When Witnesses Defend: A Witness Graph Topological Layer for Adversarial Graph Learning
Naheed Anjum Arafat, Debabrota Basu, Yulia Gel, Yuzhou Chen
Abstract
Capitalizing on the intuitive premise that shape characteristics are more robust to perturbations, we bridge adversarial graph learning with the emerging tools from computational topology, namely, persistent homology representations of graphs. We introduce the concept of witness complex to adversarial analysis on graphs, which allows us to focus only on the salient shape characteristics of graphs, yielded by the subset of the most essential nodes (i.e., landmarks), with minimal loss of topological information on the whole graph. The remaining nodes are then used as witnesses, governing which higher-order graph substructures are incorporated into the learning process. Armed with the witness mechanism, we design Witness Graph Topological Layer (WGTL), which systematically integrates both local and global topological graph feature representations, the impact of which is, in turn, automatically controlled by the robust regularized topological loss. Given the attacker's budget, we derive the important stability guarantees of both local and global topology encodings and the associated robust topological loss. We illustrate the versatility and efficiency of WGTL by its integration with five GNNs and three existing non-topological defense mechanisms. Our extensive experiments across six datasets demonstrate that WGTL boosts the robustness of GNNs across a range of perturbations and against a range of adversarial attacks. Our datasets and source codes are available at https://github.com/toggled/WGTL .
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext c2268fe6-d122-4fd6-981e-c8a58ff37157Cited by top-tier papers4
- Graph Defense Diffusion ModelXin He, Wenqi Fan, Yili Wang, Chengyi Liu et al.KDD 2026 · 3 citations
- Adversarial Attacks and Robust Training for Hypergraph Neural NetworksNaheed Anjum Arafat, Debabrota Basu, Yulia Gel, Danda RawatICML 2026
- TMetaNet: Topological Meta-Learning Framework for Dynamic Link PredictionHao Li, Hao Wan, Yuzhou Chen, Dongsheng Ye et al.ICML 2025
- Point-Level Topological Representation Learning on Point CloudsVincent Peter Grande, Michael T. SchaubICML 2025
Builds on22
- Open Graph Benchmark: Datasets for Machine Learning on GraphsWeihua Hu, Matthias Fey, Marinka Zitnik, Yuxiao Dong et al.NeurIPS 2020 · 3,935 citations
- Beyond Homophily in Graph Neural Networks: Current Limitations and Effective DesignsJiong Zhu, Yujun Yan, Lingxiao Zhao, Mark Heimann et al.NeurIPS 2020 · 1,490 citations
- Graph Structure Learning for Robust Graph Neural NetworksWei Jin, Yao Ma, Xiaorui Liu, Xianfeng Tang et al.KDD 2020 · 604 citations
- GNNGuard: Defending Graph Neural Networks against Adversarial AttacksXiang Zhang, Marinka ZitnikNeurIPS 2020 · 416 citations
- Graph Neural Networks with HeterophilyJiong Zhu, Ryan A. Rossi, Anup Rao, Tung Mai et al.AAAI 2021 · 393 citations
Related papers
- Topological Pooling on GraphsYuzhou Chen, Yulia R. GelAAAI 2023 · 21 citations
- Topological Graph Neural NetworksMax Horn, Edward De Brouwer, Michael Moor, Yves Moreau et al.ICLR 2022 · 135 citations
- TopoFormer: Topology Meets Attention for Graph LearningMd Joshem Uddin, Astrit Tola, Cuneyt Gurcan Akcora, Baris CoskunuzerICLR 2026 · 2 citations
- TopoGCL: Topological Graph Contrastive LearningYuzhou Chen, José Frías, Yulia R. GelAAAI 2024 · 37 citations
- TopFeaRe: Locating Critical State of Adversarial Resilience for Graphs Regarding Topology-Feature EntanglementXinxin Fan, Wenxiong Chen, Quanliang Jing, Chi Lin et al.USENIX Security 2026
