{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2019:MCGZP7TYEPA3YGJQJVF6M2MGQC","short_pith_number":"pith:MCGZP7TY","canonical_record":{"source":{"id":"1907.01996","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2019-07-03T15:40:05Z","cross_cats_sorted":[],"title_canon_sha256":"b31e6a0ca86327093c5d366e6a4f79d996b3994965dac4f78890730c273ac5d1","abstract_canon_sha256":"07bc6a0f8f91a1fbcdae0facc20a7562050d03060ad34d0c5b6a743466883049"},"schema_version":"1.0"},"canonical_sha256":"608d97fe7823c1bc19304d4be6698680a39237127ccc7b9c0687d4a87bd4f5f1","source":{"kind":"arxiv","id":"1907.01996","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1907.01996","created_at":"2026-05-17T23:41:34Z"},{"alias_kind":"arxiv_version","alias_value":"1907.01996v1","created_at":"2026-05-17T23:41:34Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1907.01996","created_at":"2026-05-17T23:41:34Z"},{"alias_kind":"pith_short_12","alias_value":"MCGZP7TYEPA3","created_at":"2026-05-18T12:33:21Z"},{"alias_kind":"pith_short_16","alias_value":"MCGZP7TYEPA3YGJQ","created_at":"2026-05-18T12:33:21Z"},{"alias_kind":"pith_short_8","alias_value":"MCGZP7TY","created_at":"2026-05-18T12:33:21Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2019:MCGZP7TYEPA3YGJQJVF6M2MGQC","target":"record","payload":{"canonical_record":{"source":{"id":"1907.01996","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2019-07-03T15:40:05Z","cross_cats_sorted":[],"title_canon_sha256":"b31e6a0ca86327093c5d366e6a4f79d996b3994965dac4f78890730c273ac5d1","abstract_canon_sha256":"07bc6a0f8f91a1fbcdae0facc20a7562050d03060ad34d0c5b6a743466883049"},"schema_version":"1.0"},"canonical_sha256":"608d97fe7823c1bc19304d4be6698680a39237127ccc7b9c0687d4a87bd4f5f1","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:41:34.297896Z","signature_b64":"wAoWMGBLWYejJAFM1eu6rNtYms1aHda7ndoeYFiF5ZzggRV4LGehKJYdMGxqd+f5lE3z2K2lkuaVUqxDcBwhBg==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"608d97fe7823c1bc19304d4be6698680a39237127ccc7b9c0687d4a87bd4f5f1","last_reissued_at":"2026-05-17T23:41:34.297256Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:41:34.297256Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1907.01996","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:41:34Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"GSEu067uunOWTr0gGqYEkSebKg89UVxw8K2Ci1SNuiQsCr0XnX7ML62ChJwggZvx0ePZKEwsbvnBK6H/mW18CA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-25T17:16:47.442491Z"},"content_sha256":"3d65e418ab62493114018acd8bbfb6a0e76fc7755f3ee91c8c3adbdafb9df1a6","schema_version":"1.0","event_id":"sha256:3d65e418ab62493114018acd8bbfb6a0e76fc7755f3ee91c8c3adbdafb9df1a6"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2019:MCGZP7TYEPA3YGJQJVF6M2MGQC","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Robust Synthesis of Adversarial Visual Examples Using a Deep Image Prior","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.CV","authors_text":"John Collomosse, Steve Schneider, Thomas Gittings","submitted_at":"2019-07-03T15:40:05Z","abstract_excerpt":"We present a novel method for generating robust adversarial image examples building upon the recent `deep image prior' (DIP) that exploits convolutional network architectures to enforce plausible texture in image synthesis. Adversarial images are commonly generated by perturbing images to introduce high frequency noise that induces image misclassification, but that is fragile to subsequent digital manipulation of the image. We show that using DIP to reconstruct an image under adversarial constraint induces perturbations that are more robust to affine deformation, whilst remaining visually impe"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1907.01996","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:41:34Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"75kZETF4h8tQ0FD4L14wFBEdvR7PqEWvw8xl5m/87VXAuGsyL3xUoF1/p2u2zEY7zJ6nnVQp98KNkS+zdICzDQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-25T17:16:47.443182Z"},"content_sha256":"91b9bd80830a88354b3feac467bcf18297615f0115e31f13483eb50b625038d5","schema_version":"1.0","event_id":"sha256:91b9bd80830a88354b3feac467bcf18297615f0115e31f13483eb50b625038d5"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/MCGZP7TYEPA3YGJQJVF6M2MGQC/bundle.json","state_url":"https://pith.science/pith/