{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,14]],"date-time":"2026-03-14T17:59:24Z","timestamp":1773511164001,"version":"3.50.1"},"reference-count":43,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","issue":"15","license":[{"start":{"date-parts":[[2023,8,1]],"date-time":"2023-08-01T00:00:00Z","timestamp":1690848000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2023,8,1]],"date-time":"2023-08-01T00:00:00Z","timestamp":1690848000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2023,8,1]],"date-time":"2023-08-01T00:00:00Z","timestamp":1690848000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62106210"],"award-info":[{"award-number":["62106210"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"name":"Hong Kong RGC Project","award":["PolyU25210821"],"award-info":[{"award-number":["PolyU25210821"]}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Internet Things J."],"published-print":{"date-parts":[[2023,8,1]]},"DOI":"10.1109\/jiot.2023.3263384","type":"journal-article","created":{"date-parts":[[2023,3,30]],"date-time":"2023-03-30T17:37:32Z","timestamp":1680197852000},"page":"13920-13932","source":"Crossref","is-referenced-by-count":2,"title":["Toward Certified Robustness of Graph Neural Networks in Adversarial AIoT Environments"],"prefix":"10.1109","volume":"10","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-2295-912X","authenticated-orcid":false,"given":"Yuni","family":"Lai","sequence":"first","affiliation":[{"name":"Department of Computing, The Hong Kong Polytechnic University, Hung Hom, Hong Kong"}]},{"given":"Jialong","family":"Zhou","sequence":"additional","affiliation":[{"name":"Department of Computing, The Hong Kong Polytechnic University, Hung Hom, Hong Kong"}]},{"given":"Xiaoge","family":"Zhang","sequence":"additional","affiliation":[{"name":"Department of Industrial and System Engineering, The Hong Kong Polytechnic University, Hung Hom, Hong Kong"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-1383-2765","authenticated-orcid":false,"given":"Kai","family":"Zhou","sequence":"additional","affiliation":[{"name":"Department of Computing, The Hong Kong Polytechnic University, Hung Hom, Hong Kong"}]}],"member":"263","reference":[{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1109\/TNNLS.2021.3136171"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1145\/3319535.3354209"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1016\/j.neucom.2020.09.043"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2019.2909068"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.3390\/s21165354"},{"key":"ref37","first-page":"1","article-title":"Towards deep learning models resistant to adversarial attacks","author":"madry","year":"2017","journal-title":"Proc Int Conf Learn Represent"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1109\/TMECH.2021.3073736"},{"key":"ref36","first-page":"1","article-title":"Adversarial machine learning at scale","author":"kurakin","year":"2016","journal-title":"Proc Int Conf Learn Represent"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-031-01580-9"},{"key":"ref30","first-page":"9459","article-title":"Certified adversarial robustness with additive noise","author":"li","year":"2019","journal-title":"Proc Int Conf Adv Neural Inf Process Syst"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v34i01.5480"},{"key":"ref33","first-page":"1","article-title":"Explaining and harnessing adversarial examples","author":"goodfellow","year":"2015","journal-title":"Proc Int Conf Learn Represent"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1109\/TKDE.2020.3034312"},{"key":"ref32","first-page":"1","article-title":"Intriguing properties of neural networks","author":"szegedy","year":"2014","journal-title":"Proc Int Conf Learn Represent"},{"key":"ref2","article-title":"Graph neural networks: A review of methods and applications","author":"zhou","year":"2018","journal-title":"arXiv 1812 08434v4"},{"key":"ref1","first-page":"52","article-title":"Representation learning on graphs: Methods and applications","volume":"40","author":"hamilton","year":"2017","journal-title":"IEEE Data Eng Bull"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.3389\/fnins.2021.611653"},{"key":"ref39","first-page":"2715","article-title":"Learning halfspaces with malicious noise","volume":"10","author":"klivans","year":"2009","journal-title":"J Mach Learn Res"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1109\/LRA.2021.3104334"},{"key":"ref38","first-page":"5283","article-title":"Provable defenses against adversarial examples via the convex outer adversarial polytope","author":"wong","year":"2018","journal-title":"Proc Int Conf Mach Learn"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1109\/TAFFC.2020.2994159"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1109\/TAFFC.2018.2817622"},{"key":"ref24","first-page":"1","article-title":"Adversarial attacks on graph neural networks via meta learning","author":"z\u00fcgner","year":"2019","journal-title":"Proc Int Conf Learn Represent (ICLR)"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1145\/3219819.3220078"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.24963\/ijcai.2019\/550"},{"key":"ref25","first-page":"8317","article-title":"Certifiable robustness to graph perturbations","author":"bojchevski","year":"2019","journal-title":"Proc Int Conf Adv Neural Inf Process Syst"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1109\/SAHCN.2019.8824956"},{"key":"ref42","first-page":"695","article-title":"Adversarial attacks on node embeddings via graph poisoning","author":"bojchevski","year":"2019","journal-title":"Proc Int Conf Mach Learn"},{"key":"ref41","first-page":"1","article-title":"Predict then propagate: Graph neural networks meet personalized PageRank","author":"klicpera","year":"2019","journal-title":"Proc Int Conf Learn Represent"},{"key":"ref22","first-page":"1115","article-title":"Adversarial attack on graph structured data","author":"dai","year":"2018","journal-title":"Proc Int Conf Mach Learn"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1145\/3395352.3402619"},{"key":"ref43","first-page":"289","article-title":"IX. On the problem of the most efficient tests of statistical hypotheses","volume":"231","author":"neyman","year":"1933","journal-title":"Philos Trans Roy Soc London Ser A Math Phys Eng Sci"},{"key":"ref28","first-page":"1310","article-title":"Certified adversarial robustness via randomized smoothing","author":"cohen","year":"2019","journal-title":"Proc Int Conf Mach Learn"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1145\/3292500.3330851"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00044"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1007\/s12530-020-09347-0"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1109\/NOMS54207.2022.9789878"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1109\/SECON48991.2020.9158447"},{"key":"ref4","first-page":"5165","article-title":"Link prediction based on graph neural networks","author":"zhang","year":"2018","journal-title":"Proc Int Conf Adv Neural Inf Process Syst"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/TNNLS.2020.2978386"},{"key":"ref6","first-page":"1","article-title":"Semi-supervised classification with graph convolutional networks","author":"kipf","year":"2016","journal-title":"Proc Int Conf Learn Represent"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v32i1.11782"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.1145\/3128572.3140447"}],"container-title":["IEEE Internet of Things Journal"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/6488907\/10194321\/10089172.pdf?arnumber=10089172","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2023,8,14]],"date-time":"2023-08-14T17:57:47Z","timestamp":1692035867000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10089172\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023,8,1]]},"references-count":43,"journal-issue":{"issue":"15"},"URL":"https:\/\/doi.org\/10.1109\/jiot.2023.3263384","relation":{},"ISSN":["2327-4662","2372-2541"],"issn-type":[{"value":"2327-4662","type":"electronic"},{"value":"2372-2541","type":"electronic"}],"subject":[],"published":{"date-parts":[[2023,8,1]]}}}