{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2019:OJ6J7L2M5RXPZVWJ6CGEKHWVBF","short_pith_number":"pith:OJ6J7L2M","canonical_record":{"source":{"id":"1904.08444","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-04-17T18:23:24Z","cross_cats_sorted":["cs.CV","stat.ML"],"title_canon_sha256":"a0199e8ec4dcc88892177c4fda86f5adb26be605d8551dbda7bb6abfcf93a37e","abstract_canon_sha256":"b8d24e59456ce1240e1bfb5423753f652bf196aa2570a31ba7ab328d3772b0fd"},"schema_version":"1.0"},"canonical_sha256":"727c9faf4cec6efcd6c9f08c451ed50970a3adfe6e8ac71cb88fe276c735e7d9","source":{"kind":"arxiv","id":"1904.08444","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1904.08444","created_at":"2026-05-17T23:48:14Z"},{"alias_kind":"arxiv_version","alias_value":"1904.08444v1","created_at":"2026-05-17T23:48:14Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1904.08444","created_at":"2026-05-17T23:48:14Z"},{"alias_kind":"pith_short_12","alias_value":"OJ6J7L2M5RXP","created_at":"2026-05-18T12:33:24Z"},{"alias_kind":"pith_short_16","alias_value":"OJ6J7L2M5RXPZVWJ","created_at":"2026-05-18T12:33:24Z"},{"alias_kind":"pith_short_8","alias_value":"OJ6J7L2M","created_at":"2026-05-18T12:33:24Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2019:OJ6J7L2M5RXPZVWJ6CGEKHWVBF","target":"record","payload":{"canonical_record":{"source":{"id":"1904.08444","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-04-17T18:23:24Z","cross_cats_sorted":["cs.CV","stat.ML"],"title_canon_sha256":"a0199e8ec4dcc88892177c4fda86f5adb26be605d8551dbda7bb6abfcf93a37e","abstract_canon_sha256":"b8d24e59456ce1240e1bfb5423753f652bf196aa2570a31ba7ab328d3772b0fd"},"schema_version":"1.0"},"canonical_sha256":"727c9faf4cec6efcd6c9f08c451ed50970a3adfe6e8ac71cb88fe276c735e7d9","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:48:14.203419Z","signature_b64":"Lmq3RRxV1aSTK9okFaR/gGnd5s2Q+e4I2HiuKYxinn/drctHB4IEYADz+jVBc4YnwMPzvb0DGaM30JH+KOOlBw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"727c9faf4cec6efcd6c9f08c451ed50970a3adfe6e8ac71cb88fe276c735e7d9","last_reissued_at":"2026-05-17T23:48:14.202618Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:48:14.202618Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1904.08444","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:48:14Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"kbrGuTxWRORCu1pZ/anli765Wem6J/8VfvYcmKF8GqfXhbpsQHuUt+XfeTagOrO/ncdxeJTkNEFhYatzqM2vAg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-02T06:22:06.124141Z"},"content_sha256":"b1dcd11b948d2d36ce6374fc87acfcf69aacbb65b302a34ac0f4f47bf8303a90","schema_version":"1.0","event_id":"sha256:b1dcd11b948d2d36ce6374fc87acfcf69aacbb65b302a34ac0f4f47bf8303a90"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2019:OJ6J7L2M5RXPZVWJ6CGEKHWVBF","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Defensive Quantization: When Efficiency Meets Robustness","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.CV","stat.ML"],"primary_cat":"cs.LG","authors_text":"Chuang Gan, Ji Lin, Song Han","submitted_at":"2019-04-17T18:23:24Z","abstract_excerpt":"Neural network quantization is becoming an industry standard to efficiently deploy deep learning models on hardware platforms, such as CPU, GPU, TPU, and FPGAs. However, we observe that the conventional quantization approaches are vulnerable to adversarial attacks. This paper aims to raise people's awareness about the security of the quantized models, and we designed a novel quantization methodology to jointly optimize the efficiency and robustness of deep learning models. We first conduct an empirical study to show that vanilla quantization suffers more from adversarial attacks. We observe th"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1904.08444","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:48:14Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"9Q1sX+/exj8oKyLs3sr4YGzbWlau9kvaED1dPDZ/LZMsquFrDwXp0Gu7KUjZRo1riHXhtUTu7ZuDtyv8NsurCg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-02T06:22:06.124530Z"},"content_sha256":"5f500291e17d50afd72698119873e1a0cb172bf5af9d7c8e626570d3ffc90828","schema_version":"1.0","event_id":"sha256:5f500291e17d50afd72698119873e1a0cb172bf5af9d7c8e626570d3ffc90828"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/OJ6J7L2M5RXPZVWJ6CGEKHWVBF/bundle.json","state_url":"https://pith.science/pith/OJ6