{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2018:JMS766X7Q2AUCL2RNG5HRXXHF4","short_pith_number":"pith:JMS766X7","canonical_record":{"source":{"id":"1806.09186","kind":"arxiv","version":3},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2018-06-21T04:57:20Z","cross_cats_sorted":["cs.LG","stat.ML"],"title_canon_sha256":"16d74f25b213445701e460d79409ff92b3ff3debebdc6c4b424ff6f52d58e7c4","abstract_canon_sha256":"a89ffaf7900e8ddb105c4c613eb9192ee6ffbb5e6574266d63daf7d619120ff4"},"schema_version":"1.0"},"canonical_sha256":"4b25ff7aff8681412f5169ba78dee72f38f2edcfd354fc1fb024e7ef640c5ed3","source":{"kind":"arxiv","id":"1806.09186","version":3},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1806.09186","created_at":"2026-05-17T23:57:31Z"},{"alias_kind":"arxiv_version","alias_value":"1806.09186v3","created_at":"2026-05-17T23:57:31Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1806.09186","created_at":"2026-05-17T23:57:31Z"},{"alias_kind":"pith_short_12","alias_value":"JMS766X7Q2AU","created_at":"2026-05-18T12:32:31Z"},{"alias_kind":"pith_short_16","alias_value":"JMS766X7Q2AUCL2R","created_at":"2026-05-18T12:32:31Z"},{"alias_kind":"pith_short_8","alias_value":"JMS766X7","created_at":"2026-05-18T12:32:31Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2018:JMS766X7Q2AUCL2RNG5HRXXHF4","target":"record","payload":{"canonical_record":{"source":{"id":"1806.09186","kind":"arxiv","version":3},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2018-06-21T04:57:20Z","cross_cats_sorted":["cs.LG","stat.ML"],"title_canon_sha256":"16d74f25b213445701e460d79409ff92b3ff3debebdc6c4b424ff6f52d58e7c4","abstract_canon_sha256":"a89ffaf7900e8ddb105c4c613eb9192ee6ffbb5e6574266d63daf7d619120ff4"},"schema_version":"1.0"},"canonical_sha256":"4b25ff7aff8681412f5169ba78dee72f38f2edcfd354fc1fb024e7ef640c5ed3","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:57:31.780619Z","signature_b64":"u0lzzSuzL9UUd1uF7y6QIAPbmFF405wGRa8GcA9/vwydGHN4Uj64CV2OOZ7iJtIqsYaWLt11yJaQV2Um3khvBw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"4b25ff7aff8681412f5169ba78dee72f38f2edcfd354fc1fb024e7ef640c5ed3","last_reissued_at":"2026-05-17T23:57:31.779886Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:57:31.779886Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1806.09186","source_version":3,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:57:31Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"YZPvxR8DDsfB/fNalGE795S2ZNlVK82nPIpvJuK3kkRoxmh5F660hrR+bHTiS8OrTRuAY6r8Sm26g9fD+8vmBg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-27T18:39:31.837696Z"},"content_sha256":"b998d00114cf74be9aa1a56c1e488665d55547fb2654136046e57b8878705573","schema_version":"1.0","event_id":"sha256:b998d00114cf74be9aa1a56c1e488665d55547fb2654136046e57b8878705573"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2018:JMS766X7Q2AUCL2RNG5HRXXHF4","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Detection based Defense against Adversarial Examples from the Steganalysis Point of View","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.LG","stat.ML"],"primary_cat":"cs.CV","authors_text":"Dongdong Hou, Hongyue Zha, Jiayang Liu, Nenghai Yu, Weiming Zhang, Yiwei Zhang, Yujia Liu","submitted_at":"2018-06-21T04:57:20Z","abstract_excerpt":"Deep Neural Networks (DNNs) have recently led to significant improvements in many fields. However, DNNs are vulnerable to adversarial examples which are samples with imperceptible perturbations while dramatically misleading the DNNs. Moreover, adversarial examples can be used to perform an attack on various kinds of DNN based systems, even if the adversary has no access to the underlying model. Many defense methods have been proposed, such as obfuscating gradients of the networks or detecting adversarial examples. However it is proved out that these defense methods are not effective or cannot "},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1806.09186","kind":"arxiv","version":3},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:57:31Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"nCI3XMMEugORADpMSZotZwYG02KyxY/KZLmkW0r8nch+7Fq4k6g1zrJSZ7FM0sB4Q2+eL2gYhIrtMNt669fQAQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-27T18:39:31.838420Z"},"content_sha256":"188926da27c5ce1df92196628f6a5623eee1aa428882acffcd207812dd2a8e33","schema_version":"1.0","event_id":"sha256:188926da27c5ce1df92196628f6a5623eee1aa428882acffcd207812dd2a8e33"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/JMS766X7Q2AUCL2RNG5HRXXHF4/bundle.json","state_url":"https://pith.science/