{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2019:MC2IMMTFPSVWBDOG2NLNVLDEIK","short_pith_number":"pith:MC2IMMTF","canonical_record":{"source":{"id":"1906.00204","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-06-01T11:26:22Z","cross_cats_sorted":["cs.CR","cs.CV","eess.IV","stat.ML"],"title_canon_sha256":"c1331d58cd41340c1b587147cee4010e2b6c55c5fbe21afe677dc2fd0577315a","abstract_canon_sha256":"025634f9698fb58c3b188db5fd1060d1ecaf8f64fc0d470c13473dd0d494fde5"},"schema_version":"1.0"},"canonical_sha256":"60b48632657cab608dc6d356daac644281c7b7664825970e0cc27f8ef5a77ce2","source":{"kind":"arxiv","id":"1906.00204","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1906.00204","created_at":"2026-05-17T23:44:27Z"},{"alias_kind":"arxiv_version","alias_value":"1906.00204v1","created_at":"2026-05-17T23:44:27Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1906.00204","created_at":"2026-05-17T23:44:27Z"},{"alias_kind":"pith_short_12","alias_value":"MC2IMMTFPSVW","created_at":"2026-05-18T12:33:21Z"},{"alias_kind":"pith_short_16","alias_value":"MC2IMMTFPSVWBDOG","created_at":"2026-05-18T12:33:21Z"},{"alias_kind":"pith_short_8","alias_value":"MC2IMMTF","created_at":"2026-05-18T12:33:21Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2019:MC2IMMTFPSVWBDOG2NLNVLDEIK","target":"record","payload":{"canonical_record":{"source":{"id":"1906.00204","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-06-01T11:26:22Z","cross_cats_sorted":["cs.CR","cs.CV","eess.IV","stat.ML"],"title_canon_sha256":"c1331d58cd41340c1b587147cee4010e2b6c55c5fbe21afe677dc2fd0577315a","abstract_canon_sha256":"025634f9698fb58c3b188db5fd1060d1ecaf8f64fc0d470c13473dd0d494fde5"},"schema_version":"1.0"},"canonical_sha256":"60b48632657cab608dc6d356daac644281c7b7664825970e0cc27f8ef5a77ce2","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:44:27.827064Z","signature_b64":"oumzKQt0neAP4mtpMm7/6BJ9DPUudtVDrgkZyFXuTFrDaNrWuruW61oorXgLKkn+qMPBPSim773t94AWIr1ICw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"60b48632657cab608dc6d356daac644281c7b7664825970e0cc27f8ef5a77ce2","last_reissued_at":"2026-05-17T23:44:27.826290Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:44:27.826290Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1906.00204","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:44:27Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"S6/4U6fZvKQuyUjqW6ohuUAJD0hVdJsfDYeTy9aXd9ka1BjGh/lNOxU2G/dKP50I+9YWpn09wVRZqW78bZQTDQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-28T13:35:27.120342Z"},"content_sha256":"691f271bd5932cb40ad1426a0f33ed3e3cd827e3206f65ecccf65d665b77868e","schema_version":"1.0","event_id":"sha256:691f271bd5932cb40ad1426a0f33ed3e3cd827e3206f65ecccf65d665b77868e"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2019:MC2IMMTFPSVWBDOG2NLNVLDEIK","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Perceptual Evaluation of Adversarial Attacks for CNN-based Image Classification","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.CR","cs.CV","eess.IV","stat.ML"],"primary_cat":"cs.LG","authors_text":"Olivier D\\'eforges, Sid Ahmed Fezza, Wassim Hamidouche, Yassine Bakhti","submitted_at":"2019-06-01T11:26:22Z","abstract_excerpt":"Deep neural networks (DNNs) have recently achieved state-of-the-art performance and provide significant progress in many machine learning tasks, such as image classification, speech processing, natural language processing, etc. However, recent studies have shown that DNNs are vulnerable to adversarial attacks. For instance, in the image classification domain, adding small imperceptible perturbations to the input image is sufficient to fool the DNN and to cause misclassification. The perturbed image, called \\textit{adversarial example}, should be visually as close as possible to the original