year.md

November 7, 2023 · View on GitHub

TitleTypeVenueCodeYear
0Revisiting Graph Adversarial Attack and Defense From a Data Distribution Perspective⚔Attack📝ICLR:octocat:Code2023
1Let Graph be the Go Board: Gradient-free Node Injection Attack for Graph Neural Networks via Reinforcement Learning⚔Attack📝AAAI:octocat:Code2023
2GUAP: Graph Universal Attack Through Adversarial Patching⚔Attack📝arXiv:octocat:Code2023
3Node Injection for Class-specific Network Poisoning⚔Attack📝arXiv:octocat:Code2023
4Unnoticeable Backdoor Attacks on Graph Neural Networks⚔Attack📝WWW:octocat:Code2023
5A semantic backdoor attack against Graph Convolutional Networks⚔Attack📝arXiv2023
6Graph Adversarial Immunization for Certifiable Robustness🔐Certification📝arXiv'20232023
7Localized Randomized Smoothing for Collective Robustness Certification🔐Certification📝ICLR'20232023
8(Provable) Adversarial Robustness for Group Equivariant Tasks: Graphs, Point Clouds, Molecules, and More🔐Certification📝NeurIPS'2023:octocat:Code2023
9Hierarchical Randomized Smoothing🔐Certification📝NeurIPS'2023:octocat:Code2023
10Evaluating Robustness and Uncertainty of Graph Models Under Structural Distributional Shifts🚀Others📝arXiv‘2023:octocat:Code2023
11Adversarial Training for Graph Neural Networks: Pitfalls, Solutions, and New Directions🛡Defense📝NeurIPS:octocat:Code2023
12ASGNN: Graph Neural Networks with Adaptive Structure🛡Defense📝ICLR OpenReview2023
13Empowering Graph Representation Learning with Test-Time Graph Transformation🛡Defense📝ICLR:octocat:Code2023
14Robust Training of Graph Neural Networks via Noise Governance🛡Defense📝WSDM:octocat:Code2023
15Self-Supervised Graph Structure Refinement for Graph Neural Networks🛡Defense📝WSDM:octocat:Code2023
16Revisiting Robustness in Graph Machine Learning🛡Defense📝ICLR:octocat:Code2023
17Robust Mid-Pass Filtering Graph Convolutional Networks🛡Defense📝WWW2023
18Towards Robust Graph Neural Networks via Adversarial Contrastive Learning🛡Defense📝BigData2023
19AdverSparse: An Adversarial Attack Framework for Deep Spatial-Temporal Graph Neural Networks⚔Attack📝ICASSP2022
20Surrogate Representation Learning with Isometric Mapping for Gray-box Graph Adversarial Attacks⚔Attack📝WSDM2022
21Cluster Attack: Query-based Adversarial Attacks on Graphs with Graph-Dependent Priors⚔Attack📝IJCAI:octocat:Code2022
22Label-Only Membership Inference Attack against Node-Level Graph Neural NetworksCluster Attack: Query-based Adversarial Attacks on Graphs with Graph-Dependent Priors⚔Attack📝arXiv2022
23Adversarial Camouflage for Node Injection Attack on Graphs⚔Attack📝arXiv2022
24Are Gradients on Graph Structure Reliable in Gray-box Attacks?⚔Attack📝CIKM:octocat:Code2022
25Graph Structural Attack by Perturbing Spectral Distance⚔Attack📝KDD2022
26What Does the Gradient Tell When Attacking the Graph Structure⚔Attack📝arXiv2022
27Label specificity attack: Change your label as I want⚔Attack📝IJIS2022
28BinarizedAttack: Structural Poisoning Attacks to Graph-based Anomaly Detection⚔Attack📝ICDM:octocat:Code2022
29Sparse Vicious Attacks on Graph Neural Networks⚔Attack📝arXiv:octocat:Code2022
30Poisoning GNN-based Recommender Systems with Generative Surrogate-based Attacks⚔Attack📝ACM TIS2022
31Membership Inference Attacks Against Robust Graph Neural Network⚔Attack📝CSS2022
32Adversarial Inter-Group Link Injection Degrades the Fairness of Graph Neural Networks⚔Attack📝ICDM:octocat:Code2022
33Revisiting Item Promotion in GNN-based Collaborative Filtering: A Masked Targeted Topological Attack Perspective⚔Attack📝arXiv2022
34Link-Backdoor: Backdoor Attack on Link Prediction via Node Injection⚔Attack📝arXiv:octocat:Code2022
35Private Graph Extraction via Feature Explanations⚔Attack📝arXiv2022
36Model Inversion Attacks against Graph Neural Networks⚔Attack📝TKDE2022
37Towards Secrecy-Aware Attacks Against Trust Prediction in Signed Graphs⚔Attack📝arXiv2022
38Adversarial Robustness of Graph-based Anomaly Detection⚔Attack📝arXiv2022
39Bandits for Structure Perturbation-based Black-box Attacks to Graph Neural Networks with Theoretical Guarantees⚔Attack📝CVPR:octocat:Code2022
40Adversarial Attack on Graph Neural Networks as An Influence Maximization Problem⚔Attack📝WSDM:octocat:Code2022
41Inference Attacks Against Graph Neural Networks⚔Attack📝USENIX Security:octocat:Code2022
42Model Stealing Attacks Against Inductive Graph Neural Networks⚔Attack📝IEEE Symposium on Security and Privacy:octocat:Code2022
43Transferable Graph Backdoor Attack⚔Attack📝RAID:octocat:Code2022
44Unsupervised Graph Poisoning Attack via Contrastive Loss Back-propagation⚔Attack📝WWW:octocat:Code2022
45Understanding and Improving Graph Injection Attack by Promoting Unnoticeability⚔Attack📝ICLR:octocat:Code2022
46Blindfolded Attackers Still Threatening: Strict Black-Box Adversarial Attacks on Graphs⚔Attack📝AAAI:octocat:Code2022
47More is Better (Mostly): On the Backdoor Attacks in Federated Graph Neural Networks⚔Attack📝arXiv2022
48Black-box Node Injection Attack for Graph Neural Networks⚔Attack📝arXiv:octocat:Code2022
