{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2015:DWUMX7CVJ7KRIABEUUDH3SEH2F","short_pith_number":"pith:DWUMX7CV","canonical_record":{"source":{"id":"1504.01693","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2015-04-07T18:09:11Z","cross_cats_sorted":["cs.HC"],"title_canon_sha256":"9d22bf3e7fc0d83732d7011eaf77ed05ca2749b5f9fa6ece304954a3c112a772","abstract_canon_sha256":"41709351a632841ac83a31bf77e387a00bef16d49897d4ab999b0d0448b52c2c"},"schema_version":"1.0"},"canonical_sha256":"1da8cbfc554fd5140024a5067dc887d168068521c04a7e82167d3994db9b7bdc","source":{"kind":"arxiv","id":"1504.01693","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1504.01693","created_at":"2026-05-18T02:19:26Z"},{"alias_kind":"arxiv_version","alias_value":"1504.01693v1","created_at":"2026-05-18T02:19:26Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1504.01693","created_at":"2026-05-18T02:19:26Z"},{"alias_kind":"pith_short_12","alias_value":"DWUMX7CVJ7KR","created_at":"2026-05-18T12:29:17Z"},{"alias_kind":"pith_short_16","alias_value":"DWUMX7CVJ7KRIABE","created_at":"2026-05-18T12:29:17Z"},{"alias_kind":"pith_short_8","alias_value":"DWUMX7CV","created_at":"2026-05-18T12:29:17Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2015:DWUMX7CVJ7KRIABEUUDH3SEH2F","target":"record","payload":{"canonical_record":{"source":{"id":"1504.01693","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2015-04-07T18:09:11Z","cross_cats_sorted":["cs.HC"],"title_canon_sha256":"9d22bf3e7fc0d83732d7011eaf77ed05ca2749b5f9fa6ece304954a3c112a772","abstract_canon_sha256":"41709351a632841ac83a31bf77e387a00bef16d49897d4ab999b0d0448b52c2c"},"schema_version":"1.0"},"canonical_sha256":"1da8cbfc554fd5140024a5067dc887d168068521c04a7e82167d3994db9b7bdc","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-18T02:19:26.427232Z","signature_b64":"qRB3AIUjlHUQ5Ixx9mlTBJTimJJkwabHDgu0XBJDYzf0G/yYPciYdDk2ud969hvL8el82JZoiI0pCOaG+R5kAw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"1da8cbfc554fd5140024a5067dc887d168068521c04a7e82167d3994db9b7bdc","last_reissued_at":"2026-05-18T02:19:26.426438Z","signature_status":"signed_v1","first_computed_at":"2026-05-18T02:19:26.426438Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1504.01693","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T02:19:26Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"lLP5aYfgvJVrwBB0YuGLw7KcLcPDMZc67VFlzVpdgHPSqp5gm+QNL3gZSdJBR+7ta69AiLTMv8t9fJJVg1nwBg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-27T21:35:23.966564Z"},"content_sha256":"e10fa510073c32c22cf82eeaaed305df7b1f61d8e7b7e9485bbfb72491d7049d","schema_version":"1.0","event_id":"sha256:e10fa510073c32c22cf82eeaaed305df7b1f61d8e7b7e9485bbfb72491d7049d"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2015:DWUMX7CVJ7KRIABEUUDH3SEH2F","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Security Toolbox for Detecting Novel and Sophisticated Android Malware","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.HC"],"primary_cat":"cs.CR","authors_text":"Benjamin Holland, Jon Mathews, Nikhil Ranade, Suresh Kothari, Tom Deering","submitted_at":"2015-04-07T18:09:11Z","abstract_excerpt":"This paper presents a demo of our Security Toolbox to detect novel malware in Android apps. This Toolbox is developed through our recent research project funded by the DARPA Automated Program Analysis for Cybersecurity (APAC) project. The adversarial challenge (\"Red\") teams in the DARPA APAC program are tasked with designing sophisticated malware to test the bounds of malware detection technology being developed by the research and development (\"Blue\") teams. Our research group, a Blue team in the DARPA APAC program, proposed a \"human-in-the-loop program analysis\" approach to detect malware gi"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1504.01693","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T02:19:26Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"V6d41Kv3xleDCl1kaV7glpBf3owgoJQBXt0lBk6fyB1E+Hn00gtK7Ne1nQHg2BLeeC0m6g7f92Jg2rIXWDIGBQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-27T21:35:23.966903Z"},"content_sha256":"b4f22910053794437be0d421c7ab03de1cb1a815a984d4fc04f5682ca42534c2","schema_version":"1.0","event_id":"sha256:b4f22910053794437be0d421c7ab03de1cb1a815a984d4fc04f5682ca42534c2"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/DWUMX7CVJ7KRIABEUUDH3SEH2F/bundle.json","state_url":"https://pith.science/pith