Presentation information

International Session

International Session » ES-2 Machine learning

[4S1-IS-2f] Machine learning

Fri. Jun 17, 2022 10:00 AM - 11:20 AM Room S (Online S)

Chair: Hisashi Kashima (Kyoto University)

10:20 AM - 10:40 AM

[4S1-IS-2f-02] Adversarial attack detection on graph classification by autoencoder-based analysis of hidden layers in graph convolutional networks

Kenta Shimada1, 〇Tomonobu Ozaki1 (1. Nihon University)


Keywords:graph neural networks, adversarial attacks, autoencoders

Graph neural networks (GNNs) have been applied to various fields in recent years due to their high performance. However, GNNs are not always robust against adversarial attacks, which is one of the hindrances for the application of GNNs in safety-critical areas.
In this study, targeting graph classification models using graph convolutional neural networks (GCNs), we propose a method for detecting adversarial attacks by edge addition. The proposed method obtains latent representations of each input graph through the autoencoding of the output in hidden layer in the trained GCN, and determines the existence of attacks on the input graph using classification or outlier detection models.
We conducted empirical experiment on attack detection using four real datasets. As a result, although it depends on the combination of employed autoencoder and classification models, it was confirmed that the proposed method can detect a certain number of attacks.

Authentication for paper PDF access

A password is required to view paper PDFs. If you are a registered participant, please log on the site from Participant Log In.
You could view the PDF with entering the PDF viewing password bellow.