{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2019:A3OTBZQW5V3M4BSEWDNN2A5PMB","short_pith_number":"pith:A3OTBZQW","canonical_record":{"source":{"id":"1905.03679","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-05-09T15:10:30Z","cross_cats_sorted":["cs.CR","stat.ML"],"title_canon_sha256":"9c23091eaa40ef03ec6776c0e5a24e9bc24f95554571a7d1f5168f1a93dd17c6","abstract_canon_sha256":"3af7a1fb071039e70166291850e549c184b40f49ef0a8c6867ce9723192a9f27"},"schema_version":"1.0"},"canonical_sha256":"06dd30e616ed76ce0644b0dadd03af605eb979258993bbc8355aee81d38c70fc","source":{"kind":"arxiv","id":"1905.03679","version":2},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1905.03679","created_at":"2026-05-17T23:46:25Z"},{"alias_kind":"arxiv_version","alias_value":"1905.03679v2","created_at":"2026-05-17T23:46:25Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1905.03679","created_at":"2026-05-17T23:46:25Z"},{"alias_kind":"pith_short_12","alias_value":"A3OTBZQW5V3M","created_at":"2026-05-18T12:33:12Z"},{"alias_kind":"pith_short_16","alias_value":"A3OTBZQW5V3M4BSE","created_at":"2026-05-18T12:33:12Z"},{"alias_kind":"pith_short_8","alias_value":"A3OTBZQW","created_at":"2026-05-18T12:33:12Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2019:A3OTBZQW5V3M4BSEWDNN2A5PMB","target":"record","payload":{"canonical_record":{"source":{"id":"1905.03679","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-05-09T15:10:30Z","cross_cats_sorted":["cs.CR","stat.ML"],"title_canon_sha256":"9c23091eaa40ef03ec6776c0e5a24e9bc24f95554571a7d1f5168f1a93dd17c6","abstract_canon_sha256":"3af7a1fb071039e70166291850e549c184b40f49ef0a8c6867ce9723192a9f27"},"schema_version":"1.0"},"canonical_sha256":"06dd30e616ed76ce0644b0dadd03af605eb979258993bbc8355aee81d38c70fc","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:46:25.456336Z","signature_b64":"/eFWaoVV+LONw06vqzpW0rKYYo5ug864mF+BB09fK0rA/fJfuKQetLsSXnLSfNaYzQw4jpyBq+uWFJn4TQrpDQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"06dd30e616ed76ce0644b0dadd03af605eb979258993bbc8355aee81d38c70fc","last_reissued_at":"2026-05-17T23:46:25.455776Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:46:25.455776Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1905.03679","source_version":2,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:46:25Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"xD5WNN0E2Is2fJrxl+mi4JALBJtjcknX1dhtEKWRoicbjbU3f1FneR5o8ZQ+F0ogBakIUMjhspjHTi6HGlwyAA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-30T01:37:30.762594Z"},"content_sha256":"cb5be7c0049da4440875d02b45bc666ab4d8b263802f9e0c30ccf58b38b92f0b","schema_version":"1.0","event_id":"sha256:cb5be7c0049da4440875d02b45bc666ab4d8b263802f9e0c30ccf58b38b92f0b"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2019:A3OTBZQW5V3M4BSEWDNN2A5PMB","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Adversarial Defense Framework for Graph Neural Network","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.CR","stat.ML"],"primary_cat":"cs.LG","authors_text":"Haifeng Chen, Jingchao Ni, Philip S. Yu, Shen Wang, Xiao Yu, Zhengzhang Chen, Zhichun Li","submitted_at":"2019-05-09T15:10:30Z","abstract_excerpt":"Graph neural network (GNN), as a powerful representation learning model on graph data, attracts much attention across various disciplines. However, recent studies show that GNN is vulnerable to adversarial attacks. How to make GNN more robust? What are the key vulnerabilities in GNN? How to address the vulnerabilities and defense GNN against the adversarial attacks? In this paper, we propose DefNet, an effective adversarial defense framework for GNNs. In particular, we first investigate the latent vulnerabilities in every layer of GNNs and propose corresponding strategies including dual-stage "},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1905.03679","kind":"arxiv","version":2},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:46:25Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"ufcNTGRkCFcyN16G1qsl49srby4WkdM6HjEqg53ErspQWs3pe8mQRtX2M/nSQqaMhPlPk+I8/lXNIOt08XKMDg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-30T01:37:30.763275Z"},"content_sha256":"f37e28ba92a8acc7c4c6a288fa41dee96109f997089ebc8ced41b553352e9ff3","schema_version":"1.0","event_id":"sha256:f37e28ba92a8acc7c4c6a288fa41dee96109f997089ebc8ced41b553352e9ff3"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/A3OTBZQW5V3M4BSEWDNN2A5PMB/bundle.json","state_url":"https://pith.science/pith/A3OTBZQW5V3M4BSEWDNN