{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2018:ICL4OUSPP6GZGL2V6G4QYYXS2L","short_pith_number":"pith:ICL4OUSP","schema_version":"1.0","canonical_sha256":"4097c7524f7f8d932f55f1b90c62f2d2d9c8b14fd0bada3eef5f33714c0cf4a2","source":{"kind":"arxiv","id":"1811.12470","version":4},"attestation_state":"computed","paper":{"title":"Analyzing Federated Learning through an Adversarial Lens","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.AI","cs.CR","stat.ML"],"primary_cat":"cs.LG","authors_text":"Arjun Nitin Bhagoji, Prateek Mittal, Seraphin Calo, Supriyo Chakraborty","submitted_at":"2018-11-29T20:27:14Z","abstract_excerpt":"Federated learning distributes model training among a multitude of agents, who, guided by privacy concerns, perform training using their local data but share only model parameter updates, for iterative aggregation at the server. In this work, we explore the threat of model poisoning attacks on federated learning initiated by a single, non-colluding malicious agent where the adversarial objective is to cause the model to misclassify a set of chosen inputs with high confidence. We explore a number of strategies to carry out this attack, starting with simple boosting of the malicious agent's upda"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"1811.12470","kind":"arxiv","version":4},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2018-11-29T20:27:14Z","cross_cats_sorted":["cs.AI","cs.CR","stat.ML"],"title_canon_sha256":"fdb7a58b142ea9b28d842174895e484249495e87d63c91b22c57858cb7fc5694","abstract_canon_sha256":"f1a764bac7dd88e8a40cb5afa243f4e8f80b1cae4867d3bf84d81137ec20d52b"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T00:21:32.062952Z","signature_b64":"soa/MvTSjxxIoBousOdpBzUnNxek/H1pDzxm6sbEByVfCRqxYDDU7NHkHXXDlhfRoAr0/3LHr60XDd4CYXfyDg==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"4097c7524f7f8d932f55f1b90c62f2d2d9c8b14fd0bada3eef5f33714c0cf4a2","last_reissued_at":"2026-07-05T00:21:32.062490Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T00:21:32.062490Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"Analyzing Federated Learning through an Adversarial Lens","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.AI","cs.CR","stat.ML"],"primary_cat":"cs.LG","authors_text":"Arjun Nitin Bhagoji, Prateek Mittal, Seraphin Calo, Supriyo Chakraborty","submitted_at":"2018-11-29T20:27:14Z","abstract_excerpt":"Federated learning distributes model training among a multitude of agents, who, guided by privacy concerns, perform training using their local data but share only model parameter updates, for iterative aggregation at the server. In this work, we explore the threat of model poisoning attacks on federated learning initiated by a single, non-colluding malicious agent where the adversarial objective is to cause the model to misclassify a set of chosen inputs with high confidence. We explore a number of strategies to carry out this attack, starting with simple boosting of the malicious agent's upda"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1811.12470","kind":"arxiv","version":4},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/1811.12470/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"1811.12470","created_at":"2026-07-05T00:21:32.062559+00:00"},{"alias_kind":"arxiv_version","alias_value":"1811.12470v4","created_at":"2026-07-05T00:21:32.062559+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1811.12470","created_at":"2026-07-05T00:21:32.062559+00:00"},{"alias_kind":"pith_short_12","alias_value":"ICL4OUSPP6GZ","created_at":"2026-07-05T00:21:32.062559+00:00"},{"alias_kind":"pith_short_16","alias_value":"ICL4OUSPP6GZGL2V","created_at":"2026-07-05T00:21:32.062559+00:00"},{"alias_kind":"pith_short_8","alias_value":"ICL4OUSP","created_at":"2026-07-05T00:21:32.062559+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":0,"internal_anchor_count":0,"sample":[]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/ICL4OUSPP6GZGL2V6G4QYYXS2L","json":"https://pith.science/pith/ICL4OUSPP6GZGL2V6G4QYYXS2L.json","graph_json":"https://pith.science/api/pith-number/ICL4OUSPP6GZGL2V6G4QYYXS2L/graph.json","events_json":"https://pith.science/api/pith-number/ICL4OUSPP6GZGL2V6G4QYYXS2L/events.json","paper":"https://pith.science/paper/ICL4OUSP"},"agent_actions":{"view_html":"https://pith.science/pith/ICL4OUSPP6GZGL2V6G4QYYXS2L","download_json":"https://pith.science/pith/ICL4OUSPP6GZGL2V6G4QYYXS2L.json","view_paper":"https://pith.science/paper/ICL4OUSP","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=1811.12470&json=true","fetch_graph":"https://pith.science/api/pith-number/ICL4OUSPP6GZGL2V6G4QYYXS2L/graph.json","fetch_events":"https://pith.science/api/pith-number/ICL4OUSPP6GZGL2V6G4QYYXS2L/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/ICL4OUSPP6GZGL2V6G4QYYXS2L/action/timestamp_anchor","attest_storage":"https://pith.science/pith/ICL4OUSPP6GZGL2V6G4QYYXS2L/action/storage_attestation","attest_author":"https://pith.science/pith/ICL4OUSPP6GZGL2V6G4QYYXS2L/action/author_attestation","sign_citation":"https://pith.science/pith/ICL4OUSPP6GZGL2V6G4QYYXS2L/action/citation_signature","submit_replication":"https://pith.science/pith/ICL4OUSPP6GZGL2V6G4QYYXS2L/action/replication_record"}},"created_at":"2026-07-05T00:21:32.062559+00:00","updated_at":"2026-07-05T00:21:32.062559+00:00"}