{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2018:OJE7ZCOTDOABGLQBYZQKERD3Y5","short_pith_number":"pith:OJE7ZCOT","canonical_record":{"source":{"id":"1801.04693","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2018-01-15T08:15:33Z","cross_cats_sorted":["cs.CR","stat.ML"],"title_canon_sha256":"17ce2639a1c0ce1e260a3db39c49609513ef2bd40801f9fb18d0c91dcb79c84e","abstract_canon_sha256":"32cd62db475f2d360a2d2350245337d285d23f42f82a2baa6abebc56716e2a71"},"schema_version":"1.0"},"canonical_sha256":"7249fc89d31b80132e01c660a2447bc76932f5d3fbae1f85cc6e79e27b4f91e8","source":{"kind":"arxiv","id":"1801.04693","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1801.04693","created_at":"2026-05-18T00:26:03Z"},{"alias_kind":"arxiv_version","alias_value":"1801.04693v1","created_at":"2026-05-18T00:26:03Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1801.04693","created_at":"2026-05-18T00:26:03Z"},{"alias_kind":"pith_short_12","alias_value":"OJE7ZCOTDOAB","created_at":"2026-05-18T12:32:43Z"},{"alias_kind":"pith_short_16","alias_value":"OJE7ZCOTDOABGLQB","created_at":"2026-05-18T12:32:43Z"},{"alias_kind":"pith_short_8","alias_value":"OJE7ZCOT","created_at":"2026-05-18T12:32:43Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2018:OJE7ZCOTDOABGLQBYZQKERD3Y5","target":"record","payload":{"canonical_record":{"source":{"id":"1801.04693","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2018-01-15T08:15:33Z","cross_cats_sorted":["cs.CR","stat.ML"],"title_canon_sha256":"17ce2639a1c0ce1e260a3db39c49609513ef2bd40801f9fb18d0c91dcb79c84e","abstract_canon_sha256":"32cd62db475f2d360a2d2350245337d285d23f42f82a2baa6abebc56716e2a71"},"schema_version":"1.0"},"canonical_sha256":"7249fc89d31b80132e01c660a2447bc76932f5d3fbae1f85cc6e79e27b4f91e8","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-18T00:26:03.557243Z","signature_b64":"j94oVVcKXBqFwIszh7KE+YlszdSvzX+7tXz+NTwlIoosSYtxByWwalG0RHSz0zuJxP6KgX1k7GLITj/q/kt2Ag==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"7249fc89d31b80132e01c660a2447bc76932f5d3fbae1f85cc6e79e27b4f91e8","last_reissued_at":"2026-05-18T00:26:03.556659Z","signature_status":"signed_v1","first_computed_at":"2026-05-18T00:26:03.556659Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1801.04693","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:26:03Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"pCTfamjzWakhtVPqVhlcjty+ehqT1MDMr2zxXrJDe2ItR/zHgILsiUIz+DhMgAOeAe4NCOgePWmUu8ZLSwH9BA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-30T23:54:25.402739Z"},"content_sha256":"2aff5fccad33ce1271b29c9fbad040c4239a29b3744ef2afe282bdf1cf5b2249","schema_version":"1.0","event_id":"sha256:2aff5fccad33ce1271b29c9fbad040c4239a29b3744ef2afe282bdf1cf5b2249"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2018:OJE7ZCOTDOABGLQBYZQKERD3Y5","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Towards Imperceptible and Robust Adversarial Example Attacks against Neural Networks","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.CR","stat.ML"],"primary_cat":"cs.LG","authors_text":"Bo Luo, Lingxiao Wei, Qiang Xu, Yannan Liu","submitted_at":"2018-01-15T08:15:33Z","abstract_excerpt":"Machine learning systems based on deep neural networks, being able to produce state-of-the-art results on various perception tasks, have gained mainstream adoption in many applications. However, they are shown to be vulnerable to adversarial example attack, which generates malicious output by adding slight perturbations to the input. Previous adversarial example crafting methods, however, use simple metrics to evaluate the distances between the original examples and the adversarial ones, which could be easily detected by human eyes. In addition, these attacks are often not robust due to the