{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2024:AHBRGI2S6GHSNUII6WYLL76QDM","short_pith_number":"pith:AHBRGI2S","schema_version":"1.0","canonical_sha256":"01c3132352f18f26d108f5b0b5ffd01b19a8f0857575a5a1306fb1771b293620","source":{"kind":"arxiv","id":"2408.12312","version":1},"attestation_state":"computed","paper":{"title":"MakeupAttack: Feature Space Black-box Backdoor Attack on Face Recognition via Makeup Transfer","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.CV","authors_text":"Lihua Jing, Ming Sun, Rui Wang, Zixuan Zhu","submitted_at":"2024-08-22T11:39:36Z","abstract_excerpt":"Backdoor attacks pose a significant threat to the training process of deep neural networks (DNNs). As a widely-used DNN-based application in real-world scenarios, face recognition systems once implanted into the backdoor, may cause serious consequences. Backdoor research on face recognition is still in its early stages, and the existing backdoor triggers are relatively simple and visible. Furthermore, due to the perceptibility, diversity, and similarity of facial datasets, many state-of-the-art backdoor attacks lose effectiveness on face recognition tasks. In this work, we propose a novel feat"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2408.12312","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2024-08-22T11:39:36Z","cross_cats_sorted":[],"title_canon_sha256":"c508e457eeaef555dd5c733b7f748afb0d9e6cf035432ccf2fec5704b371c926","abstract_canon_sha256":"a4ae45a158fe066514fb060e1693ec42217a355d3a2b2d622488e68b5c0594b0"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T08:58:07.404710Z","signature_b64":"lfv0gBSrZ8HGoP2b4NsQib/SkwHVRWTGoFL02Kol6fh0FP9wkAryIDC18dWzUJVe8qtQ3tTgUHhY6yTbmKKYDA==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"01c3132352f18f26d108f5b0b5ffd01b19a8f0857575a5a1306fb1771b293620","last_reissued_at":"2026-07-05T08:58:07.404219Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T08:58:07.404219Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"MakeupAttack: Feature Space Black-box Backdoor Attack on Face Recognition via Makeup Transfer","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.CV","authors_text":"Lihua Jing, Ming Sun, Rui Wang, Zixuan Zhu","submitted_at":"2024-08-22T11:39:36Z","abstract_excerpt":"Backdoor attacks pose a significant threat to the training process of deep neural networks (DNNs). As a widely-used DNN-based application in real-world scenarios, face recognition systems once implanted into the backdoor, may cause serious consequences. Backdoor research on face recognition is still in its early stages, and the existing backdoor triggers are relatively simple and visible. Furthermore, due to the perceptibility, diversity, and similarity of facial datasets, many state-of-the-art backdoor attacks lose effectiveness on face recognition tasks. In this work, we propose a novel feat"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2408.12312","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2408.12312/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2408.12312","created_at":"2026-07-05T08:58:07.404277+00:00"},{"alias_kind":"arxiv_version","alias_value":"2408.12312v1","created_at":"2026-07-05T08:58:07.404277+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2408.12312","created_at":"2026-07-05T08:58:07.404277+00:00"},{"alias_kind":"pith_short_12","alias_value":"AHBRGI2S6GHS","created_at":"2026-07-05T08:58:07.404277+00:00"},{"alias_kind":"pith_short_16","alias_value":"AHBRGI2S6GHSNUII","created_at":"2026-07-05T08:58:07.404277+00:00"},{"alias_kind":"pith_short_8","alias_value":"AHBRGI2S","created_at":"2026-07-05T08:58:07.404277+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":1,"internal_anchor_count":0,"sample":[{"citing_arxiv_id":"2502.20650","citing_title":"Gungnir: Exploiting Stylistic Features in Images for Backdoor Attacks on Diffusion Models","ref_index":19,"is_internal_anchor":false}]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/AHBRGI2S6GHSNUII6WYLL76QDM","json":"https://pith.science/pith/AHBRGI2S6GHSNUII6WYLL76QDM.json","graph_json":"https://pith.science/api/pith-number/AHBRGI2S6GHSNUII6WYLL76QDM/graph.json","events_json":"https://pith.science/api/pith-number/AHBRGI2S6GHSNUII6WYLL76QDM/events.json","paper":"https://pith.science/paper/AHBRGI2S"},"agent_actions":{"view_html":"https://pith.science/pith/AHBRGI2S6GHSNUII6WYLL76QDM","download_json":"https://pith.science/pith/AHBRGI2S6GHSNUII6WYLL76QDM.json","view_paper":"https://pith.science/paper/AHBRGI2S","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2408.12312&json=true","fetch_graph":"https://pith.science/api/pith-number/AHBRGI2S6GHSNUII6WYLL76QDM/graph.json","fetch_events":"https://pith.science/api/pith-number/AHBRGI2S6GHSNUII6WYLL76QDM/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/AHBRGI2S6GHSNUII6WYLL76QDM/action/timestamp_anchor","attest_storage":"https://pith.science/pith/AHBRGI2S6GHSNUII6WYLL76QDM/action/storage_attestation","attest_author":"https://pith.science/pith/AHBRGI2S6GHSNUII6WYLL76QDM/action/author_attestation","sign_citation":"https://pith.science/pith/AHBRGI2S6GHSNUII6WYLL76QDM/action/citation_signature","submit_replication":"https://pith.science/pith/AHBRGI2S6GHSNUII6WYLL76QDM/action/replication_record"}},"created_at":"2026-07-05T08:58:07.404277+00:00","updated_at":"2026-07-05T08:58:07.404277+00:00"}