{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2019:GARXNJNKU226DPGKH2K6VDXNLE","short_pith_number":"pith:GARXNJNK","canonical_record":{"source":{"id":"1901.10258","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2019-01-29T12:59:37Z","cross_cats_sorted":["cs.LG"],"title_canon_sha256":"41da64eba99b97001930a26ee6b49e09556335cfe8d6f7547bd59408c6d18298","abstract_canon_sha256":"9cd8bba2b88797f0e23a7381ceb25d71ff24328f515befa4943351bc88a378c6"},"schema_version":"1.0"},"canonical_sha256":"302376a5aaa6b5e1bcca3e95ea8eed5901ed47f6b7e952658c49516e1431aaf4","source":{"kind":"arxiv","id":"1901.10258","version":2},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1901.10258","created_at":"2026-05-17T23:55:02Z"},{"alias_kind":"arxiv_version","alias_value":"1901.10258v2","created_at":"2026-05-17T23:55:02Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1901.10258","created_at":"2026-05-17T23:55:02Z"},{"alias_kind":"pith_short_12","alias_value":"GARXNJNKU226","created_at":"2026-05-18T12:33:18Z"},{"alias_kind":"pith_short_16","alias_value":"GARXNJNKU226DPGK","created_at":"2026-05-18T12:33:18Z"},{"alias_kind":"pith_short_8","alias_value":"GARXNJNK","created_at":"2026-05-18T12:33:18Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2019:GARXNJNKU226DPGKH2K6VDXNLE","target":"record","payload":{"canonical_record":{"source":{"id":"1901.10258","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2019-01-29T12:59:37Z","cross_cats_sorted":["cs.LG"],"title_canon_sha256":"41da64eba99b97001930a26ee6b49e09556335cfe8d6f7547bd59408c6d18298","abstract_canon_sha256":"9cd8bba2b88797f0e23a7381ceb25d71ff24328f515befa4943351bc88a378c6"},"schema_version":"1.0"},"canonical_sha256":"302376a5aaa6b5e1bcca3e95ea8eed5901ed47f6b7e952658c49516e1431aaf4","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:55:02.877041Z","signature_b64":"5jw+uy0JggpfOrCFlNxCNiKF1cZkWU9RYpk6f5CPr9BVKrhyoMybmwGDGSLnzKviBnJTCGyBCsCo6OXhxYtwAg==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"302376a5aaa6b5e1bcca3e95ea8eed5901ed47f6b7e952658c49516e1431aaf4","last_reissued_at":"2026-05-17T23:55:02.876417Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:55:02.876417Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1901.10258","source_version":2,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:55:02Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"HxdnkFMb6xbZk2j0XU/x37U+mFUZuiMjsBXrH9erDj+ZyUkszDFlRECgLbmE89++iZZDHLzSs/fbogvyM73MBA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-25T22:52:14.076966Z"},"content_sha256":"8326a21674da6c4315d82b92fe2e71d51847e14611e4f006b8590d314c2d8f19","schema_version":"1.0","event_id":"sha256:8326a21674da6c4315d82b92fe2e71d51847e14611e4f006b8590d314c2d8f19"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2019:GARXNJNKU226DPGKH2K6VDXNLE","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"RED-Attack: Resource Efficient Decision based Attack for Machine Learning","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.LG"],"primary_cat":"cs.CR","authors_text":"Faiq Khalid, Hassan Ali, Muhammad Abdullah Hanif, Muhammad Shafique, Rehan Ahmed, Semeen Rehman","submitted_at":"2019-01-29T12:59:37Z","abstract_excerpt":"Due to data dependency and model leakage properties, Deep Neural Networks (DNNs) exhibit several security vulnerabilities. Several security attacks exploited them but most of them require the output probability vector. These attacks can be mitigated by concealing the output probability vector. To address this limitation, decision-based attacks have been proposed which can estimate the model but they require several thousand queries to generate a single untargeted attack image. However, in real-time attacks, resources and attack time are very crucial parameters. Therefore, in resource-constrain"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1901.10258","kind":"arxiv","version":2},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:55:02Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"//93zNiu+9UwDnuSQoni5d0W/6d+VDybochZw4VGTfpulHOrUU+YAWZmUBnBTl/c4XnUOWJ45btuj6JaEshRCQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-25T22:52:14.077666Z"},"content_sha256":"4113dbb42ef60cf21823490883febd3e0435379cfc39bde7000fa25f64effac4","schema_version":"1.0","event_id":"sha256:4113dbb42ef60cf21823490883febd3e0435379cfc39bde7000fa25f64effac4"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/GARXNJNKU226DPGKH2K6VDXNLE/bundle.json","state_url":"https://pith.science/pith/GARXNJNKU226DPGKH2K6VDXNLE/