/DWUMX7CVJ7KRIABEUUDH3SEH2F/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/DWUMX7CVJ7KRIABEUUDH3SEH2F/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-27T21:35:23Z","links":{"resolver":"https://pith.science/pith/DWUMX7CVJ7KRIABEUUDH3SEH2F","bundle":"https://pith.science/pith/DWUMX7CVJ7KRIABEUUDH3SEH2F/bundle.json","state":"https://pith.science/pith/DWUMX7CVJ7KRIABEUUDH3SEH2F/state.json","well_known_bundle":"https://pith.science/.well-known/pith/DWUMX7CVJ7KRIABEUUDH3SEH2F/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2015:DWUMX7CVJ7KRIABEUUDH3SEH2F","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"41709351a632841ac83a31bf77e387a00bef16d49897d4ab999b0d0448b52c2c","cross_cats_sorted":["cs.HC"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2015-04-07T18:09:11Z","title_canon_sha256":"9d22bf3e7fc0d83732d7011eaf77ed05ca2749b5f9fa6ece304954a3c112a772"},"schema_version":"1.0","source":{"id":"1504.01693","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1504.01693","created_at":"2026-05-18T02:19:26Z"},{"alias_kind":"arxiv_version","alias_value":"1504.01693v1","created_at":"2026-05-18T02:19:26Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1504.01693","created_at":"2026-05-18T02:19:26Z"},{"alias_kind":"pith_short_12","alias_value":"DWUMX7CVJ7KR","created_at":"2026-05-18T12:29:17Z"},{"alias_kind":"pith_short_16","alias_value":"DWUMX7CVJ7KRIABE","created_at":"2026-05-18T12:29:17Z"},{"alias_kind":"pith_short_8","alias_value":"DWUMX7CV","created_at":"2026-05-18T12:29:17Z"}],"graph_snapshots":[{"event_id":"sha256:b4f22910053794437be0d421c7ab03de1cb1a815a984d4fc04f5682ca42534c2","target":"graph","created_at":"2026-05-18T02:19:26Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"This paper presents a demo of our Security Toolbox to detect novel malware in Android apps. This Toolbox is developed through our recent research project funded by the DARPA Automated Program Analysis for Cybersecurity (APAC) project. The adversarial challenge (\"Red\") teams in the DARPA APAC program are tasked with designing sophisticated malware to test the bounds of malware detection technology being developed by the research and development (\"Blue\") teams. Our research group, a Blue team in the DARPA APAC program, proposed a \"human-in-the-loop program analysis\" approach to detect malware gi","authors_text":"Benjamin Holland, Jon Mathews, Nikhil Ranade, Suresh Kothari, Tom Deering","cross_cats":["cs.HC"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2015-04-07T18:09:11Z","title":"Security Toolbox for Detecting Novel and Sophisticated Android Malware"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1504.01693","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:e10fa510073c32c22cf82eeaaed305df7b1f61d8e7b7e9485bbfb72491d7049d","target":"record","created_at":"2026-05-18T02:19:26Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"41709351a632841ac83a31bf77e387a00bef16d49897d4ab999b0d0448b52c2c","cross_cats_sorted":["cs.HC"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2015-04-07T18:09:11Z","title_canon_sha256":"9d22bf3e7fc0d83732d7011eaf77ed05ca2749b5f9fa6ece304954a3c112a772"},"schema_version":"1.0","source":{"id":"1504.01693","kind":"arxiv","version":1}},"canonical_sha256":"1da8cbfc554fd5140024a5067dc887d168068521c04a7e82167d3994db9b7bdc","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"1da8cbfc554fd5140024a5067dc887d168068521c04a7e82167d3994db9b7bdc","first_computed_at":"2026-05-18T02:19:26.426438Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-18T02:19:26.426438Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"qRB3AIUjlHUQ5Ixx9mlTBJTimJJkwabHDgu0XBJDYzf0G/yYPciYdDk2ud969hvL8el82JZoiI0pCOaG+R5kAw==","signature_status":"signed_v1","signed_at":"2026-05-18T02:19:26.427232Z","signed_message":"canonical_sha256_bytes"},"source_id":"1504.01693","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:e10fa510073c32c22cf82eeaaed305df7b1f61d8e7b7e9485bbfb72491d7049d","sha256:b4f22910053794437be0d421c7ab03de1cb1a815a984d4fc04f5682ca42534c2"],"state_sha256":"6c3bc75ab6b10c0f14813592a2bcd2dccfafaf7bf86e5eb3b4b4771e49c2c8b1"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"mhaIHVirtClwhBbm6qgWhpcwyL3+SG2jgefYU7b9mQJO67NCqKN4n7W69qQuL6725K2ad9G9UxnDSZYWiBBBBg==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-27T21:35:23.968881Z","bundle_sha256":"c5588b94c99d36d4eb8dbcea1f560be1b5873a08e603664513f4a3b46a006194"}}