Chen, X, Chen, Y, Lee, GM, Crespi, N and Siano, P DSGNN: Dual-Shield Defense for Robust Graph Neural Networks. CMC Computers, Materials & Continua. ISSN 1546-2218 (Accepted)
Preview |
Text
DSGNN_Dual-Shield_Defense_for_Robust_Graph_Neural_Networks-accepted.pdf - Accepted Version Available under License Creative Commons Attribution. Download (731kB) | Preview |
Abstract
Graph Neural Networks (GNNs) have demonstrated outstanding capabilities in processing graph-structured data and are increasingly being integrated into large-scale pre-trained models, such as Large Language Models (LLMs), to enhance structural reasoning, knowledge retrieval, and memory management. The expansion of their application scope imposes higher requirements on the robustness of GNNs. However, as GNNs are applied to more dynamic and heterogeneous environments, they become increasingly vulnerable to real-world perturbations. In particular, graph data frequently encounters joint adversarial perturbations that simultaneously affect both structures and features, which are significantly more challenging than isolated attacks. These disruptions, caused by incomplete data, malicious attacks, or inherent noise, pose substantial threats to the stable and reliable performance of traditional GNN models. To address this issue, this study proposes the Dual-Shield Graph Neural Network (DSGNN), a defense model that simultaneously mitigates structural and feature perturbations. DSGNN utilizes two parallel GNN channels to independently process structural noise and feature noise, and introduces an adaptive fusion mechanism that integrates information from both pathways to generate robust node representations. Theoretical analysis demonstrates that DSGNN achieves a tighter robustness boundary under joint perturbations compared to conventional single-channel methods. Experimental evaluations across Cora, CiteSeer, and Industry datasets show that DSGNN achieves the highest average classification accuracy under various adversarial settings, reaching 81.24%, 71.94%, and 81.66% respectively, outperforming GNNGuard, GCN-Jaccard, GCN-SVD, RGCN, and NoisyGNN. These results underscore the importance of multi-view perturbation decoupling in constructing resilient GNN models for real-world applications.
Item Type: | Article |
---|---|
Uncontrolled Keywords: | 0103 Numerical and Computational Mathematics; 0912 Materials Engineering; 0915 Interdisciplinary Engineering; Applied Mathematics; 40 Engineering; 46 Information and computing sciences |
Subjects: | Q Science > QA Mathematics > QA75 Electronic computers. Computer science |
Divisions: | Computer Science and Mathematics |
Publisher: | Tech Science Press |
Date of acceptance: | 14 July 2025 |
Date of first compliant Open Access: | 17 July 2025 |
Date Deposited: | 17 Jul 2025 09:02 |
Last Modified: | 17 Jul 2025 09:15 |
URI: | https://researchonline.ljmu.ac.uk/id/eprint/26785 |
![]() |
View Item |