{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2019:5EQBEDMLEQGDC5XPCQVK4DAH26","short_pith_number":"pith:5EQBEDML","canonical_record":{"source":{"id":"1906.09288","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2019-06-21T18:29:57Z","cross_cats_sorted":[],"title_canon_sha256":"62136ef30dc52c0aa2d48e4c7291bfc9129f05b6cfec86446f28ad2a7142163d","abstract_canon_sha256":"49b785860494b6f62234a5f13dad21b7e41a527af3eada195686254c40d4b68d"},"schema_version":"1.0"},"canonical_sha256":"e920120d8b240c3176ef142aae0c07d79234f527387ae5b617ba3de43e3ae5bc","source":{"kind":"arxiv","id":"1906.09288","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1906.09288","created_at":"2026-05-17T23:42:41Z"},{"alias_kind":"arxiv_version","alias_value":"1906.09288v1","created_at":"2026-05-17T23:42:41Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1906.09288","created_at":"2026-05-17T23:42:41Z"},{"alias_kind":"pith_short_12","alias_value":"5EQBEDMLEQGD","created_at":"2026-05-18T12:33:10Z"},{"alias_kind":"pith_short_16","alias_value":"5EQBEDMLEQGDC5XP","created_at":"2026-05-18T12:33:10Z"},{"alias_kind":"pith_short_8","alias_value":"5EQBEDML","created_at":"2026-05-18T12:33:10Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2019:5EQBEDMLEQGDC5XPCQVK4DAH26","target":"record","payload":{"canonical_record":{"source":{"id":"1906.09288","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2019-06-21T18:29:57Z","cross_cats_sorted":[],"title_canon_sha256":"62136ef30dc52c0aa2d48e4c7291bfc9129f05b6cfec86446f28ad2a7142163d","abstract_canon_sha256":"49b785860494b6f62234a5f13dad21b7e41a527af3eada195686254c40d4b68d"},"schema_version":"1.0"},"canonical_sha256":"e920120d8b240c3176ef142aae0c07d79234f527387ae5b617ba3de43e3ae5bc","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:42:41.158125Z","signature_b64":"uceiTqmreV6xJ+IUGid3d+DiIQby8X+NAxIEgy9/wB9A5kVmaX+lKRe78CoWRljxXVj0p/47uU3OW3nvzN1uBg==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"e920120d8b240c3176ef142aae0c07d79234f527387ae5b617ba3de43e3ae5bc","last_reissued_at":"2026-05-17T23:42:41.157535Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:42:41.157535Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1906.09288","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:42:41Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"IjdQJgZZovYP/Z6XGq4kJxM+7Fnpp1G8AisHP4dqZHBRyKHwBBQnH2dGcH33Zu6ZgGi6dDV3XnEbHhxmftjQDg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-26T03:43:04.031135Z"},"content_sha256":"049b483fb7f60028cebd9d5f0eccb518e0dea39b4c60b29abfb0b232ece0fb06","schema_version":"1.0","event_id":"sha256:049b483fb7f60028cebd9d5f0eccb518e0dea39b4c60b29abfb0b232ece0fb06"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2019:5EQBEDMLEQGDC5XPCQVK4DAH26","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Hiding Faces in Plain Sight: Disrupting AI Face Synthesis with Adversarial Perturbations","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.CV","authors_text":"Baoyuan Wu, Siwei Lyu, Xin Yang, Yuezun Li","submitted_at":"2019-06-21T18:29:57Z","abstract_excerpt":"Recent years have seen fast development in synthesizing realistic human faces using AI technologies. Such fake faces can be weaponized to cause negative personal and social impact. In this work, we develop technologies to defend individuals from becoming victims of recent AI synthesized fake videos by sabotaging would-be training data. This is achieved by disrupting deep neural network (DNN) based face detection method with specially designed imperceptible adversarial perturbations to reduce the quality of the detected faces. We describe attacking schemes under white-box, gray-box and black-bo"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1906.09288","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:42:41Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"Yuitb6ZRohdKZgd5jqbtFMHWQx8pvIpa0p8Og8T9YoYnN3sFYQyg7wA5DCtiHfgjDzxo1pLa8ODTBafQiSR/AA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-26T03:43:04.031867Z"},"content_sha256":"980134fab7b9cf15a57518c30d500634c630324393b031b3ecfc5ace2527e48e","schema_version":"1.0","event_id":"sha256:980134fab7b9cf15a57518c30d500634c630324393b031b3ecfc5ace2527e48e"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/5EQBEDMLEQGDC5XPCQVK4DAH26/bundle.json","state_url":"https://pith.science/pith