{"id":"https://openalex.org/W4416677734","doi":"https://doi.org/10.1109/tifs.2025.3631458","title":"<i>GraphCleanse</i> : Defending Backdoor Attacks in Graph Learning via Contrastive Training","display_name":"<i>GraphCleanse</i> : Defending Backdoor Attacks in Graph Learning via Contrastive Training","publication_year":2025,"publication_date":"2025-01-01","ids":{"openalex":"https://openalex.org/W4416677734","doi":"https://doi.org/10.1109/tifs.2025.3631458"},"language":null,"primary_location":{"id":"doi:10.1109/tifs.2025.3631458","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tifs.2025.3631458","pdf_url":null,"source":{"id":"https://openalex.org/S61310614","display_name":"IEEE Transactions on Information Forensics and Security","issn_l":"1556-6013","issn":["1556-6013","1556-6021"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Information Forensics and Security","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5100744176","display_name":"Jiale Zhang","orcid":"https://orcid.org/0000-0002-2143-5666"},"institutions":[{"id":"https://openalex.org/I78978612","display_name":"Yangzhou University","ror":"https://ror.org/03tqb8s11","country_code":"CN","type":"education","lineage":["https://openalex.org/I78978612"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Jiale Zhang","raw_affiliation_strings":["School of Information Engineering, Yangzhou University, Yangzhou, China"],"raw_orcid":"https://orcid.org/0000-0002-2143-5666","affiliations":[{"raw_affiliation_string":"School of Information Engineering, Yangzhou University, Yangzhou, China","institution_ids":["https://openalex.org/I78978612"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5083847969","display_name":"Hao Sui","orcid":"https://orcid.org/0009-0001-9485-9806"},"institutions":[{"id":"https://openalex.org/I9842412","display_name":"Nanjing University of Aeronautics and Astronautics","ror":"https://ror.org/01scyh794","country_code":"CN","type":"education","lineage":["https://openalex.org/I9842412"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Hao Sui","raw_affiliation_strings":["College of Computer Science and Technology, Nanjing University of Aeronautics and Astronautics, Nanjing, China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"College of Computer Science and Technology, Nanjing University of Aeronautics and Astronautics, Nanjing, China","institution_ids":["https://openalex.org/I9842412"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5102585772","display_name":"Wanquan Zhu","orcid":null},"institutions":[{"id":"https://openalex.org/I78978612","display_name":"Yangzhou University","ror":"https://ror.org/03tqb8s11","country_code":"CN","type":"education","lineage":["https://openalex.org/I78978612"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Wanquan Zhu","raw_affiliation_strings":["School of Information Engineering, Yangzhou University, Yangzhou, China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"School of Information Engineering, Yangzhou University, Yangzhou, China","institution_ids":["https://openalex.org/I78978612"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5109000067","display_name":"Chengcheng Zhu","orcid":"https://orcid.org/0009-0007-4082-0803"},"institutions":[{"id":"https://openalex.org/I881766915","display_name":"Nanjing University","ror":"https://ror.org/01rxvg760","country_code":"CN","type":"education","lineage":["https://openalex.org/I881766915"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Chengcheng Zhu","raw_affiliation_strings":["State Key Laboratory for Novel Software Technology, Nanjing University, Nanjing, China"],"raw_orcid":"https://orcid.org/0009-0007-4082-0803","affiliations":[{"raw_affiliation_string":"State Key Laboratory for Novel Software Technology, Nanjing University, Nanjing, China","institution_ids":["https://openalex.org/I881766915"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5006966486","display_name":"Xiaobing Sun","orcid":"https://orcid.org/0000-0001-5165-5080"},"institutions":[{"id":"https://openalex.org/I78978612","display_name":"Yangzhou University","ror":"https://ror.org/03tqb8s11","country_code":"CN","type":"education","lineage":["https://openalex.org/I78978612"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xiaobing Sun","raw_affiliation_strings":["School of Information Engineering, Yangzhou University, Yangzhou, China"],"raw_orcid":"https://orcid.org/0000-0001-5165-5080","affiliations":[{"raw_affiliation_string":"School of Information Engineering, Yangzhou