{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2018:7VLIQB2VK2MWYOE3EMBK3TWUHE","short_pith_number":"pith:7VLIQB2V","canonical_record":{"source":{"id":"1801.08917","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-01-26T18:03:07Z","cross_cats_sorted":[],"title_canon_sha256":"7636057ff7b42d9d54206d2efa0912280108799c4634b4f3b7aebb1313cdb899","abstract_canon_sha256":"45430b5f35ec7b9e4beb330c78007b6c75a1f894daa6393a12d305f10d7acd8c"},"schema_version":"1.0"},"canonical_sha256":"fd5688075556996c389b2302adced43902e4c1d691e0ab69664394b433b9c6dc","source":{"kind":"arxiv","id":"1801.08917","version":2},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1801.08917","created_at":"2026-05-18T00:24:46Z"},{"alias_kind":"arxiv_version","alias_value":"1801.08917v2","created_at":"2026-05-18T00:24:46Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1801.08917","created_at":"2026-05-18T00:24:46Z"},{"alias_kind":"pith_short_12","alias_value":"7VLIQB2VK2MW","created_at":"2026-05-18T12:32:11Z"},{"alias_kind":"pith_short_16","alias_value":"7VLIQB2VK2MWYOE3","created_at":"2026-05-18T12:32:11Z"},{"alias_kind":"pith_short_8","alias_value":"7VLIQB2V","created_at":"2026-05-18T12:32:11Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2018:7VLIQB2VK2MWYOE3EMBK3TWUHE","target":"record","payload":{"canonical_record":{"source":{"id":"1801.08917","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-01-26T18:03:07Z","cross_cats_sorted":[],"title_canon_sha256":"7636057ff7b42d9d54206d2efa0912280108799c4634b4f3b7aebb1313cdb899","abstract_canon_sha256":"45430b5f35ec7b9e4beb330c78007b6c75a1f894daa6393a12d305f10d7acd8c"},"schema_version":"1.0"},"canonical_sha256":"fd5688075556996c389b2302adced43902e4c1d691e0ab69664394b433b9c6dc","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-18T00:24:46.674460Z","signature_b64":"8HcKdEvQhPmXAowwN9RM/RXHwuz/ZOgaX820lgu+jxGBsbsr7KKQmchrFtXaDpNoTm8WSSAQfDPxoHVq0KomDQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"fd5688075556996c389b2302adced43902e4c1d691e0ab69664394b433b9c6dc","last_reissued_at":"2026-05-18T00:24:46.673684Z","signature_status":"signed_v1","first_computed_at":"2026-05-18T00:24:46.673684Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1801.08917","source_version":2,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:24:46Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"JXjTxvjlmT3MRk18lYsC19swWZ8P7f1KYEDpVc066w3X8wbCAFHqYZ8z7e285VJ7xeBfCAjaS3GCEe48fbWuAg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-28T15:51:12.583907Z"},"content_sha256":"29ab286cf391b8ca7d30a86de132d48d483c014e0ee268848e41366ccbedd2b2","schema_version":"1.0","event_id":"sha256:29ab286cf391b8ca7d30a86de132d48d483c014e0ee268848e41366ccbedd2b2"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2018:7VLIQB2VK2MWYOE3EMBK3TWUHE","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Learning to Evade Static PE Machine Learning Malware Models via Reinforcement Learning","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.CR","authors_text":"Anant Kharkar, Bobby Filar, David Evans, Hyrum S. Anderson, Phil Roth","submitted_at":"2018-01-26T18:03:07Z","abstract_excerpt":"Machine learning is a popular approach to signatureless malware detection because it can generalize to never-before-seen malware families and polymorphic strains. This has resulted in its practical use for either primary detection engines or for supplementary heuristic detection by anti-malware vendors. Recent work in adversarial machine learning has shown that deep learning models are susceptible to gradient-based attacks, whereas non-differentiable models that report a score can be attacked by genetic algorithms that aim to systematically reduce the score. We propose a more general framework"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1801.08917","kind":"arxiv","version":2},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:24:46Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"jjo2D0vYzo0uodarGUpqQ1z/gF8RknqjoeqLYr70epfT56GOdYrP1oHXuRh9Ta5Yt8s//JeLGHLTidV+VMUfDw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-28T15:51:12.584638Z"},"content_sha256":"ce92aea3c25e9b51cb23770c1f576a9c074e67db61697ef7d71126dc51de2f93","schema_version":"1.0","event_id":"sha256:ce92aea3c25e9b51cb23770c1f576a9c074e67db61697ef7d71126dc51de2f93"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/7VLIQB2VK2MWYOE3EMBK3TWUHE/bundle.json","state_url":"https://pith.science/pith/7VLIQB