{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2019:MMMNK5QPRDF4J7OKVWVCSCRUM5","short_pith_number":"pith:MMMNK5QP","canonical_record":{"source":{"id":"1905.04270","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-05-10T17:21:15Z","cross_cats_sorted":["cs.CV","stat.ML"],"title_canon_sha256":"80e147624a199d7d8ffdc15710844f13488dcb9e1e4ec19b387edbfdd33a8270","abstract_canon_sha256":"d5da2e5572f5fae91e9caf4db137ef05435279814a1a8f7ad50d32a5472658d7"},"schema_version":"1.0"},"canonical_sha256":"6318d5760f88cbc4fdcaadaa290a34676a6003359b5b07c3ba6a0435bbdd17e3","source":{"kind":"arxiv","id":"1905.04270","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1905.04270","created_at":"2026-05-17T23:46:31Z"},{"alias_kind":"arxiv_version","alias_value":"1905.04270v1","created_at":"2026-05-17T23:46:31Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1905.04270","created_at":"2026-05-17T23:46:31Z"},{"alias_kind":"pith_short_12","alias_value":"MMMNK5QPRDF4","created_at":"2026-05-18T12:33:21Z"},{"alias_kind":"pith_short_16","alias_value":"MMMNK5QPRDF4J7OK","created_at":"2026-05-18T12:33:21Z"},{"alias_kind":"pith_short_8","alias_value":"MMMNK5QP","created_at":"2026-05-18T12:33:21Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2019:MMMNK5QPRDF4J7OKVWVCSCRUM5","target":"record","payload":{"canonical_record":{"source":{"id":"1905.04270","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-05-10T17:21:15Z","cross_cats_sorted":["cs.CV","stat.ML"],"title_canon_sha256":"80e147624a199d7d8ffdc15710844f13488dcb9e1e4ec19b387edbfdd33a8270","abstract_canon_sha256":"d5da2e5572f5fae91e9caf4db137ef05435279814a1a8f7ad50d32a5472658d7"},"schema_version":"1.0"},"canonical_sha256":"6318d5760f88cbc4fdcaadaa290a34676a6003359b5b07c3ba6a0435bbdd17e3","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:46:31.576333Z","signature_b64":"khLMHd7qUQKZY/W2y5TZHMx9Y9RWg/c0EwmvxrNZlNNW1jN1rW6Qumv8sqz+pe3+IMtpoiUvL8Q1xRH/guRYAQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"6318d5760f88cbc4fdcaadaa290a34676a6003359b5b07c3ba6a0435bbdd17e3","last_reissued_at":"2026-05-17T23:46:31.575757Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:46:31.575757Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1905.04270","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:46:31Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"9cgt6tGzJ/oEVyN3fNeHh7RfK8DkBIMj5gX03+F2ogFilJY+0j5+7AYgi0N4L2onu1wLcFRAOpapgh1L3ECtAQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-07T18:45:35.546387Z"},"content_sha256":"abb58f6b0645cfc64fe29dfdf2095710f0e7c7652309265210ef49c6155807ea","schema_version":"1.0","event_id":"sha256:abb58f6b0645cfc64fe29dfdf2095710f0e7c7652309265210ef49c6155807ea"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2019:MMMNK5QPRDF4J7OKVWVCSCRUM5","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Interpreting and Evaluating Neural Network Robustness","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.CV","stat.ML"],"primary_cat":"cs.LG","authors_text":"Chenchen Liu, Fuxun Yu, Liang Zhao, Xiang Chen, Yanzhi Wang, Zhuwei Qin","submitted_at":"2019-05-10T17:21:15Z","abstract_excerpt":"Recently, adversarial deception becomes one of the most considerable threats to deep neural networks. However, compared to extensive research in new designs of various adversarial attacks and defenses, the neural networks' intrinsic robustness property is still lack of thorough investigation. This work aims to qualitatively interpret the adversarial attack and defense mechanism through loss visualization, and establish a quantitative metric to evaluate the neural network model's intrinsic robustness. The proposed robustness metric identifies the upper bound of a model's prediction divergence i"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1905.04270","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:46:31Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"fZ3FeLbZ5+QjUJM6i5G5VkZKa4aUhmk0EXkBA3VV5kG0CvX70nseFedtfdu2tH4VWvt8ZJq9pZL/zN6avUK9Bw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-07T18:45:35.547073Z"},"content_sha256":"be3c513e64bb93e9f5fd05f002b423444310165638c3a33677aafc00888173fa","schema_version":"1.0","event_id":"sha256:be3c513e64bb93e9f5fd05f002b423444310165638c3a33677aafc00888173fa"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/MMMNK5QPRDF4J7OKVWVCSCRUM5/bundle.json","state_url":"https://pith.science/pith/MMMNK5QPRDF4J7OKVWVCSCRUM5/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/MMMNK5QPRDF4J7OKVWVCSCRUM5/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-07T18:45:35Z","links":{"resolver":"https://pith.science/pith/MMMNK5QPRDF4J7OKVWVCSCRUM5","bundle":"https://pith.science/pith/MMMNK5QPRDF4J7OKVWVCSCRUM5/bundle.json","state":"https://pith.science/pith/MMMNK5QPRDF4J7OKVWVCSCRUM5/state.json","well_known_bundle":"https://pith.science/.well-known/pith/MMMNK5QPRDF4J7OKVWVCSCRUM5/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2019:MMMNK5QPRDF4J7OKVWVCSCRUM5","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"d5da2e5572f5fae91e9caf4db137ef05435279814a1a8f7ad50d32a5472658d7","cross_cats_sorted":["cs.CV","stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-05-10T17:21:15Z","title_canon_sha256":"80e147624a199d7d8ffdc15710844f13488dcb9e1e4ec19b387edbfdd33a8270"},"schema_version":"1.0","source":{"id":"1905.04270","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1905.04270","created_at":"2026-05-17T23:46:31Z"},{"alias_kind":"arxiv_version","alias_value":"1905.04270v1","created_at":"2026-05-17T23:46:31Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1905.04270","created_at":"2026-05-17T23:46:31Z"},{"alias_kind":"pith_short_12","alias_value":"MMMNK5QPRDF4","created_at":"2026-05-18T12:33:21Z"},{"alias_kind":"pith_short_16","alias_value":"MMMNK5QPRDF4J7OK","created_at":"2026-05-18T12:33:21Z"},{"alias_kind":"pith_short_8","alias_value":"MMMNK5QP","created_at":"2026-05-18T12:33:21Z"}],"graph_snapshots":[{"event_id":"sha256:be3c513e64bb93e9f5fd05f002b423444310165638c3a33677aafc00888173fa","target":"graph","created_at":"2026-05-17T23:46:31Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Recently, adversarial deception becomes one of the most considerable threats to deep neural networks. However, compared to extensive research in new designs of various adversarial attacks and defenses, the neural networks' intrinsic robustness property is still lack of thorough investigation. This work aims to qualitatively interpret the adversarial attack and defense mechanism through loss visualization, and establish a quantitative metric to evaluate the neural network model's intrinsic robustness. The proposed robustness metric identifies the upper bound of a model's prediction divergence i","authors_text":"Chenchen Liu, Fuxun Yu, Liang Zhao, Xiang Chen, Yanzhi Wang, Zhuwei Qin","cross_cats":["cs.CV","stat.ML"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-05-10T17:21:15Z","title":"Interpreting and Evaluating Neural Network Robustness"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1905.04270","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:abb58f6b0645cfc64fe29dfdf2095710f0e7c7652309265210ef49c6155807ea","target":"record","created_at":"2026-05-17T23:46:31Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"d5da2e5572f5fae91e9caf4db137ef05435279814a1a8f7ad50d32a5472658d7","cross_cats_sorted":["cs.CV","stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-05-10T17:21:15Z","title_canon_sha256":"80e147624a199d7d8ffdc15710844f13488dcb9e1e4ec19b387edbfdd33a8270"},"schema_version":"1.0","source":{"id":"1905.04270","kind":"arxiv","version":1}},"canonical_sha256":"6318d5760f88cbc4fdcaadaa290a34676a6003359b5b07c3ba6a0435bbdd17e3","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"6318d5760f88cbc4fdcaadaa290a34676a6003359b5b07c3ba6a0435bbdd17e3","first_computed_at":"2026-05-17T23:46:31.575757Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-17T23:46:31.575757Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"khLMHd7qUQKZY/W2y5TZHMx9Y9RWg/c0EwmvxrNZlNNW1jN1rW6Qumv8sqz+pe3+IMtpoiUvL8Q1xRH/guRYAQ==","signature_status":"signed_v1","signed_at":"2026-05-17T23:46:31.576333Z","signed_message":"canonical_sha256_bytes"},"source_id":"1905.04270","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:abb58f6b0645cfc64fe29dfdf2095710f0e7c7652309265210ef49c6155807ea","sha256:be3c513e64bb93e9f5fd05f002b423444310165638c3a33677aafc00888173fa"],"state_sha256":"3e3e1f08fe5d3e28e109c79e74f28ad6908b9b6bda6821820df7329547c7d7f8"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"ns10TRAlqrx8o1t+uud5d9M0/B2s9Dmszy1oEjOMKPfLwbZJwY308uyCRuPeHYYGlipgGJ0e6CwTcWXEHByUDA==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-07T18:45:35.550227Z","bundle_sha256":"92ce97b54dc7232a76fc63cbdf17c9f9a6080c9c2623be7b2cf371563592baf6"}}