{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2021:5GXCURJBDC6Z2DC7GNJIM77EGE","short_pith_number":"pith:5GXCURJB","canonical_record":{"source":{"id":"2105.15157","kind":"arxiv","version":2},"metadata":{"license":"http://creativecommons.org/licenses/by-nc-sa/4.0/","primary_cat":"cs.CV","submitted_at":"2021-05-31T17:01:05Z","cross_cats_sorted":[],"title_canon_sha256":"a9e2951ba7497abbf77666c6b0981ba016326cc03240a596840e1d80c60ba0f3","abstract_canon_sha256":"bb063868203eff1a0582fb8786d9303e34c131f564e378f1844281355485eba9"},"schema_version":"1.0"},"canonical_sha256":"e9ae2a452118bd9d0c5f3352867fe43114be574d3174ff06cae0ab49d01267fe","source":{"kind":"arxiv","id":"2105.15157","version":2},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2105.15157","created_at":"2026-07-05T02:49:55Z"},{"alias_kind":"arxiv_version","alias_value":"2105.15157v2","created_at":"2026-07-05T02:49:55Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2105.15157","created_at":"2026-07-05T02:49:55Z"},{"alias_kind":"pith_short_12","alias_value":"5GXCURJBDC6Z","created_at":"2026-07-05T02:49:55Z"},{"alias_kind":"pith_short_16","alias_value":"5GXCURJBDC6Z2DC7","created_at":"2026-07-05T02:49:55Z"},{"alias_kind":"pith_short_8","alias_value":"5GXCURJB","created_at":"2026-07-05T02:49:55Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2021:5GXCURJBDC6Z2DC7GNJIM77EGE","target":"record","payload":{"canonical_record":{"source":{"id":"2105.15157","kind":"arxiv","version":2},"metadata":{"license":"http://creativecommons.org/licenses/by-nc-sa/4.0/","primary_cat":"cs.CV","submitted_at":"2021-05-31T17:01:05Z","cross_cats_sorted":[],"title_canon_sha256":"a9e2951ba7497abbf77666c6b0981ba016326cc03240a596840e1d80c60ba0f3","abstract_canon_sha256":"bb063868203eff1a0582fb8786d9303e34c131f564e378f1844281355485eba9"},"schema_version":"1.0"},"canonical_sha256":"e9ae2a452118bd9d0c5f3352867fe43114be574d3174ff06cae0ab49d01267fe","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T02:49:55.356477Z","signature_b64":"QR2Az8iW0zigpe8XERZH4q9Swl1eU7IOCqz6gbjTpT9P562pZsxHrGcYVfRY11bz8ES90aTCc6eWn2UI6ZMHAQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"e9ae2a452118bd9d0c5f3352867fe43114be574d3174ff06cae0ab49d01267fe","last_reissued_at":"2026-07-05T02:49:55.356003Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T02:49:55.356003Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"2105.15157","source_version":2,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-07-05T02:49:55Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"X1bFNFHh1lVTqHHy2GkMIe61JvpyzlBSPEyAEKQ0C7gWvO8Q4RxiqlOSMMgyltPwzhZg14MDD2wDE5TWgvk+Cw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-07-05T15:59:32.282039Z"},"content_sha256":"ce5382c70ca0c6fc461f266e667c80fdda3bef8db1008cd250e005b197d586c1","schema_version":"1.0","event_id":"sha256:ce5382c70ca0c6fc461f266e667c80fdda3bef8db1008cd250e005b197d586c1"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2021:5GXCURJBDC6Z2DC7GNJIM77EGE","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Adaptive Feature Alignment for Adversarial Training","license":"http://creativecommons.org/licenses/by-nc-sa/4.0/","headline":"","cross_cats":[],"primary_cat":"cs.CV","authors_text":"Feiyue Huang, Jilin Li, Kai Zhao, Ruixin Zhang, Shaoxin Li, Tao Wang, Xiaolin Huang, Xingyu Chen, Yuge Huang","submitted_at":"2021-05-31T17:01:05Z","abstract_excerpt":"Recent studies reveal that Convolutional Neural Networks (CNNs) are typically vulnerable to adversarial attacks, which pose a threat to security-sensitive applications. Many adversarial defense methods improve robustness at the cost of accuracy, raising the contradiction between standard and adversarial accuracies. In this paper, we observe an interesting phenomenon that feature statistics change monotonically and smoothly w.r.t the rising of attacking strength. Based on this observation, we propose the adaptive feature alignment (AFA) to generate features of arbitrary attacking strengths. Our"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2105.15157","kind":"arxiv","version":2},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2105.15157/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-07-05T02:49:55Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"UFjvRCUfOfov2vcEAcwvEC6UGnMEcNPVhGtuCI5taTFtFFFKZ4gi190HLkmFs6UtMhQj+C384UpiItdZm5+UCg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-07-05T15:59:32.282675Z"},"content_sha256":"64f3330f563b89f5ec5bf3e294205b9a8c2eab090198281a4bffba5add12ec47","schema_version":"1.0","event_id":"sha256:64f3330f563b89f5ec5bf3e294205b9a8c2eab090198281a4bffba5add12ec47"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/5GXCURJBDC6Z2DC7GNJIM77EGE/bundle.json","state_url":"https://pith.science/pith