{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2018:NTNGR354EERZO4CJBDE7CBJI3F","short_pith_number":"pith:NTNGR354","canonical_record":{"source":{"id":"1805.10204","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"stat.ML","submitted_at":"2018-05-25T15:39:06Z","cross_cats_sorted":["cs.CC","cs.LG"],"title_canon_sha256":"a8d9cd6a0cdf6dac2f14307b9b3c9cacd41f8c850871bdc8d8c264259c8bac77","abstract_canon_sha256":"19f9df56659c8a8ebba7f0e027409478b18bbbf0503b0dd76a0fba3434f43095"},"schema_version":"1.0"},"canonical_sha256":"6cda68efbc212397704908c9f10528d97354b9d66d6e8670221185d5b550b13f","source":{"kind":"arxiv","id":"1805.10204","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1805.10204","created_at":"2026-05-18T00:14:57Z"},{"alias_kind":"arxiv_version","alias_value":"1805.10204v1","created_at":"2026-05-18T00:14:57Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1805.10204","created_at":"2026-05-18T00:14:57Z"},{"alias_kind":"pith_short_12","alias_value":"NTNGR354EERZ","created_at":"2026-05-18T12:32:40Z"},{"alias_kind":"pith_short_16","alias_value":"NTNGR354EERZO4CJ","created_at":"2026-05-18T12:32:40Z"},{"alias_kind":"pith_short_8","alias_value":"NTNGR354","created_at":"2026-05-18T12:32:40Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2018:NTNGR354EERZO4CJBDE7CBJI3F","target":"record","payload":{"canonical_record":{"source":{"id":"1805.10204","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"stat.ML","submitted_at":"2018-05-25T15:39:06Z","cross_cats_sorted":["cs.CC","cs.LG"],"title_canon_sha256":"a8d9cd6a0cdf6dac2f14307b9b3c9cacd41f8c850871bdc8d8c264259c8bac77","abstract_canon_sha256":"19f9df56659c8a8ebba7f0e027409478b18bbbf0503b0dd76a0fba3434f43095"},"schema_version":"1.0"},"canonical_sha256":"6cda68efbc212397704908c9f10528d97354b9d66d6e8670221185d5b550b13f","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-18T00:14:57.973982Z","signature_b64":"hmyDtQf2/JnM7RtoqrFUvte8ofxeBLq17PfoyH88GaQavXTgB7C+e/uZTgJ+4U0+hf7tm0oDIUfC6qnf2LkCCw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"6cda68efbc212397704908c9f10528d97354b9d66d6e8670221185d5b550b13f","last_reissued_at":"2026-05-18T00:14:57.973495Z","signature_status":"signed_v1","first_computed_at":"2026-05-18T00:14:57.973495Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1805.10204","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:14:57Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"PS+I77qzZWup9UbAaob/iAUyDzTeWauSW89lBegk872GD0JhE99arQVpN9lt+iIEa5EAQkAzNS+/rlQfC2N/CQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-08-15T23:38:57.587567Z"},"content_sha256":"302d3874db6bd6a432f08491c8b8595c3a270afab1ff9e8f91fb7ca7b5d2a394","schema_version":"1.0","event_id":"sha256:302d3874db6bd6a432f08491c8b8595c3a270afab1ff9e8f91fb7ca7b5d2a394"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2018:NTNGR354EERZO4CJBDE7CBJI3F","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Adversarial examples from computational constraints","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.CC","cs.LG"],"primary_cat":"stat.ML","authors_text":"Eric Price, Ilya Razenshteyn, S\\'ebastien Bubeck","submitted_at":"2018-05-25T15:39:06Z","abstract_excerpt":"Why are classifiers in high dimension vulnerable to \"adversarial\" perturbations? We show that it is likely not due to information theoretic limitations, but rather it could be due to computational constraints.\n  First we prove that, for a broad set of classification tasks, the mere existence of a robust classifier implies that it can be found by a possibly exponential-time algorithm with relatively few training examples. Then we give a particular classification task where learning a robust classifier is computationally intractable. More precisely we construct a binary classification task in hi"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1805.10204","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:14:57Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"3Ax7n7bNWWu+I4apNXpzSTH98+wJ392LXlmQuEmzWtszWm7t2qERvpsd1knSGfnYtHJ+ahPL7/Zg4nMHdiENDg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-08-15T23:38:57.588020Z"},"content_sha256":"9fed3cb9bd96f58832c5aa4242a2335dc7d1e029544af78fa85eda68836df74c","schema_version":"1.0","event_id":"sha256:9fed3cb9bd96f58832c5aa4242a2335dc7d1e029544af78fa85eda68836df74c"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/NTNGR354EERZO4CJBDE7CBJI3F/bundle.json","state_url":"https://pith.science/pith/NTNGR354EERZO4CJBDE7CBJI3F/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/NTNGR354EERZO4CJBDE7CBJI3F/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-08-15T23:38:57Z","links":{"resolver":"https://pith.science/pith/NTNGR354EERZO4CJBDE7CBJI3F","bundle":"https://pith.science/pith/NTNGR354EERZO4CJBDE7CBJI3F/bundle.json","state":"https://pith.science/pith/NTNGR354EERZO4CJBDE7CBJI3F/state.json","well_known_bundle":"https://pith.science/.well-known/pith/NTNGR354EERZO4CJBDE7CBJI3F/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2018:NTNGR354EERZO4CJBDE7CBJI3F","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"19f9df56659c8a8ebba7f0e027409478b18bbbf0503b0dd76a0fba3434f43095","cross_cats_sorted":["cs.CC","cs.LG"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"stat.ML","submitted_at":"2018-05-25T15:39:06Z","title_canon_sha256":"a8d9cd6a0cdf6dac2f14307b9b3c9cacd41f8c850871bdc8d8c264259c8bac77"},"schema_version":"1.0","source":{"id":"1805.10204","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1805.10204","created_at":"2026-05-18T00:14:57Z"},{"alias_kind":"arxiv_version","alias_value":"1805.10204v1","created_at":"2026-05-18T00:14:57Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1805.10204","created_at":"2026-05-18T00:14:57Z"},{"alias_kind":"pith_short_12","alias_value":"NTNGR354EERZ","created_at":"2026-05-18T12:32:40Z"},{"alias_kind":"pith_short_16","alias_value":"NTNGR354EERZO4CJ","created_at":"2026-05-18T12:32:40Z"},{"alias_kind":"pith_short_8","alias_value":"NTNGR354","created_at":"2026-05-18T12:32:40Z"}],"graph_snapshots":[{"event_id":"sha256:9fed3cb9bd96f58832c5aa4242a2335dc7d1e029544af78fa85eda68836df74c","target":"graph","created_at":"2026-05-18T00:14:57Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Why are classifiers in high dimension vulnerable to \"adversarial\" perturbations? We show that it is likely not due to information theoretic limitations, but rather it could be due to computational constraints.\n  First we prove that, for a broad set of classification tasks, the mere existence of a robust classifier implies that it can be found by a possibly exponential-time algorithm with relatively few training examples. Then we give a particular classification task where learning a robust classifier is computationally intractable. More precisely we construct a binary classification task in hi","authors_text":"Eric Price, Ilya Razenshteyn, S\\'ebastien Bubeck","cross_cats":["cs.CC","cs.LG"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"stat.ML","submitted_at":"2018-05-25T15:39:06Z","title":"Adversarial examples from computational constraints"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1805.10204","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:302d3874db6bd6a432f08491c8b8595c3a270afab1ff9e8f91fb7ca7b5d2a394","target":"record","created_at":"2026-05-18T00:14:57Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"19f9df56659c8a8ebba7f0e027409478b18bbbf0503b0dd76a0fba3434f43095","cross_cats_sorted":["cs.CC","cs.LG"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"stat.ML","submitted_at":"2018-05-25T15:39:06Z","title_canon_sha256":"a8d9cd6a0cdf6dac2f14307b9b3c9cacd41f8c850871bdc8d8c264259c8bac77"},"schema_version":"1.0","source":{"id":"1805.10204","kind":"arxiv","version":1}},"canonical_sha256":"6cda68efbc212397704908c9f10528d97354b9d66d6e8670221185d5b550b13f","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"6cda68efbc212397704908c9f10528d97354b9d66d6e8670221185d5b550b13f","first_computed_at":"2026-05-18T00:14:57.973495Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-18T00:14:57.973495Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"hmyDtQf2/JnM7RtoqrFUvte8ofxeBLq17PfoyH88GaQavXTgB7C+e/uZTgJ+4U0+hf7tm0oDIUfC6qnf2LkCCw==","signature_status":"signed_v1","signed_at":"2026-05-18T00:14:57.973982Z","signed_message":"canonical_sha256_bytes"},"source_id":"1805.10204","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:302d3874db6bd6a432f08491c8b8595c3a270afab1ff9e8f91fb7ca7b5d2a394","sha256:9fed3cb9bd96f58832c5aa4242a2335dc7d1e029544af78fa85eda68836df74c"],"state_sha256":"c128bd4f8073ab5ed0269d41a56f6dfa6a8a94ea71185c70ebbe825779c27806"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"c9UjAW4rYaF/AKtKWM+KMEVGhRS/vfAIsXuNngxX1gaSSlGfqCYBz+vToOp5W8FMjkA+ccxsaOxnOJT7Wh2/CQ==","signed_message":"bundle_sha256_bytes","signed_at":"2026-08-15T23:38:57.593000Z","bundle_sha256":"11dc0e919b4eff494bef900d12ad0e752115e9745091b706fd9e81eeac971969"}}