AI RESEARCH

COPYCOP: Ownership Verification for Graph Neural Networks

arXiv CS.LG

ArXi:2605.05360v1 Announce Type: new Given two GNNs that output node embeddings, how can we determine if they were trained independently? An adversary could have trained one GNN specifically to mimic the other GNN's embeddings. To obscure this relationship between the GNNs, the adversarial GNN might then transform its output embeddings. The two GNNs could have different architectures, weights, and embedding dimensions, and the adversary can transform the embeddings.