{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2018:7DG4AV43NQG77SUAUAYFD5JR6N","short_pith_number":"pith:7DG4AV43","canonical_record":{"source":{"id":"1810.10337","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2018-10-16T17:47:07Z","cross_cats_sorted":["cs.LG","stat.ML"],"title_canon_sha256":"a223b9060f8b5ad283ccd69a29d08a6ae42c05f811cd5d66017420018bb36bdd","abstract_canon_sha256":"288bdc6b885f603aa8fc86eab53ef23f0246c13b50d98046bbdb48a8b1ce64e0"},"schema_version":"1.0"},"canonical_sha256":"f8cdc0579b6c0dffca80a03051f531f344bd1b2c6002a0d47c0a441dc93e0aca","source":{"kind":"arxiv","id":"1810.10337","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1810.10337","created_at":"2026-05-18T00:02:23Z"},{"alias_kind":"arxiv_version","alias_value":"1810.10337v1","created_at":"2026-05-18T00:02:23Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1810.10337","created_at":"2026-05-18T00:02:23Z"},{"alias_kind":"pith_short_12","alias_value":"7DG4AV43NQG7","created_at":"2026-05-18T12:32:11Z"},{"alias_kind":"pith_short_16","alias_value":"7DG4AV43NQG77SUA","created_at":"2026-05-18T12:32:11Z"},{"alias_kind":"pith_short_8","alias_value":"7DG4AV43","created_at":"2026-05-18T12:32:11Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2018:7DG4AV43NQG77SUAUAYFD5JR6N","target":"record","payload":{"canonical_record":{"source":{"id":"1810.10337","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2018-10-16T17:47:07Z","cross_cats_sorted":["cs.LG","stat.ML"],"title_canon_sha256":"a223b9060f8b5ad283ccd69a29d08a6ae42c05f811cd5d66017420018bb36bdd","abstract_canon_sha256":"288bdc6b885f603aa8fc86eab53ef23f0246c13b50d98046bbdb48a8b1ce64e0"},"schema_version":"1.0"},"canonical_sha256":"f8cdc0579b6c0dffca80a03051f531f344bd1b2c6002a0d47c0a441dc93e0aca","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-18T00:02:23.487705Z","signature_b64":"rcoGrdg8SHiENn/f9ZlNpQ9B6zvXaIsdBme96hkYT/D4AbqqCfkewtJcNxCY8ms0irnuLEEbsUlExkEAodR/DA==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"f8cdc0579b6c0dffca80a03051f531f344bd1b2c6002a0d47c0a441dc93e0aca","last_reissued_at":"2026-05-18T00:02:23.487180Z","signature_status":"signed_v1","first_computed_at":"2026-05-18T00:02:23.487180Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1810.10337","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:02:23Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"cegjMsSlUtt+jFF15RKiptNBA+asiEtLYAilJIlq0AtWLFsWaq+/qQ8OQRR4Q3ea9QkszL/nxrrS9y49EwksCg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-31T01:34:55.004640Z"},"content_sha256":"af19b95b82e627fc8bba6f54c4336e55ef8a256536fe22d70b6a738afbc83563","schema_version":"1.0","event_id":"sha256:af19b95b82e627fc8bba6f54c4336e55ef8a256536fe22d70b6a738afbc83563"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2018:7DG4AV43NQG77SUAUAYFD5JR6N","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Projecting Trouble: Light Based Adversarial Attacks on Deep Learning Classifiers","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.LG","stat.ML"],"primary_cat":"cs.CV","authors_text":"Nicole Nichols, Robert Jasper","submitted_at":"2018-10-16T17:47:07Z","abstract_excerpt":"This work demonstrates a physical attack on a deep learning image classification system using projected light onto a physical scene. Prior work is dominated by techniques for creating adversarial examples which directly manipulate the digital input of the classifier. Such an attack is limited to scenarios where the adversary can directly update the inputs to the classifier. This could happen by intercepting and modifying the inputs to an online API such as Clarifai or Cloud Vision. Such limitations have led to a vein of research around physical attacks where objects are constructed to be inher"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1810.10337","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:02:23Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"r7VnpGiqcZYlofPY3JwyS2QT6O4K8MD5es3OU7IAoIHlbHfXztGQ1WyRvIWPmzgC9ndVEZgBQwU1pyny7nKkBg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-31T01:34:55.005243Z"},"content_sha256":"4bd81f405347a77d15176cb9613f31ede75254494ba498bee67a70502283e2a7","schema_version":"1.0","event_id":"sha256:4bd81f405347a77d15176cb9613f31ede75254494ba498bee67a70502283e2a7"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/7DG4AV43NQG77SUAUAYFD5JR6N/bundle.json","state_url":"https://pith.science