49Interpretable and Effective Reinforcement Learning for Attacking against Graph-based Rumor Detection⚔Attack📝arXiv2022
50Projective Ranking-based GNN Evasion Attacks⚔Attack📝arXiv2022
51GAP: Differentially Private Graph Neural Networks with Aggregation Perturbation⚔Attack📝arXiv2022
52Model Extraction Attacks on Graph Neural Networks: Taxonomy and Realization⚔Attack📝Asia CCS:octocat:Code2022
53Neighboring Backdoor Attacks on Graph Convolutional Network⚔Attack📝arXiv:octocat:Code2022
54Camouflaged Poisoning Attack on Graph Neural Networks⚔Attack📝ICDM2022
55Dealing with the unevenness: deeper insights in graph-based attack and defense⚔Attack📝Machine Learning2022
56Adversarial for Social Privacy: A Poisoning Strategy to Degrade User Identity Linkage⚔Attack📝arXiv2022
57LOKI: A Practical Data Poisoning Attack Framework against Next Item Recommendations⚔Attack📝TKDE2022
58Exploratory Adversarial Attacks on Graph Neural Networks for Semi-Supervised Node Classification⚔Attack📝Pattern Recognition2022
59Motif-Backdoor: Rethinking the Backdoor Attack on Graph Neural Networks via Motifs⚔Attack📝arXiv2022
60Are Defenses for Graph Neural Networks Robust?⚔Attack📝NeurIPS:octocat:Code2022
61Adversarial Label Poisoning Attack on Graph Neural Networks via Label Propagation⚔Attack📝ECCV2022
62Imperceptible Adversarial Attacks on Discrete-Time Dynamic Graph Models⚔Attack📝NeurIPS2022
63Towards Reasonable Budget Allocation in Untargeted Graph Structure Attacks via Gradient Debias⚔Attack📝NeurIPS:octocat:Code2022
64Adversary for Social Good: Leveraging Attribute-Obfuscating Attack to Protect User Privacy on Social Networks⚔Attack📝SecureComm2022
65GANI: Global Attacks on Graph Neural Networks via Imperceptible Node Injections⚔Attack📝arXiv:octocat:Code2022
66Stability and Generalization Capabilities of Message Passing Graph Neural Networks⚖Stability📝arXiv'20222022
67On the Prediction Instability of Graph Neural Networks⚖Stability📝arXiv'20222022
68GreatX: A graph reliability toolbox based on PyTorch and PyTorch Geometric⚙Toolbox📝arXiv’2022:octocat:GreatX2022
69Trustworthy Graph Neural Networks: Aspects, Methods and Trends📃Survey📝arXiv'20222022
70Graph Vulnerability and Robustness: A Survey📃Survey📝TKDE'20222022
71A Comprehensive Survey on Trustworthy Graph Neural Networks: Privacy, Robustness, Fairness, and Explainability📃Survey📝arXiv'20222022
72A Survey of Trustworthy Graph Learning: Reliability, Explainability, and Privacy Protection📃Survey📝arXiv'20222022
73A Comparative Study on Robust Graph Neural Networks to Structural Noises📃Survey📝AAAI DLG'20222022
74Recent Advances in Reliable Deep Graph Learning: Inherent Noise, Distribution Shift, and Adversarial Attack📃Survey📝arXiv'20222022
75Randomized Message-Interception Smoothing: Gray-box Certificates for Graph Neural Networks🔐Certification📝NeurIPS'2022:octocat:Code2022
76A Systematic Evaluation of Node Embedding Robustness🚀Others📝LoG‘2022:octocat:Code2022
77We Cannot Guarantee Safety: The Undecidability of Graph Neural Network Verification🚀Others📝arXiv'20222022
78Exploring High-Order Structure for Robust Graph Structure Learning🛡Defense📝arXiv2022
79Unsupervised Adversarially-Robust Representation Learning on Graphs🛡Defense📝AAAI:octocat:Code2022
80Towards Robust Graph Neural Networks for Noisy Graphs with Sparse Labels🛡Defense📝WSDM:octocat:Code2022
81Mind Your Solver! On Adversarial Attack and Defense for Combinatorial Optimization🛡Defense📝arXiv:octocat:Code2022
82Learning Robust Representation through Graph Adversarial Contrastive Learning🛡Defense📝arXiv2022
83GARNET: Reduced-Rank Topology Learning for Robust and Scalable Graph Neural Networks🛡Defense📝arXiv2022
84Graph Neural Network for Local Corruption Recovery🛡Defense📝arXiv:octocat:Code2022
85How Does Bayesian Noisy Self-Supervision Defend Graph Convolutional Networks?🛡Defense📝Neural Processing Letters2022
86Robust Heterogeneous Graph Neural Networks against Adversarial Attacks🛡Defense📝AAAI2022
87SimGRACE: A Simple Framework for Graph Contrastive Learning without Data Augmentation🛡Defense📝WWW:octocat:Code2022
88Robust Graph Representation Learning via Predictive Coding🛡Defense📝arXiv2022
89You Can Have Better Graph Neural Networks by Not Training Weights at All: Finding Untrained GNNs Tickets🛡Defense📝LoG:octocat:Code2022
90On the Vulnerability of Graph Learning based Collaborative Filtering🛡Defense📝TIS2022
91Spectral Adversarial Training for Robust Graph Neural Network🛡Defense📝TKDE:octocat:Code2022
92Resisting Graph Adversarial Attack via Cooperative Homophilous Augmentation🛡Defense📝ECML-PKDD2022
93GUARD: Graph Universal Adversarial Defense🛡Defense📝arXiv:octocat:Code2022
94Detecting Topology Attacks against Graph Neural Networks🛡Defense📝arXiv2022
95LPGNet: Link Private Graph Networks for Node Classification🛡Defense📝arXiv2022
96EvenNet: Ignoring Odd-Hop Neighbors Improves Robustness of Graph Neural Networks🛡Defense📝arXiv2022
97Bayesian Robust Graph Contrastive Learning🛡Defense📝arXiv:octocat:Code2022
