Methods and apparatuses for defending against data poisoning attacks in recommender systems
US11770407B2 · kind B2 · utility
Assignee
Inventors
Key dates
| Filing date | Jan 12, 2021 |
| Grant date | Sep 26, 2023 |
| Priority date | — |
| Expiry date | Feb 6, 2042 |
Classification
- Technology area (CPC G)Physics
- CPC primaryG06Q50/265
- WIPO fieldComputer technology
- WIPO sectorElectrical engineering
Abstract
A recommender system can include a defender computing device that is configured to obtain customer interaction data characterizing customer interactions with an ecommerce marketplace. The defender computing device can also be configured to determine an item recommendation based on the customer interaction data using a trained differentially private recommendation model and send the item recommendation to the customer. The trained differentially private recommendation model is more likely to determine the same item recommendation after poisoned data is injected into the customer interaction data than a recommendation model that is not privately trained.
Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.