{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2020:CQQALJTHQ5SE6TX647ZV3F4YDO","short_pith_number":"pith:CQQALJTH","schema_version":"1.0","canonical_sha256":"142005a66787644f4efee7f35d97981b8d76e2c36199b7416c79bdd12805c11b","source":{"kind":"arxiv","id":"2004.10162","version":1},"attestation_state":"computed","paper":{"title":"EMPIR: Ensembles of Mixed Precision Deep Networks for Increased Robustness against Adversarial Attacks","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.CV","stat.ML"],"primary_cat":"cs.LG","authors_text":"Anand Raghunathan, Balaraman Ravindran, Sanchari Sen","submitted_at":"2020-04-21T17:17:09Z","abstract_excerpt":"Ensuring robustness of Deep Neural Networks (DNNs) is crucial to their adoption in safety-critical applications such as self-driving cars, drones, and healthcare. Notably, DNNs are vulnerable to adversarial attacks in which small input perturbations can produce catastrophic misclassifications. In this work, we propose EMPIR, ensembles of quantized DNN models with different numerical precisions, as a new approach to increase robustness against adversarial attacks. EMPIR is based on the observation that quantized neural networks often demonstrate much higher robustness to adversarial attacks tha"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2004.10162","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2020-04-21T17:17:09Z","cross_cats_sorted":["cs.CV","stat.ML"],"title_canon_sha256":"647d47567ae265f29cb81511873901ff903821286e7bcffb22e7fd7f91dc856f","abstract_canon_sha256":"3b805af1371f5deef7d1eddda21214eb3bcd601d9f8163932776575a85390262"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T00:56:58.012788Z","signature_b64":"e6SZGjdclg2MnXziKv4GPLwoJ8NIWtUB4J1TlF5hEJCUTtcUaPGIBHlWqDDDdwJKw3ihtu30tVxsKqSb5XbvBg==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"142005a66787644f4efee7f35d97981b8d76e2c36199b7416c79bdd12805c11b","last_reissued_at":"2026-07-05T00:56:58.012213Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T00:56:58.012213Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"EMPIR: Ensembles of Mixed Precision Deep Networks for Increased Robustness against Adversarial Attacks","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.CV","stat.ML"],"primary_cat":"cs.LG","authors_text":"Anand Raghunathan, Balaraman Ravindran, Sanchari Sen","submitted_at":"2020-04-21T17:17:09Z","abstract_excerpt":"Ensuring robustness of Deep Neural Networks (DNNs) is crucial to their adoption in safety-critical applications such as self-driving cars, drones, and healthcare. Notably, DNNs are vulnerable to adversarial attacks in which small input perturbations can produce catastrophic misclassifications. In this work, we propose EMPIR, ensembles of quantized DNN models with different numerical precisions, as a new approach to increase robustness against adversarial attacks. EMPIR is based on the observation that quantized neural networks often demonstrate much higher robustness to adversarial attacks tha"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2004.10162","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2004.10162/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2004.10162","created_at":"2026-07-05T00:56:58.012273+00:00"},{"alias_kind":"arxiv_version","alias_value":"2004.10162v1","created_at":"2026-07-05T00:56:58.012273+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2004.10162","created_at":"2026-07-05T00:56:58.012273+00:00"},{"alias_kind":"pith_short_12","alias_value":"CQQALJTHQ5SE","created_at":"2026-07-05T00:56:58.012273+00:00"},{"alias_kind":"pith_short_16","alias_value":"CQQALJTHQ5SE6TX6","created_at":"2026-07-05T00:56:58.012273+00:00"},{"alias_kind":"pith_short_8","alias_value":"CQQALJTH","created_at":"2026-07-05T00:56:58.012273+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":1,"internal_anchor_count":1,"sample":[{"citing_arxiv_id":"2411.15246","citing_title":"Exploring the Robustness and Transferability of Patch-Based Adversarial Attacks in Quantized Neural Networks","ref_index":31,"is_internal_anchor":true}]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/CQQALJTHQ5SE6TX647ZV3F4YDO","json":"https://pith.science/pith/CQQALJTHQ5SE6TX647ZV3F4YDO.json","graph_json":"https://pith.science/api/pith-number/CQQALJTHQ5SE6TX647ZV3F4YDO/graph.json","events_json":"https://pith.science/api/pith-number/CQQALJTHQ5SE6TX647ZV3F4YDO/events.json","paper":"https://pith.science/paper/CQQALJTH"},"agent_actions":{"view_html":"https://pith.science/pith/CQQALJTHQ5SE6TX647ZV3F4YDO","download_json":"https://pith.science/pith/CQQALJTHQ5SE6TX647ZV3F4YDO.json","view_paper":"https://pith.science/paper/CQQALJTH","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2004.10162&json=true","fetch_graph":"https://pith.science/api/pith-number/CQQALJTHQ5SE6TX647ZV3F4YDO/graph.json","fetch_events":"https://pith.science/api/pith-number/CQQALJTHQ5SE6TX647ZV3F4YDO/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/CQQALJTHQ5SE6TX647ZV3F4YDO/action/timestamp_anchor","attest_storage":"https://pith.science/pith/CQQALJTHQ5SE6TX647ZV3F4YDO/action/storage_attestation","attest_author":"https://pith.science/pith/CQQALJTHQ5SE6TX647ZV3F4YDO/action/author_attestation","sign_citation":"https://pith.science/pith/CQQALJTHQ5SE6TX647ZV3F4YDO/action/citation_signature","submit_replication":"https://pith.science/pith/CQQALJTHQ5SE6TX647ZV3F4YDO/action/replication_record"}},"created_at":"2026-07-05T00:56:58.012273+00:00","updated_at":"2026-07-05T00:56:58.012273+00:00"}