{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2016:DDZIEIN3N6SN2KRZSJRNVTKSAI","short_pith_number":"pith:DDZIEIN3","canonical_record":{"source":{"id":"1609.00804","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2016-09-03T09:30:51Z","cross_cats_sorted":["cs.GT"],"title_canon_sha256":"5f398c00f6188a6c1e01066e1571480a11ac2f13eceacdffe8b85c634436aa13","abstract_canon_sha256":"2b63181a090a0cd8b7dbf4d114f9e39d0e1a5581fef97890d6f7cad4fe19c86f"},"schema_version":"1.0"},"canonical_sha256":"18f28221bb6fa4dd2a399262dacd52022242dcf60becd05b6ebb84f0094a121e","source":{"kind":"arxiv","id":"1609.00804","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1609.00804","created_at":"2026-05-18T01:05:41Z"},{"alias_kind":"arxiv_version","alias_value":"1609.00804v1","created_at":"2026-05-18T01:05:41Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1609.00804","created_at":"2026-05-18T01:05:41Z"},{"alias_kind":"pith_short_12","alias_value":"DDZIEIN3N6SN","created_at":"2026-05-18T12:30:12Z"},{"alias_kind":"pith_short_16","alias_value":"DDZIEIN3N6SN2KRZ","created_at":"2026-05-18T12:30:12Z"},{"alias_kind":"pith_short_8","alias_value":"DDZIEIN3","created_at":"2026-05-18T12:30:12Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2016:DDZIEIN3N6SN2KRZSJRNVTKSAI","target":"record","payload":{"canonical_record":{"source":{"id":"1609.00804","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2016-09-03T09:30:51Z","cross_cats_sorted":["cs.GT"],"title_canon_sha256":"5f398c00f6188a6c1e01066e1571480a11ac2f13eceacdffe8b85c634436aa13","abstract_canon_sha256":"2b63181a090a0cd8b7dbf4d114f9e39d0e1a5581fef97890d6f7cad4fe19c86f"},"schema_version":"1.0"},"canonical_sha256":"18f28221bb6fa4dd2a399262dacd52022242dcf60becd05b6ebb84f0094a121e","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-18T01:05:41.454282Z","signature_b64":"okjWEufaJ8Wc6riwAypleNW9l0+3XdR/syNN1XjhoADSYaZnNbDydlXtlZKJ5J9sEAbP5m9yI1Bg2/gNu+0XDA==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"18f28221bb6fa4dd2a399262dacd52022242dcf60becd05b6ebb84f0094a121e","last_reissued_at":"2026-05-18T01:05:41.453771Z","signature_status":"signed_v1","first_computed_at":"2026-05-18T01:05:41.453771Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1609.00804","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T01:05:41Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"ekhaxC4Y2xWHcihroay5dvNIeeOOQwqacFGQRA17/A+P8gF8NRjGIFkJuo1US+RM4whdYGUndY9x/feWC7eHAw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-08T02:29:31.413448Z"},"content_sha256":"799f156d045fb01e384037d0fdf1e67ebd240463a8341141dfbaaa0b28e0053b","schema_version":"1.0","event_id":"sha256:799f156d045fb01e384037d0fdf1e67ebd240463a8341141dfbaaa0b28e0053b"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2016:DDZIEIN3N6SN2KRZSJRNVTKSAI","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Randomized Prediction Games for Adversarial Machine Learning","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.GT"],"primary_cat":"cs.LG","authors_text":"Battista Biggio, Fabio Roli, Ignazio Pillai, Marcello Pelillo, Samuel Rota Bul\\`o","submitted_at":"2016-09-03T09:30:51Z","abstract_excerpt":"In spam and malware detection, attackers exploit randomization to obfuscate malicious data and increase their chances of evading detection at test time; e.g., malware code is typically obfuscated using random strings or byte sequences to hide known exploits. Interestingly, randomization has also been proposed to improve security of learning algorithms against evasion attacks, as it results in hiding information about the classifier to the attacker. Recent work has proposed game-theoretical formulations to learn secure classifiers, by simulating different evasion attacks and modifying the class"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1609.00804","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T01:05:41Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"+I5nDL0cCVciphDvRdULHUInkEju+x4jn1bScQVc9LVLibvY2CsXtLMjGqOCX9wx9Q5b76h6dcM/lSX3N3R1Cw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-08T02:29:31.414111Z"},"content_sha256":"b35d47871095ddcf1860e4f560f350960a514b27d5e367118784eca22ba99b6f","schema_version":"1.0","event_id":"sha256:b35d47871095ddcf1860e4f560f350960a514b27d5e367118784eca22ba99b6f"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/DDZIEIN3N6SN2KRZSJRNVTKSAI/bundle.json","state_url":"https://pith.science/pith