{"id":"https://openalex.org/W7138334862","doi":"https://doi.org/10.1609/aaai.v40i18.38576","title":"Privacy Auditing of Multi-Domain Graph Pre-Trained Model Under Membership Inference Attacks","display_name":"Privacy Auditing of Multi-Domain Graph Pre-Trained Model Under Membership Inference Attacks","publication_year":2026,"publication_date":"2026-03-14","ids":{"openalex":"https://openalex.org/W7138334862","doi":"https://doi.org/10.1609/aaai.v40i18.38576"},"language":null,"primary_location":{"id":"doi:10.1609/aaai.v40i18.38576","is_oa":true,"landing_page_url":"https://doi.org/10.1609/aaai.v40i18.38576","pdf_url":null,"source":{"id":"https://openalex.org/S4210191458","display_name":"Proceedings of the AAAI Conference on Artificial Intelligence","issn_l":"2159-5399","issn":["2159-5399","2374-3468"],"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/P4310320058","host_organization_name":"Association for the Advancement of Artificial Intelligence","host_organization_lineage":["https://openalex.org/P4310320058"],"host_organization_lineage_names":["Association for the Advancement of Artificial Intelligence"],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the AAAI Conference on Artificial Intelligence","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"diamond","oa_url":"https://doi.org/10.1609/aaai.v40i18.38576","any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5129689729","display_name":"Jiayi Luo","orcid":null},"institutions":[{"id":"https://openalex.org/I82880672","display_name":"Beihang University","ror":"https://ror.org/00wk2mp56","country_code":"CN","type":"education","lineage":["https://openalex.org/I82880672"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Jiayi Luo","raw_affiliation_strings":["Beihang University"],"affiliations":[{"raw_affiliation_string":"Beihang University","institution_ids":["https://openalex.org/I82880672"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5129741834","display_name":"Qingyun Sun","orcid":null},"institutions":[{"id":"https://openalex.org/I82880672","display_name":"Beihang University","ror":"https://ror.org/00wk2mp56","country_code":"CN","type":"education","lineage":["https://openalex.org/I82880672"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Qingyun Sun","raw_affiliation_strings":["Beihang University"],"affiliations":[{"raw_affiliation_string":"Beihang University","institution_ids":["https://openalex.org/I82880672"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5004453563","display_name":"Yuecen Wei","orcid":"https://orcid.org/0000-0002-0218-948X"},"institutions":[{"id":"https://openalex.org/I49496784","display_name":"Beijing City University","ror":"https://ror.org/01jfjwr55","country_code":"CN","type":"education","lineage":["https://openalex.org/I49496784"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yuecen Wei","raw_affiliation_strings":["Beijing University"],"affiliations":[{"raw_affiliation_string":"Beijing University","institution_ids":["https://openalex.org/I49496784"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5129709991","display_name":"Haonan Yuan","orcid":null},"institutions":[{"id":"https://openalex.org/I82880672","display_name":"Beihang University","ror":"https://ror.org/00wk2mp56","country_code":"CN","type":"education","lineage":["https://openalex.org/I82880672"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Haonan Yuan","raw_affiliation_strings":["Beihang University"],"affiliations":[{"raw_affiliation_string":"Beihang University","institution_ids":["https://openalex.org/I82880672"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5129747361","display_name":"Xingcheng Fu","orcid":null},"institutions":[{"id":"https://openalex.org/I29739308","display_name":"Guangxi Normal University","ror":"https://ror.org/02frt9q65","country_code":"CN","type":"education","lineage":["https://openalex.org/I29739308"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xingcheng Fu","raw_affiliation_strings":["Guangxi Normal University"],"affiliations":[{"raw_affiliation_string":"Guangxi Normal University","institution_ids":["https://openalex.org/I29739308"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5129696336","display_name":"Jianxin Li","orcid":null},"institutions":[{"id":"https://openalex.org/I82880672","display_name":"Beihang