Certifying Robust Graph Classification under Orthogonal Gromov-Wasserstein Threats
Certifying Robust Graph Classification under Orthogonal Gromov-Wasserstein Threats
复制标题
DOI:
--
复制
发表时间:
2022
期刊:
影响因子:
--
通讯作者:
Hongwei Jin;Zishun Yu;Xinhua Zhang
中科院分区:
文献类型:
--
作者:
Hongwei Jin;Zishun Yu;Xinhua Zhang
Graph classifiers are vulnerable to topological attacks. Although certificates of robustness have been recently developed, their threat model only counts local and global edge perturbations, which effectively ignores important graph structures such as isomorphism. To address this issue, we propose measuring the perturbation with the orthogonal Gromov-Wasserstein discrepancy, and building its Fenchel biconjugate to facilitate convex optimization. Our key insight is drawn from the matching loss whose root connects two variables via a monotone operator, and it yields a tight outer convex approximation for resistance distance on graph nodes. When applied to graph classification by graph convolutional networks, both our certificate and attack algorithm are demonstrated effective.