Local-Global Defense against Unsupervised Adversarial Attacks on Graphs
Di Jin, Bingdao Feng, Siqi Guo, Xiaobao Wang, Jianguo Wei, Zhen Wang
Abstract
Unsupervised pre-training algorithms for graph representation learning are vulnerable to adversarial attacks, such as first-order perturbations on graphs, which will have an impact on particular downstream applications. Designing an effective representation learning strategy against white-box attacks remains a crucial open topic. Prior research attempts to improve representation robustness by maximizing mutual information between the representation and the perturbed graph, which is sub-optimal because it does not adapt its defense techniques to the severity of the attack. To address this issue, we propose an unsupervised defense method that combines local and global defense to improve the robustness of representation. Note that we put forward the Perturbed Edges Harmfulness (PEH) metric to determine the riskiness of the attack. Thus, when the edges are attacked, the model can automatically identify the risk of attack. We present a method of attention-based protection against high-risk attacks that penalizes attention coefficients of perturbed edges to encoders. Extensive experiments demonstrate that our strategies can enhance the robustness of representation against various adversarial attacks on three benchmark graphs.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext c6deb11c-e46e-4b08-ad2a-16998afd63dbCited by top-tier papers6
- LoSplit: Loss-Guided Dynamic Split for Training-Time Defense Against Graph Backdoor AttacksDi Jin, Yuxiang Zhang, Bingdao Feng, Xiaobao Wang et al.NeurIPS 2025 · 4 citations
- Cross-Domain Trajectory Association Based on Hierarchical Spatiotemporal Enhanced Attention HypergraphChenlong Wu, Ze Wang, Keqing Cen, Yude Bai et al.AAAI 2025 · 2 citations
- Transferable Hypergraph Attack via Injecting Nodes into Pivotal HyperedgesMeixia He, Peican Zhu, Le Cheng, Yangming Guo et al.AAAI 2026 · 1 citation
- Discovering Latent Facts from Context to Construct Richer Open Knowledge GraphsJinpeng Li, Hang Yu, Ziqi Ma, Peng QiAAAI 2026
- Hypergraph Attacks via Injecting Homogeneous Nodes into Elite HyperedgesMeixia He, Peican Zhu, Keke Tang, Yangming GuoAAAI 2025
Builds on12
- Graph Contrastive Learning with AugmentationsYuning You, Tianlong Chen, Yongduo Sui, Ting Chen et al.NeurIPS 2020 · 3,042 citations
- DropEdge: Towards Deep Graph Convolutional Networks on Node ClassificationYu Rong, Wenbing Huang, Tingyang Xu, Junzhou HuangICLR 2020 · 1,599 citations
- Graph Contrastive Learning with Adaptive AugmentationYanqiao Zhu, Yichen Xu, Feng Yu, Qiang Liu et al.WWW 2021 · 1,415 citations
- Graph Representation Learning via Graphical Mutual Information MaximizationZhen Peng, Wenbing Huang, Minnan Luo, Qinghua Zheng et al.WWW 2020 · 682 citations
- Structural Deep Clustering NetworkDeyu Bo, Xiao Wang, Chuan Shi, Meiqi Zhu et al.WWW 2020 · 645 citations
Related papers
- Unsupervised Adversarially Robust Representation Learning on GraphsJiarong Xu, Yang Yang, Junru Chen, Xin Jiang et al.AAAI 2022 · 45 citations
- Improving Heterogeneous Graph Contrastive Learning Robustness via Hierarchical Vulnerability ProtectionJinhao Cui, Chaoyang Li, Jianyang Qin, Lingzhi Wang et al.KDD 2026
- On Measuring Unnoticeability of Graph Adversarial Attacks: Observations, New Measure, and ApplicationsHyeonsoo Jo, Hyunjin Hwang, Fanchen Bu, Soo Yong Lee et al.KDD 2025 · 1 citation
- USER: Unsupervised Structural Entropy-Based Robust Graph Neural NetworkYifei Wang, Yupan Wang, Zeyu Zhang, Song Yang et al.AAAI 2023 · 13 citations
- Certifiably Robust Graph Contrastive LearningMinhua Lin, Teng Xiao, Enyan Dai, Xiang Zhang et al.NeurIPS 2023 · 16 citations