University","ror":"https://ror.org/00wk2mp56","country_code":"CN","type":"education","lineage":["https://openalex.org/I82880672"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Jianxin Li","raw_affiliation_strings":["Beihang University"],"affiliations":[{"raw_affiliation_string":"Beihang University","institution_ids":["https://openalex.org/I82880672"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":6,"corresponding_author_ids":["https://openalex.org/A5129689729"],"corresponding_institution_ids":["https://openalex.org/I82880672"],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.54817987,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":"40","issue":"18","first_page":"15483","last_page":"15491"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11273","display_name":"Advanced Graph Neural Networks","score":0.979200005531311,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11273","display_name":"Advanced Graph Neural Networks","score":0.979200005531311,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.008200000040233135,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T13702","display_name":"Machine Learning in Healthcare","score":0.0013000000035390258,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/overfitting","display_name":"Overfitting","score":0.7864000201225281},{"id":"https://openalex.org/keywords/inference","display_name":"Inference","score":0.722100019454956},{"id":"https://openalex.org/keywords/generalization","display_name":"Generalization","score":0.6032000184059143},{"id":"https://openalex.org/keywords/graph","display_name":"Graph","score":0.5760999917984009},{"id":"https://openalex.org/keywords/shadow","display_name":"Shadow (psychology)","score":0.4681999981403351},{"id":"https://openalex.org/keywords/similarity","display_name":"Similarity (geometry)","score":0.36489999294281006},{"id":"https://openalex.org/keywords/mechanism","display_name":"Mechanism (biology)","score":0.33559998869895935}],"concepts":[{"id":"https://openalex.org/C22019652","wikidata":"https://www.wikidata.org/wiki/Q331309","display_name":"Overfitting","level":3,"score":0.7864000201225281},{"id":"https://openalex.org/C2776214188","wikidata":"https://www.wikidata.org/wiki/Q408386","display_name":"Inference","level":2,"score":0.722100019454956},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6873000264167786},{"id":"https://openalex.org/C177148314","wikidata":"https://www.wikidata.org/wiki/Q170084","display_name":"Generalization","level":2,"score":0.6032000184059143},{"id":"https://openalex.org/C132525143","wikidata":"https://www.wikidata.org/wiki/Q141488","display_name":"Graph","level":2,"score":0.5760999917984009},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5690000057220459},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.5436000227928162},{"id":"https://openalex.org/C117797892","wikidata":"https://www.wikidata.org/wiki/Q286363","display_name":"Shadow (psychology)","level":2,"score":0.4681999981403351},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.4271000027656555},{"id":"https://openalex.org/C103278499","wikidata":"https://www.wikidata.org/wiki/Q254465","display_name":"Similarity (geometry)","level":3,"score":0.36489999294281006},{"id":"https://openalex.org/C89611455","wikidata":"https://www.wikidata.org/wiki/Q6804646","display_name":"Mechanism (biology)","level":2,"score":0.33559998869895935},{"id":"https://openalex.org/C88230418","wikidata":"https://www.wikidata.org/wiki/Q131476","display_name":"Graph theory","level":2,"score":0.3208000063896179},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.3059999942779541},{"id":"https://openalex.org/C160234255","wikidata":"https://www.wikidata.org/wiki/Q812535","display_name":"Bayesian inference","level":3,"score":0.298799991607666},{"id":"https://openalex.org/C123201435","wikidata":"https://www.wikidata.org/wiki/Q456632","display_name":"Information privacy","level":2,"score":0.27379998564720154},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.26969999074935913},{"id":"https://openalex.org/C3746660","wikidata":"https://www.wikidata.org/wiki/Q1068763","display_name":"Rule of inference","level":2,"score":0.26660001277923584},{"id":"https://openalex.org/C175154964","wikidata":"https://www.wikidata.org/wiki/Q380077","display_name":"Task