98Reliable Representations Make A Stronger Defender: Unsupervised Structure Refinement for Robust GNN🛡Defense📝KDD:octocat:Code2022
99Robust Graph Representation Learning for Local Corruption Recovery🛡Defense📝ICML workshop2022
100Appearance and Structure Aware Robust Deep Visual Graph Matching: Attack, Defense and Beyond🛡Defense📝CVPR:octocat:Code2022
101Large-Scale Privacy-Preserving Network Embedding against Private Link Inference Attacks🛡Defense📝arXiv2022
102Defending Graph Convolutional Networks against Dynamic Graph Perturbations via Bayesian Self-supervision🛡Defense📝AAAI:octocat:Code2022
103AN-GCN: An Anonymous Graph Convolutional Network Against Edge-Perturbing Attacks🛡Defense📝IEEE TNNLS2022
104How does Heterophily Impact Robustness of Graph Neural Networks? Theoretical Connections and Practical Implications🛡Defense📝KDD:octocat:Code2022
105Robust Graph Neural Networks using Weighted Graph Laplacian🛡Defense📝SPCOM:octocat:Code2022
106ARIEL: Adversarial Graph Contrastive Learning🛡Defense📝arXiv2022
107Robust Tensor Graph Convolutional Networks via T-SVD based Graph Augmentation🛡Defense📝KDD:octocat:Code2022
108NOSMOG: Learning Noise-robust and Structure-aware MLPs on Graphs🛡Defense📝arXiv2022
109Robust Node Classification on Graphs: Jointly from Bayesian Label Transition and Topology-based Label Propagation🛡Defense📝CIKM:octocat:Code2022
110On the Robustness of Graph Neural Diffusion to Topology Perturbations🛡Defense📝NeurIPS:octocat:Code2022
111IoT-based Android Malware Detection Using Graph Neural Network With Adversarial Defense🛡Defense📝IEEE IOT2022
112Robust cross-network node classification via constrained graph mutual information🛡Defense📝KBS2022
113Defending Against Backdoor Attack on Graph Nerual Network by Explainability🛡Defense📝arXiv2022
114Towards an Optimal Asymmetric Graph Structure for Robust Semi-supervised Node Classification🛡Defense📝KDD2022
115FocusedCleaner: Sanitizing Poisoned Graphs for Robust GNN-based Node Classification🛡Defense📝arXiv2022
116Robust Graph Neural Networks via Ensemble Learning🛡Defense📝Mathematics2022
117Revisiting Adversarial Attacks on Graph Neural Networks for Graph Classification⚔Attack📝arXiv2021
118How Members of Covert Networks Conceal the Identities of Their Leaders⚔Attack📝ACM TIST2021
119Spatially Focused Attack against Spatiotemporal Graph Neural Networks⚔Attack📝arXiv2021
120Derivative-free optimization adversarial attacks for graph convolutional networks⚔Attack📝PeerJ2021
121Projective Ranking: A Transferable Evasion Attack Method on Graph Neural Networks⚔Attack📝CIKM2021
122Time-aware Gradient Attack on Dynamic Network Link Prediction⚔Attack📝TKDE2021
123Graph-Fraudster: Adversarial Attacks on Graph Neural Network Based Vertical Federated Learning⚔Attack📝arXiv2021
124Watermarking Graph Neural Networks based on Backdoor Attacks⚔Attack📝arXiv2021
125Robustness of Graph Neural Networks at Scale⚔Attack📝NeurIPS:octocat:Code2021
126Generalization of Neural Combinatorial Solvers Through the Lens of Adversarial Robustness⚔Attack📝NeurIPS2021
127Graph Universal Adversarial Attacks: A Few Bad Actors Ruin Graph Learning Models⚔Attack📝IJCAI:octocat:Code2021
128Adversarial Attacks on Knowledge Graph Embeddings via Instance Attribution Methods⚔Attack📝EMNLP:octocat:Code2021
129COREATTACK: Breaking Up the Core Structure of Graphs⚔Attack📝arXiv2021
130UNTANGLE: Unlocking Routing and Logic Obfuscation Using Graph Neural Networks-based Link Prediction⚔Attack📝ICCAD:octocat:Code2021
131GraphMI: Extracting Private Graph Data from Graph Neural Networks⚔Attack📝IJCAI:octocat:Code2021
132Structural Attack against Graph Based Android Malware Detection⚔Attack📝CCS2021
133Adversarial Attack against Cross-lingual Knowledge Graph Alignment⚔Attack📝EMNLP2021
134FHA: Fast Heuristic Attack Against Graph Convolutional Networks⚔Attack📝ICDS2021
135Task and Model Agnostic Adversarial Attack on Graph Neural Networks⚔Attack📝arXiv2021
136Adversarial Attacks on Graph Classification via Bayesian Optimisation⚔Attack📝NeurIPS:octocat:Code2021
137Single Node Injection Attack against Graph Neural Networks⚔Attack📝CIKM:octocat:Code2021
138GNNUnlock: Graph Neural Networks-based Oracle-less Unlocking Scheme for Provably Secure Logic Locking⚔Attack📝DATE Conference2021
139Adapting Membership Inference Attacks to GNN for Graph Classification: Approaches and Implications⚔Attack📝ICDM:octocat:Code2021
140Poisoning Knowledge Graph Embeddings via Relation Inference Patterns⚔Attack📝ACL:octocat:Code2021
141A Hard Label Black-box Adversarial Attack Against Graph Neural Networks⚔Attack📝CCS2021
142SAGE: Intrusion Alert-driven Attack Graph Extractor⚔Attack📝KDD Workshop:octocat:Code2021
143Adversarial Diffusion Attacks on Graph-based Traffic Prediction Models⚔Attack📝arXiv:octocat:Code2021
144VIKING: Adversarial Attack on Network Embeddings via Supervised Network Poisoning⚔Attack📝PAKDD:octocat:Code2021
145Explainability-based Backdoor Attacks Against Graph Neural Networks⚔Attack📝WiseML@WiSec2021
146GraphAttacker: A General Multi-Task GraphAttack Framework⚔Attack📝arXiv:octocat:Code2021