im"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1906.00204","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:44:27Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"6wmF4hKZy0I6ePXT6bNqIFptFf368VfXd7+mDUZ6Je2FMM8VmnBUpgG5bxCHct2UmfmFYuyFPztc7am4pdqQBA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-28T13:35:27.120702Z"},"content_sha256":"ec142c8eb30428914d4f873614d4bfc82a22b9b9adf19ef183feaca9fb6d6a09","schema_version":"1.0","event_id":"sha256:ec142c8eb30428914d4f873614d4bfc82a22b9b9adf19ef183feaca9fb6d6a09"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/MC2IMMTFPSVWBDOG2NLNVLDEIK/bundle.json","state_url":"https://pith.science/pith/MC2IMMTFPSVWBDOG2NLNVLDEIK/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/MC2IMMTFPSVWBDOG2NLNVLDEIK/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-28T13:35:27Z","links":{"resolver":"https://pith.science/pith/MC2IMMTFPSVWBDOG2NLNVLDEIK","bundle":"https://pith.science/pith/MC2IMMTFPSVWBDOG2NLNVLDEIK/bundle.json","state":"https://pith.science/pith/MC2IMMTFPSVWBDOG2NLNVLDEIK/state.json","well_known_bundle":"https://pith.science/.well-known/pith/MC2IMMTFPSVWBDOG2NLNVLDEIK/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2019:MC2IMMTFPSVWBDOG2NLNVLDEIK","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"025634f9698fb58c3b188db5fd1060d1ecaf8f64fc0d470c13473dd0d494fde5","cross_cats_sorted":["cs.CR","cs.CV","eess.IV","stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-06-01T11:26:22Z","title_canon_sha256":"c1331d58cd41340c1b587147cee4010e2b6c55c5fbe21afe677dc2fd0577315a"},"schema_version":"1.0","source":{"id":"1906.00204","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1906.00204","created_at":"2026-05-17T23:44:27Z"},{"alias_kind":"arxiv_version","alias_value":"1906.00204v1","created_at":"2026-05-17T23:44:27Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1906.00204","created_at":"2026-05-17T23:44:27Z"},{"alias_kind":"pith_short_12","alias_value":"MC2IMMTFPSVW","created_at":"2026-05-18T12:33:21Z"},{"alias_kind":"pith_short_16","alias_value":"MC2IMMTFPSVWBDOG","created_at":"2026-05-18T12:33:21Z"},{"alias_kind":"pith_short_8","alias_value":"MC2IMMTF","created_at":"2026-05-18T12:33:21Z"}],"graph_snapshots":[{"event_id":"sha256:ec142c8eb30428914d4f873614d4bfc82a22b9b9adf19ef183feaca9fb6d6a09","target":"graph","created_at":"2026-05-17T23:44:27Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Deep neural networks (DNNs) have recently achieved state-of-the-art performance and provide significant progress in many machine learning tasks, such as image classification, speech processing, natural language processing, etc. However, recent studies have shown that DNNs are vulnerable to adversarial attacks. For instance, in the image classification domain, adding small imperceptible perturbations to the input image is sufficient to fool the DNN and to cause misclassification. The perturbed image, called \\textit{adversarial example}, should be visually as close as possible to the original im","authors_text":"Olivier D\\'eforges, Sid Ahmed Fezza, Wassim Hamidouche, Yassine Bakhti","cross_cats":["cs.CR","cs.CV","eess.IV","stat.ML"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-06-01T11:26:22Z","title":"Perceptual Evaluation of Adversarial Attacks for CNN-based Image Classification"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1906.00204","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:691f271bd5932cb40ad1426a0f33ed3e3cd827e3206f65ecccf65d665b77868e","target":"record","created_at":"2026-05-17T23:44:27Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"025634f9698fb58c3b188db5fd1060d1ecaf8f64fc0d470c13473dd0d494fde5","cross_cats_sorted":["cs.CR","cs.CV","eess.IV","stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-06-01T11:26:22Z","title_canon_sha256":"c1331d58cd41340c1b587147cee4010e2b6c55c5fbe21afe677dc2fd0577315a"},"schema_version":"1.0","source":{"id":"1906.00204","kind":"arxiv","version":1}},"canonical_sha256":"60b48632657cab608dc6d356daac644281c7b7664825970e0cc27f8ef5a77ce2","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"60b48632657cab608dc6d356daac644281c7b7664825970e0cc27f8ef5a77ce2","first_computed_at":"2026-05-17T23:44:27.826290Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-17T23:44:27.826290Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"oumzKQt0neAP4mtpMm7/6BJ9DPUudtVDrgkZyFXuTFrDaNrWuruW61oorXgLKkn+qMPBPSim773t94AWIr1ICw==","signature_status":"signed_v1","signed_at":"2026-05-17T23:44:27.827064Z","signed_message":"canonical_sha256_bytes"},"source_id":"1906.00204","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:691f271bd5932cb40ad1426a0f33ed3e3cd827e3206f65ecccf65d665b77868e","sha256:ec142c8eb30428914d4f873614d4bfc82a22b9b9adf19ef183feaca9fb6d6a09"],"state_sha256":"2cd29ca16c4d30f045fc59fbe80cc66b71ddbb12e553c9bd7214531da3c2004c"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"Mf/IirjTNApiYDhAITVioqtRtJo9FHtsTX6JSJLy+M0kQxFKRVP2G9+FTPsub1qQ1lPGymm0VEFD/f3G0ElVCQ==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-28T13:35:27.122822Z","bundle_sha256":"635c2368a26910c092a8282401c1fb1dd3fc1d1fa4af99a1169d96db407fb1ac"}}