Lune

AAAI2026Top-tier venue

Imprint of the Forgotten: Stealthy Membership Inference in Unlearned Graph Neural Networks

He Zhang, Bang Wu, Xiaoning Liu, Karin Verspoor, Xun Yi

2026Year

Abstract

Graphs effectively model interactions in real-world applications such as social and trade networks, where Graph Neural Networks (GNNs) excel at tasks such as link prediction to enhance user experiences. Despite these benefits, users raise privacy concerns as user data can be exploited to improve GNN performance without consent. Accordingly, various graph unlearning methods have been developed. Prior work shows that comparing models before and after unlearning enables attackers to launch former membership inference attacks (FMIA) on unlearned data. However, the imprint of unlearned data left in the unlearned model itself remains underexplored, and existing membership inference methods mainly exploit vulnerability of training data, making them ineffective for identifying unlearned data. To this end, we conducted a theoretical analysis and proposed an attack framework targeting unlearned GNNs by learning the distribution patterns of unlearned data to distinguish them from normal test data. Extensive experiments on four real-world datasets and GNN architectures confirm our framework's effectiveness and reveal significant vulnerabilities in current graph unlearning methods.

Ask about this paper

Your agent reads all of it.

Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.

Questions to start from

Your agent calls

Luneget_paper_fulltext

Ask in Lune

Free to start. No credit card required.

lune papers fulltext 46e145cf-c4dc-4a43-97ea-a652fececce2

Builds on28

Related papers

Dusk over the sea between two cliffs drawn in fine vertical lines