{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2017:4PMOKUIODQ3KBEAXZOOVLOWN3H","short_pith_number":"pith:4PMOKUIO","canonical_record":{"source":{"id":"1710.06081","kind":"arxiv","version":3},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2017-10-17T04:03:04Z","cross_cats_sorted":["stat.ML"],"title_canon_sha256":"6faeb6c2beb7c902fe87816dd71c2829e2bf2e526be7017a31f3de86e0fcf20d","abstract_canon_sha256":"3996eab7b59903735cb2049465b75fe7825eb94d7a682e925d32527b3ccc1110"},"schema_version":"1.0"},"canonical_sha256":"e3d8e5510e1c36a09017cb9d55bacdd9db7eb4a64685adac43ff6027fbba5cef","source":{"kind":"arxiv","id":"1710.06081","version":3},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1710.06081","created_at":"2026-05-18T00:20:24Z"},{"alias_kind":"arxiv_version","alias_value":"1710.06081v3","created_at":"2026-05-18T00:20:24Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1710.06081","created_at":"2026-05-18T00:20:24Z"},{"alias_kind":"pith_short_12","alias_value":"4PMOKUIODQ3K","created_at":"2026-05-18T12:31:00Z"},{"alias_kind":"pith_short_16","alias_value":"4PMOKUIODQ3KBEAX","created_at":"2026-05-18T12:31:00Z"},{"alias_kind":"pith_short_8","alias_value":"4PMOKUIO","created_at":"2026-05-18T12:31:00Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2017:4PMOKUIODQ3KBEAXZOOVLOWN3H","target":"record","payload":{"canonical_record":{"source":{"id":"1710.06081","kind":"arxiv","version":3},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2017-10-17T04:03:04Z","cross_cats_sorted":["stat.ML"],"title_canon_sha256":"6faeb6c2beb7c902fe87816dd71c2829e2bf2e526be7017a31f3de86e0fcf20d","abstract_canon_sha256":"3996eab7b59903735cb2049465b75fe7825eb94d7a682e925d32527b3ccc1110"},"schema_version":"1.0"},"canonical_sha256":"e3d8e5510e1c36a09017cb9d55bacdd9db7eb4a64685adac43ff6027fbba5cef","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-18T00:20:24.239064Z","signature_b64":"4gOTOiI65rni+4WlBD1S8OHfQEcLNchd/5oxjd+KbIvOT/ni3sLp7uKkD0a/cG24xRIQWf5yNAWL2f5ul7yGBw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"e3d8e5510e1c36a09017cb9d55bacdd9db7eb4a64685adac43ff6027fbba5cef","last_reissued_at":"2026-05-18T00:20:24.238553Z","signature_status":"signed_v1","first_computed_at":"2026-05-18T00:20:24.238553Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1710.06081","source_version":3,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:20:24Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"hw5QSiO3g+0XBT+DorjgqcwDbGSkrqYz9D0z5z/42wpqgLsZQGwQzHabH4kQQah5Rnm3u33X2/XQGC7NBqLaCQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-30T09:25:11.148888Z"},"content_sha256":"aa3a196c485e2ed5186967ac6daf2edcac4ba69a444d56a7159d55c7af6d7d48","schema_version":"1.0","event_id":"sha256:aa3a196c485e2ed5186967ac6daf2edcac4ba69a444d56a7159d55c7af6d7d48"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2017:4PMOKUIODQ3KBEAXZOOVLOWN3H","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Boosting Adversarial Attacks with Momentum","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["stat.ML"],"primary_cat":"cs.LG","authors_text":"Fangzhou Liao, Hang Su, Jianguo Li, Jun Zhu, Tianyu Pang, Xiaolin Hu, Yinpeng Dong","submitted_at":"2017-10-17T04:03:04Z","abstract_excerpt":"Deep neural networks are vulnerable to adversarial examples, which poses security concerns on these algorithms due to the potentially severe consequences. Adversarial attacks serve as an important surrogate to evaluate the robustness of deep learning models before they are deployed. However, most of existing adversarial attacks can only fool a black-box model with a low success rate. To address this issue, we propose a broad class of momentum-based iterative algorithms to boost adversarial attacks. By integrating the momentum term into the iterative process for attacks, our methods can stabili"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1710.06081","kind":"arxiv","version":3},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:20:24Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"ZwhFPo2jAUhxLudyib6bwU2PVvGBFSEhXoMtqZt/WruJkg5GmS9mzK1CgfwaXwH3BFCy8x3/JtEZYFc+sTNiBw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-30T09:25:11.149596Z"},"content_sha256":"4733356be11e1a59f4b5860ea7364ade182ef488778d589206132bdd1b8a94c2","schema_version":"1.0","event_id":"sha256:4733356be11e1a59f4b5860ea7364ade182ef488778d589206132bdd1b8a94c2"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/4PMOKUIODQ3KBEAXZOOVLOWN3H/bundle.json","state_url":"https://pith