Considering the complex graph structure, are some nodes consistently well-trained and following this principle even with different graph augmentations?
In recent years, deep neural networks (DNNs) have witnessed extensive applications, and protecting their intellectual property (IP) is thus crucial. As a noninvasive way for model IP protection, model fingerprinting has become popular.