and Enhong Chen. 2023a. Model Stealing Attack against Recommender System. arXiv preprint arXiv:2312.11571 (2023)."},{"key":"e_1_3_2_1_47_1","doi-asserted-by":"publisher","DOI":"10.1145\/3543507.3583447"}],"event":{"name":"SIGIR-AP 2025:Annual International ACM SIGIR Conference on Research and Development in Information Retrieval in the Asia Pacific Region","location":"Xi'an China","sponsor":["SIGIR ACM Special Interest Group on Information Retrieval"]},"container-title":["Proceedings of the 2025 Annual International ACM SIGIR Conference on Research and Development in Information Retrieval in the Asia Pacific Region"],"original-title":[],"deposited":{"date-parts":[[2025,12,3]],"date-time":"2025-12-03T17:16:48Z","timestamp":1764782208000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3767695.3769483"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,12,6]]},"references-count":47,"alternative-id":["10.1145\/3767695.3769483","10.1145\/3767695"],"URL":"https:\/\/doi.org\/10.1145\/3767695.3769483","relation":{},"subject":[],"published":{"date-parts":[[2025,12,6]]},"assertion":[{"value":"2025-12-06","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}