{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2019:2TKTEPHMJ6L36EF3JOIZVI6MS7","short_pith_number":"pith:2TKTEPHM","canonical_record":{"source":{"id":"1902.01878","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-02-05T19:20:02Z","cross_cats_sorted":["cs.CR","cs.CV","stat.ML"],"title_canon_sha256":"2e1b84f2ea28a7c55820d4ee3e8e6f18a969565346f57d99145284aa5c2898d0","abstract_canon_sha256":"5fb5a00dc304a0f1d29ee7fc38bc412b2d4da06613492881af1d5f7f1541a810"},"schema_version":"1.0"},"canonical_sha256":"d4d5323cec4f97bf10bb4b919aa3cc97ee3e8f1b8773751114646d20d20ec5f4","source":{"kind":"arxiv","id":"1902.01878","version":2},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1902.01878","created_at":"2026-05-17T23:48:11Z"},{"alias_kind":"arxiv_version","alias_value":"1902.01878v2","created_at":"2026-05-17T23:48:11Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1902.01878","created_at":"2026-05-17T23:48:11Z"},{"alias_kind":"pith_short_12","alias_value":"2TKTEPHMJ6L3","created_at":"2026-05-18T12:33:07Z"},{"alias_kind":"pith_short_16","alias_value":"2TKTEPHMJ6L36EF3","created_at":"2026-05-18T12:33:07Z"},{"alias_kind":"pith_short_8","alias_value":"2TKTEPHM","created_at":"2026-05-18T12:33:07Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2019:2TKTEPHMJ6L36EF3JOIZVI6MS7","target":"record","payload":{"canonical_record":{"source":{"id":"1902.01878","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-02-05T19:20:02Z","cross_cats_sorted":["cs.CR","cs.CV","stat.ML"],"title_canon_sha256":"2e1b84f2ea28a7c55820d4ee3e8e6f18a969565346f57d99145284aa5c2898d0","abstract_canon_sha256":"5fb5a00dc304a0f1d29ee7fc38bc412b2d4da06613492881af1d5f7f1541a810"},"schema_version":"1.0"},"canonical_sha256":"d4d5323cec4f97bf10bb4b919aa3cc97ee3e8f1b8773751114646d20d20ec5f4","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:48:11.125105Z","signature_b64":"1e47Vag7xq/FWCXhw7d93w/JXg1qDpLDEIDsDulsC7I6JB3yrvOYOetOnJvEqyBRw4sRH92FYFzMlhY3yi81Cw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"d4d5323cec4f97bf10bb4b919aa3cc97ee3e8f1b8773751114646d20d20ec5f4","last_reissued_at":"2026-05-17T23:48:11.124552Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:48:11.124552Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1902.01878","source_version":2,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:48:11Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"MaQur45KMuYw6Cc7LFmdURJhp8c9ORuKEKtcmyvTIYquO7V19WLRqOYQ1byhyivFtZ6+yqpUDnDT5NQL6vehCQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-30T11:32:15.177719Z"},"content_sha256":"72eec86d8430bcf569d57f5e5f0932b6f1bef872484ad66f77230f3a292b8b84","schema_version":"1.0","event_id":"sha256:72eec86d8430bcf569d57f5e5f0932b6f1bef872484ad66f77230f3a292b8b84"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2019:2TKTEPHMJ6L36EF3JOIZVI6MS7","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Disguised-Nets: Image Disguising for Privacy-preserving Outsourced Deep Learning","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.CR","cs.CV","stat.ML"],"primary_cat":"cs.LG","authors_text":"Keke Chen, Sagar Sharma","submitted_at":"2019-02-05T19:20:02Z","abstract_excerpt":"Deep learning model developers often use cloud GPU resources to experiment with large data and models that need expensive setups. However, this practice raises privacy concerns. Adversaries may be interested in: 1) personally identifiable information or objects encoded in the training images, and 2) the models trained with sensitive data to launch model-based attacks. Learning deep neural networks (DNN) from encrypted data is still impractical due to the large training data and the expensive learning process. A few recent studies have tried to provide efficient, practical solutions to protect "},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1902.01878","kind":"arxiv","version":2},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:48:11Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"tOKhWOJAr631QCPMJzXhHtE4ytGyfiSeAn8dGfrJ6k2yZ4SobFIPxdkpoeAOuI3t7LLM5HCL5m4oeFe4hmtgAg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-30T11:32:15.178075Z"},"content_sha256":"77cb4744af6cf9dbe7568a52deb3016d44f3789bcd69a26fcd5290ede441a687","schema_version":"1.0","event_id":"sha256:77cb4744af6cf9dbe7568a52deb3016d44f3789bcd69a26fcd5290ede441a687"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/2TKTEPHMJ6L36EF3JOIZVI6MS7/bundle.json","state_url":"https://pith.science/pith/2TKTEPHMJ6L36EF3JOIZVI6MS7/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/2TKTEPHMJ6L36EF3JOIZVI6MS7/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-30T11:32:15Z","links":{"resolver":"https://pith.science/pith/2TKTEPHMJ6L36EF3JOIZVI6MS7","bundle":"https://pith.science/pith/2TKTEPHMJ6L36EF3JOIZVI6MS7/bundle.json","state":"https://pith.science/pith/2TKTEPHMJ6L36EF3JOIZVI6MS7/state.json","well_known_bundle":"https://pith.science/.well-known/pith/2TKTEPHMJ6L36EF3JOIZVI6MS7/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2019:2TKTEPHMJ6L36EF3JOIZVI6MS7","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"5fb5a00dc304a0f1d29ee7fc38bc412b2d4da06613492881af1d5f7f1541a810","cross_cats_sorted":["cs.CR","cs.CV","stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-02-05T19:20:02Z","title_canon_sha256":"2e1b84f2ea28a7c55820d4ee3e8e6f18a969565346f57d99145284aa5c2898d0"},"schema_version":"1.0","source":{"id":"1902.01878","kind":"arxiv","version":2}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1902.01878","created_at":"2026-05-17T23:48:11Z"},{"alias_kind":"arxiv_version","alias_value":"1902.01878v2","created_at":"2026-05-17T23:48:11Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1902.01878","created_at":"2026-05-17T23:48:11Z"},{"alias_kind":"pith_short_12","alias_value":"2TKTEPHMJ6L3","created_at":"2026-05-18T12:33:07Z"},{"alias_kind":"pith_short_16","alias_value":"2TKTEPHMJ6L36EF3","created_at":"2026-05-18T12:33:07Z"},{"alias_kind":"pith_short_8","alias_value":"2TKTEPHM","created_at":"2026-05-18T12:33:07Z"}],"graph_snapshots":[{"event_id":"sha256:77cb4744af6cf9dbe7568a52deb3016d44f3789bcd69a26fcd5290ede441a687","target":"graph","created_at":"2026-05-17T23:48:11Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Deep learning model developers often use cloud GPU resources to experiment with large data and models that need expensive setups. However, this practice raises privacy concerns. Adversaries may be interested in: 1) personally identifiable information or objects encoded in the training images, and 2) the models trained with sensitive data to launch model-based attacks. Learning deep neural networks (DNN) from encrypted data is still impractical due to the large training data and the expensive learning process. A few recent studies have tried to provide efficient, practical solutions to protect ","authors_text":"Keke Chen, Sagar Sharma","cross_cats":["cs.CR","cs.CV","stat.ML"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-02-05T19:20:02Z","title":"Disguised-Nets: Image Disguising for Privacy-preserving Outsourced Deep Learning"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1902.01878","kind":"arxiv","version":2},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:72eec86d8430bcf569d57f5e5f0932b6f1bef872484ad66f77230f3a292b8b84","target":"record","created_at":"2026-05-17T23:48:11Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"5fb5a00dc304a0f1d29ee7fc38bc412b2d4da06613492881af1d5f7f1541a810","cross_cats_sorted":["cs.CR","cs.CV","stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-02-05T19:20:02Z","title_canon_sha256":"2e1b84f2ea28a7c55820d4ee3e8e6f18a969565346f57d99145284aa5c2898d0"},"schema_version":"1.0","source":{"id":"1902.01878","kind":"arxiv","version":2}},"canonical_sha256":"d4d5323cec4f97bf10bb4b919aa3cc97ee3e8f1b8773751114646d20d20ec5f4","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"d4d5323cec4f97bf10bb4b919aa3cc97ee3e8f1b8773751114646d20d20ec5f4","first_computed_at":"2026-05-17T23:48:11.124552Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-17T23:48:11.124552Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"1e47Vag7xq/FWCXhw7d93w/JXg1qDpLDEIDsDulsC7I6JB3yrvOYOetOnJvEqyBRw4sRH92FYFzMlhY3yi81Cw==","signature_status":"signed_v1","signed_at":"2026-05-17T23:48:11.125105Z","signed_message":"canonical_sha256_bytes"},"source_id":"1902.01878","source_kind":"arxiv","source_version":2}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:72eec86d8430bcf569d57f5e5f0932b6f1bef872484ad66f77230f3a292b8b84","sha256:77cb4744af6cf9dbe7568a52deb3016d44f3789bcd69a26fcd5290ede441a687"],"state_sha256":"cc0cf8f863a221a536ce9ec280fae03e79e34970eee7c215f25764f186cb590e"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"NBqllS+9yU/7CvYYkwYkThOZobjVmHnwbfRr8AXwhaEbcKsQOhBboTv/8ZiHQpHstdVYWHxTppwUhMXU3JnoBg==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-30T11:32:15.180042Z","bundle_sha256":"d4329c318c08163f9da602bc31afe30dcadf723b5aaf219723ed7847172c64d7"}}