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/GARXNJNKU226DPGKH2K6VDXNLE/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-25T22:52:14Z","links":{"resolver":"https://pith.science/pith/GARXNJNKU226DPGKH2K6VDXNLE","bundle":"https://pith.science/pith/GARXNJNKU226DPGKH2K6VDXNLE/bundle.json","state":"https://pith.science/pith/GARXNJNKU226DPGKH2K6VDXNLE/state.json","well_known_bundle":"https://pith.science/.well-known/pith/GARXNJNKU226DPGKH2K6VDXNLE/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2019:GARXNJNKU226DPGKH2K6VDXNLE","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"9cd8bba2b88797f0e23a7381ceb25d71ff24328f515befa4943351bc88a378c6","cross_cats_sorted":["cs.LG"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2019-01-29T12:59:37Z","title_canon_sha256":"41da64eba99b97001930a26ee6b49e09556335cfe8d6f7547bd59408c6d18298"},"schema_version":"1.0","source":{"id":"1901.10258","kind":"arxiv","version":2}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1901.10258","created_at":"2026-05-17T23:55:02Z"},{"alias_kind":"arxiv_version","alias_value":"1901.10258v2","created_at":"2026-05-17T23:55:02Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1901.10258","created_at":"2026-05-17T23:55:02Z"},{"alias_kind":"pith_short_12","alias_value":"GARXNJNKU226","created_at":"2026-05-18T12:33:18Z"},{"alias_kind":"pith_short_16","alias_value":"GARXNJNKU226DPGK","created_at":"2026-05-18T12:33:18Z"},{"alias_kind":"pith_short_8","alias_value":"GARXNJNK","created_at":"2026-05-18T12:33:18Z"}],"graph_snapshots":[{"event_id":"sha256:4113dbb42ef60cf21823490883febd3e0435379cfc39bde7000fa25f64effac4","target":"graph","created_at":"2026-05-17T23:55:02Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Due to data dependency and model leakage properties, Deep Neural Networks (DNNs) exhibit several security vulnerabilities. Several security attacks exploited them but most of them require the output probability vector. These attacks can be mitigated by concealing the output probability vector. To address this limitation, decision-based attacks have been proposed which can estimate the model but they require several thousand queries to generate a single untargeted attack image. However, in real-time attacks, resources and attack time are very crucial parameters. Therefore, in resource-constrain","authors_text":"Faiq Khalid, Hassan Ali, Muhammad Abdullah Hanif, Muhammad Shafique, Rehan Ahmed, Semeen Rehman","cross_cats":["cs.LG"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2019-01-29T12:59:37Z","title":"RED-Attack: Resource Efficient Decision based Attack for Machine Learning"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1901.10258","kind":"arxiv","version":2},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:8326a21674da6c4315d82b92fe2e71d51847e14611e4f006b8590d314c2d8f19","target":"record","created_at":"2026-05-17T23:55:02Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"9cd8bba2b88797f0e23a7381ceb25d71ff24328f515befa4943351bc88a378c6","cross_cats_sorted":["cs.LG"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2019-01-29T12:59:37Z","title_canon_sha256":"41da64eba99b97001930a26ee6b49e09556335cfe8d6f7547bd59408c6d18298"},"schema_version":"1.0","source":{"id":"1901.10258","kind":"arxiv","version":2}},"canonical_sha256":"302376a5aaa6b5e1bcca3e95ea8eed5901ed47f6b7e952658c49516e1431aaf4","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"302376a5aaa6b5e1bcca3e95ea8eed5901ed47f6b7e952658c49516e1431aaf4","first_computed_at":"2026-05-17T23:55:02.876417Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-17T23:55:02.876417Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"5jw+uy0JggpfOrCFlNxCNiKF1cZkWU9RYpk6f5CPr9BVKrhyoMybmwGDGSLnzKviBnJTCGyBCsCo6OXhxYtwAg==","signature_status":"signed_v1","signed_at":"2026-05-17T23:55:02.877041Z","signed_message":"canonical_sha256_bytes"},"source_id":"1901.10258","source_kind":"arxiv","source_version":2}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:8326a21674da6c4315d82b92fe2e71d51847e14611e4f006b8590d314c2d8f19","sha256:4113dbb42ef60cf21823490883febd3e0435379cfc39bde7000fa25f64effac4"],"state_sha256":"366c56ce7b00c0719ca6ae0e638d4b376bf93c2d44996b2c11f9ea16d9f8f91a"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"2r+iGXSoYBC5e7J1NrW4yt/KaVYOr/lWQtzFsLkDlVPjaD6oDCEMD80UbB7fcEpl5ZnpaiMUW6tnerK6/IgqDA==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-25T22:52:14.081458Z","bundle_sha256":"fe599ac76dc47ef755f4d2723d9c7e1c5fe5e24ab1098561f9bce61d167b7777"}}