{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2021:JBKTJBCUHFGFYQZDZKHY3R4CZ6","short_pith_number":"pith:JBKTJBCU","canonical_record":{"source":{"id":"2101.09306","kind":"arxiv","version":4},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2021-01-22T19:36:40Z","cross_cats_sorted":["math.OC"],"title_canon_sha256":"7b0e2bd4b8c470dd61e5585124435793ff22f43c857e0366af86ebf67ab8c261","abstract_canon_sha256":"20dc3e6c78aa521f99a6f65aeabf7d7eadccd4a9a3a9b3c12a29beba272b32df"},"schema_version":"1.0"},"canonical_sha256":"4855348454394c5c4323ca8f8dc782cfa510b1d391d6637ef26f3c84fb402b1d","source":{"kind":"arxiv","id":"2101.09306","version":4},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2101.09306","created_at":"2026-07-05T11:00:56Z"},{"alias_kind":"arxiv_version","alias_value":"2101.09306v4","created_at":"2026-07-05T11:00:56Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2101.09306","created_at":"2026-07-05T11:00:56Z"},{"alias_kind":"pith_short_12","alias_value":"JBKTJBCUHFGF","created_at":"2026-07-05T11:00:56Z"},{"alias_kind":"pith_short_16","alias_value":"JBKTJBCUHFGFYQZD","created_at":"2026-07-05T11:00:56Z"},{"alias_kind":"pith_short_8","alias_value":"JBKTJBCU","created_at":"2026-07-05T11:00:56Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2021:JBKTJBCUHFGFYQZDZKHY3R4CZ6","target":"record","payload":{"canonical_record":{"source":{"id":"2101.09306","kind":"arxiv","version":4},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2021-01-22T19:36:40Z","cross_cats_sorted":["math.OC"],"title_canon_sha256":"7b0e2bd4b8c470dd61e5585124435793ff22f43c857e0366af86ebf67ab8c261","abstract_canon_sha256":"20dc3e6c78aa521f99a6f65aeabf7d7eadccd4a9a3a9b3c12a29beba272b32df"},"schema_version":"1.0"},"canonical_sha256":"4855348454394c5c4323ca8f8dc782cfa510b1d391d6637ef26f3c84fb402b1d","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T11:00:56.941243Z","signature_b64":"Xjhl43AmI16yLCcfZsmD1Sj5gnpivi6M+qHedUCezXW4IH9oWvOfmfXl3pd9k8ySCswCX1Au61SjHvSVFmXHDQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"4855348454394c5c4323ca8f8dc782cfa510b1d391d6637ef26f3c84fb402b1d","last_reissued_at":"2026-07-05T11:00:56.940691Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T11:00:56.940691Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"2101.09306","source_version":4,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-07-05T11:00:56Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"+pdL2zTqxvcmGdrWiMHWDrKW8oZ+rwh0Rf3wM+zetEq9CdaaTKX4cq+qMzSpi2qZOjoPh6VtTOCvRg534ATEAg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-08-09T11:47:04.317738Z"},"content_sha256":"b3f917f1e6b9df6954829208df2d3ccebc4084ae43fda886aab64256265423b5","schema_version":"1.0","event_id":"sha256:b3f917f1e6b9df6954829208df2d3ccebc4084ae43fda886aab64256265423b5"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2021:JBKTJBCUHFGFYQZDZKHY3R4CZ6","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Towards Optimal Branching of Linear and Semidefinite Relaxations for Neural Network Robustness Certification","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":["math.OC"],"primary_cat":"cs.LG","authors_text":"Brendon G. Anderson, Jingqi Li, Somayeh Sojoudi, Ziye Ma","submitted_at":"2021-01-22T19:36:40Z","abstract_excerpt":"In this paper, we study certifying the robustness of ReLU neural networks against adversarial input perturbations. To diminish the relaxation error suffered by the popular linear programming (LP) and semidefinite programming (SDP) certification methods, we take a branch-and-bound approach to propose partitioning the input uncertainty set and solving the relaxations on each part separately. We show that this approach reduces relaxation error, and that the error is eliminated entirely upon performing an LP relaxation with a partition intelligently designed to exploit the nature of the ReLU activ"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2101.09306","kind":"arxiv","version":4},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2101.09306/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-07-05T11:00:56Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"bQlqjMQMeDK40CUqxW8KQrwZVz1D560zuG1NMJlNZNkEheXys8mslQWyb6KNqr4cYieZbP7PDRGALXux+Js0CQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-08-09T11:47:04.318271Z"},"content_sha256":"e8b23b6f4fb3a75c37101bdc783d7c974284c08b1dce0c35cfb1f7aa59458bb9","schema_version":"1.0","event_id":"sha256:e8b23b6f4fb3a75c37101bdc783d7c974284c08b1dce0c35cfb1f7aa59458bb9"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/JBKTJBCUHFGFYQZDZKHY3R4CZ6/bundle.json","state_url":"https://pith.science/pith/JBKTJBCUHFGFYQZDZKHY3R4CZ6/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/JBKTJBCUHFGFYQZDZKHY3R4CZ6/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-08-09T11:47:04Z","links":{"resolver":"https://pith.science/pith/JBKTJBCUHFGFYQZDZKHY3R4CZ6","bundle":"https://pith.science/pith/JBKTJBCUHFGFYQZDZKHY3R4CZ6/bundle.json","state":"https://pith.science/pith/JBKTJBCUHFGFYQZDZKHY3R4CZ6/state.json","well_known_bundle":"https://pith.science/.well-known/pith/JBKTJBCUHFGFYQZDZKHY3R4CZ6/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2021:JBKTJBCUHFGFYQZDZKHY3R4CZ6","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"20dc3e6c78aa521f99a6f65aeabf7d7eadccd4a9a3a9b3c12a29beba272b32df","cross_cats_sorted":["math.OC"],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2021-01-22T19:36:40Z","title_canon_sha256":"7b0e2bd4b8c470dd61e5585124435793ff22f43c857e0366af86ebf67ab8c261"},"schema_version":"1.0","source":{"id":"2101.09306","kind":"arxiv","version":4}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2101.09306","created_at":"2026-07-05T11:00:56Z"},{"alias_kind":"arxiv_version","alias_value":"2101.09306v4","created_at":"2026-07-05T11:00:56Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2101.09306","created_at":"2026-07-05T11:00:56Z"},{"alias_kind":"pith_short_12","alias_value":"JBKTJBCUHFGF","created_at":"2026-07-05T11:00:56Z"},{"alias_kind":"pith_short_16","alias_value":"JBKTJBCUHFGFYQZD","created_at":"2026-07-05T11:00:56Z"},{"alias_kind":"pith_short_8","alias_value":"JBKTJBCU","created_at":"2026-07-05T11:00:56Z"}],"graph_snapshots":[{"event_id":"sha256:e8b23b6f4fb3a75c37101bdc783d7c974284c08b1dce0c35cfb1f7aa59458bb9","target":"graph","created_at":"2026-07-05T11:00:56Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/2101.09306/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"In this paper, we study certifying the robustness of ReLU neural networks against adversarial input perturbations. To diminish the relaxation error suffered by the popular linear programming (LP) and semidefinite programming (SDP) certification methods, we take a branch-and-bound approach to propose partitioning the input uncertainty set and solving the relaxations on each part separately. We show that this approach reduces relaxation error, and that the error is eliminated entirely upon performing an LP relaxation with a partition intelligently designed to exploit the nature of the ReLU activ","authors_text":"Brendon G. Anderson, Jingqi Li, Somayeh Sojoudi, Ziye Ma","cross_cats":["math.OC"],"headline":"","license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2021-01-22T19:36:40Z","title":"Towards Optimal Branching of Linear and Semidefinite Relaxations for Neural Network Robustness Certification"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2101.09306","kind":"arxiv","version":4},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:b3f917f1e6b9df6954829208df2d3ccebc4084ae43fda886aab64256265423b5","target":"record","created_at":"2026-07-05T11:00:56Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"20dc3e6c78aa521f99a6f65aeabf7d7eadccd4a9a3a9b3c12a29beba272b32df","cross_cats_sorted":["math.OC"],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2021-01-22T19:36:40Z","title_canon_sha256":"7b0e2bd4b8c470dd61e5585124435793ff22f43c857e0366af86ebf67ab8c261"},"schema_version":"1.0","source":{"id":"2101.09306","kind":"arxiv","version":4}},"canonical_sha256":"4855348454394c5c4323ca8f8dc782cfa510b1d391d6637ef26f3c84fb402b1d","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"4855348454394c5c4323ca8f8dc782cfa510b1d391d6637ef26f3c84fb402b1d","first_computed_at":"2026-07-05T11:00:56.940691Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-07-05T11:00:56.940691Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"Xjhl43AmI16yLCcfZsmD1Sj5gnpivi6M+qHedUCezXW4IH9oWvOfmfXl3pd9k8ySCswCX1Au61SjHvSVFmXHDQ==","signature_status":"signed_v1","signed_at":"2026-07-05T11:00:56.941243Z","signed_message":"canonical_sha256_bytes"},"source_id":"2101.09306","source_kind":"arxiv","source_version":4}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:b3f917f1e6b9df6954829208df2d3ccebc4084ae43fda886aab64256265423b5","sha256:e8b23b6f4fb3a75c37101bdc783d7c974284c08b1dce0c35cfb1f7aa59458bb9"],"state_sha256":"4a707a6b40fa57c03918c11d96159962f91a456e9f0ff915c64f784fc43e9b87"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"124stFNVI80fuq6XXWlkHUt+FqE3MNQTLHyUnHRYfRUj6DSAbkgg9V2ks2Ue5DYnQJmcmpqOzwDEl1WhxL0PBw==","signed_message":"bundle_sha256_bytes","signed_at":"2026-08-09T11:47:04.322372Z","bundle_sha256":"a6e85ef491e63c169780f993c8c3bd289632dfc580dbd15c26067bd8ffdd2c40"}}