{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2026:F3OCR6VOG3LDVETD57JY34U4QL","short_pith_number":"pith:F3OCR6VO","schema_version":"1.0","canonical_sha256":"2edc28faae36d63a9263efd38df29c82d890f6baf66f367d7433dc87c9fd9d91","source":{"kind":"arxiv","id":"2606.20254","version":1},"attestation_state":"computed","paper":{"title":"Quantization as a Malicious Task: Removing Quantization-Conditioned Backdoors via Task Arithmetic","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":[],"primary_cat":"cs.CR","authors_text":"Chia-Mu Yu, Kaihsun Yang, Min-Yan Tsai","submitted_at":"2026-06-18T14:05:19Z","abstract_excerpt":"Model quantization is widely adopted to reduce memory usage and inference cost when deploying deep neural networks on resource-constrained devices. However, recent studies have revealed a new security threat known as Quantization-Conditioned Backdoors (QCBs), where a model behaves normally in full precision but activates malicious behavior only after quantization. Existing defenses typically modify quantization procedures or correct activation statistics, often introducing additional computational overhead or relying on specific quantization settings. Here, we present QVec, a parameter-space p"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2606.20254","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2026-06-18T14:05:19Z","cross_cats_sorted":[],"title_canon_sha256":"b4d8b2d7cb105eef94aaf39a8d9f0fad063a8040576519cc76d537fa9f2eebc7","abstract_canon_sha256":"a1e3168728afdf1dbebb2ec3f72c3be571d3e898d701b64b7dddc51f6fcbf9dd"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-06-19T16:13:07.017621Z","signature_b64":"Kg/zIIM1Ukndg5EJyw7P3GRyS4a5p8XSth+u7SXZT1fNbM9riaE2tZBFHiaLVuwL0yK2/5HDCCufBB9uHVSvBw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"2edc28faae36d63a9263efd38df29c82d890f6baf66f367d7433dc87c9fd9d91","last_reissued_at":"2026-06-19T16:13:07.017273Z","signature_status":"signed_v1","first_computed_at":"2026-06-19T16:13:07.017273Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"Quantization as a Malicious Task: Removing Quantization-Conditioned Backdoors via Task Arithmetic","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":[],"primary_cat":"cs.CR","authors_text":"Chia-Mu Yu, Kaihsun Yang, Min-Yan Tsai","submitted_at":"2026-06-18T14:05:19Z","abstract_excerpt":"Model quantization is widely adopted to reduce memory usage and inference cost when deploying deep neural networks on resource-constrained devices. However, recent studies have revealed a new security threat known as Quantization-Conditioned Backdoors (QCBs), where a model behaves normally in full precision but activates malicious behavior only after quantization. Existing defenses typically modify quantization procedures or correct activation statistics, often introducing additional computational overhead or relying on specific quantization settings. Here, we present QVec, a parameter-space p"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2606.20254","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2606.20254/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2606.20254","created_at":"2026-06-19T16:13:07.017342+00:00"},{"alias_kind":"arxiv_version","alias_value":"2606.20254v1","created_at":"2026-06-19T16:13:07.017342+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2606.20254","created_at":"2026-06-19T16:13:07.017342+00:00"},{"alias_kind":"pith_short_12","alias_value":"F3OCR6VOG3LD","created_at":"2026-06-19T16:13:07.017342+00:00"},{"alias_kind":"pith_short_16","alias_value":"F3OCR6VOG3LDVETD","created_at":"2026-06-19T16:13:07.017342+00:00"},{"alias_kind":"pith_short_8","alias_value":"F3OCR6VO","created_at":"2026-06-19T16:13:07.017342+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":0,"internal_anchor_count":0,"sample":[]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/F3OCR6VOG3LDVETD57JY34U4QL","json":"https://pith.science/pith/F3OCR6VOG3LDVETD57JY34U4QL.json","graph_json":"https://pith.science/api/pith-number/F3OCR6VOG3LDVETD57JY34U4QL/graph.json","events_json":"https://pith.science/api/pith-number/F3OCR6VOG3LDVETD57JY34U4QL/events.json","paper":"https://pith.science/paper/F3OCR6VO"},"agent_actions":{"view_html":"https://pith.science/pith/F3OCR6VOG3LDVETD57JY34U4QL","download_json":"https://pith.science/pith/F3OCR6VOG3LDVETD57JY34U4QL.json","view_paper":"https://pith.science/paper/F3OCR6VO","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2606.20254&json=true","fetch_graph":"https://pith.science/api/pith-number/F3OCR6VOG3LDVETD57JY34U4QL/graph.json","fetch_events":"https://pith.science/api/pith-number/F3OCR6VOG3LDVETD57JY34U4QL/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/F3OCR6VOG3LDVETD57JY34U4QL/action/timestamp_anchor","attest_storage":"https://pith.science/pith/F3OCR6VOG3LDVETD57JY34U4QL/action/storage_attestation","attest_author":"https://pith.science/pith/F3OCR6VOG3LDVETD57JY34U4QL/action/author_attestation","sign_citation":"https://pith.science/pith/F3OCR6VOG3LDVETD57JY34U4QL/action/citation_signature","submit_replication":"https://pith.science/pith/F3OCR6VOG3LDVETD57JY34U4QL/action/replication_record"}},"created_at":"2026-06-19T16:13:07.017342+00:00","updated_at":"2026-06-19T16:13:07.017342+00:00"}