Robust Network Alignment via Attack Signal Scaling and Adversarial Perturbation Elimination
Yang Zhou, Zeru Zhang, Sixing Wu, Victor S. Sheng, Xiaoying Han, Zijie Zhang, Ruoming Jin
Abstract
Recent studies have shown that graph learning models are highly vulnerable to adversarial attacks, and network alignment methods are no exception. How to enhance the robustness of network alignment against adversarial attacks remains an open research problem. In this paper, we propose a robust network alignment solution, RNA, for offering preemptive protection of existing network alignment algorithms, enhanced with the guidance of effective adversarial attacks. First, we analyze how popular iterative gradient-based adversarial attack techniques suffer from gradient vanishing issues and show a fake sense of attack effectiveness. Based on dynamical isometry theory, an attack signal scaling (ASS) method with established upper bound of feasible signal scaling is introduced to alleviate the gradient vanishing issues for effective adversarial attacks while maintaining the decision boundary of network alignment. Second, we develop an adversarial perturbation elimination (APE) model to neutralize adversarial nodes in vulnerable space to adversarial-free nodes in safe area, by integrating Dirac delta approximation (DDA) techniques and the LSTM models. Our proposed APE method is able to provide proactive protection to existing network alignment algorithms against adversarial attacks. The theoretical analysis demonstrates the existence of an optimal distribution for the APE model to reach a lower bound. Last but not least, extensive evaluation on real datasets presents that RNA is able to offer the preemptive protection to trained network alignment methods against three popular adversarial attack models.
Ask about this paper
Ask your agent about it.
Lune has read the top-tier papers around this one, so every answer names the papers it rests on.
Your agent calls
Lunesearch_papers
Free to start. No credit card required.
Terminal
Install the CLIlune papers get 99c20215-2594-4363-b624-e86508909facCited by top-tier papers10
- Fast Federated Machine Unlearning with Nonlinear Functional TheoryTianshi Che, Yang Zhou, Zijie Zhang, Lingjuan Lyu et al.ICML 2023 · 77 citations
- Prompt Certified Machine Unlearning with Randomized Gradient Smoothing and QuantizationZijie Zhang, Yang Zhou, Xin Zhao, Tianshi Che et al.NeurIPS 2022 · 56 citations
- Expressive 1-Lipschitz Neural Networks for Robust Multiple Graph Learning against Adversarial AttacksXin Zhao, Zeru Zhang, Zijie Zhang, Lingfei Wu et al.ICML 2021 · 33 citations
- Input-agnostic Certified Group Fairness via Gaussian Parameter SmoothingJiayin Jin, Zeru Zhang, Yang Zhou, Lingfei WuICML 2022 · 18 citations
- Integrated Defense for Resilient Graph MatchingJiaxiang Ren, Zijie Zhang, Jiayin Jin, Xin Zhao et al.ICML 2021 · 15 citations
Related papers
- Adversarial Attack against Cross-lingual Knowledge Graph AlignmentZeru Zhang, Zijie Zhang, Yang Zhou, Lingfei Wu et al.EMNLP 2021 · 10 citations
- Temporal Dynamics-Aware Adversarial Attacks on Discrete-Time Dynamic Graph ModelsKartik Sharma, Rakshit S. Trivedi, Rohit Sridhar, Srijan KumarKDD 2023 · 20 citations
- Robust Graph Learning Against Adversarial Evasion Attacks via Prior-Free Diffusion-Based Structure PurificationJiayi Luo, Qingyun Sun, Haonan Yuan, Xingcheng Fu et al.WWW 2025 · 7 citations
- Robust Graph Neural Networks via Unbiased AggregationZhichao Hou, Ruiqi Feng, Tyler Derr, Xiaorui LiuNeurIPS 2024 · 11 citations
- Adversarial Attacks on Deep Graph MatchingZijie Zhang, Zeru Zhang, Yang Zhou, Yelong Shen et al.NeurIPS 2020 · 42 citations
