{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2024:EDXCGWHSUR525L6W5XHLNJ5AAF","short_pith_number":"pith:EDXCGWHS","schema_version":"1.0","canonical_sha256":"20ee2358f2a47baeafd6edceb6a7a0015387186d183a6434e4b6e613365b4194","source":{"kind":"arxiv","id":"2412.11441","version":3},"attestation_state":"computed","paper":{"title":"UIBDiffusion: Universal Imperceptible Backdoor Attack for Diffusion Models","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":["cs.LG"],"primary_cat":"cs.CR","authors_text":"Bingyin Zhao, Biplab Sikdar, Feng Luo, Rui Chu, Yingjie Lao, Yuning Han","submitted_at":"2024-12-16T04:47:55Z","abstract_excerpt":"Recent studies show that diffusion models (DMs) are vulnerable to backdoor attacks. Existing backdoor attacks impose unconcealed triggers (e.g., a gray box and eyeglasses) that contain evident patterns, rendering remarkable attack effects yet easy detection upon human inspection and defensive algorithms. While it is possible to improve stealthiness by reducing the strength of the backdoor, doing so can significantly compromise its generality and effectiveness. In this paper, we propose UIBDiffusion, the universal imperceptible backdoor attack for diffusion models, which allows us to achieve su"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2412.11441","kind":"arxiv","version":3},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2024-12-16T04:47:55Z","cross_cats_sorted":["cs.LG"],"title_canon_sha256":"f61dd8c49be94b739e054c7e9a10d5ebf1e956bcecccb93fc64257e23adfc284","abstract_canon_sha256":"b85b8a2df9e20da7e198ac2fc473433c56a98b71a3916d238e759551966906cb"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T10:21:27.302219Z","signature_b64":"MAqMKoJGWhHxJul0t1gIXN4V1wu6ckTsd9u6I47JV7YJdYULsuWBHrroGCE67OXiYo/PnzP6PwbaMy/WZbBxCw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"20ee2358f2a47baeafd6edceb6a7a0015387186d183a6434e4b6e613365b4194","last_reissued_at":"2026-07-05T10:21:27.301694Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T10:21:27.301694Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"UIBDiffusion: Universal Imperceptible Backdoor Attack for Diffusion Models","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":["cs.LG"],"primary_cat":"cs.CR","authors_text":"Bingyin Zhao, Biplab Sikdar, Feng Luo, Rui Chu, Yingjie Lao, Yuning Han","submitted_at":"2024-12-16T04:47:55Z","abstract_excerpt":"Recent studies show that diffusion models (DMs) are vulnerable to backdoor attacks. Existing backdoor attacks impose unconcealed triggers (e.g., a gray box and eyeglasses) that contain evident patterns, rendering remarkable attack effects yet easy detection upon human inspection and defensive algorithms. While it is possible to improve stealthiness by reducing the strength of the backdoor, doing so can significantly compromise its generality and effectiveness. In this paper, we propose UIBDiffusion, the universal imperceptible backdoor attack for diffusion models, which allows us to achieve su"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2412.11441","kind":"arxiv","version":3},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2412.11441/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2412.11441","created_at":"2026-07-05T10:21:27.301761+00:00"},{"alias_kind":"arxiv_version","alias_value":"2412.11441v3","created_at":"2026-07-05T10:21:27.301761+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2412.11441","created_at":"2026-07-05T10:21:27.301761+00:00"},{"alias_kind":"pith_short_12","alias_value":"EDXCGWHSUR52","created_at":"2026-07-05T10:21:27.301761+00:00"},{"alias_kind":"pith_short_16","alias_value":"EDXCGWHSUR525L6W","created_at":"2026-07-05T10:21:27.301761+00:00"},{"alias_kind":"pith_short_8","alias_value":"EDXCGWHS","created_at":"2026-07-05T10:21:27.301761+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":1,"internal_anchor_count":1,"sample":[{"citing_arxiv_id":"2508.01605","citing_title":"Practical, Generalizable and Robust Backdoor Attacks on Text-to-Image Diffusion Models","ref_index":12,"is_internal_anchor":true}]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/EDXCGWHSUR525L6W5XHLNJ5AAF","json":"https://pith.science/pith/EDXCGWHSUR525L6W5XHLNJ5AAF.json","graph_json":"https://pith.science/api/pith-number/EDXCGWHSUR525L6W5XHLNJ5AAF/graph.json","events_json":"https://pith.science/api/pith-number/EDXCGWHSUR525L6W5XHLNJ5AAF/events.json","paper":"https://pith.science/paper/EDXCGWHS"},"agent_actions":{"view_html":"https://pith.science/pith/EDXCGWHSUR525L6W5XHLNJ5AAF","download_json":"https://pith.science/pith/EDXCGWHSUR525L6W5XHLNJ5AAF.json","view_paper":"https://pith.science/paper/EDXCGWHS","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2412.11441&json=true","fetch_graph":"https://pith.science/api/pith-number/EDXCGWHSUR525L6W5XHLNJ5AAF/graph.json","fetch_events":"https://pith.science/api/pith-number/EDXCGWHSUR525L6W5XHLNJ5AAF/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/EDXCGWHSUR525L6W5XHLNJ5AAF/action/timestamp_anchor","attest_storage":"https://pith.science/pith/EDXCGWHSUR525L6W5XHLNJ5AAF/action/storage_attestation","attest_author":"https://pith.science/pith/EDXCGWHSUR525L6W5XHLNJ5AAF/action/author_attestation","sign_citation":"https://pith.science/pith/EDXCGWHSUR525L6W5XHLNJ5AAF/action/citation_signature","submit_replication":"https://pith.science/pith/EDXCGWHSUR525L6W5XHLNJ5AAF/action/replication_record"}},"created_at":"2026-07-05T10:21:27.301761+00:00","updated_at":"2026-07-05T10:21:27.301761+00:00"}