147Attacking Graph Neural Networks at Scale⚔Attack📝AAAI workshop2021
148Reinforcement Learning For Data Poisoning on Graph Neural Networks⚔Attack📝arXiv2021
149Universal Spectral Adversarial Attacks for Deformable Shapes⚔Attack📝CVPR2021
150DeHiB: Deep Hidden Backdoor Attack on Semi-Supervised Learning via Adversarial Perturbation⚔Attack📝AAAI2021
151Towards Revealing Parallel Adversarial Attack on Politician Socialnet of Graph Structure⚔Attack📝Security and Communication Networks2021
152Network Embedding Attack: An Euclidean Distance Based Method⚔Attack📝MDATA2021
153Preserve, Promote, or Attack? GNN Explanation via Topology Perturbation⚔Attack📝arXiv2021
154Jointly Attacking Graph Neural Network and its Explanations⚔Attack📝arXiv2021
155Graph Stochastic Neural Networks for Semi-supervised Learning⚔Attack📝arXiv:octocat:Code2021
156Iterative Deep Graph Learning for Graph Neural Networks: Better and Robust Node Embeddings⚔Attack📝arXiv:octocat:Code2021
157Single-Node Attack for Fooling Graph Neural Networks⚔Attack📝KDD Workshop:octocat:Code2021
158The Robustness of Graph k-shell Structure under Adversarial Attacks⚔Attack📝arXiv2021
159Graphfool: Targeted Label Adversarial Attack on Graph Embedding⚔Attack📝arXiv2021
160Joint Detection and Localization of Stealth False Data Injection Attacks in Smart Grids using Graph Neural Networks⚔Attack📝arXiv2021
161Node-Level Membership Inference Attacks Against Graph Neural Networks⚔Attack📝arXiv2021
162Adversarial Attack on Large Scale Graph⚔Attack📝TKDE:octocat:Code2021
163Black-box Gradient Attack on Graph Neural Networks: Deeper Insights in Graph-based Attack and Defense⚔Attack📝arXiv2021
164Stealing Links from Graph Neural Networks⚔Attack📝USENIX Security2021
165Structack: Structure-based Adversarial Attacks on Graph Neural Networks⚔Attack📝ACM Hypertext:octocat:Code2021
166Optimal Edge Weight Perturbations to Attack Shortest Paths⚔Attack📝arXiv2021
167GReady for Emerging Threats to Recommender Systems? A Graph Convolution-based Generative Shilling Attack⚔Attack📝Information Sciences2021
168Graph Adversarial Attack via Rewiring⚔Attack📝KDD:octocat:Code2021
169Membership Inference Attack on Graph Neural Networks⚔Attack📝arXiv2021
170Graph Backdoor⚔Attack📝USENIX Security2021
171TDGIA: Effective Injection Attacks on Graph Neural Networks⚔Attack📝KDD:octocat:Code2021
172Adversarial Attack Framework on Graph Embedding Models with Limited Knowledge⚔Attack📝arXiv2021
173PATHATTACK: Attacking Shortest Paths in Complex Networks⚔Attack📝arXiv2021
174Towards a Unified Framework for Fair and Stable Graph Representation Learning⚖Stability📝UAI'2021:octocat:Code2021
175Training Stable Graph Neural Networks Through Constrained Learning⚖Stability📝arXiv'20212021
176Shift-Robust GNNs: Overcoming the Limitations of Localized Graph Training data⚖Stability📝NeurIPS'2021:octocat:Code2021
177Stability of Graph Convolutional Neural Networks to Stochastic Perturbations⚖Stability📝arXiv'20212021
178DeepRobust: a Platform for Adversarial Attacks and Defenses⚙Toolbox📝AAAI’2021:octocat:DeepRobust2021
179Evaluating Graph Vulnerability and Robustness using TIGER⚙Toolbox📝arXiv‘2021:octocat:TIGER2021
180Graph Robustness Benchmark: Rethinking and Benchmarking Adversarial Robustness of Graph Neural Networks⚙Toolbox📝NeurIPS'2021:octocat:Graph Robustness Benchmark (GRB)2021
181Deep Graph Structure Learning for Robust Representations: A Survey📃Survey📝arXiv'20212021
182Robustness of deep learning models on graphs: A survey📃Survey📝AI Open'20212021
183Adversarial Attacks and Defenses on Graphs: A Review, A Tool and Empirical Studies📃Survey📝SIGKDD Explorations'20212021
184Graph Neural Networks Methods, Applications, and Opportunities📃Survey📝arXiv'20212021
185Certifying Robustness of Graph Laplacian Based Semi-Supervised Learning🔐Certification📝ICLR OpenReview'20212021
186Robust Certification for Laplace Learning on Geometric Graphs🔐Certification📝MSML’20212021
187Certified Robustness of Graph Neural Networks against Adversarial Structural Perturbation🔐Certification📝KDD'2021:octocat:Code2021
188Collective Robustness Certificates: Exploiting Interdependence in Graph Neural Networks🔐Certification📝ICLR'2021:octocat:Code2021
189Adversarial Immunization for Improving Certifiable Robustness on Graphs🔐Certification📝WSDM'20212021
190CAP: Co-Adversarial Perturbation on Weights and Features for Improving Generalization of Graph Neural Networks🚀Others📝arXiv'20212021
191SIGL: Securing Software Installations Through Deep Graph Learning🚀Others📝USENIX'20212021
192Learning to Drop: Robust Graph Neural Network via Topological Denoising🛡Defense📝WSDM:octocat:Code2021
193How effective are Graph Neural Networks in Fraud Detection for Network Data?🛡Defense📝arXiv2021
194Graph Sanitation with Application to Node Classification🛡Defense📝arXiv2021
195Understanding Structural Vulnerability in Graph Convolutional Networks🛡Defense📝IJCAI:octocat:Code2021
196A Robust and Generalized Framework for Adversarial Graph Embedding🛡Defense📝arXiv:octocat:Code2021
