{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2024:MQTSNWIG6VIY5OZ5B3GS3RIAVW","short_pith_number":"pith:MQTSNWIG","canonical_record":{"source":{"id":"2404.15582","kind":"arxiv","version":6},"metadata":{"license":"http://creativecommons.org/licenses/by-nc-sa/4.0/","primary_cat":"cs.CR","submitted_at":"2024-04-24T01:31:23Z","cross_cats_sorted":[],"title_canon_sha256":"1ebe1f280ae96a8bf954689ce07839ae5e0ab4d683f7e8f8c8a2e4972e66b344","abstract_canon_sha256":"23583b0666fef411c59471382dbe067f13cddad03518e974d780e967d5771db6"},"schema_version":"1.0"},"canonical_sha256":"642726d906f5518ebb3d0ecd2dc500ada9f42597d1b4423f2c47cbf3b36e7c95","source":{"kind":"arxiv","id":"2404.15582","version":6},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2404.15582","created_at":"2026-07-05T09:59:45Z"},{"alias_kind":"arxiv_version","alias_value":"2404.15582v6","created_at":"2026-07-05T09:59:45Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2404.15582","created_at":"2026-07-05T09:59:45Z"},{"alias_kind":"pith_short_12","alias_value":"MQTSNWIG6VIY","created_at":"2026-07-05T09:59:45Z"},{"alias_kind":"pith_short_16","alias_value":"MQTSNWIG6VIY5OZ5","created_at":"2026-07-05T09:59:45Z"},{"alias_kind":"pith_short_8","alias_value":"MQTSNWIG","created_at":"2026-07-05T09:59:45Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2024:MQTSNWIG6VIY5OZ5B3GS3RIAVW","target":"record","payload":{"canonical_record":{"source":{"id":"2404.15582","kind":"arxiv","version":6},"metadata":{"license":"http://creativecommons.org/licenses/by-nc-sa/4.0/","primary_cat":"cs.CR","submitted_at":"2024-04-24T01:31:23Z","cross_cats_sorted":[],"title_canon_sha256":"1ebe1f280ae96a8bf954689ce07839ae5e0ab4d683f7e8f8c8a2e4972e66b344","abstract_canon_sha256":"23583b0666fef411c59471382dbe067f13cddad03518e974d780e967d5771db6"},"schema_version":"1.0"},"canonical_sha256":"642726d906f5518ebb3d0ecd2dc500ada9f42597d1b4423f2c47cbf3b36e7c95","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T09:59:45.940487Z","signature_b64":"tOF7xTUgrcnp1cPff7pP1bALIwO9Lxtd2N7kLV83VC9Mky3WTzEG0trZYC9Sy5Cl8d1Jwu4iEhQDlk+gjSrRBQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"642726d906f5518ebb3d0ecd2dc500ada9f42597d1b4423f2c47cbf3b36e7c95","last_reissued_at":"2026-07-05T09:59:45.940038Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T09:59:45.940038Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"2404.15582","source_version":6,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-07-05T09:59:45Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"GhjsQegEWHw+u8akm5Ptny8mc2VNqY1pToDpqm6zusOY9Ndx+ODKdf01VKqvmbshJd/bT6DfUKg1oLdUdSYDAA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-08-13T09:51:41.642754Z"},"content_sha256":"84421d5a6bd9d2714364c6b39a44932d4d1af3c70b881411b676d32d9aa8e874","schema_version":"1.0","event_id":"sha256:84421d5a6bd9d2714364c6b39a44932d4d1af3c70b881411b676d32d9aa8e874"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2024:MQTSNWIG6VIY5OZ5B3GS3RIAVW","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Now Let's Make It Physical: Enabling Physically Trusted Certificate Issuance for Keyless Security in CAs","license":"http://creativecommons.org/licenses/by-nc-sa/4.0/","headline":"","cross_cats":[],"primary_cat":"cs.CR","authors_text":"Chenghao Chen, Chi Zhang, Dawu Gu, Kailun Qin, Shipei Qu, Tengfei Wang, Xiaolin Zhang, Yuxuan Wang","submitted_at":"2024-04-24T01:31:23Z","abstract_excerpt":"The signing key protection of Certificate Authorities (CAs) remains a critical challenge in PKI. Traditional approaches struggle to eliminate the risk of key exposure due to those (un)intentional human errors. This long-standing dilemma motivates us to propose Armored Core, a novel PKI security extension using the trusted binding of Physically Unclonable Function (PUF) for CAs. PUFs leverage manufacturing variations to generate unique and random responses. Combining with XOR and hash, they can make key exposure impossible for CAs through keyless certificate issuance.\n  In Armored Core, we desi"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2404.15582","kind":"arxiv","version":6},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2404.15582/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-07-05T09:59:45Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"c1t8BKxQmAn67oL+fGKgFTmkc0HA+zgHNbtIant6kjGYzUrDwgEUJUX4RTMyhWTEhLC3FlV02r1PjCcIK2dwDA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-08-13T09:51:41.650924Z"},"content_sha256":"04dd312e4ced1314721620f3a1ced7a9ec50c46e26ed0ade28d431b86e5faac8","schema_version":"1.0","event_id":"sha256:04dd312e4ced1314721620f3a1ced7a9ec50c46e26ed0ade28d431b86e5faac8"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/MQTSNWIG6VIY5OZ5B3GS3RIAVW/bundle.json","state_url":"https://pith.science/pith