{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2026:EJ6VNRYUF4E5QJEJD4XHIS6J3S","short_pith_number":"pith:EJ6VNRYU","canonical_record":{"source":{"id":"2603.07551","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.SD","submitted_at":"2026-03-08T09:29:55Z","cross_cats_sorted":["cs.AI"],"title_canon_sha256":"633ecdf58236f59b40347f20a77d60f1d5faf1efcd39d9639ec66029482ca25a","abstract_canon_sha256":"6d16229d99003be901b06fbd5dcc8208df1f1d295a29a1ab65eec82f8b8012c1"},"schema_version":"1.0"},"canonical_sha256":"227d56c7142f09d824891f2e744bc9dc83c1da9c3595c5f87c9b0ed1aa64e1ee","source":{"kind":"arxiv","id":"2603.07551","version":2},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2603.07551","created_at":"2026-06-01T01:02:36Z"},{"alias_kind":"arxiv_version","alias_value":"2603.07551v2","created_at":"2026-06-01T01:02:36Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2603.07551","created_at":"2026-06-01T01:02:36Z"},{"alias_kind":"pith_short_12","alias_value":"EJ6VNRYUF4E5","created_at":"2026-06-01T01:02:36Z"},{"alias_kind":"pith_short_16","alias_value":"EJ6VNRYUF4E5QJEJ","created_at":"2026-06-01T01:02:36Z"},{"alias_kind":"pith_short_8","alias_value":"EJ6VNRYU","created_at":"2026-06-01T01:02:36Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2026:EJ6VNRYUF4E5QJEJD4XHIS6J3S","target":"record","payload":{"canonical_record":{"source":{"id":"2603.07551","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.SD","submitted_at":"2026-03-08T09:29:55Z","cross_cats_sorted":["cs.AI"],"title_canon_sha256":"633ecdf58236f59b40347f20a77d60f1d5faf1efcd39d9639ec66029482ca25a","abstract_canon_sha256":"6d16229d99003be901b06fbd5dcc8208df1f1d295a29a1ab65eec82f8b8012c1"},"schema_version":"1.0"},"canonical_sha256":"227d56c7142f09d824891f2e744bc9dc83c1da9c3595c5f87c9b0ed1aa64e1ee","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-06-01T01:02:36.402560Z","signature_b64":"zGnSTyu3v6m+Hfbj3MYQZQRMdfkoQGuomXm3EvFi1wQSkf9nZsTVaFzhzW0CExGYEYSHPHBxhuaknq9IhTxTDA==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"227d56c7142f09d824891f2e744bc9dc83c1da9c3595c5f87c9b0ed1aa64e1ee","last_reissued_at":"2026-06-01T01:02:36.401190Z","signature_status":"signed_v1","first_computed_at":"2026-06-01T01:02:36.401190Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"2603.07551","source_version":2,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-06-01T01:02:36Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"nQ7lxEC2sQYQZL3zm2rRsXFhWtQz5TEUAym09zXX5+TTvrgmKS4j+dUOAseiBICkM3cyLqE8lzwJJrIyW3VPDQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-05T16:07:23.734733Z"},"content_sha256":"ce2b56e27580770f4461aa4b61062d9346f9b819dcac59ea47d15be91dac9eb1","schema_version":"1.0","event_id":"sha256:ce2b56e27580770f4461aa4b61062d9346f9b819dcac59ea47d15be91dac9eb1"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2026:EJ6VNRYUF4E5QJEJD4XHIS6J3S","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Targeted Speaker Poisoning Framework in Zero-Shot Text-to-Speech","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.AI"],"primary_cat":"cs.SD","authors_text":"Sai Praneeth Karimireddy, Shrikanth Narayanan, Thanapat Trachu, Thanathai Lertpetchpun","submitted_at":"2026-03-08T09:29:55Z","abstract_excerpt":"Zero-shot Text-to-Speech (TTS) voice cloning poses severe privacy risks, demanding the removal of specific speaker identities from trained TTS models. Conventional machine unlearning is insufficient in this context, as zero-shot TTS can dynamically reconstruct voices from just reference prompts. We formalize this task as Speech Generation Speaker Poisoning (SGSP), in which we modify trained models to prevent the generation of specific identities while preserving utility for other speakers. We evaluate inference-time filtering and parameter-modification baselines across 1, 15, and 100 forgotten"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2603.07551","kind":"arxiv","version":2},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2603.07551/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-06-01T01:02:36Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"rucWULTvYymno5USXWOknA2fAdgB649PC+OjAtsk+zDj17X1CIbIpolU7MmKRoZC7J1shN/8MTWgTZPZWI4EDQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-05T16:07:23.735124Z"},"content_sha256":"3c8fbf54d390dc386aad462c6af49d367e2e9d9e929c1fa9a5802f90f956b667","schema_version":"1.0","event_id":"sha256:3c8fbf54d390dc386aad462c6af49d367e2e9d9e929c1fa9a5802f90f956b667"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/EJ6VNRYUF4E5QJEJD4XHIS6J3S/bundle.json","state_url":"https://pith.science/pith/EJ6VNRYUF4E5QJEJD4XHIS6J3S/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/EJ6VNRYUF4E5QJEJD4XHIS6J3S/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-05T16:07:23Z","links":{"resolver":"https://pith.science/pith/EJ6VNRYUF4E5QJEJD4XHIS6J3S","bundle":"https://pith.science/pith/EJ6VNRYUF4E5QJEJD4XHIS6J3S/bundle.json","state":"https://pith.science/pith/EJ6VNRYUF4E5QJEJD4XHIS6J3S/state.json","well_known_bundle":"https://pith.science/.well-known/pith/EJ6VNRYUF4E5QJEJD4XHIS6J3S/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2026:EJ6VNRYUF4E5QJEJD4XHIS6J3S","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"6d16229d99003be901b06fbd5dcc8208df1f1d295a29a1ab65eec82f8b8012c1","cross_cats_sorted":["cs.AI"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.SD","submitted_at":"2026-03-08T09:29:55Z","title_canon_sha256":"633ecdf58236f59b40347f20a77d60f1d5faf1efcd39d9639ec66029482ca25a"},"schema_version":"1.0","source":{"id":"2603.07551","kind":"arxiv","version":2}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2603.07551","created_at":"2026-06-01T01:02:36Z"},{"alias_kind":"arxiv_version","alias_value":"2603.07551v2","created_at":"2026-06-01T01:02:36Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2603.07551","created_at":"2026-06-01T01:02:36Z"},{"alias_kind":"pith_short_12","alias_value":"EJ6VNRYUF4E5","created_at":"2026-06-01T01:02:36Z"},{"alias_kind":"pith_short_16","alias_value":"EJ6VNRYUF4E5QJEJ","created_at":"2026-06-01T01:02:36Z"},{"alias_kind":"pith_short_8","alias_value":"EJ6VNRYU","created_at":"2026-06-01T01:02:36Z"}],"graph_snapshots":[{"event_id":"sha256:3c8fbf54d390dc386aad462c6af49d367e2e9d9e929c1fa9a5802f90f956b667","target":"graph","created_at":"2026-06-01T01:02:36Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/2603.07551/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"Zero-shot Text-to-Speech (TTS) voice cloning poses severe privacy risks, demanding the removal of specific speaker identities from trained TTS models. Conventional machine unlearning is insufficient in this context, as zero-shot TTS can dynamically reconstruct voices from just reference prompts. We formalize this task as Speech Generation Speaker Poisoning (SGSP), in which we modify trained models to prevent the generation of specific identities while preserving utility for other speakers. We evaluate inference-time filtering and parameter-modification baselines across 1, 15, and 100 forgotten","authors_text":"Sai Praneeth Karimireddy, Shrikanth Narayanan, Thanapat Trachu, Thanathai Lertpetchpun","cross_cats":["cs.AI"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.SD","submitted_at":"2026-03-08T09:29:55Z","title":"Targeted Speaker Poisoning Framework in Zero-Shot Text-to-Speech"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2603.07551","kind":"arxiv","version":2},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:ce2b56e27580770f4461aa4b61062d9346f9b819dcac59ea47d15be91dac9eb1","target":"record","created_at":"2026-06-01T01:02:36Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"6d16229d99003be901b06fbd5dcc8208df1f1d295a29a1ab65eec82f8b8012c1","cross_cats_sorted":["cs.AI"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.SD","submitted_at":"2026-03-08T09:29:55Z","title_canon_sha256":"633ecdf58236f59b40347f20a77d60f1d5faf1efcd39d9639ec66029482ca25a"},"schema_version":"1.0","source":{"id":"2603.07551","kind":"arxiv","version":2}},"canonical_sha256":"227d56c7142f09d824891f2e744bc9dc83c1da9c3595c5f87c9b0ed1aa64e1ee","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"227d56c7142f09d824891f2e744bc9dc83c1da9c3595c5f87c9b0ed1aa64e1ee","first_computed_at":"2026-06-01T01:02:36.401190Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-06-01T01:02:36.401190Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"zGnSTyu3v6m+Hfbj3MYQZQRMdfkoQGuomXm3EvFi1wQSkf9nZsTVaFzhzW0CExGYEYSHPHBxhuaknq9IhTxTDA==","signature_status":"signed_v1","signed_at":"2026-06-01T01:02:36.402560Z","signed_message":"canonical_sha256_bytes"},"source_id":"2603.07551","source_kind":"arxiv","source_version":2}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:ce2b56e27580770f4461aa4b61062d9346f9b819dcac59ea47d15be91dac9eb1","sha256:3c8fbf54d390dc386aad462c6af49d367e2e9d9e929c1fa9a5802f90f956b667"],"state_sha256":"96a508b9411ca93a50e8e2a5085e330a5dcb0dc63f876314cb949666a875a333"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"FnhtDCWT3Oc6vlNuORNGxeDd9lu/MCtxBqswGLJ59ubGDySQKQhobKTbD0HLjranAa/t5so7rHFFgJoVHG+TDw==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-05T16:07:23.737294Z","bundle_sha256":"c15d9bd797b45e90b0b5f2dea19c65ad8e557726bf52cf48b14a83c150670961"}}