{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2018:FEIEN2AJPLK5REN6DCDT7LC6ZW","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"fb3e0da42e90fd3bbbf51315d704823c392fab5dde521410388e4bced9bad8ab","cross_cats_sorted":["stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2018-11-08T16:23:50Z","title_canon_sha256":"b9b316d4019070c5e72e61da0a1315a3a8dd0f3439431e5c0e84ac212eeca6fc"},"schema_version":"1.0","source":{"id":"1811.03531","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1811.03531","created_at":"2026-05-18T00:01:15Z"},{"alias_kind":"arxiv_version","alias_value":"1811.03531v1","created_at":"2026-05-18T00:01:15Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1811.03531","created_at":"2026-05-18T00:01:15Z"},{"alias_kind":"pith_short_12","alias_value":"FEIEN2AJPLK5","created_at":"2026-05-18T12:32:22Z"},{"alias_kind":"pith_short_16","alias_value":"FEIEN2AJPLK5REN6","created_at":"2026-05-18T12:32:22Z"},{"alias_kind":"pith_short_8","alias_value":"FEIEN2AJ","created_at":"2026-05-18T12:32:22Z"}],"graph_snapshots":[{"event_id":"sha256:04dac6fbe62db324de28b0eeb9eeb57b2a9ca0539c9f26a39b321cfb0e301f13","target":"graph","created_at":"2026-05-18T00:01:15Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"State-of-the-art machine learning models frequently misclassify inputs that have been perturbed in an adversarial manner. Adversarial perturbations generated for a given input and a specific classifier often seem to be effective on other inputs and even different classifiers. In other words, adversarial perturbations seem to transfer between different inputs, models, and even different neural network architectures. In this work, we show that in the context of linear classifiers and two-layer ReLU networks, there provably exist directions that give rise to adversarial perturbations for many cla","authors_text":"Dimitris Papailiopoulos, Harrison Rosenberg, Zachary Charles","cross_cats":["stat.ML"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2018-11-08T16:23:50Z","title":"A Geometric Perspective on the Transferability of Adversarial Directions"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1811.03531","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:88179cf48453c12fd99fd1ca31929221bad2fa979bf2ab6ab83967f2017542b5","target":"record","created_at":"2026-05-18T00:01:15Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"fb3e0da42e90fd3bbbf51315d704823c392fab5dde521410388e4bced9bad8ab","cross_cats_sorted":["stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2018-11-08T16:23:50Z","title_canon_sha256":"b9b316d4019070c5e72e61da0a1315a3a8dd0f3439431e5c0e84ac212eeca6fc"},"schema_version":"1.0","source":{"id":"1811.03531","kind":"arxiv","version":1}},"canonical_sha256":"291046e8097ad5d891be18873fac5ecdb8100e2731a0f8b5535c16d0b59c1ef6","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"291046e8097ad5d891be18873fac5ecdb8100e2731a0f8b5535c16d0b59c1ef6","first_computed_at":"2026-05-18T00:01:15.848023Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-18T00:01:15.848023Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"2z1U1LV91FiNyaOdeznh+q0xXBix0mJVAaTOanYg/EPlNVCcVuAeBE88Pdb/9aONEA/S4CJVHN7GOMM/zqGqCA==","signature_status":"signed_v1","signed_at":"2026-05-18T00:01:15.848609Z","signed_message":"canonical_sha256_bytes"},"source_id":"1811.03531","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:88179cf48453c12fd99fd1ca31929221bad2fa979bf2ab6ab83967f2017542b5","sha256:04dac6fbe62db324de28b0eeb9eeb57b2a9ca0539c9f26a39b321cfb0e301f13"],"state_sha256":"a03619785e2d4d817e46dd0426f0d0d1a4fde4bd36eb5a489b21dc8b89e95815"}