{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2017:67ZMBBUQEVA5CF7OUXXAURVZQW","short_pith_number":"pith:67ZMBBUQ","canonical_record":{"source":{"id":"1709.00609","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2017-09-02T17:38:45Z","cross_cats_sorted":["cs.CR"],"title_canon_sha256":"50d66fcc59989b5ef31bbd94dda0adbc55ef37f5cc486e418d620bb52d37ee9d","abstract_canon_sha256":"fa8694928c27ebbf36191dd7811177cd0be33223da78ab7ebac0284bbd1d9c2f"},"schema_version":"1.0"},"canonical_sha256":"f7f2c086902541d117eea5ee0a46b98583569dd3da95082503921e969afcfdc7","source":{"kind":"arxiv","id":"1709.00609","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1709.00609","created_at":"2026-05-18T00:36:07Z"},{"alias_kind":"arxiv_version","alias_value":"1709.00609v1","created_at":"2026-05-18T00:36:07Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1709.00609","created_at":"2026-05-18T00:36:07Z"},{"alias_kind":"pith_short_12","alias_value":"67ZMBBUQEVA5","created_at":"2026-05-18T12:31:03Z"},{"alias_kind":"pith_short_16","alias_value":"67ZMBBUQEVA5CF7O","created_at":"2026-05-18T12:31:03Z"},{"alias_kind":"pith_short_8","alias_value":"67ZMBBUQ","created_at":"2026-05-18T12:31:03Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2017:67ZMBBUQEVA5CF7OUXXAURVZQW","target":"record","payload":{"canonical_record":{"source":{"id":"1709.00609","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2017-09-02T17:38:45Z","cross_cats_sorted":["cs.CR"],"title_canon_sha256":"50d66fcc59989b5ef31bbd94dda0adbc55ef37f5cc486e418d620bb52d37ee9d","abstract_canon_sha256":"fa8694928c27ebbf36191dd7811177cd0be33223da78ab7ebac0284bbd1d9c2f"},"schema_version":"1.0"},"canonical_sha256":"f7f2c086902541d117eea5ee0a46b98583569dd3da95082503921e969afcfdc7","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-18T00:36:07.495533Z","signature_b64":"E7cprBzp+pFEsCcwpcz0M8qxL0qeD3JLubr43GExFDzRL87k6ZK/EozEZTmMBXF9aYRgJDNHGziN8CGQQb1+AA==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"f7f2c086902541d117eea5ee0a46b98583569dd3da95082503921e969afcfdc7","last_reissued_at":"2026-05-18T00:36:07.495049Z","signature_status":"signed_v1","first_computed_at":"2026-05-18T00:36:07.495049Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1709.00609","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:36:07Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"R5Wx2ii+E3bfoVDGxh4sVR0vSXMcQ3X+lKbskAGNtJquAHrszVeUQ9M+BtSNgi/6OogqLSiEojQ1bxIYNu6JDg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-05T21:49:40.455382Z"},"content_sha256":"e145569d6206144d9d34e8d85496d1eb3ece56b37646ca102ba10da521b142ae","schema_version":"1.0","event_id":"sha256:e145569d6206144d9d34e8d85496d1eb3ece56b37646ca102ba10da521b142ae"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2017:67ZMBBUQEVA5CF7OUXXAURVZQW","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Security Evaluation of Pattern Classifiers under Attack","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.CR"],"primary_cat":"cs.LG","authors_text":"Battista Biggio, Fabio Roli, Giorgio Fumera","submitted_at":"2017-09-02T17:38:45Z","abstract_excerpt":"Pattern classification systems are commonly used in adversarial applications, like biometric authentication, network intrusion detection, and spam filtering, in which data can be purposely manipulated by humans to undermine their operation. As this adversarial scenario is not taken into account by classical design methods, pattern classification systems may exhibit vulnerabilities, whose exploitation may severely affect their performance, and consequently limit their practical utility. Extending pattern classification theory and design methods to adversarial settings is thus a novel and very r"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1709.00609","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:36:07Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"FQ+OtFkLTtBp9LZkI8U71hxbJ7M9tXL2+LKgEZAdWuBMQ79R3UfOsA54GdZeIgxNMTuNiEk8l/FWOBwEPyE8AA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-05T21:49:40.456535Z"},"content_sha256":"4352db3011885effd5f14ec53f9c311ed1a9a93d767bf780c8fd4daaa016f9fe","schema_version":"1.0","event_id":"sha256:4352db3011885effd5f14ec53f9c311ed1a9a93d767bf780c8fd4daaa016f9fe"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/67ZMBBUQEVA5CF7OUXXAURVZQW/bundle.json","state_url":"https://pith.science/pith