{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2025:35377EZ3IZHQYAC2HYP4FM5A7C","short_pith_number":"pith:35377EZ3","schema_version":"1.0","canonical_sha256":"df77ff933b464f0c005a3e1fc2b3a0f8b9c7723460f80231ff6216f47db7a2b1","source":{"kind":"arxiv","id":"2506.13024","version":2},"attestation_state":"computed","paper":{"title":"Position: Certified Robustness Does Not (Yet) Imply Model Security","license":"http://creativecommons.org/licenses/by-sa/4.0/","headline":"","cross_cats":["cs.LG"],"primary_cat":"cs.CR","authors_text":"Andrew C. Cullen, Benjamin I.P. Rubinstein, Paul Montague, Sarah M. Erfani","submitted_at":"2025-06-16T01:18:33Z","abstract_excerpt":"While certified robustness is widely promoted as a solution to adversarial examples in Artificial Intelligence systems, significant challenges remain before these techniques can be meaningfully deployed in real-world applications. We identify critical gaps in current research, including the paradox of detection without distinction, the lack of clear criteria for practitioners to evaluate certification schemes, and the potential security risks arising from users' expectations surrounding ``guaranteed\" robustness claims. These create an alignment issue between how certifications are presented an"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2506.13024","kind":"arxiv","version":2},"metadata":{"license":"http://creativecommons.org/licenses/by-sa/4.0/","primary_cat":"cs.CR","submitted_at":"2025-06-16T01:18:33Z","cross_cats_sorted":["cs.LG"],"title_canon_sha256":"540c913f6e43fdbca8aa4764e9d62c291276ccb0893944aeada5b947bc8cff12","abstract_canon_sha256":"a431ac4adac6292530007ffa6cca747fefee4db845cd2f971970df5ac4383271"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T11:51:30.350686Z","signature_b64":"bVyWqyX6l2DBD4f/P8cyyILbsK/tKwpV+x42A5K12q8+5kb9StQGW45B0icos37Txle7IicfgO27aGkt3ZvLBw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"df77ff933b464f0c005a3e1fc2b3a0f8b9c7723460f80231ff6216f47db7a2b1","last_reissued_at":"2026-07-05T11:51:30.350196Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T11:51:30.350196Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"Position: Certified Robustness Does Not (Yet) Imply Model Security","license":"http://creativecommons.org/licenses/by-sa/4.0/","headline":"","cross_cats":["cs.LG"],"primary_cat":"cs.CR","authors_text":"Andrew C. Cullen, Benjamin I.P. Rubinstein, Paul Montague, Sarah M. Erfani","submitted_at":"2025-06-16T01:18:33Z","abstract_excerpt":"While certified robustness is widely promoted as a solution to adversarial examples in Artificial Intelligence systems, significant challenges remain before these techniques can be meaningfully deployed in real-world applications. We identify critical gaps in current research, including the paradox of detection without distinction, the lack of clear criteria for practitioners to evaluate certification schemes, and the potential security risks arising from users' expectations surrounding ``guaranteed\" robustness claims. These create an alignment issue between how certifications are presented an"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2506.13024","kind":"arxiv","version":2},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2506.13024/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2506.13024","created_at":"2026-07-05T11:51:30.350255+00:00"},{"alias_kind":"arxiv_version","alias_value":"2506.13024v2","created_at":"2026-07-05T11:51:30.350255+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2506.13024","created_at":"2026-07-05T11:51:30.350255+00:00"},{"alias_kind":"pith_short_12","alias_value":"35377EZ3IZHQ","created_at":"2026-07-05T11:51:30.350255+00:00"},{"alias_kind":"pith_short_16","alias_value":"35377EZ3IZHQYAC2","created_at":"2026-07-05T11:51:30.350255+00:00"},{"alias_kind":"pith_short_8","alias_value":"35377EZ3","created_at":"2026-07-05T11:51:30.350255+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":0,"internal_anchor_count":0,"sample":[]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/35377EZ3IZHQYAC2HYP4FM5A7C","json":"https://pith.science/pith/35377EZ3IZHQYAC2HYP4FM5A7C.json","graph_json":"https://pith.science/api/pith-number/35377EZ3IZHQYAC2HYP4FM5A7C/graph.json","events_json":"https://pith.science/api/pith-number/35377EZ3IZHQYAC2HYP4FM5A7C/events.json","paper":"https://pith.science/paper/35377EZ3"},"agent_actions":{"view_html":"https://pith.science/pith/35377EZ3IZHQYAC2HYP4FM5A7C","download_json":"https://pith.science/pith/35377EZ3IZHQYAC2HYP4FM5A7C.json","view_paper":"https://pith.science/paper/35377EZ3","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2506.13024&json=true","fetch_graph":"https://pith.science/api/pith-number/35377EZ3IZHQYAC2HYP4FM5A7C/graph.json","fetch_events":"https://pith.science/api/pith-number/35377EZ3IZHQYAC2HYP4FM5A7C/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/35377EZ3IZHQYAC2HYP4FM5A7C/action/timestamp_anchor","attest_storage":"https://pith.science/pith/35377EZ3IZHQYAC2HYP4FM5A7C/action/storage_attestation","attest_author":"https://pith.science/pith/35377EZ3IZHQYAC2HYP4FM5A7C/action/author_attestation","sign_citation":"https://pith.science/pith/35377EZ3IZHQYAC2HYP4FM5A7C/action/citation_signature","submit_replication":"https://pith.science/pith/35377EZ3IZHQYAC2HYP4FM5A7C/action/replication_record"}},"created_at":"2026-07-05T11:51:30.350255+00:00","updated_at":"2026-07-05T11:51:30.350255+00:00"}