{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2021:GGTXQJ6LRCTOCW35Q62NWHOLBA","short_pith_number":"pith:GGTXQJ6L","schema_version":"1.0","canonical_sha256":"31a77827cb88a6e15b7d87b4db1dcb08379a22ab690cc3feae861b43a1181595","source":{"kind":"arxiv","id":"2103.10480","version":1},"attestation_state":"computed","paper":{"title":"Reading Isn't Believing: Adversarial Attacks On Multi-Modal Neurons","license":"http://creativecommons.org/licenses/by-sa/4.0/","headline":"","cross_cats":["cs.CL","cs.CV"],"primary_cat":"cs.LG","authors_text":"David A. Noever, Samantha E. Miller Noever","submitted_at":"2021-03-18T18:56:51Z","abstract_excerpt":"With Open AI's publishing of their CLIP model (Contrastive Language-Image Pre-training), multi-modal neural networks now provide accessible models that combine reading with visual recognition. Their network offers novel ways to probe its dual abilities to read text while classifying visual objects. This paper demonstrates several new categories of adversarial attacks, spanning basic typographical, conceptual, and iconographic inputs generated to fool the model into making false or absurd classifications. We demonstrate that contradictory text and image signals can confuse the model into choosi"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2103.10480","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by-sa/4.0/","primary_cat":"cs.LG","submitted_at":"2021-03-18T18:56:51Z","cross_cats_sorted":["cs.CL","cs.CV"],"title_canon_sha256":"c0822262d68e7643399077f5e77acfb8a264f4f09be2ed34361152a1dfe6f462","abstract_canon_sha256":"bc5e5aab813be1fe3df1d65264c08e75460e7510cda9dbc47e2312e2a8de03aa"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T02:24:41.631953Z","signature_b64":"8qR7+0gN+emg0YRnyOHptlPpUh5Tq6j5n3tSyumKOXunematsczPfeRxXkjP75ofju1RiSLq5n8iU4rIuWGGBA==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"31a77827cb88a6e15b7d87b4db1dcb08379a22ab690cc3feae861b43a1181595","last_reissued_at":"2026-07-05T02:24:41.631507Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T02:24:41.631507Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"Reading Isn't Believing: Adversarial Attacks On Multi-Modal Neurons","license":"http://creativecommons.org/licenses/by-sa/4.0/","headline":"","cross_cats":["cs.CL","cs.CV"],"primary_cat":"cs.LG","authors_text":"David A. Noever, Samantha E. Miller Noever","submitted_at":"2021-03-18T18:56:51Z","abstract_excerpt":"With Open AI's publishing of their CLIP model (Contrastive Language-Image Pre-training), multi-modal neural networks now provide accessible models that combine reading with visual recognition. Their network offers novel ways to probe its dual abilities to read text while classifying visual objects. This paper demonstrates several new categories of adversarial attacks, spanning basic typographical, conceptual, and iconographic inputs generated to fool the model into making false or absurd classifications. We demonstrate that contradictory text and image signals can confuse the model into choosi"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2103.10480","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2103.10480/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2103.10480","created_at":"2026-07-05T02:24:41.631559+00:00"},{"alias_kind":"arxiv_version","alias_value":"2103.10480v1","created_at":"2026-07-05T02:24:41.631559+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2103.10480","created_at":"2026-07-05T02:24:41.631559+00:00"},{"alias_kind":"pith_short_12","alias_value":"GGTXQJ6LRCTO","created_at":"2026-07-05T02:24:41.631559+00:00"},{"alias_kind":"pith_short_16","alias_value":"GGTXQJ6LRCTOCW35","created_at":"2026-07-05T02:24:41.631559+00:00"},{"alias_kind":"pith_short_8","alias_value":"GGTXQJ6L","created_at":"2026-07-05T02:24:41.631559+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":1,"internal_anchor_count":0,"sample":[{"citing_arxiv_id":"2502.05206","citing_title":"Safety at Scale: A Comprehensive Survey of Large Model and Agent Safety","ref_index":220,"is_internal_anchor":false}]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/GGTXQJ6LRCTOCW35Q62NWHOLBA","json":"https://pith.science/pith/GGTXQJ6LRCTOCW35Q62NWHOLBA.json","graph_json":"https://pith.science/api/pith-number/GGTXQJ6LRCTOCW35Q62NWHOLBA/graph.json","events_json":"https://pith.science/api/pith-number/GGTXQJ6LRCTOCW35Q62NWHOLBA/events.json","paper":"https://pith.science/paper/GGTXQJ6L"},"agent_actions":{"view_html":"https://pith.science/pith/GGTXQJ6LRCTOCW35Q62NWHOLBA","download_json":"https://pith.science/pith/GGTXQJ6LRCTOCW35Q62NWHOLBA.json","view_paper":"https://pith.science/paper/GGTXQJ6L","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2103.10480&json=true","fetch_graph":"https://pith.science/api/pith-number/GGTXQJ6LRCTOCW35Q62NWHOLBA/graph.json","fetch_events":"https://pith.science/api/pith-number/GGTXQJ6LRCTOCW35Q62NWHOLBA/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/GGTXQJ6LRCTOCW35Q62NWHOLBA/action/timestamp_anchor","attest_storage":"https://pith.science/pith/GGTXQJ6LRCTOCW35Q62NWHOLBA/action/storage_attestation","attest_author":"https://pith.science/pith/GGTXQJ6LRCTOCW35Q62NWHOLBA/action/author_attestation","sign_citation":"https://pith.science/pith/GGTXQJ6LRCTOCW35Q62NWHOLBA/action/citation_signature","submit_replication":"https://pith.science/pith/GGTXQJ6LRCTOCW35Q62NWHOLBA/action/replication_record"}},"created_at":"2026-07-05T02:24:41.631559+00:00","updated_at":"2026-07-05T02:24:41.631559+00:00"}