-
Notifications
You must be signed in to change notification settings - Fork 12
/
Copy pathgenerate_attack.py
109 lines (89 loc) · 4.46 KB
/
generate_attack.py
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
import torch
import numpy as np
import torch.nn.functional as F
import torch.optim as optim
from deeprobust.graph.defense import GCN
from deeprobust.graph.global_attack import MetaApprox, Metattack
from deeprobust.graph.utils import *
from deeprobust.graph.data import Dataset
import argparse
import time
import os.path as osp
parser = argparse.ArgumentParser()
parser.add_argument('--no_cuda', action='store_true',
help='Disables CUDA training.')
parser.add_argument('--gpu_num', type=int, default=0,
help='The selected GPU number.')
parser.add_argument('--seed', type=int, default=int(time.time()), help='Random seed.')
parser.add_argument('--epochs', type=int, default=200,
help='Number of epochs to train.')
parser.add_argument('--lr', type=float, default=0.01,
help='Initial learning rate.')
parser.add_argument('--weight_decay', type=float, default=5e-4,
help='Weight decay (L2 loss on parameters).')
parser.add_argument('--hidden', type=int, default=16,
help='Number of hidden units.')
parser.add_argument('--dropout', type=float, default=0.5,
help='Dropout rate (1 - keep probability).')
parser.add_argument('--dataset', type=str, default='cora', choices=['cora', 'citeseer', 'polblogs'], help='dataset')
parser.add_argument('--ptb_rate', type=float, default=0.05, help='pertubation rate')
parser.add_argument('--model', type=str, default='Meta-Self',
choices=['Meta-Self', 'A-Meta-Self', 'Meta-Train', 'A-Meta-Train'], help='model variant')
args = parser.parse_args()
device = torch.device("cuda:{}".format(args.gpu_num) if not args.no_cuda else "cpu")
np.random.seed(args.seed)
torch.manual_seed(args.seed)
if device != 'cpu':
torch.cuda.manual_seed(args.seed)
data_path = osp.join(osp.expanduser('~'), 'datasets')
data = Dataset(root='/tmp/', name=args.dataset, setting='nettack')
adj, features, labels = data.adj, data.features, data.labels
idx_train, idx_val, idx_test = data.idx_train, data.idx_val, data.idx_test
idx_unlabeled = np.union1d(idx_val, idx_test)
perturbations = int(args.ptb_rate * (adj.sum()//2))
adj, features, labels = preprocess(adj, features, labels, preprocess_adj=False)
# Setup Surrogate Model
surrogate = GCN(nfeat=features.shape[1], nclass=labels.max().item()+1, nhid=16,
dropout=0.5, with_relu=False, with_bias=True, weight_decay=5e-4, device=device)
surrogate = surrogate.to(device)
surrogate.fit(features, adj, labels, idx_train)
# Setup Attack Model
if 'Self' in args.model:
lambda_ = 0
if 'Train' in args.model:
lambda_ = 1
if 'Both' in args.model:
lambda_ = 0.5
if 'A' in args.model:
model = MetaApprox(model=surrogate, nnodes=adj.shape[0], feature_shape=features.shape, attack_structure=True, attack_features=False, device=device, lambda_=lambda_)
else:
model = Metattack(model=surrogate, nnodes=adj.shape[0], feature_shape=features.shape, attack_structure=True, attack_features=False, device=device, lambda_=lambda_)
model = model.to(device)
def test(adj):
''' test on GCN '''
# adj = normalize_adj_tensor(adj)
gcn = GCN(nfeat=features.shape[1],
nhid=args.hidden,
nclass=labels.max().item() + 1,
dropout=args.dropout, device=device)
gcn = gcn.to(device)
# gcn.fit(features, adj, labels, idx_train) # train without model picking
gcn.fit(features, adj, labels, idx_train, idx_val) # train with validation model picking
output = gcn.output.cpu()
loss_test = F.nll_loss(output[idx_test], labels[idx_test])
acc_test = accuracy(output[idx_test], labels[idx_test])
print("Test set results:",
"loss= {:.4f}".format(loss_test.item()),
"accuracy= {:.4f}".format(acc_test.item()))
return acc_test.item()
def main():
model.attack(features, adj, labels, idx_train, idx_unlabeled, perturbations, ll_constraint=False)
print('=== testing GCN on modified graph ===')
modified_adj = model.modified_adj
torch.save(modified_adj.cpu().to_sparse(), osp.join(data_path, "%s_%s_%s.pt" % ('mettack', args.dataset, args.ptb_rate)))
np.save(osp.join(data_path, "%s_%s_%s_idx_train.npy" % ('mettack', args.dataset, args.ptb_rate)), idx_train)
np.save(osp.join(data_path, "%s_%s_%s_idx_val.npy" % ('mettack', args.dataset, args.ptb_rate)), idx_val)
np.save(osp.join(data_path, "%s_%s_%s_idx_test.npy" % ('mettack', args.dataset, args.ptb_rate)), idx_test)
# test(modified_adj)
if __name__ == '__main__':
main()