MCGZP7TYEPA3YGJQJVF6M2MGQC/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/MCGZP7TYEPA3YGJQJVF6M2MGQC/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-25T17:16:47Z","links":{"resolver":"https://pith.science/pith/MCGZP7TYEPA3YGJQJVF6M2MGQC","bundle":"https://pith.science/pith/MCGZP7TYEPA3YGJQJVF6M2MGQC/bundle.json","state":"https://pith.science/pith/MCGZP7TYEPA3YGJQJVF6M2MGQC/state.json","well_known_bundle":"https://pith.science/.well-known/pith/MCGZP7TYEPA3YGJQJVF6M2MGQC/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2019:MCGZP7TYEPA3YGJQJVF6M2MGQC","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"07bc6a0f8f91a1fbcdae0facc20a7562050d03060ad34d0c5b6a743466883049","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2019-07-03T15:40:05Z","title_canon_sha256":"b31e6a0ca86327093c5d366e6a4f79d996b3994965dac4f78890730c273ac5d1"},"schema_version":"1.0","source":{"id":"1907.01996","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1907.01996","created_at":"2026-05-17T23:41:34Z"},{"alias_kind":"arxiv_version","alias_value":"1907.01996v1","created_at":"2026-05-17T23:41:34Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1907.01996","created_at":"2026-05-17T23:41:34Z"},{"alias_kind":"pith_short_12","alias_value":"MCGZP7TYEPA3","created_at":"2026-05-18T12:33:21Z"},{"alias_kind":"pith_short_16","alias_value":"MCGZP7TYEPA3YGJQ","created_at":"2026-05-18T12:33:21Z"},{"alias_kind":"pith_short_8","alias_value":"MCGZP7TY","created_at":"2026-05-18T12:33:21Z"}],"graph_snapshots":[{"event_id":"sha256:91b9bd80830a88354b3feac467bcf18297615f0115e31f13483eb50b625038d5","target":"graph","created_at":"2026-05-17T23:41:34Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"We present a novel method for generating robust adversarial image examples building upon the recent `deep image prior' (DIP) that exploits convolutional network architectures to enforce plausible texture in image synthesis. Adversarial images are commonly generated by perturbing images to introduce high frequency noise that induces image misclassification, but that is fragile to subsequent digital manipulation of the image. We show that using DIP to reconstruct an image under adversarial constraint induces perturbations that are more robust to affine deformation, whilst remaining visually impe","authors_text":"John Collomosse, Steve Schneider, Thomas Gittings","cross_cats":[],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2019-07-03T15:40:05Z","title":"Robust Synthesis of Adversarial Visual Examples Using a Deep Image Prior"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1907.01996","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:3d65e418ab62493114018acd8bbfb6a0e76fc7755f3ee91c8c3adbdafb9df1a6","target":"record","created_at":"2026-05-17T23:41:34Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"07bc6a0f8f91a1fbcdae0facc20a7562050d03060ad34d0c5b6a743466883049","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2019-07-03T15:40:05Z","title_canon_sha256":"b31e6a0ca86327093c5d366e6a4f79d996b3994965dac4f78890730c273ac5d1"},"schema_version":"1.0","source":{"id":"1907.01996","kind":"arxiv","version":1}},"canonical_sha256":"608d97fe7823c1bc19304d4be6698680a39237127ccc7b9c0687d4a87bd4f5f1","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"608d97fe7823c1bc19304d4be6698680a39237127ccc7b9c0687d4a87bd4f5f1","first_computed_at":"2026-05-17T23:41:34.297256Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-17T23:41:34.297256Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"wAoWMGBLWYejJAFM1eu6rNtYms1aHda7ndoeYFiF5ZzggRV4LGehKJYdMGxqd+f5lE3z2K2lkuaVUqxDcBwhBg==","signature_status":"signed_v1","signed_at":"2026-05-17T23:41:34.297896Z","signed_message":"canonical_sha256_bytes"},"source_id":"1907.01996","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:3d65e418ab62493114018acd8bbfb6a0e76fc7755f3ee91c8c3adbdafb9df1a6","sha256:91b9bd80830a88354b3feac467bcf18297615f0115e31f13483eb50b625038d5"],"state_sha256":"fa19d4d150ddb850441e5a2e11609ca9af79d5277ca8b34c68b9bcc00f810341"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"urVv5Yl6mNpyU0l9BZtliYq/p8w0LElOj5wKf+nWpeaT5YRzKUBLbEpP1wmvFF8AvUS+JBMP1QyL9gzTjUapAg==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-25T17:16:47.447266Z","bundle_sha256":"67b26be0c725536a841cdf14c5ae853d6af4d43872ab7682875b3655dc09acbf"}}