in"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1801.04693","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:26:03Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"o9lUurZbozUxwSTgmrtG/b3zSOPfMtuk2oLZeATjLyu0/4as13exfz2oQFh55fLBm1KEfzno1xc7satzqzVIBg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-30T23:54:25.403299Z"},"content_sha256":"9c819857585ea8336f1cd8189c4c4ec1436922b228c97eb960e3a72d683d7b22","schema_version":"1.0","event_id":"sha256:9c819857585ea8336f1cd8189c4c4ec1436922b228c97eb960e3a72d683d7b22"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/OJE7ZCOTDOABGLQBYZQKERD3Y5/bundle.json","state_url":"https://pith.science/pith/OJE7ZCOTDOABGLQBYZQKERD3Y5/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/OJE7ZCOTDOABGLQBYZQKERD3Y5/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-30T23:54:25Z","links":{"resolver":"https://pith.science/pith/OJE7ZCOTDOABGLQBYZQKERD3Y5","bundle":"https://pith.science/pith/OJE7ZCOTDOABGLQBYZQKERD3Y5/bundle.json","state":"https://pith.science/pith/OJE7ZCOTDOABGLQBYZQKERD3Y5/state.json","well_known_bundle":"https://pith.science/.well-known/pith/OJE7ZCOTDOABGLQBYZQKERD3Y5/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2018:OJE7ZCOTDOABGLQBYZQKERD3Y5","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"32cd62db475f2d360a2d2350245337d285d23f42f82a2baa6abebc56716e2a71","cross_cats_sorted":["cs.CR","stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2018-01-15T08:15:33Z","title_canon_sha256":"17ce2639a1c0ce1e260a3db39c49609513ef2bd40801f9fb18d0c91dcb79c84e"},"schema_version":"1.0","source":{"id":"1801.04693","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1801.04693","created_at":"2026-05-18T00:26:03Z"},{"alias_kind":"arxiv_version","alias_value":"1801.04693v1","created_at":"2026-05-18T00:26:03Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1801.04693","created_at":"2026-05-18T00:26:03Z"},{"alias_kind":"pith_short_12","alias_value":"OJE7ZCOTDOAB","created_at":"2026-05-18T12:32:43Z"},{"alias_kind":"pith_short_16","alias_value":"OJE7ZCOTDOABGLQB","created_at":"2026-05-18T12:32:43Z"},{"alias_kind":"pith_short_8","alias_value":"OJE7ZCOT","created_at":"2026-05-18T12:32:43Z"}],"graph_snapshots":[{"event_id":"sha256:9c819857585ea8336f1cd8189c4c4ec1436922b228c97eb960e3a72d683d7b22","target":"graph","created_at":"2026-05-18T00:26:03Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Machine learning systems based on deep neural networks, being able to produce state-of-the-art results on various perception tasks, have gained mainstream adoption in many applications. However, they are shown to be vulnerable to adversarial example attack, which generates malicious output by adding slight perturbations to the input. Previous adversarial example crafting methods, however, use simple metrics to evaluate the distances between the original examples and the adversarial ones, which could be easily detected by human eyes. In addition, these attacks are often not robust due to the in","authors_text":"Bo Luo, Lingxiao Wei, Qiang Xu, Yannan Liu","cross_cats":["cs.CR","stat.ML"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2018-01-15T08:15:33Z","title":"Towards Imperceptible and Robust Adversarial Example Attacks against Neural Networks"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1801.04693","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:2aff5fccad33ce1271b29c9fbad040c4239a29b3744ef2afe282bdf1cf5b2249","target":"record","created_at":"2026-05-18T00:26:03Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"32cd62db475f2d360a2d2350245337d285d23f42f82a2baa6abebc56716e2a71","cross_cats_sorted":["cs.CR","stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2018-01-15T08:15:33Z","title_canon_sha256":"17ce2639a1c0ce1e260a3db39c49609513ef2bd40801f9fb18d0c91dcb79c84e"},"schema_version":"1.0","source":{"id":"1801.04693","kind":"arxiv","version":1}},"canonical_sha256":"7249fc89d31b80132e01c660a2447bc76932f5d3fbae1f85cc6e79e27b4f91e8","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"7249fc89d31b80132e01c660a2447bc76932f5d3fbae1f85cc6e79e27b4f91e8","first_computed_at":"2026-05-18T00:26:03.556659Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-18T00:26:03.556659Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"j94oVVcKXBqFwIszh7KE+YlszdSvzX+7tXz+NTwlIoosSYtxByWwalG0RHSz0zuJxP6KgX1k7GLITj/q/kt2Ag==","signature_status":"signed_v1","signed_at":"2026-05-18T00:26:03.557243Z","signed_message":"canonical_sha256_bytes"},"source_id":"1801.04693","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:2aff5fccad33ce1271b29c9fbad040c4239a29b3744ef2afe282bdf1cf5b2249","sha256:9c819857585ea8336f1cd8189c4c4ec1436922b228c97eb960e3a72d683d7b22"],"state_sha256":"a412b1eeb8bb0d491df5997c934c3876ba05947bacb3e2095e1a42732893d09d"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"ZnAQAJmwM9mGBm9GMXwyG1518lKXsuQLZQ2+UnlMjjt5nQFoFQtzHK1e0gFSvLTR0ZGn8Pj3ZvL00um98p3tAw==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-30T23:54:25.405646Z","bundle_sha256":"6c5f45f294c28d5b0fbc50846e0f9cc0bbd78522ac9d6712cfa482f3a102878d"}}