{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,1,6]],"date-time":"2026-01-06T13:35:00Z","timestamp":1767706500461,"version":"3.44.0"},"publisher-location":"New York, NY, USA","reference-count":65,"publisher":"ACM","license":[{"start":{"date-parts":[[2023,12,4]],"date-time":"2023-12-04T00:00:00Z","timestamp":1701648000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"funder":[{"DOI":"10.13039\/501100006374","name":"National Science Foundation","doi-asserted-by":"publisher","award":["2135988"],"award-info":[{"award-number":["2135988"]}],"id":[{"id":"10.13039\/501100006374","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2023,12,4]]},"DOI":"10.1145\/3627106.3627115","type":"proceedings-article","created":{"date-parts":[[2023,12,2]],"date-time":"2023-12-02T18:13:22Z","timestamp":1701540802000},"page":"477-491","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":5,"title":["Link Membership Inference Attacks against Unsupervised Graph Representation Learning"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0009-0001-7681-7127","authenticated-orcid":false,"given":"Xiuling","family":"Wang","sequence":"first","affiliation":[{"name":"Department of Computer Science, Stevens Institute of Technology, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-3913-815X","authenticated-orcid":false,"given":"Wendy Hui","family":"Wang","sequence":"additional","affiliation":[{"name":"Department of Computer Science, Stevens Institute of Technology, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2023,12,4]]},"reference":[{"key":"e_1_3_2_1_1_1","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978318"},{"key":"e_1_3_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.1093\/bioinformatics\/btq134"},{"key":"e_1_3_2_1_3_1","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3133972"},{"key":"e_1_3_2_1_4_1","volume-title":"International Conference on Learning Representations. 1\u201313","author":"Bojchevski Aleksandar","year":"2018","unstructured":"Aleksandar Bojchevski and Stephan G\u00fcnnemann. 2018. Deep Gaussian Embedding of Graphs: Unsupervised Inductive Learning via Ranking. In International Conference on Learning Representations. 1\u201313."},{"key":"e_1_3_2_1_5_1","volume-title":"Random forests. Machine learning 45","author":"Breiman Leo","year":"2001","unstructured":"Leo Breiman. 2001. Random forests. Machine learning 45 (2001), 5\u201332."},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP46214.2022.9833649"},{"key":"e_1_3_2_1_7_1","doi-asserted-by":"publisher","DOI":"10.1145\/3372297.3417238"},{"key":"e_1_3_2_1_8_1","volume-title":"International conference on machine learning. 1964\u20131974","author":"Choquette-Choo A","year":"2021","unstructured":"Christopher\u00a0A Choquette-Choo, Florian Tramer, Nicholas Carlini, and Nicolas Papernot. 2021. Label-only membership inference attacks. In International conference on machine learning. 1964\u20131974."},{"key":"e_1_3_2_1_9_1","volume-title":"A survey on network embedding","author":"Cui Peng","year":"2018","unstructured":"Peng Cui, Xiao Wang, Jian Pei, and Wenwu Zhu. 2018. A survey on network embedding. IEEE transactions on knowledge and data engineering 31, 5 (2018), 833\u2013852."},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.1145\/3534678.3539319"},{"key":"e_1_3_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.1145\/3448891.3448939"},{"volume-title":"Differential privacy. In the International Colloquium on Automata, Languages and Programming (ICALP)","author":"Dwork Cynthia","key":"e_1_3_2_1_12_1","unstructured":"Cynthia Dwork. 2006. Differential privacy. In the International Colloquium on Automata, Languages and Programming (ICALP). Springer, 1\u201312."