{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2023:EXH4ADSNJF3NZZOOJE7NZH4CHB","short_pith_number":"pith:EXH4ADSN","schema_version":"1.0","canonical_sha256":"25cfc00e4d4976dce5ce493edc9f82386a8623bac36f7ace47edcd5eceffac78","source":{"kind":"arxiv","id":"2306.15705","version":1},"attestation_state":"computed","paper":{"title":"On the Universal Adversarial Perturbations for Efficient Data-free Adversarial Detection","license":"http://creativecommons.org/licenses/by-sa/4.0/","headline":"","cross_cats":["cs.LG"],"primary_cat":"cs.CL","authors_text":"Jin Ma, Qi Zhang, Shihan Dou, Songyang Gao, Xuanjing Huang, Ying Shan","submitted_at":"2023-06-27T02:54:07Z","abstract_excerpt":"Detecting adversarial samples that are carefully crafted to fool the model is a critical step to socially-secure applications. However, existing adversarial detection methods require access to sufficient training data, which brings noteworthy concerns regarding privacy leakage and generalizability. In this work, we validate that the adversarial sample generated by attack algorithms is strongly related to a specific vector in the high-dimensional inputs. Such vectors, namely UAPs (Universal Adversarial Perturbations), can be calculated without original training data. Based on this discovery, we"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2306.15705","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by-sa/4.0/","primary_cat":"cs.CL","submitted_at":"2023-06-27T02:54:07Z","cross_cats_sorted":["cs.LG"],"title_canon_sha256":"b9ebef5a452d14289bc286ce945efbd27476235385eaa0364be5c366fad9f4bd","abstract_canon_sha256":"a3d082ccd5bd87e0b678396aff8aadcbe0a189d38b559eadc01a4be7dda500ad"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T06:25:43.479920Z","signature_b64":"PBQywys03I0P1bJkvV/uqIkcS/iAbSf+riNovISN+m9xUp4cTckxc2YVtjqAXFksJOCJC/XiVUP6ZiBAz//CDw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"25cfc00e4d4976dce5ce493edc9f82386a8623bac36f7ace47edcd5eceffac78","last_reissued_at":"2026-07-05T06:25:43.479514Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T06:25:43.479514Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"On the Universal Adversarial Perturbations for Efficient Data-free Adversarial Detection","license":"http://creativecommons.org/licenses/by-sa/4.0/","headline":"","cross_cats":["cs.LG"],"primary_cat":"cs.CL","authors_text":"Jin Ma, Qi Zhang, Shihan Dou, Songyang Gao, Xuanjing Huang, Ying Shan","submitted_at":"2023-06-27T02:54:07Z","abstract_excerpt":"Detecting adversarial samples that are carefully crafted to fool the model is a critical step to socially-secure applications. However, existing adversarial detection methods require access to sufficient training data, which brings noteworthy concerns regarding privacy leakage and generalizability. In this work, we validate that the adversarial sample generated by attack algorithms is strongly related to a specific vector in the high-dimensional inputs. Such vectors, namely UAPs (Universal Adversarial Perturbations), can be calculated without original training data. Based on this discovery, we"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2306.15705","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2306.15705/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2306.15705","created_at":"2026-07-05T06:25:43.479572+00:00"},{"alias_kind":"arxiv_version","alias_value":"2306.15705v1","created_at":"2026-07-05T06:25:43.479572+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2306.15705","created_at":"2026-07-05T06:25:43.479572+00:00"},{"alias_kind":"pith_short_12","alias_value":"EXH4ADSNJF3N","created_at":"2026-07-05T06:25:43.479572+00:00"},{"alias_kind":"pith_short_16","alias_value":"EXH4ADSNJF3NZZOO","created_at":"2026-07-05T06:25:43.479572+00:00"},{"alias_kind":"pith_short_8","alias_value":"EXH4ADSN","created_at":"2026-07-05T06:25:43.479572+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":0,"internal_anchor_count":0,"sample":[]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/EXH4ADSNJF3NZZOOJE7NZH4CHB","json":"https://pith.science/pith/EXH4ADSNJF3NZZOOJE7NZH4CHB.json","graph_json":"https://pith.science/api/pith-number/EXH4ADSNJF3NZZOOJE7NZH4CHB/graph.json","events_json":"https://pith.science/api/pith-number/EXH4ADSNJF3NZZOOJE7NZH4CHB/events.json","paper":"https://pith.science/paper/EXH4ADSN"},"agent_actions":{"view_html":"https://pith.science/pith/EXH4ADSNJF3NZZOOJE7NZH4CHB","download_json":"https://pith.science/pith/EXH4ADSNJF3NZZOOJE7NZH4CHB.json","view_paper":"https://pith.science/paper/EXH4ADSN","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2306.15705&json=true","fetch_graph":"https://pith.science/api/pith-number/EXH4ADSNJF3NZZOOJE7NZH4CHB/graph.json","fetch_events":"https://pith.science/api/pith-number/EXH4ADSNJF3NZZOOJE7NZH4CHB/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/EXH4ADSNJF3NZZOOJE7NZH4CHB/action/timestamp_anchor","attest_storage":"https://pith.science/pith/EXH4ADSNJF3NZZOOJE7NZH4CHB/action/storage_attestation","attest_author":"https://pith.science/pith/EXH4ADSNJF3NZZOOJE7NZH4CHB/action/author_attestation","sign_citation":"https://pith.science/pith/EXH4ADSNJF3NZZOOJE7NZH4CHB/action/citation_signature","submit_replication":"https://pith.science/pith/EXH4ADSNJF3NZZOOJE7NZH4CHB/action/replication_record"}},"created_at":"2026-07-05T06:25:43.479572+00:00","updated_at":"2026-07-05T06:25:43.479572+00:00"}