{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2017:3E35CI2AL3WMHE24ADNBGGEE6B","short_pith_number":"pith:3E35CI2A","canonical_record":{"source":{"id":"1709.03817","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2017-09-12T13:05:39Z","cross_cats_sorted":[],"title_canon_sha256":"f72b3dd0047e196be996879183dd35baeab15bf80fccd35bd72574adce31091b","abstract_canon_sha256":"691e1e5d63cee84b6c823ef37615ae6f697786b99f99b5f6d57983d7fb65c062"},"schema_version":"1.0"},"canonical_sha256":"d937d123405eecc3935c00da131884f05443e08cc987cf641b1c5e3b3bc89b7a","source":{"kind":"arxiv","id":"1709.03817","version":2},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1709.03817","created_at":"2026-05-18T00:31:50Z"},{"alias_kind":"arxiv_version","alias_value":"1709.03817v2","created_at":"2026-05-18T00:31:50Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1709.03817","created_at":"2026-05-18T00:31:50Z"},{"alias_kind":"pith_short_12","alias_value":"3E35CI2AL3WM","created_at":"2026-05-18T12:30:58Z"},{"alias_kind":"pith_short_16","alias_value":"3E35CI2AL3WMHE24","created_at":"2026-05-18T12:30:58Z"},{"alias_kind":"pith_short_8","alias_value":"3E35CI2A","created_at":"2026-05-18T12:30:58Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2017:3E35CI2AL3WMHE24ADNBGGEE6B","target":"record","payload":{"canonical_record":{"source":{"id":"1709.03817","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2017-09-12T13:05:39Z","cross_cats_sorted":[],"title_canon_sha256":"f72b3dd0047e196be996879183dd35baeab15bf80fccd35bd72574adce31091b","abstract_canon_sha256":"691e1e5d63cee84b6c823ef37615ae6f697786b99f99b5f6d57983d7fb65c062"},"schema_version":"1.0"},"canonical_sha256":"d937d123405eecc3935c00da131884f05443e08cc987cf641b1c5e3b3bc89b7a","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-18T00:31:50.516028Z","signature_b64":"qyrW2vdluMsBONs0uTGWh17V3NVv8RdZnQI/IsFzDyVb+FsDJGSEpQoQ+wbIDu391KSalXQmayK7cZOefrQ9Bg==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"d937d123405eecc3935c00da131884f05443e08cc987cf641b1c5e3b3bc89b7a","last_reissued_at":"2026-05-18T00:31:50.515523Z","signature_status":"signed_v1","first_computed_at":"2026-05-18T00:31:50.515523Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1709.03817","source_version":2,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:31:50Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"YYIDH1AZpj4xrgQyAL73wm/4NUm13+FwN9oJrCBMx2m7hII/7kvKaHdzyLNFrrNlfcw6Ebal8DvZZ3W9FmCnBw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-30T01:07:33.362023Z"},"content_sha256":"74d3caf8379bba42884f5514269cd643ee70d569760b365dd9591d02d5b27b5d","schema_version":"1.0","event_id":"sha256:74d3caf8379bba42884f5514269cd643ee70d569760b365dd9591d02d5b27b5d"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2017:3E35CI2AL3WMHE24ADNBGGEE6B","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"A Touch of Evil: High-Assurance Cryptographic Hardware from Untrusted Components","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.CR","authors_text":"Andrea Cerulli, Dan Cvrcek, Dusan Klinec, George Danezis, Petr Svenda, Vasilios Mavroudis","submitted_at":"2017-09-12T13:05:39Z","abstract_excerpt":"The semiconductor industry is fully globalized and integrated circuits (ICs) are commonly defined, designed and fabricated in different premises across the world. This reduces production costs, but also exposes ICs to supply chain attacks, where insiders introduce malicious circuitry into the final products. Additionally, despite extensive post-fabrication testing, it is not uncommon for ICs with subtle fabrication errors to make it into production systems. While many systems may be able to tolerate a few byzantine components, this is not the case for cryptographic hardware, storing and comput"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1709.03817","kind":"arxiv","version":2},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:31:50Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"uWtAHXMM+3waDwPcgHgEag+2WPlVDnHT+czpREAc4d4ewFNTOl6JPz/KDdktHaCCfXlgb9cqYnIN/s+OfbWnCw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-30T01:07:33.362724Z"},"content_sha256":"49da0948ade363817722fb67eaf637df5d0ca89db6db3a9945ed497c7bc1b5dc","schema_version":"1.0","event_id":"sha256:49da0948ade363817722fb67eaf637df5d0ca89db6db3a9945ed497c7bc1b5dc"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/3E35CI2AL3WMHE24ADNBGGEE6B/bundle.json","state_url":"https://pith.science/pith/3E35CI2