{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2019:K5RYL4XPIZXCZ7SNPSGE2KVUHD","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"6c4d3183c3f568c83ed4798e10af0e2efda91df71d604dab1978db25e84e5be5","cross_cats_sorted":["cs.CR","cs.CV","stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-03-26T12:18:31Z","title_canon_sha256":"91e0a4327c17ad5cd38868c2983e50d8cfa776b8eba9b60a2d88e8561d9151b3"},"schema_version":"1.0","source":{"id":"1903.10826","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1903.10826","created_at":"2026-05-17T23:50:17Z"},{"alias_kind":"arxiv_version","alias_value":"1903.10826v1","created_at":"2026-05-17T23:50:17Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1903.10826","created_at":"2026-05-17T23:50:17Z"},{"alias_kind":"pith_short_12","alias_value":"K5RYL4XPIZXC","created_at":"2026-05-18T12:33:21Z"},{"alias_kind":"pith_short_16","alias_value":"K5RYL4XPIZXCZ7SN","created_at":"2026-05-18T12:33:21Z"},{"alias_kind":"pith_short_8","alias_value":"K5RYL4XP","created_at":"2026-05-18T12:33:21Z"}],"graph_snapshots":[{"event_id":"sha256:1fd77a7d870bad5d0c0fe1d65beb32bf21e6a808d52102c8cf5221b7afc1732f","target":"graph","created_at":"2026-05-17T23:50:17Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Deep neural networks have recently achieved tremendous success in image classification. Recent studies have however shown that they are easily misled into incorrect classification decisions by adversarial examples. Adversaries can even craft attacks by querying the model in black-box settings, where no information about the model is released except its final decision. Such decision-based attacks usually require lots of queries, while real-world image recognition systems might actually restrict the number of queries. In this paper, we propose qFool, a novel decision-based attack algorithm that ","authors_text":"Pascal Frossard, Seyed-Mohsen Moosavi-Dezfooli, Yujia Liu","cross_cats":["cs.CR","cs.CV","stat.ML"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-03-26T12:18:31Z","title":"A geometry-inspired decision-based attack"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1903.10826","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:bfb87302eb1773f217b1cdee9ee7c08f426e206c2fbb9b4f71b23f328a278bba","target":"record","created_at":"2026-05-17T23:50:17Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"6c4d3183c3f568c83ed4798e10af0e2efda91df71d604dab1978db25e84e5be5","cross_cats_sorted":["cs.CR","cs.CV","stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-03-26T12:18:31Z","title_canon_sha256":"91e0a4327c17ad5cd38868c2983e50d8cfa776b8eba9b60a2d88e8561d9151b3"},"schema_version":"1.0","source":{"id":"1903.10826","kind":"arxiv","version":1}},"canonical_sha256":"576385f2ef466e2cfe4d7c8c4d2ab438d5d3b6f4676585715d979883d308fcde","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"576385f2ef466e2cfe4d7c8c4d2ab438d5d3b6f4676585715d979883d308fcde","first_computed_at":"2026-05-17T23:50:17.629138Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-17T23:50:17.629138Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"x6NUNwbw0n9VRxWErpOBtqeg/8K1XJFZsUwtJ6nSXJHeE12hQFp2to+V5k1VekBa/MocKfP0nmzNbONag7RGCw==","signature_status":"signed_v1","signed_at":"2026-05-17T23:50:17.629778Z","signed_message":"canonical_sha256_bytes"},"source_id":"1903.10826","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:bfb87302eb1773f217b1cdee9ee7c08f426e206c2fbb9b4f71b23f328a278bba","sha256:1fd77a7d870bad5d0c0fe1d65beb32bf21e6a808d52102c8cf5221b7afc1732f"],"state_sha256":"4f915c0ec742a1edd832633fb7f361908244bec836bc4cab184b8fe0e58a97a6"}