Live Session
Teatro Petruzzelli
Paper
15 Oct
 
17:20
CEST
Session 5: Cross-domain and Cross-modal Learning
Add Session to Calendar 2024-10-15 05:20 pm 2024-10-15 06:45 pm Europe/Rome Session 5: Cross-domain and Cross-modal Learning Session 5: Cross-domain and Cross-modal Learning is taking place on the RecSys Hub. Https://recsyshub.org
Main Track

Improving Adversarial Robustness for Recommendation Model via Cross-Domain Distributional Adversarial Training

View on ACM Digital Library

Jingyu Chen (Sichuan University), Lilin Zhang (Sichuan University) and Ning Yang (Sichuan University)

View Paper PDFView Poster
Abstract

Recommendation models based on deep learning are fragile when facing adversarial examples (AE). Adversarial training (AT) is the existing mainstream method to promote the adversarial robustness of recommendation models. However, these AT methods often have two drawbacks. First, they may be ineffective due to the ubiquitous sparsity of interaction data. Second, point-wise perturbation used by these AT methods leads to suboptimal adversarial robustness, because not all examples are equally susceptible to such perturbations. To overcome these issues, we propose a novel method called Cross-domain Distributional Adversarial Training (CDAT) which utilizes a richer auxiliary domain to improve the adversarial robustness of a sparse target domain. CDAT comprises a Domain adversarial network (Dan) and a Cross-domain adversarial example generative network (Cdan). Dan learns a domain-invariant preference distribution which is obtained by aligning user embeddings from two domains and paves the way to leverage the knowledge from another domain for the target domain. Then, by adversarially perturbing the domain-invariant preference distribution under the guidance of a discriminator, Cdan captures an aggressive and imperceptible AE distribution. In this way, CDAT can transfer distributional adversarial robustness from the auxiliary domain to the target domain. The extensive experiments conducted on real datasets demonstrate the remarkable superiority of the proposed CDAT in improving the adversarial robustness of the sparse domain.

Join the Conversation

Head to Slido and select the paper's assigned session to join the live discussion.

Conference Agenda

View Full Agenda →
No items found.