{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2022:J6UN3P7GNGLCB3Y4V4QYRZCNOP","short_pith_number":"pith:J6UN3P7G","canonical_record":{"source":{"id":"2204.03848","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"eess.AS","submitted_at":"2022-04-08T05:23:15Z","cross_cats_sorted":["cs.CR","cs.SD"],"title_canon_sha256":"a6d71c4b877b97e89eaa896cb9e34a3971b85468534fa712b2a6f76d61474b2c","abstract_canon_sha256":"2f15d625e3d3371e950b508b48be425bcda7e57034819bdf0ee09f4362c6819d"},"schema_version":"1.0"},"canonical_sha256":"4fa8ddbfe6699620ef1caf2188e44d73dd1c39ced59a8af6161074b9583e1196","source":{"kind":"arxiv","id":"2204.03848","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2204.03848","created_at":"2026-07-05T04:12:42Z"},{"alias_kind":"arxiv_version","alias_value":"2204.03848v1","created_at":"2026-07-05T04:12:42Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2204.03848","created_at":"2026-07-05T04:12:42Z"},{"alias_kind":"pith_short_12","alias_value":"J6UN3P7GNGLC","created_at":"2026-07-05T04:12:42Z"},{"alias_kind":"pith_short_16","alias_value":"J6UN3P7GNGLCB3Y4","created_at":"2026-07-05T04:12:42Z"},{"alias_kind":"pith_short_8","alias_value":"J6UN3P7G","created_at":"2026-07-05T04:12:42Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2022:J6UN3P7GNGLCB3Y4V4QYRZCNOP","target":"record","payload":{"canonical_record":{"source":{"id":"2204.03848","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"eess.AS","submitted_at":"2022-04-08T05:23:15Z","cross_cats_sorted":["cs.CR","cs.SD"],"title_canon_sha256":"a6d71c4b877b97e89eaa896cb9e34a3971b85468534fa712b2a6f76d61474b2c","abstract_canon_sha256":"2f15d625e3d3371e950b508b48be425bcda7e57034819bdf0ee09f4362c6819d"},"schema_version":"1.0"},"canonical_sha256":"4fa8ddbfe6699620ef1caf2188e44d73dd1c39ced59a8af6161074b9583e1196","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T04:12:42.364514Z","signature_b64":"owbmUOpbSpxuC1Y//AIzJMMIQJ4d+uoV/BGBgmI5fvP88seNxpZWE6uYDxGlde8kHZZRGVNuVmP3sSpHQL2QBg==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"4fa8ddbfe6699620ef1caf2188e44d73dd1c39ced59a8af6161074b9583e1196","last_reissued_at":"2026-07-05T04:12:42.364174Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T04:12:42.364174Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"2204.03848","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-07-05T04:12:42Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"aqJgzsdFA5/szWO8RidjmxKyqTvwGqNMMtY7lQIWZeS4AWNIw78hLZ245LK5T8lsGINffxDYFbbySiN4F1HpCw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-07-05T11:16:03.122380Z"},"content_sha256":"a1ce94f433e073c717f2e7e753c8718918f69b10c1cf08e96f3cc2b190cf61f5","schema_version":"1.0","event_id":"sha256:a1ce94f433e073c717f2e7e753c8718918f69b10c1cf08e96f3cc2b190cf61f5"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2022:J6UN3P7GNGLCB3Y4V4QYRZCNOP","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"AdvEst: Adversarial Perturbation Estimation to Classify and Detect Adversarial Attacks against Speaker Identification","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":["cs.CR","cs.SD"],"primary_cat":"eess.AS","authors_text":"Jesus Villalba, Najim Dehak, Saurabh Kataria, Sonal Joshi","submitted_at":"2022-04-08T05:23:15Z","abstract_excerpt":"Adversarial attacks pose a severe security threat to the state-of-the-art speaker identification systems, thereby making it vital to propose countermeasures against them. Building on our previous work that used representation learning to classify and detect adversarial attacks, we propose an improvement to it using AdvEst, a method to estimate adversarial perturbation. First, we prove our claim that training the representation learning network using adversarial perturbations as opposed to adversarial examples (consisting of the combination of clean signal and adversarial perturbation) is benef"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2204.03848","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2204.03848/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-07-05T04:12:42Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"up/YgrTmyR/holMlUBjmmfUeol6+xLTiFnZTh8FyLbJoPe/CereCnwCkY6u/hsEyFEQ1fFSYWNe9nSHQ2NjYBg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-07-05T11:16:03.122756Z"},"content_sha256":"a1a393ec5572351df7ce76ceed4aeefa3b28f603618a4fab746ea063227591d4","schema_version":"1.0","event_id":"sha256:a1a393ec5572351df7ce76ceed4aeefa3b28f603618a4fab746ea063227591d4"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/J6UN3P7GNGLCB3Y4V4QYRZCNOP/bundle.json","state_url":"https://pith.science/pith/J6UN3P7GNGLCB3Y4V4QYRZCNOP/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/J6UN3P7GNGLCB3Y4V4QYRZCNOP/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-07-05T11:16:03Z","links":{"resolver":"https://pith.science/pith/J6UN3P7GNGLCB3Y4V4QYRZCNOP","bundle":"https://pith.science/pith/J6UN3P7GNGLCB3Y4V4QYRZCNOP/bundle.json","state":"https://pith.science/pith/J6UN3P7GNGLCB3Y4V4QYRZCNOP/state.json","well_known_bundle":"https://pith.science/.well-known/pith/J6UN3P7GNGLCB3Y4V4QYRZCNOP/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2022:J6UN3P7GNGLCB3Y4V4QYRZCNOP","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"2f15d625e3d3371e950b508b48be425bcda7e57034819bdf0ee09f4362c6819d","cross_cats_sorted":["cs.CR","cs.SD"],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"eess.AS","submitted_at":"2022-04-08T05:23:15Z","title_canon_sha256":"a6d71c4b877b97e89eaa896cb9e34a3971b85468534fa712b2a6f76d61474b2c"},"schema_version":"1.0","source":{"id":"2204.03848","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2204.03848","created_at":"2026-07-05T04:12:42Z"},{"alias_kind":"arxiv_version","alias_value":"2204.03848v1","created_at":"2026-07-05T04:12:42Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2204.03848","created_at":"2026-07-05T04:12:42Z"},{"alias_kind":"pith_short_12","alias_value":"J6UN3P7GNGLC","created_at":"2026-07-05T04:12:42Z"},{"alias_kind":"pith_short_16","alias_value":"J6UN3P7GNGLCB3Y4","created_at":"2026-07-05T04:12:42Z"},{"alias_kind":"pith_short_8","alias_value":"J6UN3P7G","created_at":"2026-07-05T04:12:42Z"}],"graph_snapshots":[{"event_id":"sha256:a1a393ec5572351df7ce76ceed4aeefa3b28f603618a4fab746ea063227591d4","target":"graph","created_at":"2026-07-05T04:12:42Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/2204.03848/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"Adversarial attacks pose a severe security threat to the state-of-the-art speaker identification systems, thereby making it vital to propose countermeasures against them. Building on our previous work that used representation learning to classify and detect adversarial attacks, we propose an improvement to it using AdvEst, a method to estimate adversarial perturbation. First, we prove our claim that training the representation learning network using adversarial perturbations as opposed to adversarial examples (consisting of the combination of clean signal and adversarial perturbation) is benef","authors_text":"Jesus Villalba, Najim Dehak, Saurabh Kataria, Sonal Joshi","cross_cats":["cs.CR","cs.SD"],"headline":"","license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"eess.AS","submitted_at":"2022-04-08T05:23:15Z","title":"AdvEst: Adversarial Perturbation Estimation to Classify and Detect Adversarial Attacks against Speaker Identification"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2204.03848","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:a1ce94f433e073c717f2e7e753c8718918f69b10c1cf08e96f3cc2b190cf61f5","target":"record","created_at":"2026-07-05T04:12:42Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"2f15d625e3d3371e950b508b48be425bcda7e57034819bdf0ee09f4362c6819d","cross_cats_sorted":["cs.CR","cs.SD"],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"eess.AS","submitted_at":"2022-04-08T05:23:15Z","title_canon_sha256":"a6d71c4b877b97e89eaa896cb9e34a3971b85468534fa712b2a6f76d61474b2c"},"schema_version":"1.0","source":{"id":"2204.03848","kind":"arxiv","version":1}},"canonical_sha256":"4fa8ddbfe6699620ef1caf2188e44d73dd1c39ced59a8af6161074b9583e1196","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"4fa8ddbfe6699620ef1caf2188e44d73dd1c39ced59a8af6161074b9583e1196","first_computed_at":"2026-07-05T04:12:42.364174Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-07-05T04:12:42.364174Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"owbmUOpbSpxuC1Y//AIzJMMIQJ4d+uoV/BGBgmI5fvP88seNxpZWE6uYDxGlde8kHZZRGVNuVmP3sSpHQL2QBg==","signature_status":"signed_v1","signed_at":"2026-07-05T04:12:42.364514Z","signed_message":"canonical_sha256_bytes"},"source_id":"2204.03848","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:a1ce94f433e073c717f2e7e753c8718918f69b10c1cf08e96f3cc2b190cf61f5","sha256:a1a393ec5572351df7ce76ceed4aeefa3b28f603618a4fab746ea063227591d4"],"state_sha256":"ec3e58d57607ec48b06ed6505f8626066930b9d2b3995a87c127b7034e4e45ce"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"kgLViGbUCmDPw185YYVKZ1WPI2/4LTmCwLNkTQ7Z9dHB/3pJuubdTSWrzw9qK44bvaL1J5mES3j4ugnyiTbFDg==","signed_message":"bundle_sha256_bytes","signed_at":"2026-07-05T11:16:03.124741Z","bundle_sha256":"f9505b426901b725e16c741efc3325380cf5cd44b04243b9f62e3709741b2024"}}