University, Yangzhou, China","institution_ids":["https://openalex.org/I78978612"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5052951255","display_name":"Chunpeng Ge","orcid":"https://orcid.org/0000-0002-9274-7325"},"institutions":[{"id":"https://openalex.org/I154099455","display_name":"Shandong University","ror":"https://ror.org/0207yh398","country_code":"CN","type":"education","lineage":["https://openalex.org/I154099455"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Chunpeng Ge","raw_affiliation_strings":["Joint SDU-NTU Centre for Artificial Intelligence Research (C-FAIR) and the Software School, Shandong University, Jinan, China"],"raw_orcid":"https://orcid.org/0000-0002-9274-7325","affiliations":[{"raw_affiliation_string":"Joint SDU-NTU Centre for Artificial Intelligence Research (C-FAIR) and the Software School, Shandong University, Jinan, China","institution_ids":["https://openalex.org/I154099455"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100443103","display_name":"Bing Chen","orcid":"https://orcid.org/0000-0002-2863-5441"},"institutions":[{"id":"https://openalex.org/I9842412","display_name":"Nanjing University of Aeronautics and Astronautics","ror":"https://ror.org/01scyh794","country_code":"CN","type":"education","lineage":["https://openalex.org/I9842412"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Bing Chen","raw_affiliation_strings":["College of Computer Science and Technology, Nanjing University of Aeronautics and Astronautics, Nanjing, China"],"raw_orcid":"https://orcid.org/0000-0002-2863-5441","affiliations":[{"raw_affiliation_string":"College of Computer Science and Technology, Nanjing University of Aeronautics and Astronautics, Nanjing, China","institution_ids":["https://openalex.org/I9842412"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5088153559","display_name":"Mingsheng Cao","orcid":"https://orcid.org/0000-0003-0691-2724"},"institutions":[{"id":"https://openalex.org/I150229711","display_name":"University of Electronic Science and Technology of China","ror":"https://ror.org/04qr3zq92","country_code":"CN","type":"education","lineage":["https://openalex.org/I150229711"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Mingsheng Cao","raw_affiliation_strings":["School of Information and Software Engineering, University of Electronic Science and Technology of China, Chengdu, China"],"raw_orcid":"https://orcid.org/0000-0003-0691-2724","affiliations":[{"raw_affiliation_string":"School of Information and Software Engineering, University of Electronic Science and Technology of China, Chengdu, China","institution_ids":["https://openalex.org/I150229711"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":8,"corresponding_author_ids":["https://openalex.org/A5100744176"],"corresponding_institution_ids":["https://openalex.org/I78978612"],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.18643176,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":"20","issue":null,"first_page":"12372","last_page":"12387"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11273","display_name":"Advanced Graph Neural Networks","score":0.972000002861023,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11273","display_name":"Advanced Graph Neural Networks","score":0.972000002861023,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12026","display_name":"Explainable Artificial Intelligence (XAI)","score":0.00839999970048666,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.008100000210106373,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/backdoor","display_name":"Backdoor","score":0.9883000254631042},{"id":"https://openalex.org/keywords/cluster-analysis","display_name":"Cluster analysis","score":0.5141000151634216},{"id":"https://openalex.org/keywords/graph","display_name":"Graph","score":0.4684999883174896},{"id":"https://openalex.org/keywords/covert","display_name":"Covert","score":0.44589999318122864},{"id":"https://openalex.org/keywords/feature","display_name":"Feature (linguistics)","score":0.43619999289512634},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.41839998960494995},{"id":"https://openalex.org/keywords/maximization","display_name":"Maximization","score":0.4043999910354614},{"id":"https://openalex.org/keywords/pattern-recognition","display_name":"Pattern recognition (psychology)","score":0.3734000027179718}],"concepts":[{"id":"https://openalex.org/C2781045450","wikidata":"https://www.wikidata.org/wiki/Q254569","display_name":"Backdoor","level":2,"score":0.9883000254631042},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8158000111579895},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.6015999913215637},{"id":"https://openalex.org/C73555534","wikidata":"https://www.wikidata.org/wiki/Q622825","display_name":"Cluster analysis","level":2,"score":0.5141000151634216},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.4805000126361847},{"id":"https://openalex.org/C132525143","wikidata":"https://www.wikidata.org/wiki/Q141488","display_name":"Graph","level":2,"score":0.4684999883174896},{"id":"https://openalex.org/C2779338814","wikidata":"https://www.wikidata.org/wiki/Q5179285","display_name":"Covert","level":2,"score":0.44589999318122864},{"id":"https://openalex.org/C2776401178","wikidata":"https://www.wikidata.org/wiki/Q12050496","display_name":"Feature (linguistics)","level":2,"score":0.43619999289512634},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.41839998960494995},{"id":"https://openalex.org/C2776330181","wikidata":"https://www.wikidata.org/wiki/Q18358244","display_name":"Maximization","level":2,"score":0.4043999910354614},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.3734000027179718},{"id":"https://openalex.org/C541664917","wikidata":"https://www.wikidata.org/wiki/Q14001","display_name":"Malware","level":2,"score":0.3725999891757965},{"id":"https://openalex.org/C52622490","wikidata":"https://www.wikidata.org/wiki/Q1026626","display_name":"Feature extraction","level":2,"score":0.3285999894142151},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.32350000739097595},{"id":"https://openalex.org/C51632099","wikidata":"https://www.wikidata.org/wiki/Q3985153","display_name":"Training set","level":2,"score":0.32339999079704285},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.3190000057220459},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.3172000050544739},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.29100000858306885},{"id":"https://openalex.org/C59404180","wikidata":"https://www.wikidata.org/wiki/Q17013334","display_name":"Feature learning","level":2,"score":0.2757999897003174},{"id":"https://openalex.org/C2984842247","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep neural networks","level":3,"score":0.2685999870300293},{"id":"https://openalex.org/C83665646","wikidata":"https://www.wikidata.org/wiki/Q42139305","display_name":"Feature vector","level":2,"score":0.2662000060081482},{"id":"https://openalex.org/C2775941552","wikidata":"https://www.wikidata.org/wiki/Q25212305","display_name":"Isolation (microbiology)","level":2,"score":0.2653999924659729}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/tifs.2025.3631458","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tifs.2025.3631458","pdf_url":null,"source":{"id":"https://openalex.org/S61310614","display_name":"IEEE Transactions on Information Forensics and Security","issn_l":"1556-6013","issn":["1556-6013","1556-6021"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Information Forensics and Security","raw_type":"journal-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G1340246870","display_name":null,"funder_award_id":"BK20251911","funder_id":"https://openalex.org/F4320322769","funder_display_name":"Natural Science Foundation of Jiangsu Province"},{"id":"https://openalex.org/G1378608539","display_name":null,"funder_award_id":"62032025","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G2404993877","display_name":null,"funder_award_id":"U20B2049","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G3360831768","display_name":null,"funder_award_id":"62076125","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G3650816826","display_name":null,"funder_award_id":"62206238, 62076125, 62032025, U20B2049","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G6326664489","display_name":null,"funder_award_id":"2023M732985","funder_id":"https://openalex.org/F4320321543","funder_display_name":"China Postdoctoral Science Foundation"},{"id":"https://openalex.org/G8833945948","display_name":null,"funder_award_id":"62206238","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"},{"id":"https://openalex.org/F4320321543","display_name":"China Postdoctoral Science Foundation","ror":"https://ror.org/0426zh255"},{"id":"https://openalex.org/F4320322769","display_name":"Natural Science Foundation of Jiangsu