pith/JMS766X7Q2AUCL2RNG5HRXXHF4/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/JMS766X7Q2AUCL2RNG5HRXXHF4/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-27T18:39:31Z","links":{"resolver":"https://pith.science/pith/JMS766X7Q2AUCL2RNG5HRXXHF4","bundle":"https://pith.science/pith/JMS766X7Q2AUCL2RNG5HRXXHF4/bundle.json","state":"https://pith.science/pith/JMS766X7Q2AUCL2RNG5HRXXHF4/state.json","well_known_bundle":"https://pith.science/.well-known/pith/JMS766X7Q2AUCL2RNG5HRXXHF4/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2018:JMS766X7Q2AUCL2RNG5HRXXHF4","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"a89ffaf7900e8ddb105c4c613eb9192ee6ffbb5e6574266d63daf7d619120ff4","cross_cats_sorted":["cs.LG","stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2018-06-21T04:57:20Z","title_canon_sha256":"16d74f25b213445701e460d79409ff92b3ff3debebdc6c4b424ff6f52d58e7c4"},"schema_version":"1.0","source":{"id":"1806.09186","kind":"arxiv","version":3}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1806.09186","created_at":"2026-05-17T23:57:31Z"},{"alias_kind":"arxiv_version","alias_value":"1806.09186v3","created_at":"2026-05-17T23:57:31Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1806.09186","created_at":"2026-05-17T23:57:31Z"},{"alias_kind":"pith_short_12","alias_value":"JMS766X7Q2AU","created_at":"2026-05-18T12:32:31Z"},{"alias_kind":"pith_short_16","alias_value":"JMS766X7Q2AUCL2R","created_at":"2026-05-18T12:32:31Z"},{"alias_kind":"pith_short_8","alias_value":"JMS766X7","created_at":"2026-05-18T12:32:31Z"}],"graph_snapshots":[{"event_id":"sha256:188926da27c5ce1df92196628f6a5623eee1aa428882acffcd207812dd2a8e33","target":"graph","created_at":"2026-05-17T23:57:31Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Deep Neural Networks (DNNs) have recently led to significant improvements in many fields. However, DNNs are vulnerable to adversarial examples which are samples with imperceptible perturbations while dramatically misleading the DNNs. Moreover, adversarial examples can be used to perform an attack on various kinds of DNN based systems, even if the adversary has no access to the underlying model. Many defense methods have been proposed, such as obfuscating gradients of the networks or detecting adversarial examples. However it is proved out that these defense methods are not effective or cannot ","authors_text":"Dongdong Hou, Hongyue Zha, Jiayang Liu, Nenghai Yu, Weiming Zhang, Yiwei Zhang, Yujia Liu","cross_cats":["cs.LG","stat.ML"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2018-06-21T04:57:20Z","title":"Detection based Defense against Adversarial Examples from the Steganalysis Point of View"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1806.09186","kind":"arxiv","version":3},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:b998d00114cf74be9aa1a56c1e488665d55547fb2654136046e57b8878705573","target":"record","created_at":"2026-05-17T23:57:31Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"a89ffaf7900e8ddb105c4c613eb9192ee6ffbb5e6574266d63daf7d619120ff4","cross_cats_sorted":["cs.LG","stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2018-06-21T04:57:20Z","title_canon_sha256":"16d74f25b213445701e460d79409ff92b3ff3debebdc6c4b424ff6f52d58e7c4"},"schema_version":"1.0","source":{"id":"1806.09186","kind":"arxiv","version":3}},"canonical_sha256":"4b25ff7aff8681412f5169ba78dee72f38f2edcfd354fc1fb024e7ef640c5ed3","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"4b25ff7aff8681412f5169ba78dee72f38f2edcfd354fc1fb024e7ef640c5ed3","first_computed_at":"2026-05-17T23:57:31.779886Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-17T23:57:31.779886Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"u0lzzSuzL9UUd1uF7y6QIAPbmFF405wGRa8GcA9/vwydGHN4Uj64CV2OOZ7iJtIqsYaWLt11yJaQV2Um3khvBw==","signature_status":"signed_v1","signed_at":"2026-05-17T23:57:31.780619Z","signed_message":"canonical_sha256_bytes"},"source_id":"1806.09186","source_kind":"arxiv","source_version":3}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:b998d00114cf74be9aa1a56c1e488665d55547fb2654136046e57b8878705573","sha256:188926da27c5ce1df92196628f6a5623eee1aa428882acffcd207812dd2a8e33"],"state_sha256":"ee6db3a4083c2b804c9916da52d946ca2faabcb7d28751b63768715a9355eea2"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"SEAUb4xCsEpzqF4txOcjRkYLmNCvAo1PqDTbrLFXNR49gqhv8XuJPZuNZELkLuG2TEC7lHWuxeUpFnDxLr9XCw==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-27T18:39:31.842093Z","bundle_sha256":"8f6c8ea9730e082fc1362f8ececa13cb7fcee6a9016550836fa8b3af5a42fbe8"}}