arrow
返回

Projective Ranking-Based GNN Evasion Attacks

delete2022-01-01
delete5
delete
OA
AI
H
He Zhang
X
Xingliang Yuan *
C
Chuan Zhou
Shirui Pan 封面图
Shirui Pan (Shirui Pan) *
DOI:10.1109/TKDE.2022.3219209delete
delete原文链接
delete原文求助
delete分享
delete收藏
摘要

摘要

En 中文
Graph neural networks (GNNs) offer promising learning methods for graph-related tasks. However, GNNs are at risk of adversarial attacks. Two primary limitations of the current evasion attack methods are highlighted: (1) The current GradArgmax ignores the long-term benefit of the perturbation. It is faced with zero-gradient and invalid benefit estimates in certain situations. (2) In reinforcement learning-based attack methods, the learned attack strategies might not be transferable when the attack budget changes. To this end, we first formulate the perturbation space and propose an evaluation framework and the projective ranking method. We aim to learn a powerful attack strategy then adapt it as little as possible to generate adversarial samples under dynamic budget settings. In our method, based on mutual information, we rank and assess the attack benefits of each perturbation for an effective attack strategy. By projecting the strategy, our method dramatically minimizes the cost of learning a new attack strategy when the attack budget changes. In the comparative assessment with GradArgmax and RL-S2V, the results show our method owns high attack performance and effective transferability. The visualization of our method also reveals various attack patterns in the generation of adversarial samples.
Keyword:
Adversarial attacks
graph neural networks
graph classification

期刊

IEEE Transactions on Knowledge and Data Engineering 封面图
IEEE Transactions on Knowledge and Data Engineering
IF:
10.4
论文数:
6.8K
被引数:
3.2W

机构

M
Monash University
学者数:
5.4W
论文数: 5.4W
被引数: 79
G
Griffith University
学者数:
1.5W
论文数: 1.6W
被引数: 2.5W
C
chinese academy of sciences
学者数:
56.7W
论文数: 45.0W
被引数: 704
学者 查看更多机构
引用论文

引用论文

err分享
err收藏
Tnfaip8l1/Oxi-β binds to FBXW5, increasing autophagy through activation of TSC2 in a Parkinson's disease model
err2013-12-01
err0
errOAAI
errJi-Young Ha; Ji-Soo Kim; Young-Hee Kang; Eugene Bok; Yoon-Seong Kim; Jin H. Son
err分享
err收藏
Anomaly Detection on Attributed Networks via Contrastive Self-Supervised Learning
err2022-06-01
err197
errOAAI
errLiu, Yixin; Li, Zhao; Pan, Shirui; Gong, Chen; Zhou, Chuan; Karypis, George
err分享
err收藏
The DEAD-box RNA helicase 5 positively regulates the replication of porcine reproductive and respiratory syndrome virus by interacting with viral Nsp9 in vitro
err2015-01-01
err0
errOAAI
errShuangcheng Zhao; Xinna Ge; Xiaolong Wang; Aijing Liu; Xin Guo; Lei Zhou; Kangzhen Yu; Hanchun Yang
err分享
err收藏
Neighbor-Anchoring Adversarial Graph Neural Networks
err2021-01-01
err5
errOAAI
errLiu, Zemin; Fang, Yuan; Liu, Yong; Zheng, Vincent W. W.
err分享
err收藏
Shifu2: A Network Representation Learning Based Model for Advisor-Advisee Relationship Mining
err2019-01-01
err44
errOAAI
errLiu, Jiaying; Xia, Feng; Wang, Lei; Xu, Bo; Kong, Xiangjie; Tong, Hanghang; King, Irwin
err分享
err收藏
学者 查看更多内容