{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2021:DOQC7CKROSG6JPKNHYRF3DSE5B","short_pith_number":"pith:DOQC7CKR","schema_version":"1.0","canonical_sha256":"1ba02f8951748de4bd4d3e225d8e44e85e4b115a8185a0c262bb8e1a95442bc5","source":{"kind":"arxiv","id":"2103.08265","version":2},"attestation_state":"computed","paper":{"title":"Constant Random Perturbations Provide Adversarial Robustness with Minimal Effect on Accuracy","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":[],"primary_cat":"cs.LG","authors_text":"Bhiksha Raj, Bronya Roni Chernyak, Joseph Keshet, Tamir Hazan","submitted_at":"2021-03-15T10:44:59Z","abstract_excerpt":"This paper proposes an attack-independent (non-adversarial training) technique for improving adversarial robustness of neural network models, with minimal loss of standard accuracy. We suggest creating a neighborhood around each training example, such that the label is kept constant for all inputs within that neighborhood. Unlike previous work that follows a similar principle, we apply this idea by extending the training set with multiple perturbations for each training example, drawn from within the neighborhood. These perturbations are model independent, and remain constant throughout the en"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2103.08265","kind":"arxiv","version":2},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2021-03-15T10:44:59Z","cross_cats_sorted":[],"title_canon_sha256":"be7ec8499b94b0662232968c311e6f6dc4d0ec0c6bc4fb0ece074361b74ac4f9","abstract_canon_sha256":"0abceed44ce96c8b67bb7072ec746507c1bbc62f0381e13ae015a88e7a50c0aa"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T03:00:51.471285Z","signature_b64":"3Y7lydHu9O/NH1Oa5A88bZtAZgmExy7mhprxQEcKnE1P8RyF3ltPlKEFINY5QLBVfCQAG7I24kimoncO50KJCQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"1ba02f8951748de4bd4d3e225d8e44e85e4b115a8185a0c262bb8e1a95442bc5","last_reissued_at":"2026-07-05T03:00:51.470702Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T03:00:51.470702Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"Constant Random Perturbations Provide Adversarial Robustness with Minimal Effect on Accuracy","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":[],"primary_cat":"cs.LG","authors_text":"Bhiksha Raj, Bronya Roni Chernyak, Joseph Keshet, Tamir Hazan","submitted_at":"2021-03-15T10:44:59Z","abstract_excerpt":"This paper proposes an attack-independent (non-adversarial training) technique for improving adversarial robustness of neural network models, with minimal loss of standard accuracy. We suggest creating a neighborhood around each training example, such that the label is kept constant for all inputs within that neighborhood. Unlike previous work that follows a similar principle, we apply this idea by extending the training set with multiple perturbations for each training example, drawn from within the neighborhood. These perturbations are model independent, and remain constant throughout the en"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2103.08265","kind":"arxiv","version":2},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2103.08265/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2103.08265","created_at":"2026-07-05T03:00:51.470761+00:00"},{"alias_kind":"arxiv_version","alias_value":"2103.08265v2","created_at":"2026-07-05T03:00:51.470761+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2103.08265","created_at":"2026-07-05T03:00:51.470761+00:00"},{"alias_kind":"pith_short_12","alias_value":"DOQC7CKROSG6","created_at":"2026-07-05T03:00:51.470761+00:00"},{"alias_kind":"pith_short_16","alias_value":"DOQC7CKROSG6JPKN","created_at":"2026-07-05T03:00:51.470761+00:00"},{"alias_kind":"pith_short_8","alias_value":"DOQC7CKR","created_at":"2026-07-05T03:00:51.470761+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":0,"internal_anchor_count":0,"sample":[]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/DOQC7CKROSG6JPKNHYRF3DSE5B","json":"https://pith.science/pith/DOQC7CKROSG6JPKNHYRF3DSE5B.json","graph_json":"https://pith.science/api/pith-number/DOQC7CKROSG6JPKNHYRF3DSE5B/graph.json","events_json":"https://pith.science/api/pith-number/DOQC7CKROSG6JPKNHYRF3DSE5B/events.json","paper":"https://pith.science/paper/DOQC7CKR"},"agent_actions":{"view_html":"https://pith.science/pith/DOQC7CKROSG6JPKNHYRF3DSE5B","download_json":"https://pith.science/pith/DOQC7CKROSG6JPKNHYRF3DSE5B.json","view_paper":"https://pith.science/paper/DOQC7CKR","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2103.08265&json=true","fetch_graph":"https://pith.science/api/pith-number/DOQC7CKROSG6JPKNHYRF3DSE5B/graph.json","fetch_events":"https://pith.science/api/pith-number/DOQC7CKROSG6JPKNHYRF3DSE5B/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/DOQC7CKROSG6JPKNHYRF3DSE5B/action/timestamp_anchor","attest_storage":"https://pith.science/pith/DOQC7CKROSG6JPKNHYRF3DSE5B/action/storage_attestation","attest_author":"https://pith.science/pith/DOQC7CKROSG6JPKNHYRF3DSE5B/action/author_attestation","sign_citation":"https://pith.science/pith/DOQC7CKROSG6JPKNHYRF3DSE5B/action/citation_signature","submit_replication":"https://pith.science/pith/DOQC7CKROSG6JPKNHYRF3DSE5B/action/replication_record"}},"created_at":"2026-07-05T03:00:51.470761+00:00","updated_at":"2026-07-05T03:00:51.470761+00:00"}