{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2026:6EFD27QIUXZ5TMCHUHTYQJD3DV","short_pith_number":"pith:6EFD27QI","canonical_record":{"source":{"id":"2605.26992","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CV","submitted_at":"2026-05-26T13:14:12Z","cross_cats_sorted":[],"title_canon_sha256":"ac7f385b330584cacd64f349384ead49bf4870b0fc624b79df63c403850b5625","abstract_canon_sha256":"10ff9476adce3fa17123df5e23c3279df33fc81f6121d04413d8fdd383203316"},"schema_version":"1.0"},"canonical_sha256":"f10a3d7e08a5f3d9b047a1e788247b1d7457c468e196fd437d41f32005111952","source":{"kind":"arxiv","id":"2605.26992","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2605.26992","created_at":"2026-05-27T01:06:23Z"},{"alias_kind":"arxiv_version","alias_value":"2605.26992v1","created_at":"2026-05-27T01:06:23Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2605.26992","created_at":"2026-05-27T01:06:23Z"},{"alias_kind":"pith_short_12","alias_value":"6EFD27QIUXZ5","created_at":"2026-05-27T01:06:23Z"},{"alias_kind":"pith_short_16","alias_value":"6EFD27QIUXZ5TMCH","created_at":"2026-05-27T01:06:23Z"},{"alias_kind":"pith_short_8","alias_value":"6EFD27QI","created_at":"2026-05-27T01:06:23Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2026:6EFD27QIUXZ5TMCHUHTYQJD3DV","target":"record","payload":{"canonical_record":{"source":{"id":"2605.26992","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CV","submitted_at":"2026-05-26T13:14:12Z","cross_cats_sorted":[],"title_canon_sha256":"ac7f385b330584cacd64f349384ead49bf4870b0fc624b79df63c403850b5625","abstract_canon_sha256":"10ff9476adce3fa17123df5e23c3279df33fc81f6121d04413d8fdd383203316"},"schema_version":"1.0"},"canonical_sha256":"f10a3d7e08a5f3d9b047a1e788247b1d7457c468e196fd437d41f32005111952","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-27T01:06:23.204461Z","signature_b64":"INssoqP0BOUDz0xG60ahb8fO8NoNTszKFJpHZznaJbTZm8UH/kxRSGTJiatMR3DbjOvp0bbIxxj5gXX7KEbFAw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"f10a3d7e08a5f3d9b047a1e788247b1d7457c468e196fd437d41f32005111952","last_reissued_at":"2026-05-27T01:06:23.203725Z","signature_status":"signed_v1","first_computed_at":"2026-05-27T01:06:23.203725Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"2605.26992","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-27T01:06:23Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"yiLZ/E7+Jjazp/iKwbgEqLIFpv+l626EPIAr7bAEdvBnUjzyfdWmp1xZ/45JVINA1OlCuyhSFerC9h+jDFjPCw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-06T04:10:24.853063Z"},"content_sha256":"0dcf49a55972a8c517db6fde0385817c7a10f2926fd6432f6631484c412922d5","schema_version":"1.0","event_id":"sha256:0dcf49a55972a8c517db6fde0385817c7a10f2926fd6432f6631484c412922d5"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2026:6EFD27QIUXZ5TMCHUHTYQJD3DV","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"On the Robustness of Machine Unlearning for Vision-Language Models","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":[],"primary_cat":"cs.CV","authors_text":"Chengyi Yang, Jiayao Ma, Jinsong Su, Kaidi Jia, Yujie Lin","submitted_at":"2026-05-26T13:14:12Z","abstract_excerpt":"Vision-language models (VLMs) may memorize undesirable information from training data, motivating growing interest in machine unlearning. In this work, we present the first systematic survey and robustness analysis of VLM unlearning. We provide a comprehensive taxonomy and review of existing VLM unlearning methods, together with unified evaluations under multiple prompt settings. We then propose three attack paradigms to examine whether forgotten multimodal knowledge can be reactivated through contextual prompting or downstream retraining. Extensive experiments show that many existing methods "},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2605.26992","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2605.26992/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-27T01:06:23Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"JrFQ81v91lHpngTpvU0Zt9Hz/T6NzmQJRqA/ZoXleMfIqbmpEtfnkarsxu+chsM1i9jUTYgknb2fJ1aFXAY+BQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-06T04:10:24.853798Z"},"content_sha256":"effda1eca300ff0bef6e82ebec6ce71610b641d68fc4614b4b060bb7557c854d","schema_version":"1.0","event_id":"sha256:effda1eca300ff0bef6e82ebec6ce71610b641d68fc4614b4b060bb7557c854d"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/6EFD27QIUXZ5TMCHUHTYQJD3DV/bundle.json","state_url":"https://pith.science/pith/6EFD27QIUXZ5TMCHUHTYQJD3DV/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/6EFD27QIUXZ5TMCHUHTYQJD3DV/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-06T04:10:24Z","links":{"resolver":"https://pith.science/pith/6EFD27QIUXZ5TMCHUHTYQJD3DV","bundle":"https://pith.science/pith/6EFD27QIUXZ5TMCHUHTYQJD3DV/bundle.json","state":"https://pith.science/pith/6EFD27QIUXZ5TMCHUHTYQJD3DV/state.json","well_known_bundle":"https://pith.science/.well-known/pith/6EFD27QIUXZ5TMCHUHTYQJD3DV/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2026:6EFD27QIUXZ5TMCHUHTYQJD3DV","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"10ff9476adce3fa17123df5e23c3279df33fc81f6121d04413d8fdd383203316","cross_cats_sorted":[],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CV","submitted_at":"2026-05-26T13:14:12Z","title_canon_sha256":"ac7f385b330584cacd64f349384ead49bf4870b0fc624b79df63c403850b5625"},"schema_version":"1.0","source":{"id":"2605.26992","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2605.26992","created_at":"2026-05-27T01:06:23Z"},{"alias_kind":"arxiv_version","alias_value":"2605.26992v1","created_at":"2026-05-27T01:06:23Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2605.26992","created_at":"2026-05-27T01:06:23Z"},{"alias_kind":"pith_short_12","alias_value":"6EFD27QIUXZ5","created_at":"2026-05-27T01:06:23Z"},{"alias_kind":"pith_short_16","alias_value":"6EFD27QIUXZ5TMCH","created_at":"2026-05-27T01:06:23Z"},{"alias_kind":"pith_short_8","alias_value":"6EFD27QI","created_at":"2026-05-27T01:06:23Z"}],"graph_snapshots":[{"event_id":"sha256:effda1eca300ff0bef6e82ebec6ce71610b641d68fc4614b4b060bb7557c854d","target":"graph","created_at":"2026-05-27T01:06:23Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/2605.26992/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"Vision-language models (VLMs) may memorize undesirable information from training data, motivating growing interest in machine unlearning. In this work, we present the first systematic survey and robustness analysis of VLM unlearning. We provide a comprehensive taxonomy and review of existing VLM unlearning methods, together with unified evaluations under multiple prompt settings. We then propose three attack paradigms to examine whether forgotten multimodal knowledge can be reactivated through contextual prompting or downstream retraining. Extensive experiments show that many existing methods ","authors_text":"Chengyi Yang, Jiayao Ma, Jinsong Su, Kaidi Jia, Yujie Lin","cross_cats":[],"headline":"","license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CV","submitted_at":"2026-05-26T13:14:12Z","title":"On the Robustness of Machine Unlearning for Vision-Language Models"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2605.26992","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:0dcf49a55972a8c517db6fde0385817c7a10f2926fd6432f6631484c412922d5","target":"record","created_at":"2026-05-27T01:06:23Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"10ff9476adce3fa17123df5e23c3279df33fc81f6121d04413d8fdd383203316","cross_cats_sorted":[],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CV","submitted_at":"2026-05-26T13:14:12Z","title_canon_sha256":"ac7f385b330584cacd64f349384ead49bf4870b0fc624b79df63c403850b5625"},"schema_version":"1.0","source":{"id":"2605.26992","kind":"arxiv","version":1}},"canonical_sha256":"f10a3d7e08a5f3d9b047a1e788247b1d7457c468e196fd437d41f32005111952","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"f10a3d7e08a5f3d9b047a1e788247b1d7457c468e196fd437d41f32005111952","first_computed_at":"2026-05-27T01:06:23.203725Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-27T01:06:23.203725Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"INssoqP0BOUDz0xG60ahb8fO8NoNTszKFJpHZznaJbTZm8UH/kxRSGTJiatMR3DbjOvp0bbIxxj5gXX7KEbFAw==","signature_status":"signed_v1","signed_at":"2026-05-27T01:06:23.204461Z","signed_message":"canonical_sha256_bytes"},"source_id":"2605.26992","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:0dcf49a55972a8c517db6fde0385817c7a10f2926fd6432f6631484c412922d5","sha256:effda1eca300ff0bef6e82ebec6ce71610b641d68fc4614b4b060bb7557c854d"],"state_sha256":"786d548fca717b3a7b3d197c1a87073e4f916260665f2af6f82853ff294dd523"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"ipvMxCu2JeinzeXTSvg5LhJTdMyMlrWiFQ9Q9w/6Ab79f6R+rrpMUmKb6d53Qm6Z88NUQAUEuy3nq/IV5P6VBw==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-06T04:10:24.857551Z","bundle_sha256":"38855b6f2d48df6867ac0bf7350f0af67d9de574bbe00f25eaa6a9a778b4be72"}}