{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,15]],"date-time":"2026-04-15T17:50:00Z","timestamp":1776275400126,"version":"3.50.1"},"publisher-location":"Cham","reference-count":27,"publisher":"Springer Nature Switzerland","isbn-type":[{"value":"9783031714634","type":"print"},{"value":"9783031714641","type":"electronic"}],"license":[{"start":{"date-parts":[[2024,11,13]],"date-time":"2024-11-13T00:00:00Z","timestamp":1731456000000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2024,11,13]],"date-time":"2024-11-13T00:00:00Z","timestamp":1731456000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2025]]},"DOI":"10.1007\/978-3-031-71464-1_33","type":"book-chapter","created":{"date-parts":[[2024,11,12]],"date-time":"2024-11-12T17:50:40Z","timestamp":1731433840000},"page":"402-414","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":3,"title":["E-SAGE: Explainability-Based Defense Against Backdoor Attacks on\u00a0Graph Neural Networks"],"prefix":"10.1007","author":[{"given":"Dingqiang","family":"Yuan","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Xiaohua","family":"Xu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Lei","family":"Yu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Tongchang","family":"Han","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Rongchang","family":"Li","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Meng","family":"Han","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2024,11,13]]},"reference":[{"key":"33_CR1","doi-asserted-by":"crossref","unstructured":"Dai, E., Lin, M., Zhang, X., Wang, S.: Unnoticeable backdoor attacks on graph neural networks. In: Proceedings of the ACM Web Conference 2023, pp. 2263\u20132273 (2023)","DOI":"10.1145\/3543507.3583392"},{"key":"33_CR2","doi-asserted-by":"crossref","unstructured":"Fan, S., Zhu, J., Han, X., Shi, C., Hu, L., Ma, B., Li, Y.: Metapath-guided heterogeneous graph neural network for intent recommendation. In: Proceedings of the 25th ACM SIGKDD International Conference on Knowledge Discovery & Data Mining, pp. 2478\u20132486 (2019)","DOI":"10.1145\/3292500.3330673"},{"issue":"4","key":"33_CR3","doi-asserted-by":"publisher","first-page":"2776","DOI":"10.1109\/TII.2020.2986316","volume":"17","author":"Z Guo","year":"2020","unstructured":"Guo, Z., Wang, H.: A deep graph neural network-based mechanism for social recommendations. IEEE Trans. Industr. Inf. 17(4), 2776\u20132783 (2020)","journal-title":"IEEE Trans. Industr. Inf."},{"key":"33_CR4","unstructured":"Hamilton, W., Ying, Z., Leskovec, J.: Inductive representation learning on large graphs. In: Advances in Neural Information Processing Systems. vol. 30 (2017)"},{"key":"33_CR5","doi-asserted-by":"crossref","unstructured":"Hei, Y., et al.: HAWK: rapid android malware detection through heterogeneous graph attention networks. IEEE Trans. Neural Netw. Learn. Syst. 35(4), 4703\u20134717 (2021)","DOI":"10.1109\/TNNLS.2021.3105617"},{"key":"33_CR6","doi-asserted-by":"crossref","unstructured":"Huang, Q., Yamada, M., Tian, Y., Singh, D., Chang, Y.: GraphLIME: local interpretable model explanations for graph neural networks. IEEE Trans. Knowl. Data Eng. 35(7), 6968\u20136972 (2022)","DOI":"10.1109\/TKDE.2022.3187455"},{"key":"33_CR7","unstructured":"Jiang, B., Li, Z.: Defending against backdoor attack on graph nerual network by explainability. arXiv preprint arXiv:2209.02902 (2022)"},{"key":"33_CR8","unstructured":"Kipf, T.N., Welling, M.: Semi-supervised classification with graph convolutional networks. arXiv preprint arXiv:1609.02907 (2016)"},{"key":"33_CR9","doi-asserted-by":"crossref","unstructured":"Liu, Y., et al.: Trojaning attack on neural networks. In: 25th Annual Network And Distributed System Security Symposium (NDSS 2018). Internet Soc (2018)","DOI":"10.14722\/ndss.2018.23291"},{"key":"33_CR10","doi-asserted-by":"crossref","unstructured":"Ribeiro, M.T., Singh, S., Guestrin, C.: \u201cwhy should i trust you?\u201d explaining the predictions of any classifier. In: Proceedings of the 22nd ACM SIGKDD International Conference on Knowledge Discovery and Data Mining, pp. 1135\u20131144 (2016)","DOI":"10.1145\/2939672.2939778"},{"key":"33_CR11","unstructured":"Sundararajan, M., Taly, A., Yan, Q.: Gradients of counterfactuals. arXiv preprint arXiv:1611.02639 (2016)"},{"key":"33_CR12","unstructured":"Sundararajan, M., Taly, A., Yan, Q.: Axiomatic attribution for deep networks. In: International Conference on Machine Learning, pp. 3319\u20133328. PMLR (2017)"},{"key":"33_CR13","doi-asserted-by":"crossref","unstructured":"Tao, Y., et al.: Byzantine-resilient federated learning at edge. IEEE Trans. Comput. 72(9), 2600\u20132614 (2023)","DOI":"10.1109\/TC.2023.3257510"},{"key":"33_CR14","unstructured":"Veli\u010dkovi\u0107, P., Cucurull, G., Casanova, A., Romero, A., Lio, P., Bengio, Y.: Graph attention networks. arXiv preprint arXiv:1710.10903 (2017)"},{"issue":"1","key":"33_CR15","doi-asserted-by":"publisher","first-page":"4","DOI":"10.1109\/TNNLS.2020.2978386","volume":"32","author":"Z Wu","year":"2020","unstructured":"Wu, Z., Pan, S., Chen, F., Long, G., Zhang, C., Philip, S.Y.: A comprehensive survey on graph neural networks. IEEE Trans. Neural Netw. Learn. Syst. 32(1), 4\u201324 (2020)","journal-title":"IEEE Trans. Neural Netw. Learn. Syst."