Energy-based Backdoor Defense Against Federated Graph Learning
Guancheng Wan, Zitong Shi, Wenke Huang, Guibin Zhang, Dacheng Tao, Mang Ye
Abstract
Federated Graph Learning is rapidly evolving as a privacy-preserving collaborative approach. However, backdoor attacks are increasingly undermining federated systems by injecting carefully designed triggers that lead the model making incorrect predictions. Trigger structures and injection locations in Federated Graph Learning are more diverse, making traditional federated defense methods less effective. In our work, we propose an effective Federated Graph Backdoor Defense using Topological Graph Energy (FedTGE). At the client level, it injects distribution knowledge into the local model, assigning low energy to benign samples and high energy to the constructed malicious substitutes, and selects benign clients through clustering. At the server level, the energy elements uploaded by each client are treated as new nodes to construct a global energy graph for energy propagation, making the selected clients' energy elements more similar and further adjusting the aggregation weights. Our method can handle high data heterogeneity, does not require a validation dataset, and is effective under both small and large malicious proportions. Extensive results on various settings of federated graph scenarios under backdoor attacks validate the effectiveness of this approach. The code is available at https://github.com/ZitongShi/fedTGE .
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext c8899b87-5f83-4100-b313-1d3e3b858ef2Cited by top-tier papers20
- HYPERION: Fine-Grained Hypersphere Alignment for Robust Federated Graph LearningFrank Wan, Xiaoran Shang, Yuxin Wu, Guibin Zhang et al.NeurIPS 2025 · 4 citations
- MOTION: Multi-Sculpt Evolutionary Coarsening for Federated Continual Graph LearningFrank Wan, Fengyuan Ran, Ruikang Zhang, Wenke Huang et al.NeurIPS 2025 · 3 citations
- Don't Forget the Enjoin: FocalLoRA for Instruction Hierarchical Alignment in Large Language ModelsZitong Shi, Frank Wan, Haixin Wang, Ruoyan Li et al.NeurIPS 2025 · 2 citations
- Unsupervised Federated Graph LearningLele Fu, Tianchi Liao, Sheng Huang, Bowen Deng et al.NeurIPS 2025 · 1 citation
- MultiKD: Backdoor Defense in Federated Graph Learning via Attention-Guided Multi-Teacher DistillationJiale Zhang, Yanan Wang, Bosen Rao, Chengcheng Zhu et al.AAAI 2026
Builds on26
- Subgraph Federated Learning with Missing Neighbor GenerationKe Zhang, Carl Yang, Xiaoxiao Li, Lichao Sun et al.NeurIPS 2021 · 320 citations
- Generalized Energy Based ModelsMichael Arbel, Liang Zhou, Arthur GrettonICLR 2021 · 254 citations
- Defending against Backdoors in Federated Learning with Robust Learning RateMustafa Safa Özdayi, Murat Kantarcioglu, Yulia R. GelAAAI 2021 · 250 citations
- Adversarial Attacks on Graph Neural Networks via Node Injections: A Hierarchical Reinforcement Learning ApproachYiwei Sun, Suhang Wang, Xianfeng Tang, Tsung-Yu Hsieh et al.WWW 2020 · 217 citations
- Sageflow: Robust Federated Learning against Both Stragglers and AdversariesJungwuk Park, Dong-Jun Han, Minseok Choi, Jaekyun MoonNeurIPS 2021 · 149 citations
Related papers
- NI-GDBA: Non-Intrusive Distributed Backdoor Attack Based on Adaptive Perturbation on Federated Graph LearningKen Li, Bin Shi, Jiazhe Wei, Bo DongWWW 2025 · 3 citations
- Distributed Backdoor Attacks on Federated Graph Learning and Certified DefensesYuxin Yang, Qiang Li, Jinyuan Jia, Yuan Hong et al.CCS 2024 · 8 citations
- Fend for Yourself! Backdoor Purification in Federated Graph Learning with an Evolving Knowledge AnchorChengcheng Zhu, Yunlong Mao, Jiale Zhang, Bosen Rao et al.USENIX Security 2026
- FedBAP: Backdoor Defense via Benign Adversarial Perturbation in Federated LearningXinhai Yan, Libing Wu, Zhuangzhuang Zhang, Bingyi Liu et al.ACM MM 2025 · 2 citations
- On the Vulnerability of Backdoor Defenses for Federated LearningPei Fang, Jinghui ChenAAAI 2023 · 66 citations
