{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2019:IOIKQIDZGHVNWKITJW4YQ6TY2C","short_pith_number":"pith:IOIKQIDZ","canonical_record":{"source":{"id":"1906.00698","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-06-03T10:50:42Z","cross_cats_sorted":["stat.ML"],"title_canon_sha256":"28e931c7b5823b01cf70a4976ba8152a1733b9869baa90d0f4476662feb64f25","abstract_canon_sha256":"45ef3533fa51dd97dad975036f59b4f867bd384061e96b613705c5e8217af014"},"schema_version":"1.0"},"canonical_sha256":"4390a8207931eadb29134db9887a78d096c4df5c86b7b4b7515e2f4a2b918cfd","source":{"kind":"arxiv","id":"1906.00698","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1906.00698","created_at":"2026-05-17T23:44:24Z"},{"alias_kind":"arxiv_version","alias_value":"1906.00698v1","created_at":"2026-05-17T23:44:24Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1906.00698","created_at":"2026-05-17T23:44:24Z"},{"alias_kind":"pith_short_12","alias_value":"IOIKQIDZGHVN","created_at":"2026-05-18T12:33:18Z"},{"alias_kind":"pith_short_16","alias_value":"IOIKQIDZGHVNWKIT","created_at":"2026-05-18T12:33:18Z"},{"alias_kind":"pith_short_8","alias_value":"IOIKQIDZ","created_at":"2026-05-18T12:33:18Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2019:IOIKQIDZGHVNWKITJW4YQ6TY2C","target":"record","payload":{"canonical_record":{"source":{"id":"1906.00698","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-06-03T10:50:42Z","cross_cats_sorted":["stat.ML"],"title_canon_sha256":"28e931c7b5823b01cf70a4976ba8152a1733b9869baa90d0f4476662feb64f25","abstract_canon_sha256":"45ef3533fa51dd97dad975036f59b4f867bd384061e96b613705c5e8217af014"},"schema_version":"1.0"},"canonical_sha256":"4390a8207931eadb29134db9887a78d096c4df5c86b7b4b7515e2f4a2b918cfd","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:44:24.141167Z","signature_b64":"fnR0p1K/JV5OBDI5M5gwS/mNNNHyu8NvD+K2yK/PPLD+H+BBrM6bj/LRvN0QEt8viKb0P49WTA4aee8LCzRXAQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"4390a8207931eadb29134db9887a78d096c4df5c86b7b4b7515e2f4a2b918cfd","last_reissued_at":"2026-05-17T23:44:24.140712Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:44:24.140712Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1906.00698","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:44:24Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"1NIE9860rsPjBWX2PoUnNc2dZObN3ep3O4dtnG/kfposXj8JC2KQR+yFYIPVS0BtJbIcOlu4wqvsEpL95ZoDBg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-09T10:30:47.051668Z"},"content_sha256":"05564216bfae1f268f7b59f185678f81d3f4035e370299e9c6d388daae308cd2","schema_version":"1.0","event_id":"sha256:05564216bfae1f268f7b59f185678f81d3f4035e370299e9c6d388daae308cd2"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2019:IOIKQIDZGHVNWKITJW4YQ6TY2C","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Adversarial Risk Bounds for Neural Networks through Sparsity based Compression","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["stat.ML"],"primary_cat":"cs.LG","authors_text":"Arash Behboodi, Emilio Rafael Balda, Niklas Koep, Rudolf Mathar","submitted_at":"2019-06-03T10:50:42Z","abstract_excerpt":"Neural networks have been shown to be vulnerable against minor adversarial perturbations of their inputs, especially for high dimensional data under $\\ell_\\infty$ attacks. To combat this problem, techniques like adversarial training have been employed to obtain models which are robust on the training set. However, the robustness of such models against adversarial perturbations may not generalize to unseen data. To study how robustness generalizes, recent works assume that the inputs have bounded $\\ell_2$-norm in order to bound the adversarial risk for $\\ell_\\infty$ attacks with no explicit dim"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1906.00698","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:44:24Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"6WKUBkP04vxl6pJbPCLDaN9TYomgE2Suu//fQG4e/AYSHQApk/Y3A4AnE6Dh7i0F8dJzvl41G2sOEXSV+dwMBQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-09T10:30:47.052386Z"},"content_sha256":"40dcbfa444c2a2b36d2239e7d8cad73a409520ead48bd8c154b76663eeaed586","schema_version":"1.0","event_id":"sha256:40dcbfa444c2a2b36d2239e7d8cad73a409520ead48bd8c154b76663eeaed586"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/IOIKQIDZGHVNWKITJW4YQ6TY2C/bundle.json","state_url":"https://pith.science/pith/IOIKQIDZGHVNWKITJW4YQ6TY2C/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/IOIKQIDZGHVNWKITJW4YQ6TY2C/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-09T10:30:47Z","links":{"resolver":"https://pith.science/pith/IOIKQIDZGHVNWKITJW4YQ6TY2C","bundle":"https://pith.science/pith/IOIKQIDZGHVNWKITJW4YQ6TY2C/bundle.json","state":"https://pith.science/pith/IOIKQIDZGHVNWKITJW4YQ6TY2C/state.json","well_known_bundle":"https://pith.science/.well-known/pith/IOIKQIDZGHVNWKITJW4YQ6TY2C/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2019:IOIKQIDZGHVNWKITJW4YQ6TY2C","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"45ef3533fa51dd97dad975036f59b4f867bd384061e96b613705c5e8217af014","cross_cats_sorted":["stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-06-03T10:50:42Z","title_canon_sha256":"28e931c7b5823b01cf70a4976ba8152a1733b9869baa90d0f4476662feb64f25"},"schema_version":"1.0","source":{"id":"1906.00698","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1906.00698","created_at":"2026-05-17T23:44:24Z"},{"alias_kind":"arxiv_version","alias_value":"1906.00698v1","created_at":"2026-05-17T23:44:24Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1906.00698","created_at":"2026-05-17T23:44:24Z"},{"alias_kind":"pith_short_12","alias_value":"IOIKQIDZGHVN","created_at":"2026-05-18T12:33:18Z"},{"alias_kind":"pith_short_16","alias_value":"IOIKQIDZGHVNWKIT","created_at":"2026-05-18T12:33:18Z"},{"alias_kind":"pith_short_8","alias_value":"IOIKQIDZ","created_at":"2026-05-18T12:33:18Z"}],"graph_snapshots":[{"event_id":"sha256:40dcbfa444c2a2b36d2239e7d8cad73a409520ead48bd8c154b76663eeaed586","target":"graph","created_at":"2026-05-17T23:44:24Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Neural networks have been shown to be vulnerable against minor adversarial perturbations of their inputs, especially for high dimensional data under $\\ell_\\infty$ attacks. To combat this problem, techniques like adversarial training have been employed to obtain models which are robust on the training set. However, the robustness of such models against adversarial perturbations may not generalize to unseen data. To study how robustness generalizes, recent works assume that the inputs have bounded $\\ell_2$-norm in order to bound the adversarial risk for $\\ell_\\infty$ attacks with no explicit dim","authors_text":"Arash Behboodi, Emilio Rafael Balda, Niklas Koep, Rudolf Mathar","cross_cats":["stat.ML"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-06-03T10:50:42Z","title":"Adversarial Risk Bounds for Neural Networks through Sparsity based Compression"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1906.00698","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:05564216bfae1f268f7b59f185678f81d3f4035e370299e9c6d388daae308cd2","target":"record","created_at":"2026-05-17T23:44:24Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"45ef3533fa51dd97dad975036f59b4f867bd384061e96b613705c5e8217af014","cross_cats_sorted":["stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-06-03T10:50:42Z","title_canon_sha256":"28e931c7b5823b01cf70a4976ba8152a1733b9869baa90d0f4476662feb64f25"},"schema_version":"1.0","source":{"id":"1906.00698","kind":"arxiv","version":1}},"canonical_sha256":"4390a8207931eadb29134db9887a78d096c4df5c86b7b4b7515e2f4a2b918cfd","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"4390a8207931eadb29134db9887a78d096c4df5c86b7b4b7515e2f4a2b918cfd","first_computed_at":"2026-05-17T23:44:24.140712Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-17T23:44:24.140712Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"fnR0p1K/JV5OBDI5M5gwS/mNNNHyu8NvD+K2yK/PPLD+H+BBrM6bj/LRvN0QEt8viKb0P49WTA4aee8LCzRXAQ==","signature_status":"signed_v1","signed_at":"2026-05-17T23:44:24.141167Z","signed_message":"canonical_sha256_bytes"},"source_id":"1906.00698","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:05564216bfae1f268f7b59f185678f81d3f4035e370299e9c6d388daae308cd2","sha256:40dcbfa444c2a2b36d2239e7d8cad73a409520ead48bd8c154b76663eeaed586"],"state_sha256":"e03bb3af4855e33c6b7cc0ebc2c0e8175776177ecd4a2a788546995893007b39"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"G2aint6M9IeUEOjPN5DFYUIuq/2aGH/Fl75NqKtEcooPNVMKZ03Wt7ADV1Jbakj6UFwpq+xzjAlwADnMY0VNDw==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-09T10:30:47.056188Z","bundle_sha256":"1e743a3695c3cc0c9b29071fdcf39e2a76ba806ccc2bac7b52af6c1d6c5a5f9b"}}