197Integrated Defense for Resilient Graph Matching🛡Defense📝ICML2021
198Unveiling Anomalous Nodes Via Random Sampling and Consensus on Graphs🛡Defense📝ICASSP2021
199Robust Network Alignment via Attack Signal Scaling and Adversarial Perturbation Elimination🛡Defense📝WWW2021
200Information Obfuscation of Graph Neural Network🛡Defense📝ICML:octocat:Code2021
201Improving Robustness of Graph Neural Networks with Heterophily-Inspired Designs🛡Defense📝arXiv2021
202DeepInsight: Interpretability Assisting Detection of Adversarial Samples on Graphs🛡Defense📝ECML2021
203Elastic Graph Neural Networks🛡Defense📝ICML:octocat:Code2021
204Robust Counterfactual Explanations on Graph Neural Networks🛡Defense📝arXiv2021
205Node Similarity Preserving Graph Convolutional Networks🛡Defense📝WSDM:octocat:Code2021
206Enhancing Robustness and Resilience of Multiplex Networks Against Node-Community Cascading Failures🛡Defense📝IEEE TSMC2021
207NetFense: Adversarial Defenses against Privacy Attacks on Neural Networks for Graph Data🛡Defense📝TKDE:octocat:Code2021
208Robust Graph Learning Under Wasserstein Uncertainty🛡Defense📝arXiv2021
209Towards Robust Graph Contrastive Learning🛡Defense📝arXiv2021
210Expressive 1-Lipschitz Neural Networks for Robust Multiple Graph Learning against Adversarial Attacks🛡Defense📝ICML2021
211UAG: Uncertainty-Aware Attention Graph Neural Network for Defending Adversarial Attacks🛡Defense📝AAAI2021
212On Generalization of Graph Autoencoders with Adversarial Training🛡Defense📝ECML2021
213Uncertainty-Matching Graph Neural Networks to Defend Against Poisoning Attacks🛡Defense📝AAAI2021
214Power up! Robust Graph Convolutional Network against Evasion Attacks based on Graph Powering🛡Defense📝AAAI:octocat:Code2021
215Personalized privacy protection in social networks through adversarial modeling🛡Defense📝AAAI2021
216Interpretable Stability Bounds for Spectral Graph Filters🛡Defense📝arXiv2021
217Graph Neural Networks with Feature and Structure Aware Random Walk🛡Defense📝arXiv2021
218Topological Relational Learning on Graphs🛡Defense📝NeurIPS:octocat:Code2021
219Graph Posterior Network: Bayesian Predictive Uncertainty for Node Classification🛡Defense📝NeurIPS:octocat:Code2021
220Graph-based Adversarial Online Kernel Learning with Adaptive Embedding🛡Defense📝ICDM2021
221Robust Graph Neural Networks via Probabilistic Lipschitz Constraints🛡Defense📝arXiv2021
222Randomized Generation of Adversary-Aware Fake Knowledge Graphs to Combat Intellectual Property Theft🛡Defense📝AAAI2021
223Unified Robust Training for Graph NeuralNetworks against Label Noise🛡Defense📝arXiv2021
224An Introduction to Robust Graph Convolutional Networks🛡Defense📝arXiv2021
225E-GraphSAGE: A Graph Neural Network based Intrusion Detection System🛡Defense📝arXiv2021
226Spatio-Temporal Sparsification for General Robust Graph Convolution Networks🛡Defense📝arXiv2021
227Robust graph convolutional networks with directional graph adversarial training🛡Defense📝Applied Intelligence2021
228Detection and Defense of Topological Adversarial Attacks on Graphs🛡Defense📝AISTATS2021
229Unveiling the potential of Graph Neural Networks for robust Intrusion Detection🛡Defense📝arXiv:octocat:Code2021
230Adversarial Robustness of Probabilistic Network Embedding for Link Prediction🛡Defense📝arXiv2021
231EGC2: Enhanced Graph Classification with Easy Graph Compression🛡Defense📝arXiv2021
232LinkTeller: Recovering Private Edges from Graph Neural Networks via Influence Analysis🛡Defense📝arXiv2021
233Structure-Aware Hierarchical Graph Pooling using Information Bottleneck🛡Defense📝IJCNN 2021
234Mal2GCN: A Robust Malware Detection Approach Using Deep Graph Convolutional Networks With Non-Negative Weights🛡Defense📝arXiv2021
235CoG: a Two-View Co-training Framework for Defending Adversarial Attacks on Graph🛡Defense📝arXiv2021
236Releasing Graph Neural Networks with Differential Privacy Guarantees🛡Defense📝arXiv2021
237Speedup Robust Graph Structure Learning with Low-Rank Information🛡Defense📝CIKM2021
238A Lightweight Metric Defence Strategy for Graph Neural Networks Against Poisoning Attacks🛡Defense📝ICICS:octocat:Code2021
239Node Feature Kernels Increase Graph Convolutional Network Robustness🛡Defense📝arXiv:octocat:Code2021
240On the Relationship between Heterophily and Robustness of Graph Neural Networks🛡Defense📝arXiv2021
241Distributionally Robust Semi-Supervised Learning Over Graphs🛡Defense📝ICLR2021
242Graph Transplant: Node Saliency-Guided Graph Mixup with Local Structure Preservation🛡Defense📝arXiv2021
243Not All Low-Pass Filters are Robust in Graph Convolutional Networks🛡Defense📝NeurIPS:octocat:Code2021
244Towards Robust Reasoning over Knowledge Graphs🛡Defense📝arXiv2021
245Graph Neural Networks with Adaptive Residual🛡Defense📝NeurIPS:octocat:Code2021
246Adaptive Adversarial Attack on Graph Embedding via GAN⚔Attack📝SocialSec2020
247Scalable Adversarial Attack on Graph Neural Networks with Alternating Direction Method of Multipliers⚔Attack📝arXiv2020
