Explainable Dynamic Incomplete Graph Anomaly Detection Based on Masked Learning with Strong-weak Mutual Information
Author:
Affiliation:

Clc Number:

Fund Project:

  • Article
  • |
  • Figures
  • |
  • Metrics
  • |
  • Reference
  • |
  • Related
  • |
  • Cited by
  • |
  • Materials
  • |
  • Comments
    Abstract:

    Most graph anomaly detection methods leverage graph neural network (GNN) to learn from relatively high-quality graph data. Unfortunately, such ideal scenarios are rare in real-world applications, where most data suffer from issues such as missing labels, dynamic changes, and structural incompleteness, collectively referred to as dynamic incomplete graph (DIG). To address the challenge of performance degradation of GNN under extreme conditions, this study proposes an explainable dynamic incomplete graph anomaly detection (EXDIG) method. The core is a graph masked autoencoder framework optimized with strong-weak mutual information. This framework simulates real-world DIG scenarios by masking graph structures (nodes/edges) and node features. In addition, through the strong-weak mutual information (SWMI) loss, it captures the relationship between structure and features while maintaining structural integrity, reducing overfitting, and improving generalization. Furthermore, EXDIG enhances the interpretability of anomaly detection in DIGs by incorporating masked perturbations on nodes, edges, and features, enabling the identification of key components and providing transparent, trustworthy explanations for anomaly detection results. This study evaluates EXDIG on nine real-world graph datasets, and the results demonstrate its superiority over state-of-the-art methods across different levels of DIG scenarios and across various downstream tasks and representation learning evaluations, both supervised and unsupervised. Specifically, on the Amazon anomaly detection dataset, EXDIG achieves improvements over 13% and 15% in NMI and ARI, respectively. It maintains F1-score fluctuations within 5% across dynamic incompleteness ratios from 25% to 99%. Notably, EXDIG is the first method to enable node-level interpretability in dynamic incomplete graphs.

    Reference
    Related
    Cited by
Get Citation

骆祥峰,顾峻铨,余航.基于强-弱互信息掩码学习的可解释动态不完整图异常检测.软件学报,2026,37(4):1492-1510

Copy
Share
Article Metrics
  • Abstract:
  • PDF:
  • HTML:
  • Cited by:
History
  • Received:April 16,2025
  • Revised:June 30,2025
  • Adopted:
  • Online: September 02,2025
  • Published: April 06,2026
You are the firstVisitors
Copyright: Institute of Software, Chinese Academy of Sciences Beijing ICP No. 05046678-4
Address:4# South Fourth Street, Zhong Guan Cun, Beijing 100190,Postal Code:100190
Phone:010-62562563 Fax:010-62562533 Email:jos@iscas.ac.cn
Technical Support:Beijing Qinyun Technology Development Co., Ltd.

Beijing Public Network Security No. 11040202500063