Province","ror":"https://ror.org/01h0zpd94"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":41,"referenced_works":["https://openalex.org/W10980763","https://openalex.org/W2008857988","https://openalex.org/W2099438806","https://openalex.org/W2108384452","https://openalex.org/W2294347342","https://openalex.org/W2913939497","https://openalex.org/W2934843808","https://openalex.org/W2942091739","https://openalex.org/W2964015378","https://openalex.org/W2964583308","https://openalex.org/W2984353870","https://openalex.org/W2996800219","https://openalex.org/W3042368254","https://openalex.org/W3095746859","https://openalex.org/W3134210100","https://openalex.org/W3153858161","https://openalex.org/W3167334189","https://openalex.org/W3174908416","https://openalex.org/W3212158867","https://openalex.org/W4210358464","https://openalex.org/W4284666445","https://openalex.org/W4284682762","https://openalex.org/W4308410017","https://openalex.org/W4312757223","https://openalex.org/W4321479942","https://openalex.org/W4323066547","https://openalex.org/W4328028655","https://openalex.org/W4367146727","https://openalex.org/W4381786098","https://openalex.org/W4382239590","https://openalex.org/W4382318032","https://openalex.org/W4385187298","https://openalex.org/W4385484684","https://openalex.org/W4385679828","https://openalex.org/W4385679845","https://openalex.org/W4388145338","https://openalex.org/W4393973474","https://openalex.org/W4402263866","https://openalex.org/W4402264291","https://openalex.org/W4402264407","https://openalex.org/W4408749941"],"related_works":[],"abstract_inverted_index":{"Graph":[0],"Neural":[1,40],"Networks":[2,41],"(GNNs)":[3],"are":[4],"highly":[5],"susceptible":[6],"to":[7,21,25,32,38,66,73,97,109,179,248],"numerous":[8],"adversarial":[9],"attacks,":[10],"among":[11],"which":[12,69],"the":[13,19,26,35,55,71,75,137,142,152,169,181,186,196,200,206,218,244],"backdoor":[14,43,124,139,156],"attack":[15,245],"is":[16],"one":[17],"of":[18,34,54,221],"toughest":[20],"deal":[22],"with":[23,58,101,205,250],"due":[24],"fact":[27],"that":[28,133,238],"it":[29],"can":[30,134,149,242],"lead":[31],"misclassification":[33],"model.":[36],"Similar":[37],"Deep":[39],"(DNNs),":[42],"attacks":[44],"in":[45,185],"GNNs":[46,132],"work":[47],"by":[48,112,194],"an":[49],"attacker":[50],"changing":[51],"a":[52,59,122,174,226],"portion":[53],"graph":[56,163,201],"data":[57,93],"hidden":[60],"trigger":[61,76],"and":[62,92,158,190],"modifying":[63],"their":[64],"labels":[65,160],"target":[67,159],"labels,":[68],"induces":[70],"model":[72,170,228],"learn":[74,180],"feature":[77,183],"during":[78,141],"its":[79],"training":[80,143],"phase.":[81],"Although":[82],"recent":[83],"defense":[84,125],"techniques":[85],"have":[86],"emerged,":[87],"approaches":[88],"based":[89,161],"on":[90,131,162,233],"explainability":[91],"isolation":[94],"often":[95],"fail":[96],"detect":[98],"malicious":[99],"samples":[100,189,193,223],"covert":[102],"triggers,":[103],"while":[104,224],"discrepancy":[105],"learning":[106],"methods":[107],"tend":[108],"degrade":[110],"performance":[111,252],"removing":[113],"useful":[114],"features.":[115],"To":[116,166],"overcome":[117],"these":[118],"limitations,":[119],"we":[120,172],"propose":[121],"novel":[123],"method,":[126],"named":[127],"<italic":[128,146,213,239],"xmlns:mml=\"http://www.w3.org/1998/Math/MathML\"":[129,147,214,240],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">GraphCleanse</i>,":[130],"effectively":[135,216],"eliminate":[136],"possible":[138],"features":[140,157,197],"process.":[144],"Specifically,":[145],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">GraphCleanse</i>":[148,215,241],"easily":[150],"break":[151],"strong":[153],"correlation":[154],"between":[155],"contrastive":[164,202],"training.":[165],"further":[167],"improve":[168],"accuracy,":[171],"present":[173],"mutual":[175],"information":[176,184],"maximization":[177],"method":[178],"important":[182],"labeled":[187],"credible":[188],"unlabeled":[191],"suspicious":[192],"clustering":[195],"obtained":[198],"from":[199],"encoder.":[203],"Compared":[204],"potential":[207],"solutions,":[208],"such":[209],"as":[210],"randomized":[211],"smoothing,":[212],"avoids":[217],"negative":[219],"influence":[220],"backdoored":[222],"maintaining":[225],"high":[227],"performance.":[229],"Extensive":[230],"experimental":[231],"evaluations":[232],"four":[234],"benchmark":[235],"datasets":[236],"demonstrate":[237],"reduce":[243],"success":[246],"rate":[247],"10%":[249],"less":[251],"degradation":[253],"(within":[254],"7%).":[255]},"counts_by_year":[],"updated_date":"2025-11-28T20:25:59.923715","created_date":"2025-11-11T00:00:00"}
