{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2018:3QNLADNEU6HQCVHAP5BXH3APJR","short_pith_number":"pith:3QNLADNE","schema_version":"1.0","canonical_sha256":"dc1ab00da4a78f0154e07f4373ec0f4c5831ebc8dc11ae67c81fb7646c9116fb","source":{"kind":"arxiv","id":"1806.02924","version":5},"attestation_state":"computed","paper":{"title":"Revisiting Adversarial Risk","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.LG"],"primary_cat":"stat.ML","authors_text":"Adarsh Prasad, Arun Sai Suggala, Pradeep Ravikumar, Vaishnavh Nagarajan","submitted_at":"2018-06-07T23:27:16Z","abstract_excerpt":"Recent works on adversarial perturbations show that there is an inherent trade-off between standard test accuracy and adversarial accuracy. Specifically, they show that no classifier can simultaneously be robust to adversarial perturbations and achieve high standard test accuracy. However, this is contrary to the standard notion that on tasks such as image classification, humans are robust classifiers with low error rate. In this work, we show that the main reason behind this confusion is the inexact definition of adversarial perturbation that is used in the literature. To fix this issue, we p"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"1806.02924","kind":"arxiv","version":5},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"stat.ML","submitted_at":"2018-06-07T23:27:16Z","cross_cats_sorted":["cs.LG"],"title_canon_sha256":"e4f33413380b729ae1c67021a6034a52d96004f4a5172f04e306e43d5304b6e4","abstract_canon_sha256":"ab124e77b7f03be93011015cbc6e2d2a3e72d1f4ca47088fa56221a00221c1bc"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:50:38.624190Z","signature_b64":"BQO1aQNatpvDmUJjx0tmeciXP3VUhO8oitl2Xrrt0+0EUsbNsgmnAg9gpdd3+mLo2GxReq78mC8DF6iQ4GnjDg==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"dc1ab00da4a78f0154e07f4373ec0f4c5831ebc8dc11ae67c81fb7646c9116fb","last_reissued_at":"2026-05-17T23:50:38.623752Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:50:38.623752Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"Revisiting Adversarial Risk","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.LG"],"primary_cat":"stat.ML","authors_text":"Adarsh Prasad, Arun Sai Suggala, Pradeep Ravikumar, Vaishnavh Nagarajan","submitted_at":"2018-06-07T23:27:16Z","abstract_excerpt":"Recent works on adversarial perturbations show that there is an inherent trade-off between standard test accuracy and adversarial accuracy. Specifically, they show that no classifier can simultaneously be robust to adversarial perturbations and achieve high standard test accuracy. However, this is contrary to the standard notion that on tasks such as image classification, humans are robust classifiers with low error rate. In this work, we show that the main reason behind this confusion is the inexact definition of adversarial perturbation that is used in the literature. To fix this issue, we p"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1806.02924","kind":"arxiv","version":5},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"1806.02924","created_at":"2026-05-17T23:50:38.623815+00:00"},{"alias_kind":"arxiv_version","alias_value":"1806.02924v5","created_at":"2026-05-17T23:50:38.623815+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1806.02924","created_at":"2026-05-17T23:50:38.623815+00:00"},{"alias_kind":"pith_short_12","alias_value":"3QNLADNEU6HQ","created_at":"2026-05-18T12:32:02.567920+00:00"},{"alias_kind":"pith_short_16","alias_value":"3QNLADNEU6HQCVHA","created_at":"2026-05-18T12:32:02.567920+00:00"},{"alias_kind":"pith_short_8","alias_value":"3QNLADNE","created_at":"2026-05-18T12:32:02.567920+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":0,"internal_anchor_count":0,"sample":[]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/3QNLADNEU6HQCVHAP5BXH3APJR","json":"https://pith.science/pith/3QNLADNEU6HQCVHAP5BXH3APJR.json","graph_json":"https://pith.science/api/pith-number/3QNLADNEU6HQCVHAP5BXH3APJR/graph.json","events_json":"https://pith.science/api/pith-number/3QNLADNEU6HQCVHAP5BXH3APJR/events.json","paper":"https://pith.science/paper/3QNLADNE"},"agent_actions":{"view_html":"https://pith.science/pith/3QNLADNEU6HQCVHAP5BXH3APJR","download_json":"https://pith.science/pith/3QNLADNEU6HQCVHAP5BXH3APJR.json","view_paper":"https://pith.science/paper/3QNLADNE","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=1806.02924&json=true","fetch_graph":"https://pith.science/api/pith-number/3QNLADNEU6HQCVHAP5BXH3APJR/graph.json","fetch_events":"https://pith.science/api/pith-number/3QNLADNEU6HQCVHAP5BXH3APJR/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/3QNLADNEU6HQCVHAP5BXH3APJR/action/timestamp_anchor","attest_storage":"https://pith.science/pith/3QNLADNEU6HQCVHAP5BXH3APJR/action/storage_attestation","attest_author":"https://pith.science/pith/3QNLADNEU6HQCVHAP5BXH3APJR/action/author_attestation","sign_citation":"https://pith.science/pith/3QNLADNEU6HQCVHAP5BXH3APJR/action/citation_signature","submit_replication":"https://pith.science/pith/3QNLADNEU6HQCVHAP5BXH3APJR/action/replication_record"}},"created_at":"2026-05-17T23:50:38.623815+00:00","updated_at":"2026-05-17T23:50:38.623815+00:00"}