{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2019:LTFOEYITQEPOAKELPYCC3IDBBE","short_pith_number":"pith:LTFOEYIT","schema_version":"1.0","canonical_sha256":"5ccae26113811ee0288b7e042da06109176e63df75d6be1d7b553087422a2e6a","source":{"kind":"arxiv","id":"1904.08653","version":1},"attestation_state":"computed","paper":{"title":"Fooling automated surveillance cameras: adversarial patches to attack person detection","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.CV","authors_text":"Simen Thys, Toon Goedem\\'e, Wiebe Van Ranst","submitted_at":"2019-04-18T09:46:03Z","abstract_excerpt":"Adversarial attacks on machine learning models have seen increasing interest in the past years. By making only subtle changes to the input of a convolutional neural network, the output of the network can be swayed to output a completely different result. The first attacks did this by changing pixel values of an input image slightly to fool a classifier to output the wrong class. Other approaches have tried to learn \"patches\" that can be applied to an object to fool detectors and classifiers. Some of these approaches have also shown that these attacks are feasible in the real-world, i.e. by mod"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"1904.08653","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2019-04-18T09:46:03Z","cross_cats_sorted":[],"title_canon_sha256":"f067b5c5bfaf64209285c73a550f37e73fe96d887eb1029bcff6fe3c42d62404","abstract_canon_sha256":"92487ea2024ff82caac7d3984a86d9234ed8e27236f8f66607cb8c3eee0e8585"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:48:13.526823Z","signature_b64":"m6wMSuihEw7+0XAoRTbO306CaaPff2LSo6OwkdPAZ9i1myU306lASwn8KbDvQrCemwwSawGTLM0IcnH9OraCBg==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"5ccae26113811ee0288b7e042da06109176e63df75d6be1d7b553087422a2e6a","last_reissued_at":"2026-05-17T23:48:13.526120Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:48:13.526120Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"Fooling automated surveillance cameras: adversarial patches to attack person detection","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.CV","authors_text":"Simen Thys, Toon Goedem\\'e, Wiebe Van Ranst","submitted_at":"2019-04-18T09:46:03Z","abstract_excerpt":"Adversarial attacks on machine learning models have seen increasing interest in the past years. By making only subtle changes to the input of a convolutional neural network, the output of the network can be swayed to output a completely different result. The first attacks did this by changing pixel values of an input image slightly to fool a classifier to output the wrong class. Other approaches have tried to learn \"patches\" that can be applied to an object to fool detectors and classifiers. Some of these approaches have also shown that these attacks are feasible in the real-world, i.e. by mod"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1904.08653","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"1904.08653","created_at":"2026-05-17T23:48:13.526208+00:00"},{"alias_kind":"arxiv_version","alias_value":"1904.08653v1","created_at":"2026-05-17T23:48:13.526208+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1904.08653","created_at":"2026-05-17T23:48:13.526208+00:00"},{"alias_kind":"pith_short_12","alias_value":"LTFOEYITQEPO","created_at":"2026-05-18T12:33:21.387695+00:00"},{"alias_kind":"pith_short_16","alias_value":"LTFOEYITQEPOAKEL","created_at":"2026-05-18T12:33:21.387695+00:00"},{"alias_kind":"pith_short_8","alias_value":"LTFOEYIT","created_at":"2026-05-18T12:33:21.387695+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":2,"internal_anchor_count":2,"sample":[{"citing_arxiv_id":"1906.11897","citing_title":"On Physical Adversarial Patches for Object Detection","ref_index":12,"is_internal_anchor":true},{"citing_arxiv_id":"1907.01996","citing_title":"Robust Synthesis of Adversarial Visual Examples Using a Deep Image Prior","ref_index":21,"is_internal_anchor":true}]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/LTFOEYITQEPOAKELPYCC3IDBBE","json":"https://pith.science/pith/LTFOEYITQEPOAKELPYCC3IDBBE.json","graph_json":"https://pith.science/api/pith-number/LTFOEYITQEPOAKELPYCC3IDBBE/graph.json","events_json":"https://pith.science/api/pith-number/LTFOEYITQEPOAKELPYCC3IDBBE/events.json","paper":"https://pith.science/paper/LTFOEYIT"},"agent_actions":{"view_html":"https://pith.science/pith/LTFOEYITQEPOAKELPYCC3IDBBE","download_json":"https://pith.science/pith/LTFOEYITQEPOAKELPYCC3IDBBE.json","view_paper":"https://pith.science/paper/LTFOEYIT","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=1904.08653&json=true","fetch_graph":"https://pith.science/api/pith-number/LTFOEYITQEPOAKELPYCC3IDBBE/graph.json","fetch_events":"https://pith.science/api/pith-number/LTFOEYITQEPOAKELPYCC3IDBBE/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/LTFOEYITQEPOAKELPYCC3IDBBE/action/timestamp_anchor","attest_storage":"https://pith.science/pith/LTFOEYITQEPOAKELPYCC3IDBBE/action/storage_attestation","attest_author":"https://pith.science/pith/LTFOEYITQEPOAKELPYCC3IDBBE/action/author_attestation","sign_citation":"https://pith.science/pith/LTFOEYITQEPOAKELPYCC3IDBBE/action/citation_signature","submit_replication":"https://pith.science/pith/LTFOEYITQEPOAKELPYCC3IDBBE/action/replication_record"}},"created_at":"2026-05-17T23:48:13.526208+00:00","updated_at":"2026-05-17T23:48:13.526208+00:00"}