/DDZIEIN3N6SN2KRZSJRNVTKSAI/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/DDZIEIN3N6SN2KRZSJRNVTKSAI/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-08T02:29:31Z","links":{"resolver":"https://pith.science/pith/DDZIEIN3N6SN2KRZSJRNVTKSAI","bundle":"https://pith.science/pith/DDZIEIN3N6SN2KRZSJRNVTKSAI/bundle.json","state":"https://pith.science/pith/DDZIEIN3N6SN2KRZSJRNVTKSAI/state.json","well_known_bundle":"https://pith.science/.well-known/pith/DDZIEIN3N6SN2KRZSJRNVTKSAI/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2016:DDZIEIN3N6SN2KRZSJRNVTKSAI","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"2b63181a090a0cd8b7dbf4d114f9e39d0e1a5581fef97890d6f7cad4fe19c86f","cross_cats_sorted":["cs.GT"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2016-09-03T09:30:51Z","title_canon_sha256":"5f398c00f6188a6c1e01066e1571480a11ac2f13eceacdffe8b85c634436aa13"},"schema_version":"1.0","source":{"id":"1609.00804","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1609.00804","created_at":"2026-05-18T01:05:41Z"},{"alias_kind":"arxiv_version","alias_value":"1609.00804v1","created_at":"2026-05-18T01:05:41Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1609.00804","created_at":"2026-05-18T01:05:41Z"},{"alias_kind":"pith_short_12","alias_value":"DDZIEIN3N6SN","created_at":"2026-05-18T12:30:12Z"},{"alias_kind":"pith_short_16","alias_value":"DDZIEIN3N6SN2KRZ","created_at":"2026-05-18T12:30:12Z"},{"alias_kind":"pith_short_8","alias_value":"DDZIEIN3","created_at":"2026-05-18T12:30:12Z"}],"graph_snapshots":[{"event_id":"sha256:b35d47871095ddcf1860e4f560f350960a514b27d5e367118784eca22ba99b6f","target":"graph","created_at":"2026-05-18T01:05:41Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"In spam and malware detection, attackers exploit randomization to obfuscate malicious data and increase their chances of evading detection at test time; e.g., malware code is typically obfuscated using random strings or byte sequences to hide known exploits. Interestingly, randomization has also been proposed to improve security of learning algorithms against evasion attacks, as it results in hiding information about the classifier to the attacker. Recent work has proposed game-theoretical formulations to learn secure classifiers, by simulating different evasion attacks and modifying the class","authors_text":"Battista Biggio, Fabio Roli, Ignazio Pillai, Marcello Pelillo, Samuel Rota Bul\\`o","cross_cats":["cs.GT"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2016-09-03T09:30:51Z","title":"Randomized Prediction Games for Adversarial Machine Learning"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1609.00804","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:799f156d045fb01e384037d0fdf1e67ebd240463a8341141dfbaaa0b28e0053b","target":"record","created_at":"2026-05-18T01:05:41Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"2b63181a090a0cd8b7dbf4d114f9e39d0e1a5581fef97890d6f7cad4fe19c86f","cross_cats_sorted":["cs.GT"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2016-09-03T09:30:51Z","title_canon_sha256":"5f398c00f6188a6c1e01066e1571480a11ac2f13eceacdffe8b85c634436aa13"},"schema_version":"1.0","source":{"id":"1609.00804","kind":"arxiv","version":1}},"canonical_sha256":"18f28221bb6fa4dd2a399262dacd52022242dcf60becd05b6ebb84f0094a121e","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"18f28221bb6fa4dd2a399262dacd52022242dcf60becd05b6ebb84f0094a121e","first_computed_at":"2026-05-18T01:05:41.453771Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-18T01:05:41.453771Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"okjWEufaJ8Wc6riwAypleNW9l0+3XdR/syNN1XjhoADSYaZnNbDydlXtlZKJ5J9sEAbP5m9yI1Bg2/gNu+0XDA==","signature_status":"signed_v1","signed_at":"2026-05-18T01:05:41.454282Z","signed_message":"canonical_sha256_bytes"},"source_id":"1609.00804","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:799f156d045fb01e384037d0fdf1e67ebd240463a8341141dfbaaa0b28e0053b","sha256:b35d47871095ddcf1860e4f560f350960a514b27d5e367118784eca22ba99b6f"],"state_sha256":"973cfa59d3a833e685ed93441c120d264652ce1bc468adbb56179e872e0512ba"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"bvUDC5Vqz6I4QRwg5VWPP/EQn1wGHs9cMgX/M9/G6Cg3LHUcO+oOfxc/54XUZuzrgTm1MiXilZCAlMl2zWgIDw==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-08T02:29:31.417746Z","bundle_sha256":"241cfb93d71a4350aab29fe08785d4a9e5342af8132d6e737273bf08b800a4a9"}}