2A5PMB/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/A3OTBZQW5V3M4BSEWDNN2A5PMB/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-30T01:37:30Z","links":{"resolver":"https://pith.science/pith/A3OTBZQW5V3M4BSEWDNN2A5PMB","bundle":"https://pith.science/pith/A3OTBZQW5V3M4BSEWDNN2A5PMB/bundle.json","state":"https://pith.science/pith/A3OTBZQW5V3M4BSEWDNN2A5PMB/state.json","well_known_bundle":"https://pith.science/.well-known/pith/A3OTBZQW5V3M4BSEWDNN2A5PMB/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2019:A3OTBZQW5V3M4BSEWDNN2A5PMB","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"3af7a1fb071039e70166291850e549c184b40f49ef0a8c6867ce9723192a9f27","cross_cats_sorted":["cs.CR","stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-05-09T15:10:30Z","title_canon_sha256":"9c23091eaa40ef03ec6776c0e5a24e9bc24f95554571a7d1f5168f1a93dd17c6"},"schema_version":"1.0","source":{"id":"1905.03679","kind":"arxiv","version":2}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1905.03679","created_at":"2026-05-17T23:46:25Z"},{"alias_kind":"arxiv_version","alias_value":"1905.03679v2","created_at":"2026-05-17T23:46:25Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1905.03679","created_at":"2026-05-17T23:46:25Z"},{"alias_kind":"pith_short_12","alias_value":"A3OTBZQW5V3M","created_at":"2026-05-18T12:33:12Z"},{"alias_kind":"pith_short_16","alias_value":"A3OTBZQW5V3M4BSE","created_at":"2026-05-18T12:33:12Z"},{"alias_kind":"pith_short_8","alias_value":"A3OTBZQW","created_at":"2026-05-18T12:33:12Z"}],"graph_snapshots":[{"event_id":"sha256:f37e28ba92a8acc7c4c6a288fa41dee96109f997089ebc8ced41b553352e9ff3","target":"graph","created_at":"2026-05-17T23:46:25Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Graph neural network (GNN), as a powerful representation learning model on graph data, attracts much attention across various disciplines. However, recent studies show that GNN is vulnerable to adversarial attacks. How to make GNN more robust? What are the key vulnerabilities in GNN? How to address the vulnerabilities and defense GNN against the adversarial attacks? In this paper, we propose DefNet, an effective adversarial defense framework for GNNs. In particular, we first investigate the latent vulnerabilities in every layer of GNNs and propose corresponding strategies including dual-stage ","authors_text":"Haifeng Chen, Jingchao Ni, Philip S. Yu, Shen Wang, Xiao Yu, Zhengzhang Chen, Zhichun Li","cross_cats":["cs.CR","stat.ML"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-05-09T15:10:30Z","title":"Adversarial Defense Framework for Graph Neural Network"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1905.03679","kind":"arxiv","version":2},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:cb5be7c0049da4440875d02b45bc666ab4d8b263802f9e0c30ccf58b38b92f0b","target":"record","created_at":"2026-05-17T23:46:25Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"3af7a1fb071039e70166291850e549c184b40f49ef0a8c6867ce9723192a9f27","cross_cats_sorted":["cs.CR","stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-05-09T15:10:30Z","title_canon_sha256":"9c23091eaa40ef03ec6776c0e5a24e9bc24f95554571a7d1f5168f1a93dd17c6"},"schema_version":"1.0","source":{"id":"1905.03679","kind":"arxiv","version":2}},"canonical_sha256":"06dd30e616ed76ce0644b0dadd03af605eb979258993bbc8355aee81d38c70fc","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"06dd30e616ed76ce0644b0dadd03af605eb979258993bbc8355aee81d38c70fc","first_computed_at":"2026-05-17T23:46:25.455776Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-17T23:46:25.455776Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"/eFWaoVV+LONw06vqzpW0rKYYo5ug864mF+BB09fK0rA/fJfuKQetLsSXnLSfNaYzQw4jpyBq+uWFJn4TQrpDQ==","signature_status":"signed_v1","signed_at":"2026-05-17T23:46:25.456336Z","signed_message":"canonical_sha256_bytes"},"source_id":"1905.03679","source_kind":"arxiv","source_version":2}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:cb5be7c0049da4440875d02b45bc666ab4d8b263802f9e0c30ccf58b38b92f0b","sha256:f37e28ba92a8acc7c4c6a288fa41dee96109f997089ebc8ced41b553352e9ff3"],"state_sha256":"b65c03555570e9dd8f35138d6399ae46f2c87226b2005d01fc6fe2bbe85fcfe0"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"fjin54E24AyeVNO57J3PAhN7NQAD+wSlsvS5McBHWyfs5Z6L2srY42001wYi9Yu/FM6QZcwMaXgnC9JIy7mKCw==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-30T01:37:30.766991Z","bundle_sha256":"b8732acc8ba29a716a6644a525c11d3072bbafd7c02e98f9243c41c5cf9acd61"}}