Adversarially Robust Neural Architecture Search for Graph Neural Networks
Beini Xie, Heng Chang, Ziwei Zhang, Xin Wang, Daixin Wang, Zhiqiang Zhang, Rex Ying, Wenwu Zhu
Abstract
Graph Neural Networks (GNNs) obtain tremendous success in modeling relational data. Still, they are prone to adversarial attacks, which are massive threats to applying GNNs to risk-sensitive domains. Existing defensive methods neither guarantee performance facing new data/tasks or adversarial attacks nor provide insights to understand GNN robustness from an architectural perspective. Neural Architecture Search (NAS) has the potential to solve this problem by automating GNN architecture designs. Nevertheless, current graph NAS approaches lack robust design and are vulnerable to adversarial attacks. To tackle these challenges, we propose a novel Robust Neural Architecture search framework for GNNs (G-RNA). Specifically, we design a robust search space for the message-passing mechanism by adding graph structure mask operations into the search space, which comprises various defensive operation candidates and allows us to search for defensive GNNs. Furthermore, we define a robustness metric to guide the search procedure, which helps to filter robust architectures. In this way, G-RNA helps understand GNN robustness from an architectural perspective and effectively searches for optimal adversarial robust GNNs. Extensive experimental results on benchmark datasets show that G-RNA significantly outperforms manually designed robust GNNs and vanilla graph NAS baselines by 12.1% to 23.4% under adversarial attacks.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext bf48ea31-7e8e-43f4-a67a-f48b600fb882Cited by top-tier papers6
- Rumor Detection with Diverse Counterfactual EvidenceKaiwei Zhang, Junchi Yu, Haichao Shi, Jian Liang et al.KDD 2023 · 22 citations
- Towards Lightweight Graph Neural Network Search with Curriculum Graph SparsificationBeini Xie, Heng Chang, Ziwei Zhang, Zeyang Zhang et al.KDD 2024 · 5 citations
- Behavior Importance-Aware Graph Neural Architecture Search for Cross-Domain RecommendationChendi Ge, Xin Wang, Ziwei Zhang, Yijian Qin et al.AAAI 2025 · 3 citations
- Graph Adversarial Diffusion ConvolutionSongtao Liu, Jinghui Chen, Tianfan Fu, Lu Lin et al.ICML 2024 · 3 citations
- AutoGFM: Automated Graph Foundation Model with Adaptive Architecture CustomizationHaibo Chen, Xin Wang, Zeyang Zhang, Haoyang Li et al.ICML 2025
Builds on21
- Open Graph Benchmark: Datasets for Machine Learning on GraphsWeihua Hu, Matthias Fey, Marinka Zitnik, Yuxiao Dong et al.NeurIPS 2020 · 3,935 citations
- DropEdge: Towards Deep Graph Convolutional Networks on Node ClassificationYu Rong, Wenbing Huang, Tingyang Xu, Junzhou HuangICLR 2020 · 1,599 citations
- DeepGCNs: Can GCNs Go As Deep As CNNs?Guohao Li, Matthias Müller, Ali K. Thabet, Bernard GhanemICCV 2019 · 1,586 citations
- Graph Structure Learning for Robust Graph Neural NetworksWei Jin, Yao Ma, Xiaorui Liu, Xianfeng Tang et al.KDD 2020 · 604 citations
- GNNGuard: Defending Graph Neural Networks against Adversarial AttacksXiang Zhang, Marinka ZitnikNeurIPS 2020 · 416 citations
Related papers
- Rethinking Graph Neural Architecture Search From Message-PassingShaofei Cai, Liang Li, Jincan Deng, Beichen Zhang et al.CVPR 2021
- PSP: Progressive Space Pruning for Efficient Graph Neural Architecture SearchGuanghui Zhu, Wenjie Wang, Zhuoer Xu, Feng Cheng et al.ICDE 2022 · 5 citations
- Deep and Flexible Graph Neural Architecture SearchWentao Zhang, Zheyu Lin, Yu Shen, Yang Li et al.ICML 2022 · 5 citations
- Towards Accurate and Robust Architectures via Neural Architecture SearchYuwei Ou, Yuqi Feng, Yanan SunCVPR 2024 · 8 citations
- Uncertainty-Matching Graph Neural Networks to Defend Against Poisoning AttacksUday Shankar Shanthamallu, Jayaraman J. Thiagarajan, Andreas SpaniasAAAI 2021 · 19 citations