2VK2MWYOE3EMBK3TWUHE/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/7VLIQB2VK2MWYOE3EMBK3TWUHE/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-28T15:51:12Z","links":{"resolver":"https://pith.science/pith/7VLIQB2VK2MWYOE3EMBK3TWUHE","bundle":"https://pith.science/pith/7VLIQB2VK2MWYOE3EMBK3TWUHE/bundle.json","state":"https://pith.science/pith/7VLIQB2VK2MWYOE3EMBK3TWUHE/state.json","well_known_bundle":"https://pith.science/.well-known/pith/7VLIQB2VK2MWYOE3EMBK3TWUHE/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2018:7VLIQB2VK2MWYOE3EMBK3TWUHE","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"45430b5f35ec7b9e4beb330c78007b6c75a1f894daa6393a12d305f10d7acd8c","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-01-26T18:03:07Z","title_canon_sha256":"7636057ff7b42d9d54206d2efa0912280108799c4634b4f3b7aebb1313cdb899"},"schema_version":"1.0","source":{"id":"1801.08917","kind":"arxiv","version":2}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1801.08917","created_at":"2026-05-18T00:24:46Z"},{"alias_kind":"arxiv_version","alias_value":"1801.08917v2","created_at":"2026-05-18T00:24:46Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1801.08917","created_at":"2026-05-18T00:24:46Z"},{"alias_kind":"pith_short_12","alias_value":"7VLIQB2VK2MW","created_at":"2026-05-18T12:32:11Z"},{"alias_kind":"pith_short_16","alias_value":"7VLIQB2VK2MWYOE3","created_at":"2026-05-18T12:32:11Z"},{"alias_kind":"pith_short_8","alias_value":"7VLIQB2V","created_at":"2026-05-18T12:32:11Z"}],"graph_snapshots":[{"event_id":"sha256:ce92aea3c25e9b51cb23770c1f576a9c074e67db61697ef7d71126dc51de2f93","target":"graph","created_at":"2026-05-18T00:24:46Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Machine learning is a popular approach to signatureless malware detection because it can generalize to never-before-seen malware families and polymorphic strains. This has resulted in its practical use for either primary detection engines or for supplementary heuristic detection by anti-malware vendors. Recent work in adversarial machine learning has shown that deep learning models are susceptible to gradient-based attacks, whereas non-differentiable models that report a score can be attacked by genetic algorithms that aim to systematically reduce the score. We propose a more general framework","authors_text":"Anant Kharkar, Bobby Filar, David Evans, Hyrum S. Anderson, Phil Roth","cross_cats":[],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-01-26T18:03:07Z","title":"Learning to Evade Static PE Machine Learning Malware Models via Reinforcement Learning"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1801.08917","kind":"arxiv","version":2},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:29ab286cf391b8ca7d30a86de132d48d483c014e0ee268848e41366ccbedd2b2","target":"record","created_at":"2026-05-18T00:24:46Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"45430b5f35ec7b9e4beb330c78007b6c75a1f894daa6393a12d305f10d7acd8c","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-01-26T18:03:07Z","title_canon_sha256":"7636057ff7b42d9d54206d2efa0912280108799c4634b4f3b7aebb1313cdb899"},"schema_version":"1.0","source":{"id":"1801.08917","kind":"arxiv","version":2}},"canonical_sha256":"fd5688075556996c389b2302adced43902e4c1d691e0ab69664394b433b9c6dc","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"fd5688075556996c389b2302adced43902e4c1d691e0ab69664394b433b9c6dc","first_computed_at":"2026-05-18T00:24:46.673684Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-18T00:24:46.673684Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"8HcKdEvQhPmXAowwN9RM/RXHwuz/ZOgaX820lgu+jxGBsbsr7KKQmchrFtXaDpNoTm8WSSAQfDPxoHVq0KomDQ==","signature_status":"signed_v1","signed_at":"2026-05-18T00:24:46.674460Z","signed_message":"canonical_sha256_bytes"},"source_id":"1801.08917","source_kind":"arxiv","source_version":2}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:29ab286cf391b8ca7d30a86de132d48d483c014e0ee268848e41366ccbedd2b2","sha256:ce92aea3c25e9b51cb23770c1f576a9c074e67db61697ef7d71126dc51de2f93"],"state_sha256":"a98e3c28716d457b1407fb6bb8460b8523f5735923923cfa567eb299c005f1b5"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"QClRDYkNXCPQO2HL/nYrYaKFGQgru76ClUpWubNa/UiNqi1EiiUYLm+dLdXf02SmHeBxD0y9KGUI+B9GukyYAQ==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-28T15:51:12.588625Z","bundle_sha256":"ada84010f8849c5d69f3eecf82547f6c94cdbc2d6251ddf77a0b169b0f52f33b"}}