/67ZMBBUQEVA5CF7OUXXAURVZQW/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/67ZMBBUQEVA5CF7OUXXAURVZQW/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-05T21:49:40Z","links":{"resolver":"https://pith.science/pith/67ZMBBUQEVA5CF7OUXXAURVZQW","bundle":"https://pith.science/pith/67ZMBBUQEVA5CF7OUXXAURVZQW/bundle.json","state":"https://pith.science/pith/67ZMBBUQEVA5CF7OUXXAURVZQW/state.json","well_known_bundle":"https://pith.science/.well-known/pith/67ZMBBUQEVA5CF7OUXXAURVZQW/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2017:67ZMBBUQEVA5CF7OUXXAURVZQW","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"fa8694928c27ebbf36191dd7811177cd0be33223da78ab7ebac0284bbd1d9c2f","cross_cats_sorted":["cs.CR"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2017-09-02T17:38:45Z","title_canon_sha256":"50d66fcc59989b5ef31bbd94dda0adbc55ef37f5cc486e418d620bb52d37ee9d"},"schema_version":"1.0","source":{"id":"1709.00609","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1709.00609","created_at":"2026-05-18T00:36:07Z"},{"alias_kind":"arxiv_version","alias_value":"1709.00609v1","created_at":"2026-05-18T00:36:07Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1709.00609","created_at":"2026-05-18T00:36:07Z"},{"alias_kind":"pith_short_12","alias_value":"67ZMBBUQEVA5","created_at":"2026-05-18T12:31:03Z"},{"alias_kind":"pith_short_16","alias_value":"67ZMBBUQEVA5CF7O","created_at":"2026-05-18T12:31:03Z"},{"alias_kind":"pith_short_8","alias_value":"67ZMBBUQ","created_at":"2026-05-18T12:31:03Z"}],"graph_snapshots":[{"event_id":"sha256:4352db3011885effd5f14ec53f9c311ed1a9a93d767bf780c8fd4daaa016f9fe","target":"graph","created_at":"2026-05-18T00:36:07Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Pattern classification systems are commonly used in adversarial applications, like biometric authentication, network intrusion detection, and spam filtering, in which data can be purposely manipulated by humans to undermine their operation. As this adversarial scenario is not taken into account by classical design methods, pattern classification systems may exhibit vulnerabilities, whose exploitation may severely affect their performance, and consequently limit their practical utility. Extending pattern classification theory and design methods to adversarial settings is thus a novel and very r","authors_text":"Battista Biggio, Fabio Roli, Giorgio Fumera","cross_cats":["cs.CR"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2017-09-02T17:38:45Z","title":"Security Evaluation of Pattern Classifiers under Attack"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1709.00609","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:e145569d6206144d9d34e8d85496d1eb3ece56b37646ca102ba10da521b142ae","target":"record","created_at":"2026-05-18T00:36:07Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"fa8694928c27ebbf36191dd7811177cd0be33223da78ab7ebac0284bbd1d9c2f","cross_cats_sorted":["cs.CR"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2017-09-02T17:38:45Z","title_canon_sha256":"50d66fcc59989b5ef31bbd94dda0adbc55ef37f5cc486e418d620bb52d37ee9d"},"schema_version":"1.0","source":{"id":"1709.00609","kind":"arxiv","version":1}},"canonical_sha256":"f7f2c086902541d117eea5ee0a46b98583569dd3da95082503921e969afcfdc7","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"f7f2c086902541d117eea5ee0a46b98583569dd3da95082503921e969afcfdc7","first_computed_at":"2026-05-18T00:36:07.495049Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-18T00:36:07.495049Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"E7cprBzp+pFEsCcwpcz0M8qxL0qeD3JLubr43GExFDzRL87k6ZK/EozEZTmMBXF9aYRgJDNHGziN8CGQQb1+AA==","signature_status":"signed_v1","signed_at":"2026-05-18T00:36:07.495533Z","signed_message":"canonical_sha256_bytes"},"source_id":"1709.00609","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:e145569d6206144d9d34e8d85496d1eb3ece56b37646ca102ba10da521b142ae","sha256:4352db3011885effd5f14ec53f9c311ed1a9a93d767bf780c8fd4daaa016f9fe"],"state_sha256":"a8fdb587cba898337a987a1c588dd2fbcf5bc4ce58cd291ee323cb52b875109b"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"PfU35qu4iEMaDw4BkJ8kAABxZFaxNICo3MnI84wD9jaRzUBgtJ5N2gf97ikVYn3B8m6vMmlE2lo8fRV5cBClBA==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-05T21:49:40.461196Z","bundle_sha256":"61042c2c4dadf7e64169eeea0cf5f40cd62acd150c5cb4c78b523063da90ffbd"}}