},{"key":"33_CR16","unstructured":"Xi, Z., Pang, R., Ji, S., Wang, T.: Graph backdoor. In: 30th USENIX Security Symposium (USENIX Security 21), pp. 1523\u20131540 (2021)"},{"key":"33_CR17","doi-asserted-by":"crossref","unstructured":"Xu, H., Cai, Z., Xiong, Z., Li, W.: Backdoor attack on 3d grey image segmentation. In: 2023 IEEE International Conference on Data Mining (ICDM), pp. 708\u2013717. IEEE (2023)","DOI":"10.1109\/ICDM58522.2023.00080"},{"key":"33_CR18","doi-asserted-by":"crossref","unstructured":"Xu, J., Xue, M., Picek, S.: Explainability-based backdoor attacks against graph neural networks. In: Proceedings of the 3rd ACM Workshop on Wireless Security and Machine Learning, pp. 31\u201336 (2021)","DOI":"10.1145\/3468218.3469046"},{"key":"33_CR19","doi-asserted-by":"publisher","unstructured":"Yang, X., Li, G., Han, M.: Persistent clean-label backdoor on graph-based semi-supervised cybercrime detection. In: Goel, S., Nunes de Souza, P.R. (eds.) Digital Forensics and Cyber Crime. ICDF2C 2023. Lecture Notes of the Institute for Computer Sciences, Social Informatics and Telecommunications Engineering, vol. 570, pp. 264\u2013278. Springer, Cham (2024). https:\/\/doi.org\/10.1007\/978-3-031-56580-9_16","DOI":"10.1007\/978-3-031-56580-9_16"},{"key":"33_CR20","unstructured":"Yang, X., Li, G., Zhang, C., Han, M., Yang, W.: PerCBA: persistent clean-label backdoor attacks on semi-supervised graph node classification. In: The IJCAI-23 Workshop on Artificial Intelligence Safety (AISafety 2023), August 21, 2023, Macao S.A.R., China (2023)"},{"key":"33_CR21","unstructured":"Ying, Z., Bourgeois, D., You, J., Zitnik, M., Leskovec, J.: GNNExplainer: generating explanations for graph neural networks. In: Advances in Neural Information Processing Systems, vol. 32 (2019)"},{"key":"33_CR22","unstructured":"Yu, L., et\u00a0al.: A survey of privacy threats and defense in vertical federated learning: From model life cycle perspective. arXiv preprint arXiv:2402.03688 (2024)"},{"key":"33_CR23","doi-asserted-by":"crossref","unstructured":"Zhang, J., Yang, Y., Liu, Y., Han, M., Yin, S.: Graph representation learning via adaptive multi-layer neighborhood diffusion contrast. In: Proceedings of the 31st ACM International Conference on Information & Knowledge Management, pp. 4682\u20134686 (2022)","DOI":"10.1145\/3511808.3557606"},{"key":"33_CR24","doi-asserted-by":"crossref","unstructured":"Zhang, Z., Jia, J., Wang, B., Gong, N.Z.: Backdoor attacks to graph neural networks. In: Proceedings of the 26th ACM Symposium on Access Control Models and Technologies, pp. 15\u201326 (2021)","DOI":"10.1145\/3450569.3463560"},{"issue":"12","key":"33_CR25","doi-asserted-by":"publisher","first-page":"9310","DOI":"10.1109\/JIOT.2021.3130434","volume":"9","author":"X Zhou","year":"2021","unstructured":"Zhou, X., et al.: Hierarchical adversarial attacks against graph-neural-network-based IoT network intrusion detection system. IEEE Internet Things J. 9(12), 9310\u20139319 (2021)","journal-title":"IEEE Internet Things J."},{"key":"33_CR26","doi-asserted-by":"crossref","unstructured":"Zhou, X., et al.: Reconstructed graph neural network with knowledge distillation for lightweight anomaly detection. IEEE Trans. Neural Netw. Learn. Syst. 35(9), 11817\u201311828 (2024)","DOI":"10.1109\/TNNLS.2024.3389714"},{"key":"33_CR27","doi-asserted-by":"publisher","unstructured":"Zou, X., et al.: TDGIA: effective injection attacks on graph neural networks. In: Proceedings of the 27th ACM SIGKDD Conference on Knowledge Discovery & ; Data Mining (2021). https:\/\/doi.org\/10.1145\/3447548.3467314, http:\/\/dx.doi.org\/10.1145\/3447548.3467314","DOI":"10.1145\/3447548.3467314"}],"container-title":["Lecture Notes in Computer Science","Wireless Artificial Intelligent Computing Systems and Applications"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-031-71464-1_33","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,11,12]],"date-time":"2024-11-12T18:06:33Z","timestamp":1731434793000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-031-71464-1_33"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024,11,13]]},"ISBN":["9783031714634","9783031714641"],"references-count":27,"URL":"https:\/\/doi.org\/10.1007\/978-3-031-71464-1_33","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2024,11,13]]},"assertion":[{"value":"13 November 2024","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"WASA","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Wireless Artificial Intelligent Computing Systems and Applications","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Qingdao","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"China","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2024","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"21 June 2024","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"23 June 2024","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"18","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"wasa2024","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"http:\/\/wasa-conference.org\/WASA2024\/index.html","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}