Lune

ICML2021顶会

Expressive 1-Lipschitz Neural Networks for Robust Multiple Graph Learning against Adversarial Attacks

Xin Zhao, Zeru Zhang, Zijie Zhang, Lingfei Wu, Jiayin Jin, Yang Zhou, Ruoming Jin, Dejing Dou, Da Yan

出版方
2021年份
33被引次数
15顶会引用

摘要

Recent findings have shown multiple graph learning models, such as graph classification and graph matching, are highly vulnerable to adversarial attacks, i.e. small input perturbations in graph structures and node attributes can cause the model failures. Existing defense techniques often defend specific attacks on particular multiple graph learning tasks. This paper proposes an attackagnostic graph-adaptive 1-Lipschitz neural network, ERNN, for improving the robustness of deep multiple graph learning while achieving remarkable expressive power. A K l -Lipschitz Weibull activation function f is designed to enforce the gradient norm ∇ f (x) as K l at layer l. The nearest matrix orthogonalization and polar decomposition techniques are utilized to constraint the weight norm Wl as 1/K l and make Wl close to the original weight W l . The theoretical analysis is conducted to derive lower and upper bounds of feasible K l under the 1-Lipschitz constraint. The combination of norm-constrained f and Wl leads to the 1-Lipschitz neural network for expressive and robust multiple graph learning. Recently, Lipschitz-constrained neural networks are proposed to offer attack-agnostic defense solutions by imposing

问问这篇 Paper

智能体会读完全文。

Lune 把这篇 Paper 索引到了每一个公式,引用它的顶会 Paper 也一样。你提问,回答直接引用原文。

可以从这些问题问起

智能体调用

Luneget_paper_fulltext

在 Lune 里问

免费开始,无需绑卡

引用它的顶会 Paper15

问问它们各自怎么用它

它引用的顶会 Paper24

相关 Paper

黄昏的海面,两侧是细线勾勒的悬崖