everyone
since 03 Apr 2025">EveryoneRevisionsBibTeXCC BY 4.0
Changes Since Last Submission:
Added a new subsection in Section 2 explaining the structure and role of Two-Tower Neural Networks in recommendation systems, including detailed descriptions of input-output formats.
Clarified in Section 3 why perturbations are applied only to user features and not item (movie) features.
Added Section 4.1 detailing how the synthetic dataset for shadow model training was generated in accordance with the agnostic assumption.
Updated Tables 1–5 with correct robustness scores. The methodology using Maximum Mean Discrepancy (MMD) was already correct in the text, but the tables mistakenly reflected results based on cosine similarity. This inconsistency has been fixed to align the tables with the described method.
Expanded the discussion on the key findings from Tables 1–5, especially in relation to model robustness across different user features.
Minor textual edits for clarity and consistency.