{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2021:5LZRRBWYDJTUXL4RDG3DO35ARI","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"16c83591181f05f1e2b6fb9a67f34a0cd1ee0c149d884567f22eca79cde64fda","cross_cats_sorted":[],"license":"http://creativecommons.org/licenses/by-nc-sa/4.0/","primary_cat":"cs.CV","submitted_at":"2021-01-27T14:50:41Z","title_canon_sha256":"f862463691d751cffd72f64bac07c7cdd94949bd82147e3feaa349b072c4e956"},"schema_version":"1.0","source":{"id":"2101.11466","kind":"arxiv","version":2}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2101.11466","created_at":"2026-07-05T03:05:47Z"},{"alias_kind":"arxiv_version","alias_value":"2101.11466v2","created_at":"2026-07-05T03:05:47Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2101.11466","created_at":"2026-07-05T03:05:47Z"},{"alias_kind":"pith_short_12","alias_value":"5LZRRBWYDJTU","created_at":"2026-07-05T03:05:47Z"},{"alias_kind":"pith_short_16","alias_value":"5LZRRBWYDJTUXL4R","created_at":"2026-07-05T03:05:47Z"},{"alias_kind":"pith_short_8","alias_value":"5LZRRBWY","created_at":"2026-07-05T03:05:47Z"}],"graph_snapshots":[{"event_id":"sha256:cf67d29c43413c8ab8b3153ba46e2e3fd78d556ddd91c9857c2eed08b946aa24","target":"graph","created_at":"2026-07-05T03:05:47Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/2101.11466/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"Over the last few years, convolutional neural networks (CNNs) have proved to reach super-human performance in visual recognition tasks. However, CNNs can easily be fooled by adversarial examples, i.e., maliciously-crafted images that force the networks to predict an incorrect output while being extremely similar to those for which a correct output is predicted. Regular adversarial examples are not robust to input image transformations, which can then be used to detect whether an adversarial example is presented to the network. Nevertheless, it is still possible to generate adversarial examples","authors_text":"Alessandro Biondi, Federico Nesti, Giorgio Buttazzo","cross_cats":[],"headline":"","license":"http://creativecommons.org/licenses/by-nc-sa/4.0/","primary_cat":"cs.CV","submitted_at":"2021-01-27T14:50:41Z","title":"Detecting Adversarial Examples by Input Transformations, Defense Perturbations, and Voting"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2101.11466","kind":"arxiv","version":2},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:b40169d57103cc6a98ac2395ade7d46f253823b313f4e57ab5db76331d8ace74","target":"record","created_at":"2026-07-05T03:05:47Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"16c83591181f05f1e2b6fb9a67f34a0cd1ee0c149d884567f22eca79cde64fda","cross_cats_sorted":[],"license":"http://creativecommons.org/licenses/by-nc-sa/4.0/","primary_cat":"cs.CV","submitted_at":"2021-01-27T14:50:41Z","title_canon_sha256":"f862463691d751cffd72f64bac07c7cdd94949bd82147e3feaa349b072c4e956"},"schema_version":"1.0","source":{"id":"2101.11466","kind":"arxiv","version":2}},"canonical_sha256":"eaf31886d81a674baf9119b6376fa08a00514ed89fe513011180df4d3bbe0096","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"eaf31886d81a674baf9119b6376fa08a00514ed89fe513011180df4d3bbe0096","first_computed_at":"2026-07-05T03:05:47.066185Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-07-05T03:05:47.066185Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"V0W4MXK2BjGd6wTQ4OsuJinPXK/5GthnHbKd//w7u9fpzEdOEJ3VnMxgkvNdrs/KYt0SIM/W3RmYGxSd2M9sBg==","signature_status":"signed_v1","signed_at":"2026-07-05T03:05:47.066739Z","signed_message":"canonical_sha256_bytes"},"source_id":"2101.11466","source_kind":"arxiv","source_version":2}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:b40169d57103cc6a98ac2395ade7d46f253823b313f4e57ab5db76331d8ace74","sha256:cf67d29c43413c8ab8b3153ba46e2e3fd78d556ddd91c9857c2eed08b946aa24"],"state_sha256":"9dcdac2ef6ed466b22c86e88a0963db4bb09b84a3eed96edbe13fb48e94760ac"}