{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2013:24LSDWAASCBE3ERD2A2GUQ7LQ2","short_pith_number":"pith:24LSDWAA","canonical_record":{"source":{"id":"1309.7366","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2013-09-27T20:54:24Z","cross_cats_sorted":[],"title_canon_sha256":"2b5d923d93f5704def20d538c37b5fd38d681ea199bebd41f10301cd1d17dee6","abstract_canon_sha256":"1dcf1f5ace0da9c8ae5367f1d520d3a3e1e62c0037bc8f1a4038f0efc5852833"},"schema_version":"1.0"},"canonical_sha256":"d71721d80090824d9223d0346a43eb869aa90a4e97bd90ec07155d1267a28871","source":{"kind":"arxiv","id":"1309.7366","version":2},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1309.7366","created_at":"2026-05-18T03:02:59Z"},{"alias_kind":"arxiv_version","alias_value":"1309.7366v2","created_at":"2026-05-18T03:02:59Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1309.7366","created_at":"2026-05-18T03:02:59Z"},{"alias_kind":"pith_short_12","alias_value":"24LSDWAASCBE","created_at":"2026-05-18T12:27:30Z"},{"alias_kind":"pith_short_16","alias_value":"24LSDWAASCBE3ERD","created_at":"2026-05-18T12:27:30Z"},{"alias_kind":"pith_short_8","alias_value":"24LSDWAA","created_at":"2026-05-18T12:27:30Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2013:24LSDWAASCBE3ERD2A2GUQ7LQ2","target":"record","payload":{"canonical_record":{"source":{"id":"1309.7366","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2013-09-27T20:54:24Z","cross_cats_sorted":[],"title_canon_sha256":"2b5d923d93f5704def20d538c37b5fd38d681ea199bebd41f10301cd1d17dee6","abstract_canon_sha256":"1dcf1f5ace0da9c8ae5367f1d520d3a3e1e62c0037bc8f1a4038f0efc5852833"},"schema_version":"1.0"},"canonical_sha256":"d71721d80090824d9223d0346a43eb869aa90a4e97bd90ec07155d1267a28871","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-18T03:02:59.113921Z","signature_b64":"IoAZ9aARBqkZjAJSIa3vSJ4rzJQZLCpUDC2zCiDbhQuhZ5NOZcu5AraVlJrevtRw6uqS4PvU9fwoED20a9QhAQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"d71721d80090824d9223d0346a43eb869aa90a4e97bd90ec07155d1267a28871","last_reissued_at":"2026-05-18T03:02:59.113075Z","signature_status":"signed_v1","first_computed_at":"2026-05-18T03:02:59.113075Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1309.7366","source_version":2,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T03:02:59Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"BzSk9cPobHSRD/sk5gRnCs6t1HIfbbE0WigX/nuL9/3P0ZNF9fhHGc6iYTZ9kNwINAH+oFVBoAh/ZG74VGmtAQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-07-01T06:43:57.986633Z"},"content_sha256":"c120adf5b8ef02d3b8caec0ab987671ebccc696a67fb6ae6e1947cf6f19aaf5f","schema_version":"1.0","event_id":"sha256:c120adf5b8ef02d3b8caec0ab987671ebccc696a67fb6ae6e1947cf6f19aaf5f"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2013:24LSDWAASCBE3ERD2A2GUQ7LQ2","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Ensuring High-Quality Randomness in Cryptographic Key Generation","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.CR","authors_text":"Bryan Ford, Dan Boneh, Henry Corrigan-Gibbs, Wendy Mu","submitted_at":"2013-09-27T20:54:24Z","abstract_excerpt":"The security of any cryptosystem relies on the secrecy of the system's secret keys. Yet, recent experimental work demonstrates that tens of thousands of devices on the Internet use RSA and DSA secrets drawn from a small pool of candidate values. As a result, an adversary can derive the device's secret keys without breaking the underlying cryptosystem. We introduce a new threat model, under which there is a systemic solution to such randomness flaws. In our model, when a device generates a cryptographic key, it incorporates some random values from an entropy authority into its cryptographic sec"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1309.7366","kind":"arxiv","version":2},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T03:02:59Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"PAGfTW2Klx2HAS+RYymkaLfK7nOsTQuBUo4EPW8ns2T2WLA1talX4uHRnwU3QvRmRAy88lGcuwOae0a2I+dwAA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-07-01T06:43:57.987212Z"},"content_sha256":"5dcd0222c768afc8d407742127c178dbf3904c121d9a347d840d61a6ed5c7dd6","schema_version":"1.0","event_id":"sha256:5dcd0222c768afc8d407742127c178dbf3904c121d9a347d840d61a6ed5c7dd6"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/24LSDWAASCBE3ERD2A2GUQ7LQ2/bundle.json","state_url":"https://pith.science/pith/24LSDWAASCBE3ERD2A2GUQ7LQ2/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/24LSDWAASCBE3ERD2A2GUQ7LQ2/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-07-01T06:43:57Z","links":{"resolver":"https://pith.science/pith/24LSDWAASCBE3ERD2A2GUQ7LQ2","bundle":"https://pith.science/pith/24LSDWAASCBE3ERD2A2GUQ7LQ2/bundle.json","state":"https://pith.science/pith/24LSDWAASCBE3ERD2A2GUQ7LQ2/state.json","well_known_bundle":"https://pith.science/.well-known/pith/24LSDWAASCBE3ERD2A2GUQ7LQ2/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2013:24LSDWAASCBE3ERD2A2GUQ7LQ2","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"1dcf1f5ace0da9c8ae5367f1d520d3a3e1e62c0037bc8f1a4038f0efc5852833","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2013-09-27T20:54:24Z","title_canon_sha256":"2b5d923d93f5704def20d538c37b5fd38d681ea199bebd41f10301cd1d17dee6"},"schema_version":"1.0","source":{"id":"1309.7366","kind":"arxiv","version":2}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1309.7366","created_at":"2026-05-18T03:02:59Z"},{"alias_kind":"arxiv_version","alias_value":"1309.7366v2","created_at":"2026-05-18T03:02:59Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1309.7366","created_at":"2026-05-18T03:02:59Z"},{"alias_kind":"pith_short_12","alias_value":"24LSDWAASCBE","created_at":"2026-05-18T12:27:30Z"},{"alias_kind":"pith_short_16","alias_value":"24LSDWAASCBE3ERD","created_at":"2026-05-18T12:27:30Z"},{"alias_kind":"pith_short_8","alias_value":"24LSDWAA","created_at":"2026-05-18T12:27:30Z"}],"graph_snapshots":[{"event_id":"sha256:5dcd0222c768afc8d407742127c178dbf3904c121d9a347d840d61a6ed5c7dd6","target":"graph","created_at":"2026-05-18T03:02:59Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"The security of any cryptosystem relies on the secrecy of the system's secret keys. Yet, recent experimental work demonstrates that tens of thousands of devices on the Internet use RSA and DSA secrets drawn from a small pool of candidate values. As a result, an adversary can derive the device's secret keys without breaking the underlying cryptosystem. We introduce a new threat model, under which there is a systemic solution to such randomness flaws. In our model, when a device generates a cryptographic key, it incorporates some random values from an entropy authority into its cryptographic sec","authors_text":"Bryan Ford, Dan Boneh, Henry Corrigan-Gibbs, Wendy Mu","cross_cats":[],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2013-09-27T20:54:24Z","title":"Ensuring High-Quality Randomness in Cryptographic Key Generation"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1309.7366","kind":"arxiv","version":2},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:c120adf5b8ef02d3b8caec0ab987671ebccc696a67fb6ae6e1947cf6f19aaf5f","target":"record","created_at":"2026-05-18T03:02:59Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"1dcf1f5ace0da9c8ae5367f1d520d3a3e1e62c0037bc8f1a4038f0efc5852833","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2013-09-27T20:54:24Z","title_canon_sha256":"2b5d923d93f5704def20d538c37b5fd38d681ea199bebd41f10301cd1d17dee6"},"schema_version":"1.0","source":{"id":"1309.7366","kind":"arxiv","version":2}},"canonical_sha256":"d71721d80090824d9223d0346a43eb869aa90a4e97bd90ec07155d1267a28871","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"d71721d80090824d9223d0346a43eb869aa90a4e97bd90ec07155d1267a28871","first_computed_at":"2026-05-18T03:02:59.113075Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-18T03:02:59.113075Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"IoAZ9aARBqkZjAJSIa3vSJ4rzJQZLCpUDC2zCiDbhQuhZ5NOZcu5AraVlJrevtRw6uqS4PvU9fwoED20a9QhAQ==","signature_status":"signed_v1","signed_at":"2026-05-18T03:02:59.113921Z","signed_message":"canonical_sha256_bytes"},"source_id":"1309.7366","source_kind":"arxiv","source_version":2}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:c120adf5b8ef02d3b8caec0ab987671ebccc696a67fb6ae6e1947cf6f19aaf5f","sha256:5dcd0222c768afc8d407742127c178dbf3904c121d9a347d840d61a6ed5c7dd6"],"state_sha256":"686c16e1ee3925e3ac50177fe7013436df22762758fc073409faefa6a57f142c"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"x+qmZmAbmydgguYz2/qWpxVx7epOYcP+jXqvhEC3WwTL0al2DDCZkXeFrw8l+a7J0IlQRTBBXLcntfjcmnN6Bw==","signed_message":"bundle_sha256_bytes","signed_at":"2026-07-01T06:43:57.990178Z","bundle_sha256":"18ce6a6b45bbad8cd7aee60459f4ebde9e2bfd222d16242749887088d7e6669d"}}