{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2024:IT5DNTGB2KLFNIUD37AN3LDSD2","short_pith_number":"pith:IT5DNTGB","schema_version":"1.0","canonical_sha256":"44fa36ccc1d29656a283dfc0ddac721e8d4390b52128eadbff522252b6e2832e","source":{"kind":"arxiv","id":"2411.16154","version":2},"attestation_state":"computed","paper":{"title":"DeDe: Detecting Backdoor Samples for SSL Encoders via Decoders","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":["cs.CR"],"primary_cat":"cs.LG","authors_text":"Duanyi Yao, Sizai Hou, Songze Li","submitted_at":"2024-11-25T07:26:22Z","abstract_excerpt":"Self-supervised learning (SSL) is pervasively exploited in training high-quality upstream encoders with a large amount of unlabeled data. However, it is found to be susceptible to backdoor attacks merely via polluting a small portion of training data. The victim encoders associate triggered inputs with target embeddings, e.g., mapping a triggered cat image to an airplane embedding, such that the downstream tasks inherit unintended behaviors when the trigger is activated. Emerging backdoor attacks have shown great threats across different SSL paradigms such as contrastive learning and CLIP, yet"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2411.16154","kind":"arxiv","version":2},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2024-11-25T07:26:22Z","cross_cats_sorted":["cs.CR"],"title_canon_sha256":"bfbdee97fa1b89c8349288389fb3aca71502c24f8c95b841201055ac1ce59bef","abstract_canon_sha256":"65c1b36180ba2a6605a92e12214e4a8388ec176cf783f7cfdc26e1e60f1081f5"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T10:35:41.777068Z","signature_b64":"KH+x/SOLzJHIwsZnvx7Mir1DDM3J1ijSSssClb4jqZZzJEHHmsrkgXZOU0kqqDxvLjr4MJWGxgX7tgC15AT4DA==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"44fa36ccc1d29656a283dfc0ddac721e8d4390b52128eadbff522252b6e2832e","last_reissued_at":"2026-07-05T10:35:41.776566Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T10:35:41.776566Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"DeDe: Detecting Backdoor Samples for SSL Encoders via Decoders","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":["cs.CR"],"primary_cat":"cs.LG","authors_text":"Duanyi Yao, Sizai Hou, Songze Li","submitted_at":"2024-11-25T07:26:22Z","abstract_excerpt":"Self-supervised learning (SSL) is pervasively exploited in training high-quality upstream encoders with a large amount of unlabeled data. However, it is found to be susceptible to backdoor attacks merely via polluting a small portion of training data. The victim encoders associate triggered inputs with target embeddings, e.g., mapping a triggered cat image to an airplane embedding, such that the downstream tasks inherit unintended behaviors when the trigger is activated. Emerging backdoor attacks have shown great threats across different SSL paradigms such as contrastive learning and CLIP, yet"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2411.16154","kind":"arxiv","version":2},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2411.16154/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2411.16154","created_at":"2026-07-05T10:35:41.776631+00:00"},{"alias_kind":"arxiv_version","alias_value":"2411.16154v2","created_at":"2026-07-05T10:35:41.776631+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2411.16154","created_at":"2026-07-05T10:35:41.776631+00:00"},{"alias_kind":"pith_short_12","alias_value":"IT5DNTGB2KLF","created_at":"2026-07-05T10:35:41.776631+00:00"},{"alias_kind":"pith_short_16","alias_value":"IT5DNTGB2KLFNIUD","created_at":"2026-07-05T10:35:41.776631+00:00"},{"alias_kind":"pith_short_8","alias_value":"IT5DNTGB","created_at":"2026-07-05T10:35:41.776631+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":1,"internal_anchor_count":0,"sample":[{"citing_arxiv_id":"2604.09101","citing_title":"CLIP-Inspector: Model-Level Backdoor Detection for Prompt-Tuned CLIP via OOD Trigger Inversion","ref_index":15,"is_internal_anchor":false}]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/IT5DNTGB2KLFNIUD37AN3LDSD2","json":"https://pith.science/pith/IT5DNTGB2KLFNIUD37AN3LDSD2.json","graph_json":"https://pith.science/api/pith-number/IT5DNTGB2KLFNIUD37AN3LDSD2/graph.json","events_json":"https://pith.science/api/pith-number/IT5DNTGB2KLFNIUD37AN3LDSD2/events.json","paper":"https://pith.science/paper/IT5DNTGB"},"agent_actions":{"view_html":"https://pith.science/pith/IT5DNTGB2KLFNIUD37AN3LDSD2","download_json":"https://pith.science/pith/IT5DNTGB2KLFNIUD37AN3LDSD2.json","view_paper":"https://pith.science/paper/IT5DNTGB","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2411.16154&json=true","fetch_graph":"https://pith.science/api/pith-number/IT5DNTGB2KLFNIUD37AN3LDSD2/graph.json","fetch_events":"https://pith.science/api/pith-number/IT5DNTGB2KLFNIUD37AN3LDSD2/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/IT5DNTGB2KLFNIUD37AN3LDSD2/action/timestamp_anchor","attest_storage":"https://pith.science/pith/IT5DNTGB2KLFNIUD37AN3LDSD2/action/storage_attestation","attest_author":"https://pith.science/pith/IT5DNTGB2KLFNIUD37AN3LDSD2/action/author_attestation","sign_citation":"https://pith.science/pith/IT5DNTGB2KLFNIUD37AN3LDSD2/action/citation_signature","submit_replication":"https://pith.science/pith/IT5DNTGB2KLFNIUD37AN3LDSD2/action/replication_record"}},"created_at":"2026-07-05T10:35:41.776631+00:00","updated_at":"2026-07-05T10:35:41.776631+00:00"}