{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2018:DFTB52OGIJY6VY6PJMZHQVVPF6","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"9ee3e865f919282e32d3423ce2fc177f2b38c40d198857956e8dbb68f5812808","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-06-27T06:12:40Z","title_canon_sha256":"e2f709ba6afb8f0dc3de58883fa59acd551d737279aaa1b6e23eb05595a546d8"},"schema_version":"1.0","source":{"id":"1806.10313","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1806.10313","created_at":"2026-05-18T00:12:12Z"},{"alias_kind":"arxiv_version","alias_value":"1806.10313v1","created_at":"2026-05-18T00:12:12Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1806.10313","created_at":"2026-05-18T00:12:12Z"},{"alias_kind":"pith_short_12","alias_value":"DFTB52OGIJY6","created_at":"2026-05-18T12:32:19Z"},{"alias_kind":"pith_short_16","alias_value":"DFTB52OGIJY6VY6P","created_at":"2026-05-18T12:32:19Z"},{"alias_kind":"pith_short_8","alias_value":"DFTB52OG","created_at":"2026-05-18T12:32:19Z"}],"graph_snapshots":[{"event_id":"sha256:797794139170db950886b29713410c86dc893db9faefdd16c158ce4dee834f8d","target":"graph","created_at":"2026-05-18T00:12:12Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"This paper investigates the piracy problem of deep learning models. Designing and training a well-performing model is generally expensive. However, when releasing them, attackers may reverse engineer the models and pirate their design. This paper, therefore, proposes deep learning obfuscation, aiming at obstructing attackers from pirating a deep learning model. In particular, we focus on obfuscating convolutional neural networks (CNN), a widely employed type of deep learning architectures for image recognition. Our approach obfuscates a CNN model eventually by simulating its feature extractor ","authors_text":"Hui Xu, Irwin King, Michael R. Lyu, Yangfan Zhou, Yuxin Su, Zirui Zhao","cross_cats":[],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-06-27T06:12:40Z","title":"DeepObfuscation: Securing the Structure of Convolutional Neural Networks via Knowledge Distillation"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1806.10313","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:9e9d714977020a8a3afba37c4df64388ca74ab263b66c96fb83099ae8d930b99","target":"record","created_at":"2026-05-18T00:12:12Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"9ee3e865f919282e32d3423ce2fc177f2b38c40d198857956e8dbb68f5812808","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-06-27T06:12:40Z","title_canon_sha256":"e2f709ba6afb8f0dc3de58883fa59acd551d737279aaa1b6e23eb05595a546d8"},"schema_version":"1.0","source":{"id":"1806.10313","kind":"arxiv","version":1}},"canonical_sha256":"19661ee9c64271eae3cf4b327856af2f87eaf01f609c77830592b4a83281e0bf","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"19661ee9c64271eae3cf4b327856af2f87eaf01f609c77830592b4a83281e0bf","first_computed_at":"2026-05-18T00:12:12.844609Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-18T00:12:12.844609Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"wrQ26wPXNwHuWtLU8qz0vSFsgVaTbYkBOb1E/SPIJ7bJ7LpL5w8z9x6V7jf3KhyLXgInDJQMMxbuB5+Vl5F7AA==","signature_status":"signed_v1","signed_at":"2026-05-18T00:12:12.845303Z","signed_message":"canonical_sha256_bytes"},"source_id":"1806.10313","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:9e9d714977020a8a3afba37c4df64388ca74ab263b66c96fb83099ae8d930b99","sha256:797794139170db950886b29713410c86dc893db9faefdd16c158ce4dee834f8d"],"state_sha256":"2881069a644d6e466b470284a05205627899715121f19b748da6970d63f12645"}