.science/pith/4PMOKUIODQ3KBEAXZOOVLOWN3H/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/4PMOKUIODQ3KBEAXZOOVLOWN3H/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-30T09:25:11Z","links":{"resolver":"https://pith.science/pith/4PMOKUIODQ3KBEAXZOOVLOWN3H","bundle":"https://pith.science/pith/4PMOKUIODQ3KBEAXZOOVLOWN3H/bundle.json","state":"https://pith.science/pith/4PMOKUIODQ3KBEAXZOOVLOWN3H/state.json","well_known_bundle":"https://pith.science/.well-known/pith/4PMOKUIODQ3KBEAXZOOVLOWN3H/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2017:4PMOKUIODQ3KBEAXZOOVLOWN3H","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"3996eab7b59903735cb2049465b75fe7825eb94d7a682e925d32527b3ccc1110","cross_cats_sorted":["stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2017-10-17T04:03:04Z","title_canon_sha256":"6faeb6c2beb7c902fe87816dd71c2829e2bf2e526be7017a31f3de86e0fcf20d"},"schema_version":"1.0","source":{"id":"1710.06081","kind":"arxiv","version":3}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1710.06081","created_at":"2026-05-18T00:20:24Z"},{"alias_kind":"arxiv_version","alias_value":"1710.06081v3","created_at":"2026-05-18T00:20:24Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1710.06081","created_at":"2026-05-18T00:20:24Z"},{"alias_kind":"pith_short_12","alias_value":"4PMOKUIODQ3K","created_at":"2026-05-18T12:31:00Z"},{"alias_kind":"pith_short_16","alias_value":"4PMOKUIODQ3KBEAX","created_at":"2026-05-18T12:31:00Z"},{"alias_kind":"pith_short_8","alias_value":"4PMOKUIO","created_at":"2026-05-18T12:31:00Z"}],"graph_snapshots":[{"event_id":"sha256:4733356be11e1a59f4b5860ea7364ade182ef488778d589206132bdd1b8a94c2","target":"graph","created_at":"2026-05-18T00:20:24Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Deep neural networks are vulnerable to adversarial examples, which poses security concerns on these algorithms due to the potentially severe consequences. Adversarial attacks serve as an important surrogate to evaluate the robustness of deep learning models before they are deployed. However, most of existing adversarial attacks can only fool a black-box model with a low success rate. To address this issue, we propose a broad class of momentum-based iterative algorithms to boost adversarial attacks. By integrating the momentum term into the iterative process for attacks, our methods can stabili","authors_text":"Fangzhou Liao, Hang Su, Jianguo Li, Jun Zhu, Tianyu Pang, Xiaolin Hu, Yinpeng Dong","cross_cats":["stat.ML"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2017-10-17T04:03:04Z","title":"Boosting Adversarial Attacks with Momentum"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1710.06081","kind":"arxiv","version":3},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:aa3a196c485e2ed5186967ac6daf2edcac4ba69a444d56a7159d55c7af6d7d48","target":"record","created_at":"2026-05-18T00:20:24Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"3996eab7b59903735cb2049465b75fe7825eb94d7a682e925d32527b3ccc1110","cross_cats_sorted":["stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2017-10-17T04:03:04Z","title_canon_sha256":"6faeb6c2beb7c902fe87816dd71c2829e2bf2e526be7017a31f3de86e0fcf20d"},"schema_version":"1.0","source":{"id":"1710.06081","kind":"arxiv","version":3}},"canonical_sha256":"e3d8e5510e1c36a09017cb9d55bacdd9db7eb4a64685adac43ff6027fbba5cef","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"e3d8e5510e1c36a09017cb9d55bacdd9db7eb4a64685adac43ff6027fbba5cef","first_computed_at":"2026-05-18T00:20:24.238553Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-18T00:20:24.238553Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"4gOTOiI65rni+4WlBD1S8OHfQEcLNchd/5oxjd+KbIvOT/ni3sLp7uKkD0a/cG24xRIQWf5yNAWL2f5ul7yGBw==","signature_status":"signed_v1","signed_at":"2026-05-18T00:20:24.239064Z","signed_message":"canonical_sha256_bytes"},"source_id":"1710.06081","source_kind":"arxiv","source_version":3}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:aa3a196c485e2ed5186967ac6daf2edcac4ba69a444d56a7159d55c7af6d7d48","sha256:4733356be11e1a59f4b5860ea7364ade182ef488778d589206132bdd1b8a94c2"],"state_sha256":"2bc938f5c9a46d890468e39494ebfb8123dbe4b862b9f9c28b4b50eb8433aeaa"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"dYVLpEVLVgAVbUVQ3pAdqX+xsRF+DilalbbUzzRGaiIpNkE2rKYz8sbMffc7ilQcse1B5DQKKemEXIk9MLSCBQ==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-30T09:25:11.153583Z","bundle_sha256":"89e394cc79fb5f7bd800a1fb96c6781e92d78eea283c2a2c0f7b137deb43f587"}}