Defending adversarial attacks in Graph Neural Networks via tensor enhancement

被引:1
|
作者
Zhang, Jianfu [1 ,3 ]
Hong, Yan [4 ]
Cheng, Dawei [5 ]
Zhang, Liqing [2 ]
Zhao, Qibin [3 ]
机构
[1] Shanghai Jiao Tong Univ, Shanghai, Peoples R China
[2] Shanghai Jiao Tong Univ, Dept Comp Sci & Engn, Shanghai, Peoples R China
[3] RIKEN AIP, Tokyo, Japan
[4] Ant Grp, Hangzhou, Peoples R China
[5] Tongji Univ, Dept Comp Sci & Technol, Shanghai, Peoples R China
基金
中国国家自然科学基金;
关键词
Graph Neural Networks; Adversarial robustness; Tensor decomposition;
D O I
10.1016/j.patcog.2024.110954
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Graph Neural Networks (GNNs) have demonstrated remarkable success across diverse fields, yet remain susceptible to subtle adversarial perturbations that significantly degrade performance. Addressing this vulnerability remains a formidable challenge. Current defense strategies focus on edge-specific regularization within adversarial graphs, often overlooking the inter-edge structural dependencies and the interplay of various robustness attributes. This paper introduces a novel tensor-based framework for GNNs, aimed at reinforcing graph robustness against adversarial influences. By employing tensor approximation, our method systematically aggregates and compresses diverse predefined robustness features of adversarial graphs into a low-rank representation. This approach harmoniously combines the integrity of graph structure and robustness characteristics. Comprehensive experiments on real-world graph datasets demonstrate that our framework not only effectively counters diverse types of adversarial attacks but also surpasses existing leading defense mechanisms in performance.
引用
收藏
页数:10
相关论文
共 50 条
  • [31] Towards Query-limited Adversarial Attacks on Graph Neural Networks
    Li, Haoran
    Zhang, Jinhong
    Gao, Song
    Wu, Liwen
    Zhou, Wei
    Wang, Ruxin
    2022 IEEE 34TH INTERNATIONAL CONFERENCE ON TOOLS WITH ARTIFICIAL INTELLIGENCE, ICTAI, 2022, : 516 - 521
  • [32] Defending Adversarial Attacks via Semantic Feature Manipulation
    Wang, Shuo
    Nepal, Surya
    Rudolph, Carsten
    Grobler, Marthie
    Chen, Shangyu
    Chen, Tianle
    An, Zike
    IEEE TRANSACTIONS ON SERVICES COMPUTING, 2022, 15 (06) : 3184 - 3197
  • [33] Towards Defense Against Adversarial Attacks on Graph Neural Networks via Calibrated Co-Training
    Wu, Xu-Gang
    Wu, Hui-Jun
    Zhou, Xu
    Zhao, Xiang
    Lu, Kai
    JOURNAL OF COMPUTER SCIENCE AND TECHNOLOGY, 2022, 37 (05) : 1161 - 1175
  • [34] Towards Defense Against Adversarial Attacks on Graph Neural Networks via Calibrated Co-Training
    Xu-Gang Wu
    Hui-Jun Wu
    Xu Zhou
    Xiang Zhao
    Kai Lu
    Journal of Computer Science and Technology, 2022, 37 : 1161 - 1175
  • [35] Indirect Adversarial Attacks via Poisoning Neighbors for Graph Convolutional Networks
    Takahashi, Tsubasa
    2019 IEEE INTERNATIONAL CONFERENCE ON BIG DATA (BIG DATA), 2019, : 1395 - 1400
  • [36] SAM: Query-efficient Adversarial Attacks against Graph Neural Networks
    Zhang, Chenhan
    Zhang, Shiyao
    Yu, James J. Q.
    Yu, Shui
    ACM TRANSACTIONS ON PRIVACY AND SECURITY, 2023, 26 (04)
  • [37] Targeted Discrepancy Attacks: Crafting Selective Adversarial Examples in Graph Neural Networks
    Kwon, Hyun
    Baek, Jang-Woon
    IEEE ACCESS, 2025, 13 : 13700 - 13710
  • [38] NetFense: Adversarial Defenses Against Privacy Attacks on Neural Networks for Graph Data
    Hsieh, I-Chung
    Li, Cheng-Te
    IEEE TRANSACTIONS ON KNOWLEDGE AND DATA ENGINEERING, 2023, 35 (01) : 796 - 809
  • [39] DiffDefense: Defending Against Adversarial Attacks via Diffusion Models
    Silva, Hondamunige Prasanna
    Seidenari, Lorenzo
    Del Bimbo, Alberto
    IMAGE ANALYSIS AND PROCESSING, ICIAP 2023, PT II, 2023, 14234 : 430 - 442
  • [40] Defending against Whitebox Adversarial Attacks via Randomized Discretization
    Zhang, Yuchen
    Liang, Percy
    22ND INTERNATIONAL CONFERENCE ON ARTIFICIAL INTELLIGENCE AND STATISTICS, VOL 89, 2019, 89 : 684 - 693