analysis","level":3,"score":0.2556999921798706},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.25}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1609/aaai.v40i18.38576","is_oa":true,"landing_page_url":"https://doi.org/10.1609/aaai.v40i18.38576","pdf_url":null,"source":{"id":"https://openalex.org/S4210191458","display_name":"Proceedings of the AAAI Conference on Artificial Intelligence","issn_l":"2159-5399","issn":["2159-5399","2374-3468"],"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/P4310320058","host_organization_name":"Association for the Advancement of Artificial Intelligence","host_organization_lineage":["https://openalex.org/P4310320058"],"host_organization_lineage_names":["Association for the Advancement of Artificial Intelligence"],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the AAAI Conference on Artificial Intelligence","raw_type":"journal-article"}],"best_oa_location":{"id":"doi:10.1609/aaai.v40i18.38576","is_oa":true,"landing_page_url":"https://doi.org/10.1609/aaai.v40i18.38576","pdf_url":null,"source":{"id":"https://openalex.org/S4210191458","display_name":"Proceedings of the AAAI Conference on Artificial Intelligence","issn_l":"2159-5399","issn":["2159-5399","2374-3468"],"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/P4310320058","host_organization_name":"Association for the Advancement of Artificial Intelligence","host_organization_lineage":["https://openalex.org/P4310320058"],"host_organization_lineage_names":["Association for the Advancement of Artificial Intelligence"],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the AAAI Conference on Artificial Intelligence","raw_type":"journal-article"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":0,"referenced_works":[],"related_works":[],"abstract_inverted_index":{"Multi-domain":[0,67,120],"graph":[1,11,21,54,201],"pre-training":[2,68],"has":[3],"emerged":[4],"as":[5],"a":[6,37,58,112,128,155,169],"pivotal":[7],"technique":[8],"in":[9,42],"developing":[10],"foundation":[12],"models.":[13,123],"While":[14],"it":[15],"greatly":[16],"improves":[17],"the":[18,70,85,135,188,196],"generalization":[19],"of":[20,87,138,190,199],"neural":[22],"networks,":[23],"its":[24],"privacy":[25,197],"risks":[26,198],"under":[27],"membership":[28,129],"inference":[29,171],"attacks":[30],"(MIAs),":[31],"which":[32],"aim":[33],"to":[34,180],"identify":[35],"whether":[36],"specific":[38],"instance":[39],"was":[40],"used":[41],"training":[43,82],"(member),":[44],"remain":[45],"largely":[46],"unexplored.":[47],"However,":[48],"effectively":[49],"conducting":[50],"MIAs":[51],"against":[52,119],"multi-domain":[53,200],"pre-trained":[55],"models":[56,140],"is":[57],"significant":[59],"challenge":[60],"due":[61],"to:":[62],"(i)":[63],"Enhanced":[64],"Generalization":[65],"Capability:":[66],"reduces":[69],"overfitting":[71,136],"characteristics":[72,137],"commonly":[73],"exploited":[74],"by":[75],"MIAs.":[76,104],"(ii)":[77],"Unrepresentative":[78],"Shadow":[79],"Datasets:":[80],"Diverse":[81],"graphs":[83,162],"hinder":[84],"obtaining":[86],"reliable":[88,156],"shadow":[89,149,157,161],"graphs.":[90],"(iii)":[91],"Weakened":[92],"Membership":[93,116],"Signals:":[94],"Embedding-based":[95],"outputs":[96],"offer":[97],"less":[98],"informative":[99],"cues":[100],"than":[101],"logits":[102],"for":[103,115],"To":[105],"tackle":[106],"these":[107],"challenges,":[108],"we":[109,125,167],"propose":[110,127],"MGP-MIA,":[111],"novel":[113],"framework":[114],"Inference":[117],"Attacks":[118],"Graph":[121],"Pre-trained":[122],"Specifically,":[124],"first":[126],"signal":[130],"amplification":[131],"mechanism":[132,152,172],"that":[133,153,173],"amplifies":[134],"target":[139],"via":[141,163],"machine":[142],"unlearning.":[143],"We":[144],"then":[145],"design":[146],"an":[147],"incremental":[148,164],"model":[150,158],"construction":[151],"builds":[154],"with":[159],"limited":[160],"learning.":[165],"Finally,":[166],"introduce":[168],"similarity-based":[170],"identifies":[174],"members":[175],"based":[176],"on":[177],"their":[178],"similarity":[179],"positive":[181],"and":[182,194],"negative":[183],"samples.":[184],"Extensive":[185],"experiments":[186],"demonstrate":[187],"effectiveness":[189],"our":[191],"proposed":[192],"MGP-MIA":[193],"reveal":[195],"pre-training.":[202]},"counts_by_year":[],"updated_date":"2026-03-20T20:47:17.329874","created_date":"2026-03-18T00:00:00"}
