{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2018:KYIMFSJUKGHW3RFE6TWNNUD4FH","short_pith_number":"pith:KYIMFSJU","canonical_record":{"source":{"id":"1812.08329","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2018-12-18T18:59:38Z","cross_cats_sorted":["cs.CR","stat.ML"],"title_canon_sha256":"78d933d8f99dde17674ad4fe760d5e26a0f81df96ee06aec872059d5f29da520","abstract_canon_sha256":"97ab019179ab51a7b93874ffdabed83b06f85659937c9ce454149f1c564aee6d"},"schema_version":"1.0"},"canonical_sha256":"5610c2c934518f6dc4a4f4ecd6d07c29c331c0f6cfbe555bd0014c81baee9345","source":{"kind":"arxiv","id":"1812.08329","version":2},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1812.08329","created_at":"2026-05-17T23:56:52Z"},{"alias_kind":"arxiv_version","alias_value":"1812.08329v2","created_at":"2026-05-17T23:56:52Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1812.08329","created_at":"2026-05-17T23:56:52Z"},{"alias_kind":"pith_short_12","alias_value":"KYIMFSJUKGHW","created_at":"2026-05-18T12:32:33Z"},{"alias_kind":"pith_short_16","alias_value":"KYIMFSJUKGHW3RFE","created_at":"2026-05-18T12:32:33Z"},{"alias_kind":"pith_short_8","alias_value":"KYIMFSJU","created_at":"2026-05-18T12:32:33Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2018:KYIMFSJUKGHW3RFE6TWNNUD4FH","target":"record","payload":{"canonical_record":{"source":{"id":"1812.08329","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2018-12-18T18:59:38Z","cross_cats_sorted":["cs.CR","stat.ML"],"title_canon_sha256":"78d933d8f99dde17674ad4fe760d5e26a0f81df96ee06aec872059d5f29da520","abstract_canon_sha256":"97ab019179ab51a7b93874ffdabed83b06f85659937c9ce454149f1c564aee6d"},"schema_version":"1.0"},"canonical_sha256":"5610c2c934518f6dc4a4f4ecd6d07c29c331c0f6cfbe555bd0014c81baee9345","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:56:52.493339Z","signature_b64":"bqB9DpOuUbHjE35q6AA0JrBaB2VAyWm/3YZ3vLFAgsV/NTAGX/QhvLtOBYvYXahQXy0VNp+BEY6sAuEjKVqjCQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"5610c2c934518f6dc4a4f4ecd6d07c29c331c0f6cfbe555bd0014c81baee9345","last_reissued_at":"2026-05-17T23:56:52.492813Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:56:52.492813Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1812.08329","source_version":2,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:56:52Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"eEeZrhWIMsTmBAsR9up0WBYJ9OB8/lM3sak5Yye4zjZ58feFohxY44zKl3gW+Y/EZkgUR3JPScyV5whvLtHjBw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-30T05:09:55.357598Z"},"content_sha256":"447585406d10be1f858b12c7ce139af78754a99b115359fe4156e85caccb4631","schema_version":"1.0","event_id":"sha256:447585406d10be1f858b12c7ce139af78754a99b115359fe4156e85caccb4631"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2018:KYIMFSJUKGHW3RFE6TWNNUD4FH","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"PROVEN: Certifying Robustness of Neural Networks with a Probabilistic Approach","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.CR","stat.ML"],"primary_cat":"cs.LG","authors_text":"Ivan Oseledets, Lam M. Nguyen, Luca Daniel, Mark S. Squillante, Pin-Yu Chen, Tsui-Wei Weng","submitted_at":"2018-12-18T18:59:38Z","abstract_excerpt":"With deep neural networks providing state-of-the-art machine learning models for numerous machine learning tasks, quantifying the robustness of these models has become an important area of research. However, most of the research literature merely focuses on the \\textit{worst-case} setting where the input of the neural network is perturbed with noises that are constrained within an $\\ell_p$ ball; and several algorithms have been proposed to compute certified lower bounds of minimum adversarial distortion based on such worst-case analysis. In this paper, we address these limitations and extend t"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1812.08329","kind":"arxiv","version":2},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:56:52Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"e8C/ArOo3agfbwZSk3iok+BaPjvRXuEK7zSmnzk1qplpTU/KiWkXppeBUjfelUaclpeHdQIGys+ySjx52qppDA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-30T05:09:55.357957Z"},"content_sha256":"6d27d4871628fec822887392c3756c5f5f6bc57cc8cc904bfc41d8f67766690f","schema_version":"1.0","event_id":"sha256:6d27d4871628fec822887392c3756c5f5f6bc57cc8cc904bfc41d8f67766690f"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/KYIMFSJUKGHW3RFE6TWNNUD4FH/bundle.json","state_url":"https://pith.science/pith/KYIMFSJUKGHW3RFE6TWNNUD