248One Vertex Attack on Graph Neural Networks-based Spatiotemporal Forecasting⚔Attack📝ICLR OpenReview2020
249Near-Black-Box Adversarial Attacks on Graph Neural Networks as An Influence Maximization Problem⚔Attack📝ICLR OpenReview2020
250Adversarial Attacks on Deep Graph Matching⚔Attack📝NeurIPS2020
251Attacking Graph-Based Classification without Changing Existing Connections⚔Attack📝ACSAC2020
252Cross Entropy Attack on Deep Graph Infomax⚔Attack📝IEEE ISCAS2020
253Learning to Deceive Knowledge Graph Augmented Models via Targeted Perturbation⚔Attack📝ICLR:octocat:Code2020
254Towards More Practical Adversarial Attacks on Graph Neural Networks⚔Attack📝NeurIPS:octocat:Code2020
255Adversarial Label-Flipping Attack and Defense for Graph Neural Networks⚔Attack📝ICDM:octocat:Code2020
256Exploratory Adversarial Attacks on Graph Neural Networks⚔Attack📝ICDM:octocat:Code2020
257A Targeted Universal Attack on Graph Convolutional Network⚔Attack📝arXiv:octocat:Code2020
258Query-free Black-box Adversarial Attacks on Graphs⚔Attack📝arXiv2020
259Reinforcement Learning-based Black-Box Evasion Attacks to Link Prediction in Dynamic Graphs⚔Attack📝arXiv2020
260Efficient Evasion Attacks to Graph Neural Networks via Influence Function⚔Attack📝arXiv2020
261Backdoor Attacks to Graph Neural Networks⚔Attack📝SACMAT:octocat:Code2020
262Link Prediction Adversarial Attack Via Iterative Gradient Attack⚔Attack📝IEEE Trans2020
263Semantic-preserving Reinforcement Learning Attack Against Graph Neural Networks for Malware Detection⚔Attack📝arXiv2020
264A Graph Matching Attack on Privacy-Preserving Record Linkage⚔Attack📝CIKM2020
265Adversarial Attack on Hierarchical Graph Pooling Neural Networks⚔Attack📝arXiv2020
266Adversarial Attack on Community Detection by Hiding Individuals⚔Attack📝WWW:octocat:Code2020
267Manipulating Node Similarity Measures in Networks⚔Attack📝AAMAS2020
268A Restricted Black-box Adversarial Framework Towards Attacking Graph Embedding Models⚔Attack📝AAAI:octocat:Code2020
269Indirect Adversarial Attacks via Poisoning Neighbors for Graph Convolutional Networks⚔Attack📝BigData2020
270Adversarial Attacks on Graph Neural Networks via Node Injections: A Hierarchical Reinforcement Learning Approach⚔Attack📝WWW2020
271An Efficient Adversarial Attack on Graph Structured Data⚔Attack📝IJCAI Workshop2020
272Practical Adversarial Attacks on Graph Neural Networks⚔Attack📝ICML Workshop2020
273Adversarial Attacks on Graph Neural Networks: Perturbations and their Patterns⚔Attack📝TKDD2020
274Adversarial Attacks on Link Prediction Algorithms Based on Graph Neural Networks⚔Attack📝Asia CCS2020
275Scalable Attack on Graph Data by Injecting Vicious Nodes⚔Attack📝ECML-PKDD:octocat:Code2020
276Attackability Characterization of Adversarial Evasion Attack on Discrete Data⚔Attack📝KDD2020
277MGA: Momentum Gradient Attack on Network⚔Attack📝arXiv2020
278Adversarial Perturbations of Opinion Dynamics in Networks⚔Attack📝arXiv2020
279Network disruption: maximizing disagreement and polarization in social networks⚔Attack📝arXiv:octocat:Code2020
280Adversarial attack on BC classification for scale-free networks⚔Attack📝AIP Chaos2020
281Adversarial Attacks to Scale-Free Networks: Testing the Robustness of Physical Criteria⚔Attack📝arXiv2020
282Graph and Graphon Neural Network Stability⚖Stability📝arXiv'20202020
283On the Stability of Graph Convolutional Neural Networks under Edge Rewiring⚖Stability📝arXiv'20202020
284Graph Neural Networks: Architectures, Stability and Transferability⚖Stability📝arXiv'20202020
285Should Graph Convolution Trust Neighbors? A Simple Causal Inference Method⚖Stability📝arXiv'20202020
286Stability of Graph Neural Networks to Relative Perturbations⚖Stability📝ICASSP'20202020
287Graph Neural Networks Taxonomy, Advances and Trends📃Survey📝arXiv'20202020
288A Survey of Adversarial Learning on Graph📃Survey📝arXiv'20202020
289Certified Robustness of Graph Classification against Topology Attack with Randomized Smoothing🔐Certification📝GLOBECOM'20202020
290Certifiable Robustness of Graph Convolutional Networks under Structure Perturbation🔐Certification📝KDD'2020:octocat:Code2020
291Efficient Robustness Certificates for Discrete Data: Sparsity - Aware Randomized Smoothing for Graphs, Images and More🔐Certification📝ICML'2020:octocat:Code2020
292Certified Robustness of Community Detection against Adversarial Structural Perturbation via Randomized Smoothing🔐Certification📝WWW'20202020
293Certified Robustness of Graph Convolution Networks for Graph Classification under Topological Attacks🔐Certification📝NeurIPS'2020:octocat:Code2020
294Improving the Robustness of Wasserstein Embedding by Adversarial PAC-Bayesian Learning🔐Certification📝AAAI'20202020
295Abstract Interpretation based Robustness Certification for Graph Convolutional Networks🔐Certification📝ECAI'20202020
296When Does Self-Supervision Help Graph Convolutional Networks?🚀Others📝ICML'20202020
297Training Robust Graph Neural Network by Applying Lipschitz Constant Constraint🚀Others📝CentraleSupélec'2020:octocat:Code2020