},{"key":"e_1_3_2_1_13_1","first-page":"3","article-title":"The algorithmic foundations of differential privacy","volume":"9","author":"Dwork Cynthia","year":"2014","unstructured":"Cynthia Dwork and Aaron Roth. 2014. The algorithmic foundations of differential privacy. Foundations and Trends in Theoretical Computer Science 9, 3-4 (2014).","journal-title":"Foundations and Trends in Theoretical Computer Science"},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813677"},{"key":"e_1_3_2_1_15_1","doi-asserted-by":"publisher","DOI":"10.1145\/2939672.2939754"},{"key":"e_1_3_2_1_16_1","unstructured":"Will Hamilton Zhitao Ying and Jure Leskovec. 2017. Inductive representation learning on large graphs. In Advances in neural information processing systems. 1024\u20131034."},{"key":"e_1_3_2_1_17_1","volume-title":"Proceedings of the Privacy Enhancing Technologies (PoPETs)","author":"Hayes Jamie","year":"2017","unstructured":"Jamie Hayes, Luca Melis, George Danezis, and Emiliano De\u00a0Cristofaro. 2017. Logan: Membership inference attacks against generative models. In Proceedings of the Privacy Enhancing Technologies (PoPETs) (2017)."},{"key":"e_1_3_2_1_18_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.90"},{"key":"e_1_3_2_1_19_1","volume-title":"Proceedings of the USENIX Security Symposium. 2669\u20132686","author":"He Xinlei","year":"2021","unstructured":"Xinlei He, Jinyuan Jia, Michael Backes, Neil\u00a0Zhenqiang Gong, and Yang Zhang. 2021. Stealing links from graph neural networks. In Proceedings of the USENIX Security Symposium. 2669\u20132686."},{"key":"e_1_3_2_1_20_1","volume-title":"Node-Level Membership Inference Attacks Against Graph Neural Networks. arXiv preprint arXiv:2102.05429","author":"He Xinlei","year":"2021","unstructured":"Xinlei He, Rui Wen, Yixin Wu, Michael Backes, Yun Shen, and Yang Zhang. 2021. Node-Level Membership Inference Attacks Against Graph Neural Networks. arXiv preprint arXiv:2102.05429 (2021)."},{"key":"e_1_3_2_1_21_1","volume-title":"Using self-supervised learning can improve model robustness and uncertainty. Advances in neural information processing systems 32","author":"Hendrycks Dan","year":"2019","unstructured":"Dan Hendrycks, Mantas Mazeika, Saurav Kadavath, and Dawn Song. 2019. Using self-supervised learning can improve model robustness and uncertainty. Advances in neural information processing systems 32 (2019)."},{"key":"e_1_3_2_1_22_1","doi-asserted-by":"publisher","DOI":"10.1145\/3523273"},{"key":"e_1_3_2_1_23_1","volume-title":"Proceedings of the USENIX Security Symposium. 1895\u20131912","author":"Jayaraman Bargav","year":"2019","unstructured":"Bargav Jayaraman and David Evans. 2019. Evaluating differentially private machine learning in practice. In Proceedings of the USENIX Security Symposium. 1895\u20131912."},{"key":"e_1_3_2_1_24_1","doi-asserted-by":"publisher","DOI":"10.1145\/3319535.3363201"},{"key":"e_1_3_2_1_25_1","doi-asserted-by":"publisher","DOI":"10.1145\/3038912.3052695"},{"key":"e_1_3_2_1_26_1","volume-title":"Proceedings of the International conference on machine learning. 5345\u20135355","author":"Kaya Yigitcan","year":"2021","unstructured":"Yigitcan Kaya and Tudor Dumitras. 2021. When Does Data Augmentation Help With Membership Inference Attacks?. In Proceedings of the International conference on machine learning. 5345\u20135355."},{"key":"e_1_3_2_1_27_1","volume-title":"NIPS Workshop on Bayesian Deep Learning","author":"N.","year":"2016","unstructured":"Thomas\u00a0N. Kipf and Max Welling. 2016. Variational graph auto-encoders. NIPS Workshop on Bayesian Deep Learning (2016), 1\u20133."},{"volume-title":"Semi-Supervised Classification with Graph Convolutional Networks. In International Conference on Learning Representations. 1561\u20131569","author":"N.","key":"e_1_3_2_1_28_1","unstructured":"Thomas\u00a0N. Kipf and Max Welling. 2017. Semi-Supervised Classification with Graph Convolutional Networks. In International Conference on Learning Representations. 1561\u20131569."