/pith/7DG4AV43NQG77SUAUAYFD5JR6N/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/7DG4AV43NQG77SUAUAYFD5JR6N/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-31T01:34:55Z","links":{"resolver":"https://pith.science/pith/7DG4AV43NQG77SUAUAYFD5JR6N","bundle":"https://pith.science/pith/7DG4AV43NQG77SUAUAYFD5JR6N/bundle.json","state":"https://pith.science/pith/7DG4AV43NQG77SUAUAYFD5JR6N/state.json","well_known_bundle":"https://pith.science/.well-known/pith/7DG4AV43NQG77SUAUAYFD5JR6N/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2018:7DG4AV43NQG77SUAUAYFD5JR6N","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"288bdc6b885f603aa8fc86eab53ef23f0246c13b50d98046bbdb48a8b1ce64e0","cross_cats_sorted":["cs.LG","stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2018-10-16T17:47:07Z","title_canon_sha256":"a223b9060f8b5ad283ccd69a29d08a6ae42c05f811cd5d66017420018bb36bdd"},"schema_version":"1.0","source":{"id":"1810.10337","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1810.10337","created_at":"2026-05-18T00:02:23Z"},{"alias_kind":"arxiv_version","alias_value":"1810.10337v1","created_at":"2026-05-18T00:02:23Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1810.10337","created_at":"2026-05-18T00:02:23Z"},{"alias_kind":"pith_short_12","alias_value":"7DG4AV43NQG7","created_at":"2026-05-18T12:32:11Z"},{"alias_kind":"pith_short_16","alias_value":"7DG4AV43NQG77SUA","created_at":"2026-05-18T12:32:11Z"},{"alias_kind":"pith_short_8","alias_value":"7DG4AV43","created_at":"2026-05-18T12:32:11Z"}],"graph_snapshots":[{"event_id":"sha256:4bd81f405347a77d15176cb9613f31ede75254494ba498bee67a70502283e2a7","target":"graph","created_at":"2026-05-18T00:02:23Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"This work demonstrates a physical attack on a deep learning image classification system using projected light onto a physical scene. Prior work is dominated by techniques for creating adversarial examples which directly manipulate the digital input of the classifier. Such an attack is limited to scenarios where the adversary can directly update the inputs to the classifier. This could happen by intercepting and modifying the inputs to an online API such as Clarifai or Cloud Vision. Such limitations have led to a vein of research around physical attacks where objects are constructed to be inher","authors_text":"Nicole Nichols, Robert Jasper","cross_cats":["cs.LG","stat.ML"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2018-10-16T17:47:07Z","title":"Projecting Trouble: Light Based Adversarial Attacks on Deep Learning Classifiers"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1810.10337","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:af19b95b82e627fc8bba6f54c4336e55ef8a256536fe22d70b6a738afbc83563","target":"record","created_at":"2026-05-18T00:02:23Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"288bdc6b885f603aa8fc86eab53ef23f0246c13b50d98046bbdb48a8b1ce64e0","cross_cats_sorted":["cs.LG","stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2018-10-16T17:47:07Z","title_canon_sha256":"a223b9060f8b5ad283ccd69a29d08a6ae42c05f811cd5d66017420018bb36bdd"},"schema_version":"1.0","source":{"id":"1810.10337","kind":"arxiv","version":1}},"canonical_sha256":"f8cdc0579b6c0dffca80a03051f531f344bd1b2c6002a0d47c0a441dc93e0aca","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"f8cdc0579b6c0dffca80a03051f531f344bd1b2c6002a0d47c0a441dc93e0aca","first_computed_at":"2026-05-18T00:02:23.487180Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-18T00:02:23.487180Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"rcoGrdg8SHiENn/f9ZlNpQ9B6zvXaIsdBme96hkYT/D4AbqqCfkewtJcNxCY8ms0irnuLEEbsUlExkEAodR/DA==","signature_status":"signed_v1","signed_at":"2026-05-18T00:02:23.487705Z","signed_message":"canonical_sha256_bytes"},"source_id":"1810.10337","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:af19b95b82e627fc8bba6f54c4336e55ef8a256536fe22d70b6a738afbc83563","sha256:4bd81f405347a77d15176cb9613f31ede75254494ba498bee67a70502283e2a7"],"state_sha256":"8201fcebc879c5042df8f2bec6a1addda796e7e59842c40ab3ef29e99c68a29b"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"r2lptY7JdswBF12u5IwbE6ZhKJC5pw20TJL+b/hk9Ki3DYBH9i7BfvrE9LDIqwjKITWlU7lhwsHot68JpaJxCg==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-31T01:34:55.007416Z","bundle_sha256":"132762907cd463613e2c4f9be85815345b030ef82084dc19212d2d7a7f2f1ab2"}}