{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2017:CAXPHNVXTA6P27EKMHHICC7MCP","short_pith_number":"pith:CAXPHNVX","canonical_record":{"source":{"id":"1711.01991","kind":"arxiv","version":3},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2017-11-06T16:22:54Z","cross_cats_sorted":[],"title_canon_sha256":"8ac3e54d34d6effe465416c36a91f452656fc934604fcbf90be1652c346d1542","abstract_canon_sha256":"30912c7c5b527ac3f953d24186326f361db90fc954924fa35d7196e8fb7604c4"},"schema_version":"1.0"},"canonical_sha256":"102ef3b6b7983cfd7c8a61ce810bec13e6204729f5f64e3d8703472be33d926e","source":{"kind":"arxiv","id":"1711.01991","version":3},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1711.01991","created_at":"2026-05-18T00:22:15Z"},{"alias_kind":"arxiv_version","alias_value":"1711.01991v3","created_at":"2026-05-18T00:22:15Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1711.01991","created_at":"2026-05-18T00:22:15Z"},{"alias_kind":"pith_short_12","alias_value":"CAXPHNVXTA6P","created_at":"2026-05-18T12:31:10Z"},{"alias_kind":"pith_short_16","alias_value":"CAXPHNVXTA6P27EK","created_at":"2026-05-18T12:31:10Z"},{"alias_kind":"pith_short_8","alias_value":"CAXPHNVX","created_at":"2026-05-18T12:31:10Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2017:CAXPHNVXTA6P27EKMHHICC7MCP","target":"record","payload":{"canonical_record":{"source":{"id":"1711.01991","kind":"arxiv","version":3},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2017-11-06T16:22:54Z","cross_cats_sorted":[],"title_canon_sha256":"8ac3e54d34d6effe465416c36a91f452656fc934604fcbf90be1652c346d1542","abstract_canon_sha256":"30912c7c5b527ac3f953d24186326f361db90fc954924fa35d7196e8fb7604c4"},"schema_version":"1.0"},"canonical_sha256":"102ef3b6b7983cfd7c8a61ce810bec13e6204729f5f64e3d8703472be33d926e","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-18T00:22:15.888899Z","signature_b64":"W84Fw5K96TJNPBUUJ6DOiBMNRS0W86Rh+WkqLUa/ngEx2Ib32xw5YtQLqpRxAHc/CG6cq+i0zj93OLv5xk4ECA==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"102ef3b6b7983cfd7c8a61ce810bec13e6204729f5f64e3d8703472be33d926e","last_reissued_at":"2026-05-18T00:22:15.888220Z","signature_status":"signed_v1","first_computed_at":"2026-05-18T00:22:15.888220Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1711.01991","source_version":3,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:22:15Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"l879u9PrS5c0T0GAkYGqGFvfLmD/7eJb0Oy5v7qdFVf+U9uLBuoiZW9MQa0Z6MwGk40p2mjxASeuIMah/MBoBg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-29T21:47:20.283377Z"},"content_sha256":"c937a8257770e0556c49ab9f2a492d1b3edcc3f362ec105b560a91d73c6016d0","schema_version":"1.0","event_id":"sha256:c937a8257770e0556c49ab9f2a492d1b3edcc3f362ec105b560a91d73c6016d0"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2017:CAXPHNVXTA6P27EKMHHICC7MCP","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Mitigating Adversarial Effects Through Randomization","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.CV","authors_text":"Alan Yuille, Cihang Xie, Jianyu Wang, Zhishuai Zhang, Zhou Ren","submitted_at":"2017-11-06T16:22:54Z","abstract_excerpt":"Convolutional neural networks have demonstrated high accuracy on various tasks in recent years. However, they are extremely vulnerable to adversarial examples. For example, imperceptible perturbations added to clean images can cause convolutional neural networks to fail. In this paper, we propose to utilize randomization at inference time to mitigate adversarial effects. Specifically, we use two randomization operations: random resizing, which resizes the input images to a random size, and random padding, which pads zeros around the input images in a random manner. Extensive experiments demons"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1711.01991","kind":"arxiv","version":3},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:22:15Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"QL0j/t/471A/dTj5Vcz3lRJ5sIh7y12YDRcASFNUUe7Fcqrlsbcbxxpx/uIFZ42AW7UYcZMDMXeophHiiVg0Ag==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-29T21:47:20.283788Z"},"content_sha256":"45910dd3d33fbc28618e2726a267d9c0afbad6f2f188ff7a4886eb12dec83f96","schema_version":"1.0","event_id":"sha256:45910dd3d33fbc28618e2726a267d9c0afbad6f2f188ff7a4886eb12dec83f96"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/CAXPHNVXTA6P27EKMHHICC7MCP/bundle.json","state_url":"https