J7L2M5RXPZVWJ6CGEKHWVBF/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/OJ6J7L2M5RXPZVWJ6CGEKHWVBF/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-02T06:22:06Z","links":{"resolver":"https://pith.science/pith/OJ6J7L2M5RXPZVWJ6CGEKHWVBF","bundle":"https://pith.science/pith/OJ6J7L2M5RXPZVWJ6CGEKHWVBF/bundle.json","state":"https://pith.science/pith/OJ6J7L2M5RXPZVWJ6CGEKHWVBF/state.json","well_known_bundle":"https://pith.science/.well-known/pith/OJ6J7L2M5RXPZVWJ6CGEKHWVBF/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2019:OJ6J7L2M5RXPZVWJ6CGEKHWVBF","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"b8d24e59456ce1240e1bfb5423753f652bf196aa2570a31ba7ab328d3772b0fd","cross_cats_sorted":["cs.CV","stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-04-17T18:23:24Z","title_canon_sha256":"a0199e8ec4dcc88892177c4fda86f5adb26be605d8551dbda7bb6abfcf93a37e"},"schema_version":"1.0","source":{"id":"1904.08444","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1904.08444","created_at":"2026-05-17T23:48:14Z"},{"alias_kind":"arxiv_version","alias_value":"1904.08444v1","created_at":"2026-05-17T23:48:14Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1904.08444","created_at":"2026-05-17T23:48:14Z"},{"alias_kind":"pith_short_12","alias_value":"OJ6J7L2M5RXP","created_at":"2026-05-18T12:33:24Z"},{"alias_kind":"pith_short_16","alias_value":"OJ6J7L2M5RXPZVWJ","created_at":"2026-05-18T12:33:24Z"},{"alias_kind":"pith_short_8","alias_value":"OJ6J7L2M","created_at":"2026-05-18T12:33:24Z"}],"graph_snapshots":[{"event_id":"sha256:5f500291e17d50afd72698119873e1a0cb172bf5af9d7c8e626570d3ffc90828","target":"graph","created_at":"2026-05-17T23:48:14Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Neural network quantization is becoming an industry standard to efficiently deploy deep learning models on hardware platforms, such as CPU, GPU, TPU, and FPGAs. However, we observe that the conventional quantization approaches are vulnerable to adversarial attacks. This paper aims to raise people's awareness about the security of the quantized models, and we designed a novel quantization methodology to jointly optimize the efficiency and robustness of deep learning models. We first conduct an empirical study to show that vanilla quantization suffers more from adversarial attacks. We observe th","authors_text":"Chuang Gan, Ji Lin, Song Han","cross_cats":["cs.CV","stat.ML"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-04-17T18:23:24Z","title":"Defensive Quantization: When Efficiency Meets Robustness"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1904.08444","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:b1dcd11b948d2d36ce6374fc87acfcf69aacbb65b302a34ac0f4f47bf8303a90","target":"record","created_at":"2026-05-17T23:48:14Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"b8d24e59456ce1240e1bfb5423753f652bf196aa2570a31ba7ab328d3772b0fd","cross_cats_sorted":["cs.CV","stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-04-17T18:23:24Z","title_canon_sha256":"a0199e8ec4dcc88892177c4fda86f5adb26be605d8551dbda7bb6abfcf93a37e"},"schema_version":"1.0","source":{"id":"1904.08444","kind":"arxiv","version":1}},"canonical_sha256":"727c9faf4cec6efcd6c9f08c451ed50970a3adfe6e8ac71cb88fe276c735e7d9","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"727c9faf4cec6efcd6c9f08c451ed50970a3adfe6e8ac71cb88fe276c735e7d9","first_computed_at":"2026-05-17T23:48:14.202618Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-17T23:48:14.202618Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"Lmq3RRxV1aSTK9okFaR/gGnd5s2Q+e4I2HiuKYxinn/drctHB4IEYADz+jVBc4YnwMPzvb0DGaM30JH+KOOlBw==","signature_status":"signed_v1","signed_at":"2026-05-17T23:48:14.203419Z","signed_message":"canonical_sha256_bytes"},"source_id":"1904.08444","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:b1dcd11b948d2d36ce6374fc87acfcf69aacbb65b302a34ac0f4f47bf8303a90","sha256:5f500291e17d50afd72698119873e1a0cb172bf5af9d7c8e626570d3ffc90828"],"state_sha256":"3c19c5ce00506565aa4238487c54af72b5d2f1427e2e3c0f061414ead211266a"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"JwyH8JRr4W+Ec99WZdiZvmKEW4dZK7SyqN4fytH/Yp83+fO/I6R61XEi0BSedLthYbkwKHlxR2RcVxh17iTICQ==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-02T06:22:06.126548Z","bundle_sha256":"6d7e9105e7fc086fb66370248f5ae9545c5faa035da3881a22c5c071e48a5ba2"}}