{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2025:GHIZ2ELKK6JKWIADRIFRSFPAZW","short_pith_number":"pith:GHIZ2ELK","schema_version":"1.0","canonical_sha256":"31d19d116a5792ab20038a0b1915e0cd97b141c33646edfcef173cf4f0cbb212","source":{"kind":"arxiv","id":"2505.07258","version":2},"attestation_state":"computed","paper":{"title":"No Query, No Access","license":"http://creativecommons.org/licenses/by-nc-nd/4.0/","headline":"","cross_cats":["cs.AI"],"primary_cat":"cs.CL","authors_text":"Hao Lin, Siyuan Liang, Wenqiang Wang, Xiaochun Cao, Xiaojun Jia, Yangshijie Zhang","submitted_at":"2025-05-12T06:19:59Z","abstract_excerpt":"Textual adversarial attacks mislead NLP models, including Large Language Models (LLMs), by subtly modifying text. While effective, existing attacks often require knowledge of the victim model, extensive queries, or access to training data, limiting real-world feasibility. To overcome these constraints, we introduce the \\textbf{Victim Data-based Adversarial Attack (VDBA)}, which operates using only victim texts. To prevent access to the victim model, we create a shadow dataset with publicly available pre-trained models and clustering methods as a foundation for developing substitute models. To "},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2505.07258","kind":"arxiv","version":2},"metadata":{"license":"http://creativecommons.org/licenses/by-nc-nd/4.0/","primary_cat":"cs.CL","submitted_at":"2025-05-12T06:19:59Z","cross_cats_sorted":["cs.AI"],"title_canon_sha256":"f066163be7295454017de7bf6951f4d6c3c6951bf11af4fd9894f24ea13d9569","abstract_canon_sha256":"af2c96a33b0b07c8ed1e4267ff0f29547ee1d6d88f10685f6dfa85cb9fdca533"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T11:50:36.549722Z","signature_b64":"bDfX9IZmaqxac9J+CGwfj0sPQHZpp28VQqkMrCzPS/+zAWBx8pSM1+vtmme2ZGyRpQAnbYgrg+IN2fO2HOZeBg==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"31d19d116a5792ab20038a0b1915e0cd97b141c33646edfcef173cf4f0cbb212","last_reissued_at":"2026-07-05T11:50:36.549194Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T11:50:36.549194Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"No Query, No Access","license":"http://creativecommons.org/licenses/by-nc-nd/4.0/","headline":"","cross_cats":["cs.AI"],"primary_cat":"cs.CL","authors_text":"Hao Lin, Siyuan Liang, Wenqiang Wang, Xiaochun Cao, Xiaojun Jia, Yangshijie Zhang","submitted_at":"2025-05-12T06:19:59Z","abstract_excerpt":"Textual adversarial attacks mislead NLP models, including Large Language Models (LLMs), by subtly modifying text. While effective, existing attacks often require knowledge of the victim model, extensive queries, or access to training data, limiting real-world feasibility. To overcome these constraints, we introduce the \\textbf{Victim Data-based Adversarial Attack (VDBA)}, which operates using only victim texts. To prevent access to the victim model, we create a shadow dataset with publicly available pre-trained models and clustering methods as a foundation for developing substitute models. To "},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2505.07258","kind":"arxiv","version":2},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2505.07258/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2505.07258","created_at":"2026-07-05T11:50:36.549252+00:00"},{"alias_kind":"arxiv_version","alias_value":"2505.07258v2","created_at":"2026-07-05T11:50:36.549252+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2505.07258","created_at":"2026-07-05T11:50:36.549252+00:00"},{"alias_kind":"pith_short_12","alias_value":"GHIZ2ELKK6JK","created_at":"2026-07-05T11:50:36.549252+00:00"},{"alias_kind":"pith_short_16","alias_value":"GHIZ2ELKK6JKWIAD","created_at":"2026-07-05T11:50:36.549252+00:00"},{"alias_kind":"pith_short_8","alias_value":"GHIZ2ELK","created_at":"2026-07-05T11:50:36.549252+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":1,"internal_anchor_count":0,"sample":[{"citing_arxiv_id":"2604.04488","citing_title":"A Patch-based Cross-view Regularized Framework for Backdoor Defense in Multimodal Large Language Models","ref_index":68,"is_internal_anchor":false}]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/GHIZ2ELKK6JKWIADRIFRSFPAZW","json":"https://pith.science/pith/GHIZ2ELKK6JKWIADRIFRSFPAZW.json","graph_json":"https://pith.science/api/pith-number/GHIZ2ELKK6JKWIADRIFRSFPAZW/graph.json","events_json":"https://pith.science/api/pith-number/GHIZ2ELKK6JKWIADRIFRSFPAZW/events.json","paper":"https://pith.science/paper/GHIZ2ELK"},"agent_actions":{"view_html":"https://pith.science/pith/GHIZ2ELKK6JKWIADRIFRSFPAZW","download_json":"https://pith.science/pith/GHIZ2ELKK6JKWIADRIFRSFPAZW.json","view_paper":"https://pith.science/paper/GHIZ2ELK","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2505.07258&json=true","fetch_graph":"https://pith.science/api/pith-number/GHIZ2ELKK6JKWIADRIFRSFPAZW/graph.json","fetch_events":"https://pith.science/api/pith-number/GHIZ2ELKK6JKWIADRIFRSFPAZW/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/GHIZ2ELKK6JKWIADRIFRSFPAZW/action/timestamp_anchor","attest_storage":"https://pith.science/pith/GHIZ2ELKK6JKWIADRIFRSFPAZW/action/storage_attestation","attest_author":"https://pith.science/pith/GHIZ2ELKK6JKWIADRIFRSFPAZW/action/author_attestation","sign_citation":"https://pith.science/pith/GHIZ2ELKK6JKWIADRIFRSFPAZW/action/citation_signature","submit_replication":"https://pith.science/pith/GHIZ2ELKK6JKWIADRIFRSFPAZW/action/replication_record"}},"created_at":"2026-07-05T11:50:36.549252+00:00","updated_at":"2026-07-05T11:50:36.549252+00:00"}