},{"key":"e_1_3_2_1_29_1","doi-asserted-by":"publisher","DOI":"10.1145\/3460120.3484575"},{"key":"e_1_3_2_1_30_1","doi-asserted-by":"publisher","DOI":"10.1145\/3460120.3484749"},{"volume-title":"Representation learning for natural language processing","author":"Liu Zhiyuan","key":"e_1_3_2_1_31_1","unstructured":"Zhiyuan Liu, Yankai Lin, and Maosong Sun. 2023. Representation learning for natural language processing. Springer Nature."},{"key":"e_1_3_2_1_32_1","volume-title":"A unified approach to interpreting model predictions. Advances in neural information processing systems 30","author":"Lundberg M","year":"2017","unstructured":"Scott\u00a0M Lundberg and Su-In Lee. 2017. A unified approach to interpreting model predictions. Advances in neural information processing systems 30 (2017)."},{"key":"e_1_3_2_1_33_1","volume-title":"Membership Inference on Word Embedding and Beyond. arXiv preprint arXiv:2106.11384","author":"Mahloujifar Saeed","year":"2021","unstructured":"Saeed Mahloujifar, Huseyin\u00a0A Inan, Melissa Chase, Esha Ghosh, and Marcello Hasegawa. 2021. Membership Inference on Word Embedding and Beyond. arXiv preprint arXiv:2106.11384 (2021)."},{"key":"e_1_3_2_1_34_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00029"},{"key":"e_1_3_2_1_35_1","volume-title":"P2CG: a privacy preserving collaborative graph neural network training framework. The VLDB Journal","author":"Miao Xupeng","year":"2022","unstructured":"Xupeng Miao, Wentao Zhang, Yuezihan Jiang, Fangcheng Fu, Yingxia Shao, Lei Chen, Yangyu Tao, Gang Cao, and Bin Cui. 2022. P2CG: a privacy preserving collaborative graph neural network training framework. The VLDB Journal (2022), 1\u201320."},{"key":"e_1_3_2_1_36_1","volume-title":"International Conference on Learning Representations. 1\u201312","author":"Mikolov Tomas","year":"2013","unstructured":"Tomas Mikolov, Kai Chen, Greg Corrado, and Jeffrey Dean. 2013. Efficient estimation of word representations in vector space. In International Conference on Learning Representations. 1\u201312."},{"key":"e_1_3_2_1_37_1","doi-asserted-by":"publisher","DOI":"10.1145\/3243734.3243855"},{"key":"e_1_3_2_1_38_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00065"},{"key":"e_1_3_2_1_39_1","volume-title":"International conference on machine learning. 2014\u20132023","author":"Niepert Mathias","year":"2016","unstructured":"Mathias Niepert, Mohamed Ahmed, and Konstantin Kutzkov. 2016. Learning convolutional neural networks for graphs. In International conference on machine learning. 2014\u20132023."},{"key":"e_1_3_2_1_40_1","doi-asserted-by":"publisher","DOI":"10.1109\/TPSISA52974.2021.00002"},{"key":"e_1_3_2_1_41_1","doi-asserted-by":"publisher","DOI":"10.1145\/2623330.2623732"},{"key":"e_1_3_2_1_42_1","doi-asserted-by":"publisher","DOI":"10.24963\/ijcai.2019\/456"},{"key":"e_1_3_2_1_43_1","volume-title":"A survey of privacy attacks in machine learning. Comput. Surveys","author":"Rigaki Maria","year":"2020","unstructured":"Maria Rigaki and Sebastian Garcia. 2020. A survey of privacy attacks in machine learning. Comput. Surveys (2020)."},{"key":"e_1_3_2_1_44_1","volume-title":"International Conference on Machine Learning. 5558\u20135567","author":"Sablayrolles Alexandre","year":"2019","unstructured":"Alexandre Sablayrolles, Matthijs Douze, Cordelia Schmid, Yann Ollivier, and Herv\u00e9 J\u00e9gou. 2019. White-box vs black-box: Bayes optimal strategies for membership inference. In International Conference on Machine Learning. 5558\u20135567."},{"key":"e_1_3_2_1_45_1","first-page":"5","volume-title":"Network and Distributed Systems Security Symposium 9","author":"Salem Ahmed","year":"2018","unstructured":"Ahmed Salem, Yang Zhang, Mathias Humbert, Pascal Berrang, Mario Fritz, and Michael Backes. 2018. Ml-leaks: Model and data independent membership inference attacks and defenses on machine learning models. Network and Distributed Systems Security Symposium 9, 5 (2018), 24\u201327."