/5EQBEDMLEQGDC5XPCQVK4DAH26/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/5EQBEDMLEQGDC5XPCQVK4DAH26/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-26T03:43:04Z","links":{"resolver":"https://pith.science/pith/5EQBEDMLEQGDC5XPCQVK4DAH26","bundle":"https://pith.science/pith/5EQBEDMLEQGDC5XPCQVK4DAH26/bundle.json","state":"https://pith.science/pith/5EQBEDMLEQGDC5XPCQVK4DAH26/state.json","well_known_bundle":"https://pith.science/.well-known/pith/5EQBEDMLEQGDC5XPCQVK4DAH26/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2019:5EQBEDMLEQGDC5XPCQVK4DAH26","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"49b785860494b6f62234a5f13dad21b7e41a527af3eada195686254c40d4b68d","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2019-06-21T18:29:57Z","title_canon_sha256":"62136ef30dc52c0aa2d48e4c7291bfc9129f05b6cfec86446f28ad2a7142163d"},"schema_version":"1.0","source":{"id":"1906.09288","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1906.09288","created_at":"2026-05-17T23:42:41Z"},{"alias_kind":"arxiv_version","alias_value":"1906.09288v1","created_at":"2026-05-17T23:42:41Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1906.09288","created_at":"2026-05-17T23:42:41Z"},{"alias_kind":"pith_short_12","alias_value":"5EQBEDMLEQGD","created_at":"2026-05-18T12:33:10Z"},{"alias_kind":"pith_short_16","alias_value":"5EQBEDMLEQGDC5XP","created_at":"2026-05-18T12:33:10Z"},{"alias_kind":"pith_short_8","alias_value":"5EQBEDML","created_at":"2026-05-18T12:33:10Z"}],"graph_snapshots":[{"event_id":"sha256:980134fab7b9cf15a57518c30d500634c630324393b031b3ecfc5ace2527e48e","target":"graph","created_at":"2026-05-17T23:42:41Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Recent years have seen fast development in synthesizing realistic human faces using AI technologies. Such fake faces can be weaponized to cause negative personal and social impact. In this work, we develop technologies to defend individuals from becoming victims of recent AI synthesized fake videos by sabotaging would-be training data. This is achieved by disrupting deep neural network (DNN) based face detection method with specially designed imperceptible adversarial perturbations to reduce the quality of the detected faces. We describe attacking schemes under white-box, gray-box and black-bo","authors_text":"Baoyuan Wu, Siwei Lyu, Xin Yang, Yuezun Li","cross_cats":[],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2019-06-21T18:29:57Z","title":"Hiding Faces in Plain Sight: Disrupting AI Face Synthesis with Adversarial Perturbations"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1906.09288","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:049b483fb7f60028cebd9d5f0eccb518e0dea39b4c60b29abfb0b232ece0fb06","target":"record","created_at":"2026-05-17T23:42:41Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"49b785860494b6f62234a5f13dad21b7e41a527af3eada195686254c40d4b68d","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2019-06-21T18:29:57Z","title_canon_sha256":"62136ef30dc52c0aa2d48e4c7291bfc9129f05b6cfec86446f28ad2a7142163d"},"schema_version":"1.0","source":{"id":"1906.09288","kind":"arxiv","version":1}},"canonical_sha256":"e920120d8b240c3176ef142aae0c07d79234f527387ae5b617ba3de43e3ae5bc","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"e920120d8b240c3176ef142aae0c07d79234f527387ae5b617ba3de43e3ae5bc","first_computed_at":"2026-05-17T23:42:41.157535Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-17T23:42:41.157535Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"uceiTqmreV6xJ+IUGid3d+DiIQby8X+NAxIEgy9/wB9A5kVmaX+lKRe78CoWRljxXVj0p/47uU3OW3nvzN1uBg==","signature_status":"signed_v1","signed_at":"2026-05-17T23:42:41.158125Z","signed_message":"canonical_sha256_bytes"},"source_id":"1906.09288","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:049b483fb7f60028cebd9d5f0eccb518e0dea39b4c60b29abfb0b232ece0fb06","sha256:980134fab7b9cf15a57518c30d500634c630324393b031b3ecfc5ace2527e48e"],"state_sha256":"00db37d0e1fc482a81ffd361bf1fa040a4a3f40bfa17d6c376da2b9fb5b57e8f"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"GGupgaiGE3zfEIJ6RHlwUpwuyVjowJR+9/QFal+lyxo/eLD1t4E+9PsfvsiI3t0QZubdH+DQOZo+YUU0bGIlBg==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-26T03:43:04.035373Z","bundle_sha256":"54bcf57c2521ceff69a445b65572974c84234fa4a0b39b248c3b9eb5f1692809"}}