298Watermarking Graph Neural Networks by Random Graphs🚀Others📝arXiv'20202020
299FLAG: Adversarial Data Augmentation for Graph Neural Networks🚀Others📝arXiv'2020:octocat:Code2020
300AANE: Anomaly Aware Network Embedding For Anomalous Link Detection🛡Defense📝ICDM2020
301Provably Robust Node Classification via Low-Pass Message Passing🛡Defense📝ICDM2020
302Graph-Revised Convolutional Network🛡Defense📝ECML-PKDD:octocat:Code2020
303Robust Training of Graph Convolutional Networks via Latent Perturbation🛡Defense📝ECML-PKDD2020
304DefenseVGAE: Defending against Adversarial Attacks on Graph Data via a Variational Graph Autoencoder🛡Defense📝arXiv:octocat:Code2020
305Transferring Robustness for Graph Neural Network Against Poisoning Attacks🛡Defense📝WSDM:octocat:Code2020
306All You Need Is Low (Rank): Defending Against Adversarial Attacks on Graphs🛡Defense📝WSDM:octocat:Code2020
307How Robust Are Graph Neural Networks to Structural Noise?🛡Defense📝DLGMA2020
308Robust Detection of Adaptive Spammers by Nash Reinforcement Learning🛡Defense📝KDD:octocat:Code2020
309Graph Structure Learning for Robust Graph Neural Networks🛡Defense📝KDD:octocat:Code2020
310On The Stability of Polynomial Spectral Graph Filters🛡Defense📝ICASSP:octocat:Code2020
311On the Robustness of Cascade Diffusion under Node Attacks🛡Defense📝WWW:octocat:Code2020
312Friend or Faux: Graph-Based Early Detection of Fake Accounts on Social Networks🛡Defense📝WWW2020
313Towards an Efficient and General Framework of Robust Training for Graph Neural Networks🛡Defense📝ICASSP2020
314Robust Graph Representation Learning via Neural Sparsification🛡Defense📝ICML2020
315Robust Collective Classification against Structural Attacks🛡Defense📝Preprint2020
316Enhancing Graph Neural Network-based Fraud Detectors against Camouflaged Fraudsters🛡Defense📝CIKM:octocat:Code2020
317Topological Effects on Attacks Against Vertex Classification🛡Defense📝arXiv2020
318Tensor Graph Convolutional Networks for Multi-relational and Robust Learning🛡Defense📝arXiv2020
319Dynamic Knowledge Graph-based Dialogue Generation with Improved Adversarial Meta-Learning🛡Defense📝arXiv2020
320GNNGuard: Defending Graph Neural Networks against Adversarial Attacks🛡Defense📝NeurIPS:octocat:Code2020
321Robust Graph Learning From Noisy Data🛡Defense📝IEEE Trans2020
322ResGCN: Attention-based Deep Residual Modeling for Anomaly Detection on Attributed Networks🛡Defense📝arXiv2020
323Ricci-GNN: Defending Against Structural Attacks Through a Geometric Approach🛡Defense📝ICLR OpenReview2020
324Provable Overlapping Community Detection in Weighted Graphs🛡Defense📝NeurIPS2020
325Variational Inference for Graph Convolutional Networks in the Absence of Graph Data and Adversarial Settings🛡Defense📝NeurIPS:octocat:Code2020
326Graph Random Neural Networks for Semi-Supervised Learning on Graphs🛡Defense📝NeurIPS:octocat:Code2020
327Reliable Graph Neural Networks via Robust Aggregation🛡Defense📝NeurIPS:octocat:Code2020
328Towards Robust Graph Neural Networks against Label Noise🛡Defense📝ICLR OpenReview2020
329Graph Adversarial Networks: Protecting Information against Adversarial Attacks🛡Defense📝ICLR OpenReview:octocat:Code2020
330A Novel Defending Scheme for Graph-Based Classification Against Graph Structure Manipulating Attack🛡Defense📝SocialSec2020
331Node Copying for Protection Against Graph Neural Network Topology Attacks🛡Defense📝arXiv2020
332Community detection in sparse time-evolving graphs with a dynamical Bethe-Hessian🛡Defense📝NeurIPS2020
333A Feature-Importance-Aware and Robust Aggregator for GCN🛡Defense📝CIKM:octocat:Code2020
334Anti-perturbation of Online Social Networks by Graph Label Transition🛡Defense📝arXiv2020
335Graph Information Bottleneck🛡Defense📝NeurIPS:octocat:Code2020
336Adversarial Detection on Graph Structured Data🛡Defense📝PPMLP2020
337Graph Contrastive Learning with Augmentations🛡Defense📝NeurIPS:octocat:Code2020
338Learning Graph Embedding with Adversarial Training Methods🛡Defense📝IEEE Transactions on Cybernetics2020
339I-GCN: Robust Graph Convolutional Network via Influence Mechanism🛡Defense📝arXiv2020
340Adversary for Social Good: Protecting Familial Privacy through Joint Adversarial Attacks🛡Defense📝AAAI2020
341Smoothing Adversarial Training for GNN🛡Defense📝IEEE TCSS2020
342Graph Structure Reshaping Against Adversarial Attacks on Graph Neural Networks🛡Defense📝None:octocat:Code2020
343RoGAT: a robust GNN combined revised GAT with adjusted graphs🛡Defense📝arXiv2020
344Adversarial Privacy Preserving Graph Embedding against Inference Attack🛡Defense📝arXiv:octocat:Code2020
345Adversarial Attacks on Node Embeddings via Graph Poisoning⚔Attack📝ICML:octocat:Code2019
346GA Based Q-Attack on Community Detection⚔Attack📝TCSS2019
347Data Poisoning Attack against Knowledge Graph Embedding⚔Attack📝IJCAI2019
348Adversarial Attacks on Graph Neural Networks via Meta Learning⚔Attack📝ICLR:octocat:Code2019
349Topology Attack and Defense for Graph Neural Networks: An Optimization Perspective⚔Attack📝IJCAI:octocat:Code2019