},{"key":"e_1_3_2_1_46_1","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v35i11.17150"},{"key":"e_1_3_2_1_47_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.41"},{"key":"e_1_3_2_1_48_1","doi-asserted-by":"publisher","DOI":"10.1145\/3372297.3417270"},{"key":"e_1_3_2_1_49_1","doi-asserted-by":"publisher","DOI":"10.1145\/3292500.3330885"},{"key":"e_1_3_2_1_50_1","doi-asserted-by":"publisher","DOI":"10.56553\/popets-2022-0121"},{"key":"e_1_3_2_1_51_1","doi-asserted-by":"publisher","DOI":"10.1145\/2736277.2741093"},{"key":"e_1_3_2_1_52_1","volume-title":"Graph attention networks. stat 1050, 20","author":"Velickovic Petar","year":"2017","unstructured":"Petar Velickovic, Guillem Cucurull, Arantxa Casanova, Adriana Romero, Pietro Lio, Yoshua Bengio, 2017. Graph attention networks. stat 1050, 20 (2017), 10\u201348550."},{"key":"e_1_3_2_1_53_1","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v32i1.11872"},{"key":"e_1_3_2_1_54_1","doi-asserted-by":"publisher","DOI":"10.1145\/3548606.3560662"},{"key":"e_1_3_2_1_55_1","doi-asserted-by":"publisher","DOI":"10.1145\/3488932.3497753"},{"key":"e_1_3_2_1_56_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP46214.2022.9833806"},{"key":"e_1_3_2_1_57_1","volume-title":"Leveraging graph-based hierarchical medical entity embedding for healthcare applications. Scientific reports 11, 1","author":"Wu Tong","year":"2021","unstructured":"Tong Wu, Yunlong Wang, Yue Wang, Emily Zhao, and Yilian Yuan. 2021. Leveraging graph-based hierarchical medical entity embedding for healthcare applications. Scientific reports 11, 1 (2021), 5858."},{"key":"e_1_3_2_1_58_1","doi-asserted-by":"publisher","DOI":"10.1145\/3548606.3560675"},{"key":"e_1_3_2_1_59_1","doi-asserted-by":"publisher","DOI":"10.1109\/CSF.2018.00027"},{"key":"e_1_3_2_1_60_1","volume-title":"Network representation learning: A survey","author":"Zhang Daokun","year":"2018","unstructured":"Daokun Zhang, Jie Yin, Xingquan Zhu, and Chengqi Zhang. 2018. Network representation learning: A survey. IEEE transactions on Big Data 6, 1 (2018), 3\u201328."},{"key":"e_1_3_2_1_61_1","doi-asserted-by":"publisher","DOI":"10.1145\/3460120.3484770"},{"key":"e_1_3_2_1_62_1","volume-title":"USENIX Security Symposium. 2687\u20132704","author":"Zhang Wanrong","year":"2021","unstructured":"Wanrong Zhang, Shruti Tople, and Olga Ohrimenko. 2021. Leakage of Dataset Properties in Multi-Party Machine Learning.. In USENIX Security Symposium. 2687\u20132704."},{"key":"e_1_3_2_1_63_1","volume-title":"USENIX Security Symposium. 4543\u20134560","author":"Zhang Zhikun","year":"2022","unstructured":"Zhikun Zhang, Min Chen, Michael Backes, Yun Shen, and Yang Zhang. 2022. Inference attacks against graph neural networks. In USENIX Security Symposium. 4543\u20134560."},{"key":"e_1_3_2_1_64_1","doi-asserted-by":"publisher","DOI":"10.1109\/TII.2020.3034189"},{"key":"e_1_3_2_1_65_1","doi-asserted-by":"publisher","DOI":"10.1093\/bioinformatics\/bty294"}],"event":{"name":"ACSAC '23: Annual Computer Security Applications Conference","acronym":"ACSAC '23","location":"Austin TX USA"},"container-title":["Annual Computer Security Applications Conference"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3627106.3627115","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3627106.3627115","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,8,22]],"date-time":"2025-08-22T17:37:19Z","timestamp":1755884239000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3627106.3627115"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023,12,4]]},"references-count":65,"alternative-id":["10.1145\/3627106.3627115","10.1145\/3627106"],"URL":"https:\/\/doi.org\/10.1145\/3627106.3627115","relation":{},"subject":[],"published":{"date-parts":[[2023,12,4]]},"assertion":[{"value":"2023-12-04","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}