arrow
返回

Graph Adversarial Immunization for Certifiable Robustness

delete2024-04-01
delete2
delete
OA
AI
S
Shuchang Tao
Q
Qi Cao
H
Huawei Shen *
Y
Yunfan Wu
L
Liang Hou
程学旗 (Xueqi Cheng)
DOI:10.1109/TKDE.2023.3311105delete
delete原文链接
delete原文求助
delete分享
delete收藏
摘要

摘要

En 中文
Despite achieving great success, graph neural networks (GNNs) are vulnerable to adversarial attacks. Existing defenses focus on developing adversarial training or model modification. In this paper, we propose and formulate graph adversarial immunization, i.e., vaccinating part of graph structure to improve certifiable robustness of graph against any admissible adversarial attack. We first propose edge-level immunization to vaccinate node pairs. Unfortunately, such edge-level immunization cannot defend against emerging node injection attacks, since it only immunizes existing node pairs. To this end, we further propose node-level immunization. To avoid computationally intensive combinatorial optimization associated with adversarial immunization, we develop AdvImmune-Edge and AdvImmune-Node algorithms to effectively obtain the immune node pairs or nodes. Extensive experiments demonstrate the superiority of AdvImmune methods. In particular, AdvImmune-Node remarkably improves the ratio of robust nodes by 79$\%$%, 294$\%$%, and 100$\%$%, after immunizing only 5$\%$% of nodes. Furthermore, AdvImmune methods show excellent defensive performance against various attacks, outperforming state-of-the-art defenses. To the best of our knowledge, this is the first attempt to improve certifiable robustness from graph data perspective without losing performance on clean graphs, providing new insights into graph adversarial learning.
Keyword:
Adversarial attack
adversarial immunization
certifiable robustness
graph neural networks
node classification

期刊

IEEE Transactions on Knowledge and Data Engineering 封面图
IEEE Transactions on Knowledge and Data Engineering
IF:
10.4
论文数:
6.8K
被引数:
3.2W

机构

C
chinese academy of sciences
学者数:
56.7W
论文数: 45.0W
被引数: 704
引用论文

引用论文

Pharmacological induction of autophagy reduces inflammation in macrophages by degrading immunoproteasome subunits
err2024-03-06
err0
errOAAI
errJiao Zhou; Chunxia Li; Meng Lu; Gaoyue Jiang; Shanze Chen; Huihui Li; Kefeng Lu
err分享
err收藏
Perirhinal cortex lesions uncover subsidiary systems in the rat for the detection of novel and familiar objects
err2011-06-27
err0
errOAAI
errMathieu M. Albasser; Eman Amin; Mihaela D. Iordanova; Malcolm W. Brown; John M. Pearce; John P. Aggleton
err分享
err收藏
err
IF0
err
err0
PREAI
err
err分享
err收藏
Primary Culture of Mouse Dopaminergic Neurons
err2014-09-08
err0
errOAAI
errFlorence Gaven; Philippe Marin; Sylvie Claeysen
err分享
err收藏
Projective Ranking-Based GNN Evasion Attacks
err2022-01-01
err5
errOAAI
errZhang, He; Yuan, Xingliang; Zhou, Chuan; Pan, Shirui
err分享
err收藏
学者 查看更多内容