350Adversarial Examples on Graph Data: Deep Insights into Attack and Defense⚔Attack📝IJCAI:octocat:Code2019
351A Unified Framework for Data Poisoning Attack to Graph-based Semi-supervised Learning⚔Attack📝NeurIPS:octocat:Code2019
352Attacking Graph-based Classification via Manipulating the Graph Structure⚔Attack📝CCS2019
353αCyber: Enhancing Robustness of Android Malware Detection System against Adversarial Attacks on Heterogeneous Graph based Model⚔Attack📝CIKM2019
354Multiscale Evolutionary Perturbation Attack on Community Detection⚔Attack📝arXiv2019
355PeerNets Exploiting Peer Wisdom Against Adversarial Attacks⚔Attack📝ICLR:octocat:Code2019
356Network Structural Vulnerability A Multi-Objective Attacker Perspective⚔Attack📝IEEE Trans2019
357Attacking Graph Convolutional Networks via Rewiring⚔Attack📝arXiv2019
358Unsupervised Euclidean Distance Attack on Network Embedding⚔Attack📝arXiv2019
359Structured Adversarial Attack Towards General Implementation and Better Interpretability⚔Attack📝ICLR:octocat:Code2019
360Generalizable Adversarial Attacks with Latent Variable Perturbation Modelling⚔Attack📝arXiv2019
361Vertex Nomination, Consistent Estimation, and Adversarial Modification⚔Attack📝arXiv2019
362Stability Properties of Graph Neural Networks⚖Stability📝arXiv'20192019
363When Do GNNs Work: Understanding and Improving Neighborhood Aggregation⚖Stability📝IJCAI Workshop'2019:octocat:Code2019
364Stability and Generalization of Graph Convolutional Neural Networks⚖Stability📝KDD'20192019
365Adversarial Attacks and Defenses in Images, Graphs and Text: A Review📃Survey📝arXiv'20192019
366Certifiable Robustness to Graph Perturbations🔐Certification📝NeurIPS'2019:octocat:Code2019
367Certifiable Robustness and Robust Training for Graph Convolutional Networks🔐Certification📝KDD'2019:octocat:Code2019
368Perturbation Sensitivity of GNNs🚀Others📝cs224w'20192019
369Bayesian graph convolutional neural networks for semi-supervised classification🛡Defense📝AAAI:octocat:Code2019
370Graph Interpolating Activation Improves Both Natural and Robust Accuracies in Data-Efficient Deep Learning🛡Defense📝arXiv:octocat:Code2019
371Adversarial Embedding: A robust and elusive Steganography and Watermarking technique🛡Defense📝arXiv2019
372Examining Adversarial Learning against Graph-based IoT Malware Detection Systems🛡Defense📝arXiv2019
373Target Defense Against Link-Prediction-Based Attacks via Evolutionary Perturbations🛡Defense📝arXiv2019
374Adversarial Defense Framework for Graph Neural Network🛡Defense📝arXiv2019
375GraphSAC: Detecting anomalies in large-scale graphs🛡Defense📝arXiv2019
376Graph Adversarial Training: Dynamically Regularizing Based on Graph Structure🛡Defense📝TKDE:octocat:Code2019
377Edge Dithering for Robust Adaptive Graph Convolutional Networks🛡Defense📝arXiv2019
378Can Adversarial Network Attack be Defended?🛡Defense📝arXiv2019
379Adversarial Training Methods for Network Embedding🛡Defense📝WWW:octocat:Code2019
380GraphDefense: Towards Robust Graph Convolutional Networks🛡Defense📝arXiv2019
381Robust Graph Data Learning via Latent Graph Convolutional Representation🛡Defense📝arXiv2019
382Investigating Robustness and Interpretability of Link Prediction via Adversarial Modifications🛡Defense📝NAACL:octocat:Code2019
383Robust Graph Convolutional Networks Against Adversarial Attacks🛡Defense📝KDD:octocat:Code2019
384Virtual Adversarial Training on Graph Convolutional Networks in Node Classification🛡Defense📝PRCV2019
385Comparing and Detecting Adversarial Attacks for Graph Deep Learning🛡Defense📝RLGM@ICLR2019
386Characterizing Malicious Edges targeting on Graph Neural Networks🛡Defense📝ICLR OpenReview:octocat:Code2019
387Latent Adversarial Training of Graph Convolution Networks🛡Defense📝LRGSD@ICML:octocat:Code2019
388Batch Virtual Adversarial Training for Graph Convolutional Networks🛡Defense📝ICML:octocat:Code2019
389Adversarial Robustness of Similarity-Based Link Prediction🛡Defense📝ICDM2019
390Improving Robustness to Attacks Against Vertex Classification🛡Defense📝MLG@KDD2019
391Fake Node Attacks on Graph Convolutional Networks⚔Attack📝arXiv2018
392Fast Gradient Attack on Network Embedding⚔Attack📝arXiv2018
393Attack Tolerance of Link Prediction Algorithms: How to Hide Your Relations in a Social Network⚔Attack📝arXiv2018
394Adversarial Attacks on Neural Networks for Graph Data⚔Attack📝KDD:octocat:Code2018
395Hiding Individuals and Communities in a Social Network⚔Attack📝Nature Human Behavior2018
396Attacking Similarity-Based Link Prediction in Social Networks⚔Attack📝AAMAS2018
397Adversarial Attack on Graph Structured Data⚔Attack📝ICML:octocat:Code2018
398Data Poisoning Attack against Unsupervised Node Embedding Methods⚔Attack📝arXiv2018
399Deep Learning on Graphs: A Survey📃Survey📝arXiv'20182018
400Adversarial Attack and Defense on Graph Data: A Survey📃Survey📝arXiv'20182018
401Adversarial Personalized Ranking for Recommendation🛡Defense📝SIGIR:octocat:Code2018
402Practical Attacks Against Graph-based Clustering⚔Attack📝CCS2017
403Adversarial Sets for Regularising Neural Link Predictors⚔Attack📝UAI:octocat:Code2017