4FH/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/KYIMFSJUKGHW3RFE6TWNNUD4FH/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-30T05:09:55Z","links":{"resolver":"https://pith.science/pith/KYIMFSJUKGHW3RFE6TWNNUD4FH","bundle":"https://pith.science/pith/KYIMFSJUKGHW3RFE6TWNNUD4FH/bundle.json","state":"https://pith.science/pith/KYIMFSJUKGHW3RFE6TWNNUD4FH/state.json","well_known_bundle":"https://pith.science/.well-known/pith/KYIMFSJUKGHW3RFE6TWNNUD4FH/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2018:KYIMFSJUKGHW3RFE6TWNNUD4FH","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"97ab019179ab51a7b93874ffdabed83b06f85659937c9ce454149f1c564aee6d","cross_cats_sorted":["cs.CR","stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2018-12-18T18:59:38Z","title_canon_sha256":"78d933d8f99dde17674ad4fe760d5e26a0f81df96ee06aec872059d5f29da520"},"schema_version":"1.0","source":{"id":"1812.08329","kind":"arxiv","version":2}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1812.08329","created_at":"2026-05-17T23:56:52Z"},{"alias_kind":"arxiv_version","alias_value":"1812.08329v2","created_at":"2026-05-17T23:56:52Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1812.08329","created_at":"2026-05-17T23:56:52Z"},{"alias_kind":"pith_short_12","alias_value":"KYIMFSJUKGHW","created_at":"2026-05-18T12:32:33Z"},{"alias_kind":"pith_short_16","alias_value":"KYIMFSJUKGHW3RFE","created_at":"2026-05-18T12:32:33Z"},{"alias_kind":"pith_short_8","alias_value":"KYIMFSJU","created_at":"2026-05-18T12:32:33Z"}],"graph_snapshots":[{"event_id":"sha256:6d27d4871628fec822887392c3756c5f5f6bc57cc8cc904bfc41d8f67766690f","target":"graph","created_at":"2026-05-17T23:56:52Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"With deep neural networks providing state-of-the-art machine learning models for numerous machine learning tasks, quantifying the robustness of these models has become an important area of research. However, most of the research literature merely focuses on the \\textit{worst-case} setting where the input of the neural network is perturbed with noises that are constrained within an $\\ell_p$ ball; and several algorithms have been proposed to compute certified lower bounds of minimum adversarial distortion based on such worst-case analysis. In this paper, we address these limitations and extend t","authors_text":"Ivan Oseledets, Lam M. Nguyen, Luca Daniel, Mark S. Squillante, Pin-Yu Chen, Tsui-Wei Weng","cross_cats":["cs.CR","stat.ML"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2018-12-18T18:59:38Z","title":"PROVEN: Certifying Robustness of Neural Networks with a Probabilistic Approach"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1812.08329","kind":"arxiv","version":2},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:447585406d10be1f858b12c7ce139af78754a99b115359fe4156e85caccb4631","target":"record","created_at":"2026-05-17T23:56:52Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"97ab019179ab51a7b93874ffdabed83b06f85659937c9ce454149f1c564aee6d","cross_cats_sorted":["cs.CR","stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2018-12-18T18:59:38Z","title_canon_sha256":"78d933d8f99dde17674ad4fe760d5e26a0f81df96ee06aec872059d5f29da520"},"schema_version":"1.0","source":{"id":"1812.08329","kind":"arxiv","version":2}},"canonical_sha256":"5610c2c934518f6dc4a4f4ecd6d07c29c331c0f6cfbe555bd0014c81baee9345","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"5610c2c934518f6dc4a4f4ecd6d07c29c331c0f6cfbe555bd0014c81baee9345","first_computed_at":"2026-05-17T23:56:52.492813Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-17T23:56:52.492813Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"bqB9DpOuUbHjE35q6AA0JrBaB2VAyWm/3YZ3vLFAgsV/NTAGX/QhvLtOBYvYXahQXy0VNp+BEY6sAuEjKVqjCQ==","signature_status":"signed_v1","signed_at":"2026-05-17T23:56:52.493339Z","signed_message":"canonical_sha256_bytes"},"source_id":"1812.08329","source_kind":"arxiv","source_version":2}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:447585406d10be1f858b12c7ce139af78754a99b115359fe4156e85caccb4631","sha256:6d27d4871628fec822887392c3756c5f5f6bc57cc8cc904bfc41d8f67766690f"],"state_sha256":"2a2c41ed5ea7924d923ebbc9cdba6dc889c5080a68030a6954026eaa77cde7cb"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"aVvBwQRhWGwwrUb8e6ZkJyCNYjb7PXe+rx0dC/H3QQ62erCi87/vwc80V72zALajWIC8yQ2i8xyYiSL4RtoFAQ==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-30T05:09:55.360123Z","bundle_sha256":"3ea65658356ec1738fbe8cb99217f4e5b0afa97a42bf21e6440cd461dfb96adc"}}