Matches in SemOpenAlex for { <https://semopenalex.org/work/W4313679604> ?p ?o ?g. }
Showing items 1 to 63 of
63
with 100 items per page.
- W4313679604 abstract "Randomized smoothing is one of the most promising frameworks for certifying the adversarial robustness of machine learning models, including Graph Neural Networks (GNNs). Yet, existing randomized smoothing certificates for GNNs are overly pessimistic since they treat the model as a black box, ignoring the underlying architecture. To remedy this, we propose novel gray-box certificates that exploit the message-passing principle of GNNs: We randomly intercept messages and carefully analyze the probability that messages from adversarially controlled nodes reach their target nodes. Compared to existing certificates, we certify robustness to much stronger adversaries that control entire nodes in the graph and can arbitrarily manipulate node features. Our certificates provide stronger guarantees for attacks at larger distances, as messages from farther-away nodes are more likely to get intercepted. We demonstrate the effectiveness of our method on various models and datasets. Since our gray-box certificates consider the underlying graph structure, we can significantly improve certifiable robustness by applying graph sparsification." @default.
- W4313679604 created "2023-01-08" @default.
- W4313679604 creator A5016839607 @default.
- W4313679604 creator A5019619325 @default.
- W4313679604 creator A5049673466 @default.
- W4313679604 creator A5058887708 @default.
- W4313679604 creator A5074504351 @default.
- W4313679604 date "2023-01-05" @default.
- W4313679604 modified "2023-09-30" @default.
- W4313679604 title "Randomized Message-Interception Smoothing: Gray-box Certificates for Graph Neural Networks" @default.
- W4313679604 doi "https://doi.org/10.48550/arxiv.2301.02039" @default.
- W4313679604 hasPublicationYear "2023" @default.
- W4313679604 type Work @default.
- W4313679604 citedByCount "0" @default.
- W4313679604 crossrefType "posted-content" @default.
- W4313679604 hasAuthorship W4313679604A5016839607 @default.
- W4313679604 hasAuthorship W4313679604A5019619325 @default.
- W4313679604 hasAuthorship W4313679604A5049673466 @default.
- W4313679604 hasAuthorship W4313679604A5058887708 @default.
- W4313679604 hasAuthorship W4313679604A5074504351 @default.
- W4313679604 hasBestOaLocation W43136796041 @default.
- W4313679604 hasConcept C104317684 @default.
- W4313679604 hasConcept C119857082 @default.
- W4313679604 hasConcept C132525143 @default.
- W4313679604 hasConcept C154945302 @default.
- W4313679604 hasConcept C165696696 @default.
- W4313679604 hasConcept C185592680 @default.
- W4313679604 hasConcept C31972630 @default.
- W4313679604 hasConcept C3770464 @default.
- W4313679604 hasConcept C38652104 @default.
- W4313679604 hasConcept C41008148 @default.
- W4313679604 hasConcept C55493867 @default.
- W4313679604 hasConcept C63479239 @default.
- W4313679604 hasConcept C80444323 @default.
- W4313679604 hasConceptScore W4313679604C104317684 @default.
- W4313679604 hasConceptScore W4313679604C119857082 @default.
- W4313679604 hasConceptScore W4313679604C132525143 @default.
- W4313679604 hasConceptScore W4313679604C154945302 @default.
- W4313679604 hasConceptScore W4313679604C165696696 @default.
- W4313679604 hasConceptScore W4313679604C185592680 @default.
- W4313679604 hasConceptScore W4313679604C31972630 @default.
- W4313679604 hasConceptScore W4313679604C3770464 @default.
- W4313679604 hasConceptScore W4313679604C38652104 @default.
- W4313679604 hasConceptScore W4313679604C41008148 @default.
- W4313679604 hasConceptScore W4313679604C55493867 @default.
- W4313679604 hasConceptScore W4313679604C63479239 @default.
- W4313679604 hasConceptScore W4313679604C80444323 @default.
- W4313679604 hasLocation W43136796041 @default.
- W4313679604 hasOpenAccess W4313679604 @default.
- W4313679604 hasPrimaryLocation W43136796041 @default.
- W4313679604 hasRelatedWork W1507793640 @default.
- W4313679604 hasRelatedWork W1527191935 @default.
- W4313679604 hasRelatedWork W2519368194 @default.
- W4313679604 hasRelatedWork W2952419077 @default.
- W4313679604 hasRelatedWork W2997512100 @default.
- W4313679604 hasRelatedWork W3085383590 @default.
- W4313679604 hasRelatedWork W3168493052 @default.
- W4313679604 hasRelatedWork W4297899248 @default.
- W4313679604 hasRelatedWork W4309795810 @default.
- W4313679604 hasRelatedWork W4310879833 @default.
- W4313679604 isParatext "false" @default.
- W4313679604 isRetracted "false" @default.
- W4313679604 workType "article" @default.