{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2020:KYWL66BWKIY4TJOAW4VDM4LS2F","short_pith_number":"pith:KYWL66BW","schema_version":"1.0","canonical_sha256":"562cbf78365231c9a5c0b72a367172d168d8176e1d56ccc7977f8d0f71a9c2dc","source":{"kind":"arxiv","id":"2002.12162","version":3},"attestation_state":"computed","paper":{"title":"Defending against Backdoor Attack on Deep Neural Networks","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.LG"],"primary_cat":"cs.CR","authors_text":"Hao Cheng, Kaidi Xu, Pin-Yu Chen, Pu Zhao, Sijia Liu, Xue Lin","submitted_at":"2020-02-26T02:03:00Z","abstract_excerpt":"Although deep neural networks (DNNs) have achieved a great success in various computer vision tasks, it is recently found that they are vulnerable to adversarial attacks. In this paper, we focus on the so-called \\textit{backdoor attack}, which injects a backdoor trigger to a small portion of training data (also known as data poisoning) such that the trained DNN induces misclassification while facing examples with this trigger. To be specific, we carefully study the effect of both real and synthetic backdoor attacks on the internal response of vanilla and backdoored DNNs through the lens of Gar"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2002.12162","kind":"arxiv","version":3},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2020-02-26T02:03:00Z","cross_cats_sorted":["cs.LG"],"title_canon_sha256":"65dd012cebbe1de75bfff2675de74d7fd75b6a979a72112599882335997c1e2f","abstract_canon_sha256":"1d6b4a13f09fbc0cad8fc6d01cc5f679eb3af320af1c65f0c7c4894e521c77a7"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T10:39:12.466576Z","signature_b64":"ar8skd6c9eAUJp75C91qrKiHzXbV7XksqJynv1L7jZzxuJnkakbxozDo1Yj4w9dNvuH281avJRpz62nF54bSCQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"562cbf78365231c9a5c0b72a367172d168d8176e1d56ccc7977f8d0f71a9c2dc","last_reissued_at":"2026-07-05T10:39:12.466105Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T10:39:12.466105Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"Defending against Backdoor Attack on Deep Neural Networks","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.LG"],"primary_cat":"cs.CR","authors_text":"Hao Cheng, Kaidi Xu, Pin-Yu Chen, Pu Zhao, Sijia Liu, Xue Lin","submitted_at":"2020-02-26T02:03:00Z","abstract_excerpt":"Although deep neural networks (DNNs) have achieved a great success in various computer vision tasks, it is recently found that they are vulnerable to adversarial attacks. In this paper, we focus on the so-called \\textit{backdoor attack}, which injects a backdoor trigger to a small portion of training data (also known as data poisoning) such that the trained DNN induces misclassification while facing examples with this trigger. To be specific, we carefully study the effect of both real and synthetic backdoor attacks on the internal response of vanilla and backdoored DNNs through the lens of Gar"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2002.12162","kind":"arxiv","version":3},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2002.12162/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2002.12162","created_at":"2026-07-05T10:39:12.466153+00:00"},{"alias_kind":"arxiv_version","alias_value":"2002.12162v3","created_at":"2026-07-05T10:39:12.466153+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2002.12162","created_at":"2026-07-05T10:39:12.466153+00:00"},{"alias_kind":"pith_short_12","alias_value":"KYWL66BWKIY4","created_at":"2026-07-05T10:39:12.466153+00:00"},{"alias_kind":"pith_short_16","alias_value":"KYWL66BWKIY4TJOA","created_at":"2026-07-05T10:39:12.466153+00:00"},{"alias_kind":"pith_short_8","alias_value":"KYWL66BW","created_at":"2026-07-05T10:39:12.466153+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":1,"internal_anchor_count":0,"sample":[{"citing_arxiv_id":"2406.10162","citing_title":"Sycophancy to Subterfuge: Investigating Reward-Tampering in Large Language Models","ref_index":274,"is_internal_anchor":false}]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/KYWL66BWKIY4TJOAW4VDM4LS2F","json":"https://pith.science/pith/KYWL66BWKIY4TJOAW4VDM4LS2F.json","graph_json":"https://pith.science/api/pith-number/KYWL66BWKIY4TJOAW4VDM4LS2F/graph.json","events_json":"https://pith.science/api/pith-number/KYWL66BWKIY4TJOAW4VDM4LS2F/events.json","paper":"https://pith.science/paper/KYWL66BW"},"agent_actions":{"view_html":"https://pith.science/pith/KYWL66BWKIY4TJOAW4VDM4LS2F","download_json":"https://pith.science/pith/KYWL66BWKIY4TJOAW4VDM4LS2F.json","view_paper":"https://pith.science/paper/KYWL66BW","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2002.12162&json=true","fetch_graph":"https://pith.science/api/pith-number/KYWL66BWKIY4TJOAW4VDM4LS2F/graph.json","fetch_events":"https://pith.science/api/pith-number/KYWL66BWKIY4TJOAW4VDM4LS2F/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/KYWL66BWKIY4TJOAW4VDM4LS2F/action/timestamp_anchor","attest_storage":"https://pith.science/pith/KYWL66BWKIY4TJOAW4VDM4LS2F/action/storage_attestation","attest_author":"https://pith.science/pith/KYWL66BWKIY4TJOAW4VDM4LS2F/action/author_attestation","sign_citation":"https://pith.science/pith/KYWL66BWKIY4TJOAW4VDM4LS2F/action/citation_signature","submit_replication":"https://pith.science/pith/KYWL66BWKIY4TJOAW4VDM4LS2F/action/replication_record"}},"created_at":"2026-07-05T10:39:12.466153+00:00","updated_at":"2026-07-05T10:39:12.466153+00:00"}