{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2026:ESMGXRSXEMS3KPKT4WGFELE4R3","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"d2a78c47f3c25d9495e4648e31b3869dbdfca403b548c31abe4be555c6b79f1b","cross_cats_sorted":["cs.LG"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2026-07-01T20:11:06Z","title_canon_sha256":"12cab6401393b787c9a6d7cf7400b81a0300dd4dcab6b7c60383cb1a449c5c77"},"schema_version":"1.0","source":{"id":"2607.01445","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2607.01445","created_at":"2026-07-03T00:17:00Z"},{"alias_kind":"arxiv_version","alias_value":"2607.01445v1","created_at":"2026-07-03T00:17:00Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2607.01445","created_at":"2026-07-03T00:17:00Z"},{"alias_kind":"pith_short_12","alias_value":"ESMGXRSXEMS3","created_at":"2026-07-03T00:17:00Z"},{"alias_kind":"pith_short_16","alias_value":"ESMGXRSXEMS3KPKT","created_at":"2026-07-03T00:17:00Z"},{"alias_kind":"pith_short_8","alias_value":"ESMGXRSX","created_at":"2026-07-03T00:17:00Z"}],"graph_snapshots":[{"event_id":"sha256:be313d239204c7b2cc13a9f0bd3bf6b3345f39da1d6fc87ef9e86a0843c18a47","target":"graph","created_at":"2026-07-03T00:17:00Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/2607.01445/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"Malware poses a critical and ever-evolving threat, and robust and effective systems for detecting and classifying malware are of essential importance. $n$-grams features are among the common static features used in effective machine learning systems for malware, but these features are inherently brittle. We propose an algorithm for constructing more robust features, hamm-grams, which are a special class of regular expressions having a fixed length and single-character wildcards. We devise an efficient algorithm for finding common hamm-grams using a new locality-sensitive hash designed to produ","authors_text":"Derek Everett, Edward Raff, James Holt","cross_cats":["cs.LG"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2026-07-01T20:11:06Z","title":"Hamm-Grams: An Algorithm for Mining Regular Expressions of Bytes"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2607.01445","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:1e974e7bfc6e2f48effd610503469cba269daf46602be5b769dd15b528f96920","target":"record","created_at":"2026-07-03T00:17:00Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"d2a78c47f3c25d9495e4648e31b3869dbdfca403b548c31abe4be555c6b79f1b","cross_cats_sorted":["cs.LG"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2026-07-01T20:11:06Z","title_canon_sha256":"12cab6401393b787c9a6d7cf7400b81a0300dd4dcab6b7c60383cb1a449c5c77"},"schema_version":"1.0","source":{"id":"2607.01445","kind":"arxiv","version":1}},"canonical_sha256":"24986bc6572325b53d53e58c522c9c8ed16e2a0b1973b24d703acb5ac98d6f79","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"24986bc6572325b53d53e58c522c9c8ed16e2a0b1973b24d703acb5ac98d6f79","first_computed_at":"2026-07-03T00:17:00.443932Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-07-03T00:17:00.443932Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"om9fgU9UUMfZkypy2cR3476P/VpYNSlLHlXxCtwo/Wm6NZLXnE1DMKF6W1MSeO2C2GDuIXsbaEAm7eoDv3xBAQ==","signature_status":"signed_v1","signed_at":"2026-07-03T00:17:00.444348Z","signed_message":"canonical_sha256_bytes"},"source_id":"2607.01445","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:1e974e7bfc6e2f48effd610503469cba269daf46602be5b769dd15b528f96920","sha256:be313d239204c7b2cc13a9f0bd3bf6b3345f39da1d6fc87ef9e86a0843c18a47"],"state_sha256":"479ab10df1d268f3590d5c70537814f7062ec4e50e275a297a56745239088b36"}