{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2019:6TLVWRCS47P23VDLYQY4IKTMAO","short_pith_number":"pith:6TLVWRCS","canonical_record":{"source":{"id":"1910.00947","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2019-10-01T15:29:07Z","cross_cats_sorted":[],"title_canon_sha256":"5280344b61103fd7cc102c7f350a00fcda2e58f89eca6e12f06026275568225a","abstract_canon_sha256":"11cb358443aa511fad37dbff59ba32b286f1bf671962f901a66213bc541112f6"},"schema_version":"1.0"},"canonical_sha256":"f4d75b4452e7dfadd46bc431c42a6c03b070c0f508930cb80cc4a0f18d19b883","source":{"kind":"arxiv","id":"1910.00947","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1910.00947","created_at":"2026-07-05T00:09:20Z"},{"alias_kind":"arxiv_version","alias_value":"1910.00947v1","created_at":"2026-07-05T00:09:20Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1910.00947","created_at":"2026-07-05T00:09:20Z"},{"alias_kind":"pith_short_12","alias_value":"6TLVWRCS47P2","created_at":"2026-07-05T00:09:20Z"},{"alias_kind":"pith_short_16","alias_value":"6TLVWRCS47P23VDL","created_at":"2026-07-05T00:09:20Z"},{"alias_kind":"pith_short_8","alias_value":"6TLVWRCS","created_at":"2026-07-05T00:09:20Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2019:6TLVWRCS47P23VDLYQY4IKTMAO","target":"record","payload":{"canonical_record":{"source":{"id":"1910.00947","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2019-10-01T15:29:07Z","cross_cats_sorted":[],"title_canon_sha256":"5280344b61103fd7cc102c7f350a00fcda2e58f89eca6e12f06026275568225a","abstract_canon_sha256":"11cb358443aa511fad37dbff59ba32b286f1bf671962f901a66213bc541112f6"},"schema_version":"1.0"},"canonical_sha256":"f4d75b4452e7dfadd46bc431c42a6c03b070c0f508930cb80cc4a0f18d19b883","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T00:09:20.868394Z","signature_b64":"y0a3HRF7/bnRep22Q5bpmWf+5iQ1cBF8lJsi4bUICNGQlvVKU0Hq+cwmtUuCqxE7NhIs/DX2HbbvnXw0ZuO7DQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"f4d75b4452e7dfadd46bc431c42a6c03b070c0f508930cb80cc4a0f18d19b883","last_reissued_at":"2026-07-05T00:09:20.868000Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T00:09:20.868000Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1910.00947","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-07-05T00:09:20Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"baMhMBcsgivkJYsm2pgJRiFSGur1rgo8joAfWdLXWNp5cyF/IvI6QFNeNxVdyKOZmLH0FfR2CWELR5PsRUveAA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-07-05T09:19:05.960127Z"},"content_sha256":"c141dc83445164a1620afd393cd0db6ced7e88a3c9569d9624410a2d2226bd98","schema_version":"1.0","event_id":"sha256:c141dc83445164a1620afd393cd0db6ced7e88a3c9569d9624410a2d2226bd98"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2019:6TLVWRCS47P23VDLYQY4IKTMAO","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Interdiction in Practice -- Hardware Trojan Against a High-Security USB Flash Drive","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.CR","authors_text":"Amir Moradi, Christof Paar, Marc Fyrbiak, Pawel Swierczynski, Philipp Koppe","submitted_at":"2019-10-01T15:29:07Z","abstract_excerpt":"As part of the revelations about the NSA activities, the notion of interdiction has become known to the public: the interception of deliveries to manipulate hardware in a way that backdoors are introduced. Manipulations can occur on the firmware or at hardware level. With respect to hardware, FPGAs are particular interesting targets as they can be altered by manipulating the corresponding bitstream which configures the device. In this paper, we demonstrate the first successful real-world FPGA hardware Trojan insertion into a commercial product. On the target device, a FIPS-140-2 level 2 certif"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1910.00947","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/1910.00947/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-07-05T00:09:20Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"Om6UuXlBTh1DPDWSWR9mnME2B9X7Qlntb61cDy2OMu8xiJ2ydc3VUjjotPGDTFZFVLxnEn+N+0txHT9BYVjeCQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-07-05T09:19:05.960506Z"},"content_sha256":"867593aa7beca11ea5482dce69eae3e958c908abc48238941899d409b6ffcd8c","schema_version":"1.0","event_id":"sha256:867593aa7beca11ea5482dce69eae3e958c908abc48238941899d409b6ffcd8c"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/6TLVWRCS47P23VDLYQY4IKTMAO/bundle.json","state_url":"https://pith.science