://pith.science/pith/CAXPHNVXTA6P27EKMHHICC7MCP/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/CAXPHNVXTA6P27EKMHHICC7MCP/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-29T21:47:20Z","links":{"resolver":"https://pith.science/pith/CAXPHNVXTA6P27EKMHHICC7MCP","bundle":"https://pith.science/pith/CAXPHNVXTA6P27EKMHHICC7MCP/bundle.json","state":"https://pith.science/pith/CAXPHNVXTA6P27EKMHHICC7MCP/state.json","well_known_bundle":"https://pith.science/.well-known/pith/CAXPHNVXTA6P27EKMHHICC7MCP/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2017:CAXPHNVXTA6P27EKMHHICC7MCP","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"30912c7c5b527ac3f953d24186326f361db90fc954924fa35d7196e8fb7604c4","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2017-11-06T16:22:54Z","title_canon_sha256":"8ac3e54d34d6effe465416c36a91f452656fc934604fcbf90be1652c346d1542"},"schema_version":"1.0","source":{"id":"1711.01991","kind":"arxiv","version":3}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1711.01991","created_at":"2026-05-18T00:22:15Z"},{"alias_kind":"arxiv_version","alias_value":"1711.01991v3","created_at":"2026-05-18T00:22:15Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1711.01991","created_at":"2026-05-18T00:22:15Z"},{"alias_kind":"pith_short_12","alias_value":"CAXPHNVXTA6P","created_at":"2026-05-18T12:31:10Z"},{"alias_kind":"pith_short_16","alias_value":"CAXPHNVXTA6P27EK","created_at":"2026-05-18T12:31:10Z"},{"alias_kind":"pith_short_8","alias_value":"CAXPHNVX","created_at":"2026-05-18T12:31:10Z"}],"graph_snapshots":[{"event_id":"sha256:45910dd3d33fbc28618e2726a267d9c0afbad6f2f188ff7a4886eb12dec83f96","target":"graph","created_at":"2026-05-18T00:22:15Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Convolutional neural networks have demonstrated high accuracy on various tasks in recent years. However, they are extremely vulnerable to adversarial examples. For example, imperceptible perturbations added to clean images can cause convolutional neural networks to fail. In this paper, we propose to utilize randomization at inference time to mitigate adversarial effects. Specifically, we use two randomization operations: random resizing, which resizes the input images to a random size, and random padding, which pads zeros around the input images in a random manner. Extensive experiments demons","authors_text":"Alan Yuille, Cihang Xie, Jianyu Wang, Zhishuai Zhang, Zhou Ren","cross_cats":[],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2017-11-06T16:22:54Z","title":"Mitigating Adversarial Effects Through Randomization"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1711.01991","kind":"arxiv","version":3},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:c937a8257770e0556c49ab9f2a492d1b3edcc3f362ec105b560a91d73c6016d0","target":"record","created_at":"2026-05-18T00:22:15Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"30912c7c5b527ac3f953d24186326f361db90fc954924fa35d7196e8fb7604c4","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2017-11-06T16:22:54Z","title_canon_sha256":"8ac3e54d34d6effe465416c36a91f452656fc934604fcbf90be1652c346d1542"},"schema_version":"1.0","source":{"id":"1711.01991","kind":"arxiv","version":3}},"canonical_sha256":"102ef3b6b7983cfd7c8a61ce810bec13e6204729f5f64e3d8703472be33d926e","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"102ef3b6b7983cfd7c8a61ce810bec13e6204729f5f64e3d8703472be33d926e","first_computed_at":"2026-05-18T00:22:15.888220Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-18T00:22:15.888220Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"W84Fw5K96TJNPBUUJ6DOiBMNRS0W86Rh+WkqLUa/ngEx2Ib32xw5YtQLqpRxAHc/CG6cq+i0zj93OLv5xk4ECA==","signature_status":"signed_v1","signed_at":"2026-05-18T00:22:15.888899Z","signed_message":"canonical_sha256_bytes"},"source_id":"1711.01991","source_kind":"arxiv","source_version":3}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:c937a8257770e0556c49ab9f2a492d1b3edcc3f362ec105b560a91d73c6016d0","sha256:45910dd3d33fbc28618e2726a267d9c0afbad6f2f188ff7a4886eb12dec83f96"],"state_sha256":"2181a6393fdf48a1d67c10fd08d62cb134f0c74a841bf82eb669bb6c635cf0cb"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"PkWpiPwk6dd7VI9MvXmMcxCod5SxSbEnHptUnsLDFS88EeXkK+6j68xjNInoh4FEZO8vhiE/S22hTshnJ7tQBg==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-29T21:47:20.287833Z","bundle_sha256":"3ecc3670bd782fdab4c642281316e08afc67367362c4e72c7a0c0044b7df85ee"}}