Adversarial Label Poisoning Attack on Graph Neural Networks via Label Propagation

被引:1
|
作者
Liu, Ganlin [1 ]
Huang, Xiaowei [1 ]
Yi, Xinping [1 ]
机构
[1] Univ Liverpool, Liverpool, England
来源
基金
英国工程与自然科学研究理事会;
关键词
Label poisoning attack; Graph neural networks; Label propagation; Graph convolutional network;
D O I
10.1007/978-3-031-20065-6_14
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Graph neural networks (GNNs) have achieved outstanding performance in semi-supervised learning tasks with partially labeled graph structured data. However, labeling graph data for training is a challenging task, and inaccurate labels may mislead the training process to erroneous GNN models for node classification. In this paper, we consider label poisoning attacks on training data, where the labels of input data are modified by an adversary before training, to understand to what extent the state-of-the-art GNN models are resistant/vulnerable to such attacks. Specifically, we propose a label poisoning attack framework for graph convolutional networks (GCNs), inspired by the equivalence between label propagation and decoupled GCNs that separate message passing from neural networks. Instead of attacking the entire GCN models, we propose to attack solely label propagation for message passing. It turns out that a gradient-based attack on label propagation is effective and efficient towards the misleading of GCN training. More remarkably, such label attack can be topology-agnostic in the sense that the labels to be attacked can be efficiently chosen without knowing graph structures. Extensive experimental results demonstrate the effectiveness of the proposed method against state-of-the-art GCN-like models.
引用
收藏
页码:227 / 243
页数:17
相关论文
共 50 条
  • [31] Black-box Adversarial Attack and Defense on Graph Neural Networks
    Li, Haoyang
    Di, Shimin
    Li, Zijian
    Chen, Lei
    Cao, Jiannong
    2022 IEEE 38TH INTERNATIONAL CONFERENCE ON DATA ENGINEERING (ICDE 2022), 2022, : 1017 - 1030
  • [32] Label Propagation Based on Bipartite Graph
    Li, Yaoxing
    Bai, Liang
    NEURAL PROCESSING LETTERS, 2023, 55 (06) : 7743 - 7760
  • [33] Discriminative Graph Embedding for Label Propagation
    Canh Hao Nguyen
    Mamitsuka, Hiroshi
    IEEE TRANSACTIONS ON NEURAL NETWORKS, 2011, 22 (09): : 1395 - 1405
  • [34] Label Propagation Based on Bipartite Graph
    Yaoxing Li
    Liang Bai
    Neural Processing Letters, 2023, 55 : 7743 - 7760
  • [35] A new attributed graph clustering by using label propagation in complex networks
    Berahmand, Kamal
    Haghani, Sogol
    Rostami, Mehrdad
    Li, Yuefeng
    JOURNAL OF KING SAUD UNIVERSITY-COMPUTER AND INFORMATION SCIENCES, 2022, 34 (05) : 1869 - 1883
  • [36] Indirect Adversarial Attacks via Poisoning Neighbors for Graph Convolutional Networks
    Takahashi, Tsubasa
    2019 IEEE INTERNATIONAL CONFERENCE ON BIG DATA (BIG DATA), 2019, : 1395 - 1400
  • [37] Graph Adversarial Attack via Rewiring
    Ma, Yao
    Wang, Suhang
    Derr, Tyler
    Wu, Lingfei
    Tang, Jiliang
    KDD '21: PROCEEDINGS OF THE 27TH ACM SIGKDD CONFERENCE ON KNOWLEDGE DISCOVERY & DATA MINING, 2021, : 1161 - 1169
  • [38] Image Interpolation via Graph-Based Bayesian Label Propagation
    Liu, Xianming
    Zhao, Debin
    Zhou, Jiantao
    Gao, Wen
    Sun, Huifang
    IEEE TRANSACTIONS ON IMAGE PROCESSING, 2014, 23 (03) : 1084 - 1096
  • [39] Malware Detection via Extended Label Propagation Through Graph Inference
    Fu, Yitu
    Xu, Ju
    IEEE ACCESS, 2019, 7 : 157830 - 157840
  • [40] GPU-Accelerated Graph Clustering via Parallel Label Propagation
    Kozawa, Yusuke
    Amagasa, Toshiyuki
    Kitagawa, Hiroyuki
    CIKM'17: PROCEEDINGS OF THE 2017 ACM CONFERENCE ON INFORMATION AND KNOWLEDGE MANAGEMENT, 2017, : 567 - 576