Highly Imperceptible Black-Box Graph Injection Attacks with Reinforcement Learning

强化学习 黑匣子 钢筋 图形 计算机科学 人工智能 心理学 社会心理学 理论计算机科学
作者
Minjie Zhao,Jing Zhang
出处
期刊:Proceedings of the ... AAAI Conference on Artificial Intelligence [Association for the Advancement of Artificial Intelligence (AAAI)]
卷期号:39 (12): 13357-13364 被引量:2
标识
DOI:10.1609/aaai.v39i12.33458
摘要

Recent studies have revealed the vulnerability of graph neural networks (GNNs) to adversarial attacks. In practice, effectively attacking GNNs is not easy. Existing attack methods primarily focus on modifying the topology of the graph data. In many scenarios, attackers do not have the authority to manipulate the graph's topology, making such attacks challenging to execute. Although node injection attacks are more feasible than modifying the topology, current injection attacks rely on knowledge of the victim model's architecture. This dependency significantly degrades attack quality when there is inconsistency in the victim models. Moreover, the generation of injected nodes often lacks precise control over features, making it difficult to balance attack effectiveness and stealthiness. In this paper, we investigate a node injection attack under model-agnostic conditions and propose Targeted Evasion Attack via Node Injection (TEANI). Specifically, TEANI models the generation of adversarial nodes as a Markov process. Without considering the target model's structure, it guides the agent to select features that maximize attack effectiveness within a budget, based solely on the results of queries to a black-box model. Extensive experiments on real-world datasets and mainstream GNN models demonstrate that the proposed TEANI poses more effective and imperceptible threats than state-of-the-art attack methods.
最长约 10秒,即可获得该文献文件

科研通智能强力驱动
Strongly Powered by AbleSci AI
科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
刚刚
刚刚
xiaodai发布了新的文献求助10
刚刚
1秒前
1秒前
Baccano完成签到 ,获得积分10
1秒前
无语的大山完成签到,获得积分10
1秒前
阳光白开水完成签到,获得积分10
1秒前
科研通AI6.2应助受伤雅琴采纳,获得10
1秒前
顾矜应助yoyo采纳,获得10
1秒前
爱学习的熊猫完成签到 ,获得积分10
1秒前
子非我完成签到,获得积分10
2秒前
markowits发布了新的文献求助10
3秒前
西西葵kui完成签到,获得积分20
4秒前
纯真的醉柳完成签到,获得积分10
4秒前
ableyy发布了新的文献求助10
4秒前
守门人完成签到,获得积分10
4秒前
高高从霜完成签到 ,获得积分10
4秒前
科目三应助来来来采纳,获得10
4秒前
江喜欢发布了新的文献求助10
5秒前
5秒前
倚楼书生发布了新的文献求助10
5秒前
小丑鱼儿完成签到 ,获得积分10
5秒前
5秒前
wanci应助dai采纳,获得10
5秒前
5秒前
wormzjl发布了新的文献求助10
6秒前
南风未起完成签到 ,获得积分10
6秒前
情怀应助好家伙采纳,获得10
6秒前
nofear发布了新的文献求助10
7秒前
科研通AI6.2应助晴天采纳,获得10
7秒前
7秒前
Apricity发布了新的文献求助10
7秒前
sunshine0401完成签到,获得积分10
7秒前
7秒前
7秒前
隐形曼青应助橘子采纳,获得10
8秒前
8秒前
务实水池完成签到,获得积分10
9秒前
小mol仙完成签到,获得积分10
9秒前
高分求助中
(应助此贴封号)【重要!!请各用户(尤其是新用户)详细阅读】【科研通的精品贴汇总】 10000
Developing Genetic Editing Tools for Lysobacter 2000
Adhesion Science: Principles & Practice 800
Signals, Systems, and Signal Processing 610
IEST-RP-CC018: Cleanroom Cleaning and Sanitization: Operating and Monitoring Procedures 600
Fundamentals of Pharmaceutical and Biologics Regulations: A Global Perspective, Second Edition 600
近红外光谱定性分析原理、技术及应用 500
热门求助领域 (近24小时)
化学 材料科学 医学 生物 纳米技术 工程类 有机化学 化学工程 生物化学 计算机科学 物理 内科学 复合材料 催化作用 物理化学 光电子学 电极 细胞生物学 基因 无机化学
热门帖子
关注 科研通微信公众号,转发送积分 6531524
求助须知:如何正确求助?哪些是违规求助? 8324120
关于积分的说明 17823255
捐赠科研通 5632843
什么是DOI,文献DOI怎么找? 2932769
邀请新用户注册赠送积分活动 1909422
关于科研通互助平台的介绍 1768618