/pith/6TLVWRCS47P23VDLYQY4IKTMAO/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/6TLVWRCS47P23VDLYQY4IKTMAO/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-07-05T09:19:05Z","links":{"resolver":"https://pith.science/pith/6TLVWRCS47P23VDLYQY4IKTMAO","bundle":"https://pith.science/pith/6TLVWRCS47P23VDLYQY4IKTMAO/bundle.json","state":"https://pith.science/pith/6TLVWRCS47P23VDLYQY4IKTMAO/state.json","well_known_bundle":"https://pith.science/.well-known/pith/6TLVWRCS47P23VDLYQY4IKTMAO/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2019:6TLVWRCS47P23VDLYQY4IKTMAO","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"11cb358443aa511fad37dbff59ba32b286f1bf671962f901a66213bc541112f6","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2019-10-01T15:29:07Z","title_canon_sha256":"5280344b61103fd7cc102c7f350a00fcda2e58f89eca6e12f06026275568225a"},"schema_version":"1.0","source":{"id":"1910.00947","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1910.00947","created_at":"2026-07-05T00:09:20Z"},{"alias_kind":"arxiv_version","alias_value":"1910.00947v1","created_at":"2026-07-05T00:09:20Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1910.00947","created_at":"2026-07-05T00:09:20Z"},{"alias_kind":"pith_short_12","alias_value":"6TLVWRCS47P2","created_at":"2026-07-05T00:09:20Z"},{"alias_kind":"pith_short_16","alias_value":"6TLVWRCS47P23VDL","created_at":"2026-07-05T00:09:20Z"},{"alias_kind":"pith_short_8","alias_value":"6TLVWRCS","created_at":"2026-07-05T00:09:20Z"}],"graph_snapshots":[{"event_id":"sha256:867593aa7beca11ea5482dce69eae3e958c908abc48238941899d409b6ffcd8c","target":"graph","created_at":"2026-07-05T00:09:20Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/1910.00947/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"As part of the revelations about the NSA activities, the notion of interdiction has become known to the public: the interception of deliveries to manipulate hardware in a way that backdoors are introduced. Manipulations can occur on the firmware or at hardware level. With respect to hardware, FPGAs are particular interesting targets as they can be altered by manipulating the corresponding bitstream which configures the device. In this paper, we demonstrate the first successful real-world FPGA hardware Trojan insertion into a commercial product. On the target device, a FIPS-140-2 level 2 certif","authors_text":"Amir Moradi, Christof Paar, Marc Fyrbiak, Pawel Swierczynski, Philipp Koppe","cross_cats":[],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2019-10-01T15:29:07Z","title":"Interdiction in Practice -- Hardware Trojan Against a High-Security USB Flash Drive"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1910.00947","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:c141dc83445164a1620afd393cd0db6ced7e88a3c9569d9624410a2d2226bd98","target":"record","created_at":"2026-07-05T00:09:20Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"11cb358443aa511fad37dbff59ba32b286f1bf671962f901a66213bc541112f6","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2019-10-01T15:29:07Z","title_canon_sha256":"5280344b61103fd7cc102c7f350a00fcda2e58f89eca6e12f06026275568225a"},"schema_version":"1.0","source":{"id":"1910.00947","kind":"arxiv","version":1}},"canonical_sha256":"f4d75b4452e7dfadd46bc431c42a6c03b070c0f508930cb80cc4a0f18d19b883","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"f4d75b4452e7dfadd46bc431c42a6c03b070c0f508930cb80cc4a0f18d19b883","first_computed_at":"2026-07-05T00:09:20.868000Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-07-05T00:09:20.868000Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"y0a3HRF7/bnRep22Q5bpmWf+5iQ1cBF8lJsi4bUICNGQlvVKU0Hq+cwmtUuCqxE7NhIs/DX2HbbvnXw0ZuO7DQ==","signature_status":"signed_v1","signed_at":"2026-07-05T00:09:20.868394Z","signed_message":"canonical_sha256_bytes"},"source_id":"1910.00947","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:c141dc83445164a1620afd393cd0db6ced7e88a3c9569d9624410a2d2226bd98","sha256:867593aa7beca11ea5482dce69eae3e958c908abc48238941899d409b6ffcd8c"],"state_sha256":"900e99a78d8b368efd476fe324dc345b0fba2e91971b7f9f0b0ddb23b7caa908"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"fXUVodoOLiqQhR32v2TwWtCW07sbupWMo0h72Gs/VEmsRzGMHEDKACISYHCy2W0sbFQTYlTzeCwq4mi5LZjgBw==","signed_message":"bundle_sha256_bytes","signed_at":"2026-07-05T09:19:05.962439Z","bundle_sha256":"3a6678da6f4bc3681dfe29e4275a465634c2ffe6dbd3c6987d6fe9d2eab3d810"}}