AL3WMHE24ADNBGGEE6B/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/3E35CI2AL3WMHE24ADNBGGEE6B/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-30T01:07:33Z","links":{"resolver":"https://pith.science/pith/3E35CI2AL3WMHE24ADNBGGEE6B","bundle":"https://pith.science/pith/3E35CI2AL3WMHE24ADNBGGEE6B/bundle.json","state":"https://pith.science/pith/3E35CI2AL3WMHE24ADNBGGEE6B/state.json","well_known_bundle":"https://pith.science/.well-known/pith/3E35CI2AL3WMHE24ADNBGGEE6B/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2017:3E35CI2AL3WMHE24ADNBGGEE6B","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"691e1e5d63cee84b6c823ef37615ae6f697786b99f99b5f6d57983d7fb65c062","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2017-09-12T13:05:39Z","title_canon_sha256":"f72b3dd0047e196be996879183dd35baeab15bf80fccd35bd72574adce31091b"},"schema_version":"1.0","source":{"id":"1709.03817","kind":"arxiv","version":2}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1709.03817","created_at":"2026-05-18T00:31:50Z"},{"alias_kind":"arxiv_version","alias_value":"1709.03817v2","created_at":"2026-05-18T00:31:50Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1709.03817","created_at":"2026-05-18T00:31:50Z"},{"alias_kind":"pith_short_12","alias_value":"3E35CI2AL3WM","created_at":"2026-05-18T12:30:58Z"},{"alias_kind":"pith_short_16","alias_value":"3E35CI2AL3WMHE24","created_at":"2026-05-18T12:30:58Z"},{"alias_kind":"pith_short_8","alias_value":"3E35CI2A","created_at":"2026-05-18T12:30:58Z"}],"graph_snapshots":[{"event_id":"sha256:49da0948ade363817722fb67eaf637df5d0ca89db6db3a9945ed497c7bc1b5dc","target":"graph","created_at":"2026-05-18T00:31:50Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"The semiconductor industry is fully globalized and integrated circuits (ICs) are commonly defined, designed and fabricated in different premises across the world. This reduces production costs, but also exposes ICs to supply chain attacks, where insiders introduce malicious circuitry into the final products. Additionally, despite extensive post-fabrication testing, it is not uncommon for ICs with subtle fabrication errors to make it into production systems. While many systems may be able to tolerate a few byzantine components, this is not the case for cryptographic hardware, storing and comput","authors_text":"Andrea Cerulli, Dan Cvrcek, Dusan Klinec, George Danezis, Petr Svenda, Vasilios Mavroudis","cross_cats":[],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2017-09-12T13:05:39Z","title":"A Touch of Evil: High-Assurance Cryptographic Hardware from Untrusted Components"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1709.03817","kind":"arxiv","version":2},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:74d3caf8379bba42884f5514269cd643ee70d569760b365dd9591d02d5b27b5d","target":"record","created_at":"2026-05-18T00:31:50Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"691e1e5d63cee84b6c823ef37615ae6f697786b99f99b5f6d57983d7fb65c062","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2017-09-12T13:05:39Z","title_canon_sha256":"f72b3dd0047e196be996879183dd35baeab15bf80fccd35bd72574adce31091b"},"schema_version":"1.0","source":{"id":"1709.03817","kind":"arxiv","version":2}},"canonical_sha256":"d937d123405eecc3935c00da131884f05443e08cc987cf641b1c5e3b3bc89b7a","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"d937d123405eecc3935c00da131884f05443e08cc987cf641b1c5e3b3bc89b7a","first_computed_at":"2026-05-18T00:31:50.515523Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-18T00:31:50.515523Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"qyrW2vdluMsBONs0uTGWh17V3NVv8RdZnQI/IsFzDyVb+FsDJGSEpQoQ+wbIDu391KSalXQmayK7cZOefrQ9Bg==","signature_status":"signed_v1","signed_at":"2026-05-18T00:31:50.516028Z","signed_message":"canonical_sha256_bytes"},"source_id":"1709.03817","source_kind":"arxiv","source_version":2}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:74d3caf8379bba42884f5514269cd643ee70d569760b365dd9591d02d5b27b5d","sha256:49da0948ade363817722fb67eaf637df5d0ca89db6db3a9945ed497c7bc1b5dc"],"state_sha256":"440507521fa70829f0dda5699d8b0ddd26b56c57f03bbddf990d9024d2262021"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"WCaOimQbXi/FUzU98NSAQJGFgpuxw2UsUa8c0/PkoEhPAC/nAGjX3tBDJdscPEHTNz5QdnQcdXugCoV6sqtRDQ==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-30T01:07:33.366926Z","bundle_sha256":"dd93a416efb8f688cb3e1622c846359afa3946f7614d3f654ed76dbb540b19fd"}}