{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2019:F7ASXEPG3VKY3YAM7Q6VU4EFKZ","short_pith_number":"pith:F7ASXEPG","canonical_record":{"source":{"id":"1901.10513","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-01-29T20:01:39Z","cross_cats_sorted":["cs.CV","stat.ML"],"title_canon_sha256":"47205923828b5222dbf80d3f26e63f03fcc1a1a7a94a1e3c662579a9c08a4251","abstract_canon_sha256":"87a129e8d4ebaaaa4a7a4d591539dddd1932e48b190afc1571da02ea5d4f74cb"},"schema_version":"1.0"},"canonical_sha256":"2fc12b91e6dd558de00cfc3d5a70855650e5b7136f905f25c027666c4467346b","source":{"kind":"arxiv","id":"1901.10513","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1901.10513","created_at":"2026-05-17T23:55:06Z"},{"alias_kind":"arxiv_version","alias_value":"1901.10513v1","created_at":"2026-05-17T23:55:06Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1901.10513","created_at":"2026-05-17T23:55:06Z"},{"alias_kind":"pith_short_12","alias_value":"F7ASXEPG3VKY","created_at":"2026-05-18T12:33:15Z"},{"alias_kind":"pith_short_16","alias_value":"F7ASXEPG3VKY3YAM","created_at":"2026-05-18T12:33:15Z"},{"alias_kind":"pith_short_8","alias_value":"F7ASXEPG","created_at":"2026-05-18T12:33:15Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2019:F7ASXEPG3VKY3YAM7Q6VU4EFKZ","target":"record","payload":{"canonical_record":{"source":{"id":"1901.10513","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-01-29T20:01:39Z","cross_cats_sorted":["cs.CV","stat.ML"],"title_canon_sha256":"47205923828b5222dbf80d3f26e63f03fcc1a1a7a94a1e3c662579a9c08a4251","abstract_canon_sha256":"87a129e8d4ebaaaa4a7a4d591539dddd1932e48b190afc1571da02ea5d4f74cb"},"schema_version":"1.0"},"canonical_sha256":"2fc12b91e6dd558de00cfc3d5a70855650e5b7136f905f25c027666c4467346b","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:55:06.783101Z","signature_b64":"5efXhTWCPeQ+6OMquMYQsBCW2S7U2XOUCQwZ32ro/Dzo+xe9rrpKNBMeU2f7D4o1CdZonZokN3UvB9n/P3B7Dw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"2fc12b91e6dd558de00cfc3d5a70855650e5b7136f905f25c027666c4467346b","last_reissued_at":"2026-05-17T23:55:06.782628Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:55:06.782628Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1901.10513","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:55:06Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"7EHXemJMI6chlcuNy3aoNXpKmymvp4Kobw2fRgOLSvHpxggWSOIJu5BPjuiHvR1ioDww6M55j7+OhjyK5spvCQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-25T20:12:44.704849Z"},"content_sha256":"eead0d7e4e61d40796c4b218443b3b45e7b4af05c9ede03cb31d9459fdfd9f55","schema_version":"1.0","event_id":"sha256:eead0d7e4e61d40796c4b218443b3b45e7b4af05c9ede03cb31d9459fdfd9f55"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2019:F7ASXEPG3VKY3YAM7Q6VU4EFKZ","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Adversarial Examples Are a Natural Consequence of Test Error in Noise","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.CV","stat.ML"],"primary_cat":"cs.LG","authors_text":"Dogus Cubuk, Justin Gilmer, Nic Ford, Nicolas Carlini","submitted_at":"2019-01-29T20:01:39Z","abstract_excerpt":"Over the last few years, the phenomenon of adversarial examples --- maliciously constructed inputs that fool trained machine learning models --- has captured the attention of the research community, especially when the adversary is restricted to small modifications of a correctly handled input. Less surprisingly, image classifiers also lack human-level performance on randomly corrupted images, such as images with additive Gaussian noise. In this paper we provide both empirical and theoretical evidence that these are two manifestations of the same underlying phenomenon, establishing close conne"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1901.10513","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:55:06Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"/wDFWgbtTP35XohHtL9tw7wC4+z/ja3Ae3hWlBgKNB2L1zJPIf/T8qLgfjdKXpajoWGjuay618+l320DPgamBA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-25T20:12:44.705523Z"},"content_sha256":"2589ab87171420d91438bddfd72a863fb71b6c468e1507208f9b8348c8813517","schema_version":"1.0","event_id":"sha256:2589ab87171420d91438bddfd72a863fb71b6c468e1507208f9b8348c8813517"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/F7ASXEPG3VKY3YAM7Q6VU4EFKZ/bundle.json","state_url":"https://pith.science/pith/F7ASXEPG3VKY3YAM7Q6VU4EFKZ/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/F7ASXEPG3VKY3YAM7Q6VU4EFKZ/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-25T20:12:44Z","links":{"resolver":"https://pith.science/pith/F7ASXEPG3VKY3YAM7Q6VU4EFKZ","bundle":"https://pith.science/pith/F7ASXEPG3VKY3YAM7Q6VU4EFKZ/bundle.json","state":"https://pith.science/pith/F7ASXEPG3VKY3YAM7Q6VU4EFKZ/state.json","well_known_bundle":"https://pith.science/.well-known/pith/F7ASXEPG3VKY3YAM7Q6VU4EFKZ/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2019:F7ASXEPG3VKY3YAM7Q6VU4EFKZ","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"87a129e8d4ebaaaa4a7a4d591539dddd1932e48b190afc1571da02ea5d4f74cb","cross_cats_sorted":["cs.CV","stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-01-29T20:01:39Z","title_canon_sha256":"47205923828b5222dbf80d3f26e63f03fcc1a1a7a94a1e3c662579a9c08a4251"},"schema_version":"1.0","source":{"id":"1901.10513","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1901.10513","created_at":"2026-05-17T23:55:06Z"},{"alias_kind":"arxiv_version","alias_value":"1901.10513v1","created_at":"2026-05-17T23:55:06Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1901.10513","created_at":"2026-05-17T23:55:06Z"},{"alias_kind":"pith_short_12","alias_value":"F7ASXEPG3VKY","created_at":"2026-05-18T12:33:15Z"},{"alias_kind":"pith_short_16","alias_value":"F7ASXEPG3VKY3YAM","created_at":"2026-05-18T12:33:15Z"},{"alias_kind":"pith_short_8","alias_value":"F7ASXEPG","created_at":"2026-05-18T12:33:15Z"}],"graph_snapshots":[{"event_id":"sha256:2589ab87171420d91438bddfd72a863fb71b6c468e1507208f9b8348c8813517","target":"graph","created_at":"2026-05-17T23:55:06Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Over the last few years, the phenomenon of adversarial examples --- maliciously constructed inputs that fool trained machine learning models --- has captured the attention of the research community, especially when the adversary is restricted to small modifications of a correctly handled input. Less surprisingly, image classifiers also lack human-level performance on randomly corrupted images, such as images with additive Gaussian noise. In this paper we provide both empirical and theoretical evidence that these are two manifestations of the same underlying phenomenon, establishing close conne","authors_text":"Dogus Cubuk, Justin Gilmer, Nic Ford, Nicolas Carlini","cross_cats":["cs.CV","stat.ML"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-01-29T20:01:39Z","title":"Adversarial Examples Are a Natural Consequence of Test Error in Noise"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1901.10513","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:eead0d7e4e61d40796c4b218443b3b45e7b4af05c9ede03cb31d9459fdfd9f55","target":"record","created_at":"2026-05-17T23:55:06Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"87a129e8d4ebaaaa4a7a4d591539dddd1932e48b190afc1571da02ea5d4f74cb","cross_cats_sorted":["cs.CV","stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-01-29T20:01:39Z","title_canon_sha256":"47205923828b5222dbf80d3f26e63f03fcc1a1a7a94a1e3c662579a9c08a4251"},"schema_version":"1.0","source":{"id":"1901.10513","kind":"arxiv","version":1}},"canonical_sha256":"2fc12b91e6dd558de00cfc3d5a70855650e5b7136f905f25c027666c4467346b","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"2fc12b91e6dd558de00cfc3d5a70855650e5b7136f905f25c027666c4467346b","first_computed_at":"2026-05-17T23:55:06.782628Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-17T23:55:06.782628Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"5efXhTWCPeQ+6OMquMYQsBCW2S7U2XOUCQwZ32ro/Dzo+xe9rrpKNBMeU2f7D4o1CdZonZokN3UvB9n/P3B7Dw==","signature_status":"signed_v1","signed_at":"2026-05-17T23:55:06.783101Z","signed_message":"canonical_sha256_bytes"},"source_id":"1901.10513","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:eead0d7e4e61d40796c4b218443b3b45e7b4af05c9ede03cb31d9459fdfd9f55","sha256:2589ab87171420d91438bddfd72a863fb71b6c468e1507208f9b8348c8813517"],"state_sha256":"a784d7e8874a2b7ce473f56b75a2ecaf0f23f51690bedc369d0f00fd8eb922f6"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"VE1qU0saKkJaa5jcQatmMUe5Y0BMx0RDLlyMFlswxtunonP9A2YUVyfk2aRigL7z7oXGNeWVS1RmXn4rAQtMBQ==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-25T20:12:44.708509Z","bundle_sha256":"8c234842a6f9b57e01306a5b0a3eddf18e82472347e0258a2dad9389ca6e0c60"}}