/5GXCURJBDC6Z2DC7GNJIM77EGE/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/5GXCURJBDC6Z2DC7GNJIM77EGE/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-07-05T15:59:32Z","links":{"resolver":"https://pith.science/pith/5GXCURJBDC6Z2DC7GNJIM77EGE","bundle":"https://pith.science/pith/5GXCURJBDC6Z2DC7GNJIM77EGE/bundle.json","state":"https://pith.science/pith/5GXCURJBDC6Z2DC7GNJIM77EGE/state.json","well_known_bundle":"https://pith.science/.well-known/pith/5GXCURJBDC6Z2DC7GNJIM77EGE/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2021:5GXCURJBDC6Z2DC7GNJIM77EGE","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"bb063868203eff1a0582fb8786d9303e34c131f564e378f1844281355485eba9","cross_cats_sorted":[],"license":"http://creativecommons.org/licenses/by-nc-sa/4.0/","primary_cat":"cs.CV","submitted_at":"2021-05-31T17:01:05Z","title_canon_sha256":"a9e2951ba7497abbf77666c6b0981ba016326cc03240a596840e1d80c60ba0f3"},"schema_version":"1.0","source":{"id":"2105.15157","kind":"arxiv","version":2}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2105.15157","created_at":"2026-07-05T02:49:55Z"},{"alias_kind":"arxiv_version","alias_value":"2105.15157v2","created_at":"2026-07-05T02:49:55Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2105.15157","created_at":"2026-07-05T02:49:55Z"},{"alias_kind":"pith_short_12","alias_value":"5GXCURJBDC6Z","created_at":"2026-07-05T02:49:55Z"},{"alias_kind":"pith_short_16","alias_value":"5GXCURJBDC6Z2DC7","created_at":"2026-07-05T02:49:55Z"},{"alias_kind":"pith_short_8","alias_value":"5GXCURJB","created_at":"2026-07-05T02:49:55Z"}],"graph_snapshots":[{"event_id":"sha256:64f3330f563b89f5ec5bf3e294205b9a8c2eab090198281a4bffba5add12ec47","target":"graph","created_at":"2026-07-05T02:49:55Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/2105.15157/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"Recent studies reveal that Convolutional Neural Networks (CNNs) are typically vulnerable to adversarial attacks, which pose a threat to security-sensitive applications. Many adversarial defense methods improve robustness at the cost of accuracy, raising the contradiction between standard and adversarial accuracies. In this paper, we observe an interesting phenomenon that feature statistics change monotonically and smoothly w.r.t the rising of attacking strength. Based on this observation, we propose the adaptive feature alignment (AFA) to generate features of arbitrary attacking strengths. Our","authors_text":"Feiyue Huang, Jilin Li, Kai Zhao, Ruixin Zhang, Shaoxin Li, Tao Wang, Xiaolin Huang, Xingyu Chen, Yuge Huang","cross_cats":[],"headline":"","license":"http://creativecommons.org/licenses/by-nc-sa/4.0/","primary_cat":"cs.CV","submitted_at":"2021-05-31T17:01:05Z","title":"Adaptive Feature Alignment for Adversarial Training"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2105.15157","kind":"arxiv","version":2},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:ce5382c70ca0c6fc461f266e667c80fdda3bef8db1008cd250e005b197d586c1","target":"record","created_at":"2026-07-05T02:49:55Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"bb063868203eff1a0582fb8786d9303e34c131f564e378f1844281355485eba9","cross_cats_sorted":[],"license":"http://creativecommons.org/licenses/by-nc-sa/4.0/","primary_cat":"cs.CV","submitted_at":"2021-05-31T17:01:05Z","title_canon_sha256":"a9e2951ba7497abbf77666c6b0981ba016326cc03240a596840e1d80c60ba0f3"},"schema_version":"1.0","source":{"id":"2105.15157","kind":"arxiv","version":2}},"canonical_sha256":"e9ae2a452118bd9d0c5f3352867fe43114be574d3174ff06cae0ab49d01267fe","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"e9ae2a452118bd9d0c5f3352867fe43114be574d3174ff06cae0ab49d01267fe","first_computed_at":"2026-07-05T02:49:55.356003Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-07-05T02:49:55.356003Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"QR2Az8iW0zigpe8XERZH4q9Swl1eU7IOCqz6gbjTpT9P562pZsxHrGcYVfRY11bz8ES90aTCc6eWn2UI6ZMHAQ==","signature_status":"signed_v1","signed_at":"2026-07-05T02:49:55.356477Z","signed_message":"canonical_sha256_bytes"},"source_id":"2105.15157","source_kind":"arxiv","source_version":2}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:ce5382c70ca0c6fc461f266e667c80fdda3bef8db1008cd250e005b197d586c1","sha256:64f3330f563b89f5ec5bf3e294205b9a8c2eab090198281a4bffba5add12ec47"],"state_sha256":"e3cdb675ddefb607f65a4605b69730454bd126836119f0bee4f0de94ec342013"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"OHPHw4X6tpO0fXi9MYeGp2b7jhgNkX4A2epMtSINY2yA8msjs3o52bhQ3u12sWEb7F/t2iQJlrKJSnS3cTx5Cw==","signed_message":"bundle_sha256_bytes","signed_at":"2026-07-05T15:59:32.285548Z","bundle_sha256":"fdc7a01dcb0ee47473c5ecf88d01e0e3efbab61dee9a7f73965eef2ad9a78dd0"}}