/MQTSNWIG6VIY5OZ5B3GS3RIAVW/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/MQTSNWIG6VIY5OZ5B3GS3RIAVW/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-08-13T09:51:41Z","links":{"resolver":"https://pith.science/pith/MQTSNWIG6VIY5OZ5B3GS3RIAVW","bundle":"https://pith.science/pith/MQTSNWIG6VIY5OZ5B3GS3RIAVW/bundle.json","state":"https://pith.science/pith/MQTSNWIG6VIY5OZ5B3GS3RIAVW/state.json","well_known_bundle":"https://pith.science/.well-known/pith/MQTSNWIG6VIY5OZ5B3GS3RIAVW/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2024:MQTSNWIG6VIY5OZ5B3GS3RIAVW","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"23583b0666fef411c59471382dbe067f13cddad03518e974d780e967d5771db6","cross_cats_sorted":[],"license":"http://creativecommons.org/licenses/by-nc-sa/4.0/","primary_cat":"cs.CR","submitted_at":"2024-04-24T01:31:23Z","title_canon_sha256":"1ebe1f280ae96a8bf954689ce07839ae5e0ab4d683f7e8f8c8a2e4972e66b344"},"schema_version":"1.0","source":{"id":"2404.15582","kind":"arxiv","version":6}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2404.15582","created_at":"2026-07-05T09:59:45Z"},{"alias_kind":"arxiv_version","alias_value":"2404.15582v6","created_at":"2026-07-05T09:59:45Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2404.15582","created_at":"2026-07-05T09:59:45Z"},{"alias_kind":"pith_short_12","alias_value":"MQTSNWIG6VIY","created_at":"2026-07-05T09:59:45Z"},{"alias_kind":"pith_short_16","alias_value":"MQTSNWIG6VIY5OZ5","created_at":"2026-07-05T09:59:45Z"},{"alias_kind":"pith_short_8","alias_value":"MQTSNWIG","created_at":"2026-07-05T09:59:45Z"}],"graph_snapshots":[{"event_id":"sha256:04dd312e4ced1314721620f3a1ced7a9ec50c46e26ed0ade28d431b86e5faac8","target":"graph","created_at":"2026-07-05T09:59:45Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/2404.15582/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"The signing key protection of Certificate Authorities (CAs) remains a critical challenge in PKI. Traditional approaches struggle to eliminate the risk of key exposure due to those (un)intentional human errors. This long-standing dilemma motivates us to propose Armored Core, a novel PKI security extension using the trusted binding of Physically Unclonable Function (PUF) for CAs. PUFs leverage manufacturing variations to generate unique and random responses. Combining with XOR and hash, they can make key exposure impossible for CAs through keyless certificate issuance.\n  In Armored Core, we desi","authors_text":"Chenghao Chen, Chi Zhang, Dawu Gu, Kailun Qin, Shipei Qu, Tengfei Wang, Xiaolin Zhang, Yuxuan Wang","cross_cats":[],"headline":"","license":"http://creativecommons.org/licenses/by-nc-sa/4.0/","primary_cat":"cs.CR","submitted_at":"2024-04-24T01:31:23Z","title":"Now Let's Make It Physical: Enabling Physically Trusted Certificate Issuance for Keyless Security in CAs"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2404.15582","kind":"arxiv","version":6},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:84421d5a6bd9d2714364c6b39a44932d4d1af3c70b881411b676d32d9aa8e874","target":"record","created_at":"2026-07-05T09:59:45Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"23583b0666fef411c59471382dbe067f13cddad03518e974d780e967d5771db6","cross_cats_sorted":[],"license":"http://creativecommons.org/licenses/by-nc-sa/4.0/","primary_cat":"cs.CR","submitted_at":"2024-04-24T01:31:23Z","title_canon_sha256":"1ebe1f280ae96a8bf954689ce07839ae5e0ab4d683f7e8f8c8a2e4972e66b344"},"schema_version":"1.0","source":{"id":"2404.15582","kind":"arxiv","version":6}},"canonical_sha256":"642726d906f5518ebb3d0ecd2dc500ada9f42597d1b4423f2c47cbf3b36e7c95","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"642726d906f5518ebb3d0ecd2dc500ada9f42597d1b4423f2c47cbf3b36e7c95","first_computed_at":"2026-07-05T09:59:45.940038Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-07-05T09:59:45.940038Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"tOF7xTUgrcnp1cPff7pP1bALIwO9Lxtd2N7kLV83VC9Mky3WTzEG0trZYC9Sy5Cl8d1Jwu4iEhQDlk+gjSrRBQ==","signature_status":"signed_v1","signed_at":"2026-07-05T09:59:45.940487Z","signed_message":"canonical_sha256_bytes"},"source_id":"2404.15582","source_kind":"arxiv","source_version":6}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:84421d5a6bd9d2714364c6b39a44932d4d1af3c70b881411b676d32d9aa8e874","sha256:04dd312e4ced1314721620f3a1ced7a9ec50c46e26ed0ade28d431b86e5faac8"],"state_sha256":"7d69c13018a753a8184373fce514422665e838c7e1ea7be65b5d8989516db631"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"j4pggjRZqX9sZaiv37CsUHx2VQ6FsEWkCA4U57nNvl53EHnnIp70WkFezIeZoliaBmMEm70fTfxoxUC3HW98Ag==","signed_message":"bundle_sha256_bytes","signed_at":"2026-08-13T09:51:41.702430Z","bundle_sha256":"b139c1bf5927332b6baec7403980c55d81e7a280093b37703d4f20cefe67087d"}}