{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2017:FW235XW5X4VSFAHJUURVVOK4IM","short_pith_number":"pith:FW235XW5","canonical_record":{"source":{"id":"1711.07183","kind":"arxiv","version":6},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2017-11-20T08:05:24Z","cross_cats_sorted":[],"title_canon_sha256":"b7a2989504b4030d6b5b8d0dc795d6d669e4fa146c506cf842b4c1689b0f785f","abstract_canon_sha256":"1bf6739339ca81ef4ab286ae42e384df457c24563f1639cb6d18a334cd14d729"},"schema_version":"1.0"},"canonical_sha256":"2db5bededdbf2b2280e9a5235ab95c430a52ca2033f1084529627799c4487e06","source":{"kind":"arxiv","id":"1711.07183","version":6},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1711.07183","created_at":"2026-05-17T23:49:17Z"},{"alias_kind":"arxiv_version","alias_value":"1711.07183v6","created_at":"2026-05-17T23:49:17Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1711.07183","created_at":"2026-05-17T23:49:17Z"},{"alias_kind":"pith_short_12","alias_value":"FW235XW5X4VS","created_at":"2026-05-18T12:31:15Z"},{"alias_kind":"pith_short_16","alias_value":"FW235XW5X4VSFAHJ","created_at":"2026-05-18T12:31:15Z"},{"alias_kind":"pith_short_8","alias_value":"FW235XW5","created_at":"2026-05-18T12:31:15Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2017:FW235XW5X4VSFAHJUURVVOK4IM","target":"record","payload":{"canonical_record":{"source":{"id":"1711.07183","kind":"arxiv","version":6},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2017-11-20T08:05:24Z","cross_cats_sorted":[],"title_canon_sha256":"b7a2989504b4030d6b5b8d0dc795d6d669e4fa146c506cf842b4c1689b0f785f","abstract_canon_sha256":"1bf6739339ca81ef4ab286ae42e384df457c24563f1639cb6d18a334cd14d729"},"schema_version":"1.0"},"canonical_sha256":"2db5bededdbf2b2280e9a5235ab95c430a52ca2033f1084529627799c4487e06","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:49:17.890686Z","signature_b64":"E88Wrpj9kcPy9pxfV1JOJjcBqrEQaPf/OUiOAyAa2SUsXAThytXuHwrk/TKkYRKzdsrcLgxBXTVpSWgfYfGGCQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"2db5bededdbf2b2280e9a5235ab95c430a52ca2033f1084529627799c4487e06","last_reissued_at":"2026-05-17T23:49:17.889998Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:49:17.889998Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1711.07183","source_version":6,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:49:17Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"9rGSrEM//CgG6nTSO2jz3KUSjBQWM/6HEs0H+8uB2QLkc/TJq0CYgbb7ionRRUlO+xmuujxGIl7TGZHNQJX1Cw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-28T23:07:55.844717Z"},"content_sha256":"93a06aa3b5d09f2036a34a1fd9753a59abb4272e7ef08621623159dc3c34bc2b","schema_version":"1.0","event_id":"sha256:93a06aa3b5d09f2036a34a1fd9753a59abb4272e7ef08621623159dc3c34bc2b"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2017:FW235XW5X4VSFAHJUURVVOK4IM","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Adversarial Attacks Beyond the Image Space","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.CV","authors_text":"Alan L. Yuille, Chenxi Liu, Chi Keung Tang, Lingxi Xie, Weichao Qiu, Xiaohui Zeng, Yu-Siang Wang, Yu-Wing Tai","submitted_at":"2017-11-20T08:05:24Z","abstract_excerpt":"Generating adversarial examples is an intriguing problem and an important way of understanding the working mechanism of deep neural networks. Most existing approaches generated perturbations in the image space, i.e., each pixel can be modified independently. However, in this paper we pay special attention to the subset of adversarial examples that correspond to meaningful changes in 3D physical properties (like rotation and translation, illumination condition, etc.). These adversaries arguably pose a more serious concern, as they demonstrate the possibility of causing neural network failure by"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1711.07183","kind":"arxiv","version":6},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:49:17Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"9ADvyN2pQkl+5XEwJhkp//k9y4qQk7YVOVKguKgp00aqdX7SQwMjRkqyNHMc0CDMGY94YbBDN/F/gox3VwoaCQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-28T23:07:55.845371Z"},"content_sha256":"1621a75be334da13ecf7afefecbbd0f37fe623f2adbc7552675dabed5c48d9e6","schema_version":"1.0","event_id":"sha256:1621a75be334da13ecf7afefecbbd0f37fe623f2adbc7552675dabed5c48d9e6"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/FW235XW5X4VSFAHJUURVVOK4IM/bundle.json","state_url":"https://pith.science