{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2018:6IBYKT42Z4P4XE3PBJ73HKSIGV","short_pith_number":"pith:6IBYKT42","canonical_record":{"source":{"id":"1804.08529","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CV","submitted_at":"2018-04-23T16:04:55Z","cross_cats_sorted":["cs.CR","cs.LG"],"title_canon_sha256":"2168f752349c8fc6733e0b2205fef3e872da207b7db0fda8631587203d4be1b7","abstract_canon_sha256":"67239fddde9c504a474ff69e7608e6051dd94f05e37f284d2bbb35b125b541f8"},"schema_version":"1.0"},"canonical_sha256":"f203854f9acf1fcb936f0a7fb3aa48356e445fcdaecbdf324429e6fa9601f233","source":{"kind":"arxiv","id":"1804.08529","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1804.08529","created_at":"2026-05-18T00:17:48Z"},{"alias_kind":"arxiv_version","alias_value":"1804.08529v1","created_at":"2026-05-18T00:17:48Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1804.08529","created_at":"2026-05-18T00:17:48Z"},{"alias_kind":"pith_short_12","alias_value":"6IBYKT42Z4P4","created_at":"2026-05-18T12:32:08Z"},{"alias_kind":"pith_short_16","alias_value":"6IBYKT42Z4P4XE3P","created_at":"2026-05-18T12:32:08Z"},{"alias_kind":"pith_short_8","alias_value":"6IBYKT42","created_at":"2026-05-18T12:32:08Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2018:6IBYKT42Z4P4XE3PBJ73HKSIGV","target":"record","payload":{"canonical_record":{"source":{"id":"1804.08529","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CV","submitted_at":"2018-04-23T16:04:55Z","cross_cats_sorted":["cs.CR","cs.LG"],"title_canon_sha256":"2168f752349c8fc6733e0b2205fef3e872da207b7db0fda8631587203d4be1b7","abstract_canon_sha256":"67239fddde9c504a474ff69e7608e6051dd94f05e37f284d2bbb35b125b541f8"},"schema_version":"1.0"},"canonical_sha256":"f203854f9acf1fcb936f0a7fb3aa48356e445fcdaecbdf324429e6fa9601f233","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-18T00:17:48.022838Z","signature_b64":"7J0mQ/95peuyVCW6MH9Fwe4g28Pe93Jc8IHWVaJ+FqIwJKmQW12bnhvzT2PbZg7IUaVAvtGzq1PHxT3sVVcnDQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"f203854f9acf1fcb936f0a7fb3aa48356e445fcdaecbdf324429e6fa9601f233","last_reissued_at":"2026-05-18T00:17:48.022140Z","signature_status":"signed_v1","first_computed_at":"2026-05-18T00:17:48.022140Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1804.08529","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:17:48Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"yhid5+ehsuN17P35uGlTY/ORNvR7g42QppIPS4acxgKBW3kZdoKBOGEjQncxv0Ed2DaefE41uhXdQ73HMlf/BQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-03T22:07:56.470371Z"},"content_sha256":"58e68f635602dee2a2104f014364b28e20103ebcbab54945fe6597be355042ac","schema_version":"1.0","event_id":"sha256:58e68f635602dee2a2104f014364b28e20103ebcbab54945fe6597be355042ac"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2018:6IBYKT42Z4P4XE3PBJ73HKSIGV","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"VectorDefense: Vectorization as a Defense to Adversarial Examples","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":["cs.CR","cs.LG"],"primary_cat":"cs.CV","authors_text":"Anh Nguyen, Brandon Morris, Vishaal Munusamy Kabilan","submitted_at":"2018-04-23T16:04:55Z","abstract_excerpt":"Training deep neural networks on images represented as grids of pixels has brought to light an interesting phenomenon known as adversarial examples. Inspired by how humans reconstruct abstract concepts, we attempt to codify the input bitmap image into a set of compact, interpretable elements to avoid being fooled by the adversarial structures. We take the first step in this direction by experimenting with image vectorization as an input transformation step to map the adversarial examples back into the natural manifold of MNIST handwritten digits. We compare our method vs. state-of-the-art inpu"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1804.08529","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:17:48Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"x6sqA4PesThrYcZ3Xm9ag6jBY1UgLwjyKra0PFGYz+oPMxxK2KHD9z+5UJz9k9SMDWjqEh8Abofi/dYA82NeAg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-03T22:07:56.470748Z"},"content_sha256":"381c2570ff174de0af838ffa360aa04f10918890f4a91de7b489a4ba2c4d2c65","schema_version":"1.0","event_id":"sha256:381c2570ff174de0af838ffa360aa04f10918890f4a91de7b489a4ba2c4d2c65"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/6IBYKT42Z4P4XE3PBJ73HKSIGV/bundle.json","state_url":"https://pith.science/pith/6IBYKT42Z4P4XE3PBJ73HKSIGV/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/6IBYKT42Z4P4XE3PBJ73HKSIGV/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-03T22:07:56Z","links":{"resolver":"https://pith.science/pith/6IBYKT42Z4P4XE3PBJ73HKSIGV","bundle":"https://pith.science/pith/6IBYKT42Z4P4XE3PBJ73HKSIGV/bundle.json","state":"https://pith.science/pith/6IBYKT42Z4P4XE3PBJ73HKSIGV/state.json","well_known_bundle":"https://pith.science/.well-known/pith/6IBYKT42Z4P4XE3PBJ73HKSIGV/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2018:6IBYKT42Z4P4XE3PBJ73HKSIGV","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"67239fddde9c504a474ff69e7608e6051dd94f05e37f284d2bbb35b125b541f8","cross_cats_sorted":["cs.CR","cs.LG"],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CV","submitted_at":"2018-04-23T16:04:55Z","title_canon_sha256":"2168f752349c8fc6733e0b2205fef3e872da207b7db0fda8631587203d4be1b7"},"schema_version":"1.0","source":{"id":"1804.08529","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1804.08529","created_at":"2026-05-18T00:17:48Z"},{"alias_kind":"arxiv_version","alias_value":"1804.08529v1","created_at":"2026-05-18T00:17:48Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1804.08529","created_at":"2026-05-18T00:17:48Z"},{"alias_kind":"pith_short_12","alias_value":"6IBYKT42Z4P4","created_at":"2026-05-18T12:32:08Z"},{"alias_kind":"pith_short_16","alias_value":"6IBYKT42Z4P4XE3P","created_at":"2026-05-18T12:32:08Z"},{"alias_kind":"pith_short_8","alias_value":"6IBYKT42","created_at":"2026-05-18T12:32:08Z"}],"graph_snapshots":[{"event_id":"sha256:381c2570ff174de0af838ffa360aa04f10918890f4a91de7b489a4ba2c4d2c65","target":"graph","created_at":"2026-05-18T00:17:48Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Training deep neural networks on images represented as grids of pixels has brought to light an interesting phenomenon known as adversarial examples. Inspired by how humans reconstruct abstract concepts, we attempt to codify the input bitmap image into a set of compact, interpretable elements to avoid being fooled by the adversarial structures. We take the first step in this direction by experimenting with image vectorization as an input transformation step to map the adversarial examples back into the natural manifold of MNIST handwritten digits. We compare our method vs. state-of-the-art inpu","authors_text":"Anh Nguyen, Brandon Morris, Vishaal Munusamy Kabilan","cross_cats":["cs.CR","cs.LG"],"headline":"","license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CV","submitted_at":"2018-04-23T16:04:55Z","title":"VectorDefense: Vectorization as a Defense to Adversarial Examples"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1804.08529","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:58e68f635602dee2a2104f014364b28e20103ebcbab54945fe6597be355042ac","target":"record","created_at":"2026-05-18T00:17:48Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"67239fddde9c504a474ff69e7608e6051dd94f05e37f284d2bbb35b125b541f8","cross_cats_sorted":["cs.CR","cs.LG"],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CV","submitted_at":"2018-04-23T16:04:55Z","title_canon_sha256":"2168f752349c8fc6733e0b2205fef3e872da207b7db0fda8631587203d4be1b7"},"schema_version":"1.0","source":{"id":"1804.08529","kind":"arxiv","version":1}},"canonical_sha256":"f203854f9acf1fcb936f0a7fb3aa48356e445fcdaecbdf324429e6fa9601f233","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"f203854f9acf1fcb936f0a7fb3aa48356e445fcdaecbdf324429e6fa9601f233","first_computed_at":"2026-05-18T00:17:48.022140Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-18T00:17:48.022140Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"7J0mQ/95peuyVCW6MH9Fwe4g28Pe93Jc8IHWVaJ+FqIwJKmQW12bnhvzT2PbZg7IUaVAvtGzq1PHxT3sVVcnDQ==","signature_status":"signed_v1","signed_at":"2026-05-18T00:17:48.022838Z","signed_message":"canonical_sha256_bytes"},"source_id":"1804.08529","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:58e68f635602dee2a2104f014364b28e20103ebcbab54945fe6597be355042ac","sha256:381c2570ff174de0af838ffa360aa04f10918890f4a91de7b489a4ba2c4d2c65"],"state_sha256":"dc1e09070910abd0cc1f5f1675230a7cfaf8c6db05497d71715547fca205816e"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"cxGT3yPPMxHq9luaOYPUneDfGnCrqCGWJ+cKhRMy5TnwXTHRNKHJXBgf4gfSOI8vOL+f6zY8+bzOU6VX0n15CQ==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-03T22:07:56.472695Z","bundle_sha256":"3ef1c86f5f5082a1fd3efb8ba6112dcc721c1a22c8ab1cc80526b0d3e609c146"}}