/pith/FW235XW5X4VSFAHJUURVVOK4IM/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/FW235XW5X4VSFAHJUURVVOK4IM/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-28T23:07:55Z","links":{"resolver":"https://pith.science/pith/FW235XW5X4VSFAHJUURVVOK4IM","bundle":"https://pith.science/pith/FW235XW5X4VSFAHJUURVVOK4IM/bundle.json","state":"https://pith.science/pith/FW235XW5X4VSFAHJUURVVOK4IM/state.json","well_known_bundle":"https://pith.science/.well-known/pith/FW235XW5X4VSFAHJUURVVOK4IM/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2017:FW235XW5X4VSFAHJUURVVOK4IM","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"1bf6739339ca81ef4ab286ae42e384df457c24563f1639cb6d18a334cd14d729","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2017-11-20T08:05:24Z","title_canon_sha256":"b7a2989504b4030d6b5b8d0dc795d6d669e4fa146c506cf842b4c1689b0f785f"},"schema_version":"1.0","source":{"id":"1711.07183","kind":"arxiv","version":6}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1711.07183","created_at":"2026-05-17T23:49:17Z"},{"alias_kind":"arxiv_version","alias_value":"1711.07183v6","created_at":"2026-05-17T23:49:17Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1711.07183","created_at":"2026-05-17T23:49:17Z"},{"alias_kind":"pith_short_12","alias_value":"FW235XW5X4VS","created_at":"2026-05-18T12:31:15Z"},{"alias_kind":"pith_short_16","alias_value":"FW235XW5X4VSFAHJ","created_at":"2026-05-18T12:31:15Z"},{"alias_kind":"pith_short_8","alias_value":"FW235XW5","created_at":"2026-05-18T12:31:15Z"}],"graph_snapshots":[{"event_id":"sha256:1621a75be334da13ecf7afefecbbd0f37fe623f2adbc7552675dabed5c48d9e6","target":"graph","created_at":"2026-05-17T23:49:17Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Generating adversarial examples is an intriguing problem and an important way of understanding the working mechanism of deep neural networks. Most existing approaches generated perturbations in the image space, i.e., each pixel can be modified independently. However, in this paper we pay special attention to the subset of adversarial examples that correspond to meaningful changes in 3D physical properties (like rotation and translation, illumination condition, etc.). These adversaries arguably pose a more serious concern, as they demonstrate the possibility of causing neural network failure by","authors_text":"Alan L. Yuille, Chenxi Liu, Chi Keung Tang, Lingxi Xie, Weichao Qiu, Xiaohui Zeng, Yu-Siang Wang, Yu-Wing Tai","cross_cats":[],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2017-11-20T08:05:24Z","title":"Adversarial Attacks Beyond the Image Space"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1711.07183","kind":"arxiv","version":6},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:93a06aa3b5d09f2036a34a1fd9753a59abb4272e7ef08621623159dc3c34bc2b","target":"record","created_at":"2026-05-17T23:49:17Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"1bf6739339ca81ef4ab286ae42e384df457c24563f1639cb6d18a334cd14d729","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2017-11-20T08:05:24Z","title_canon_sha256":"b7a2989504b4030d6b5b8d0dc795d6d669e4fa146c506cf842b4c1689b0f785f"},"schema_version":"1.0","source":{"id":"1711.07183","kind":"arxiv","version":6}},"canonical_sha256":"2db5bededdbf2b2280e9a5235ab95c430a52ca2033f1084529627799c4487e06","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"2db5bededdbf2b2280e9a5235ab95c430a52ca2033f1084529627799c4487e06","first_computed_at":"2026-05-17T23:49:17.889998Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-17T23:49:17.889998Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"E88Wrpj9kcPy9pxfV1JOJjcBqrEQaPf/OUiOAyAa2SUsXAThytXuHwrk/TKkYRKzdsrcLgxBXTVpSWgfYfGGCQ==","signature_status":"signed_v1","signed_at":"2026-05-17T23:49:17.890686Z","signed_message":"canonical_sha256_bytes"},"source_id":"1711.07183","source_kind":"arxiv","source_version":6}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:93a06aa3b5d09f2036a34a1fd9753a59abb4272e7ef08621623159dc3c34bc2b","sha256:1621a75be334da13ecf7afefecbbd0f37fe623f2adbc7552675dabed5c48d9e6"],"state_sha256":"c1a011713cb01a6defeaf98a67a01fc2203ac8e914f296e7c1b55f3ec9099193"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"+dypyhwdcgiOmaLk+kFSgsPTO/4RKmz6h72EBxWyJbBHFhNDDNsDS8OlaIYWgBZKxVqBCV9Sd0U7jWKFiuwwAg==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-28T23:07:55.848419Z","bundle_sha256":"15a1be473c14b262977adefb6050475ff33fd2f29ed6a740d3676d1594c139eb"}}