{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2018:OQPUBEJVFFQDL5O4AMFRTZLE36","short_pith_number":"pith:OQPUBEJV","canonical_record":{"source":{"id":"1812.03230","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-12-07T22:23:13Z","cross_cats_sorted":["cs.LG"],"title_canon_sha256":"68ef45a6ac9e755c16fee773cd8377e3be6446ce796a08201c0000f5391ae006","abstract_canon_sha256":"631cfe2a6f3a0ef7c8b5e756e50e9093fd828d252f9a07d1d40f0ed1617b8ba6"},"schema_version":"1.0"},"canonical_sha256":"741f409135296035f5dc030b19e564df9481cd19eb93ba7dc8b79ce90afd75e4","source":{"kind":"arxiv","id":"1812.03230","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1812.03230","created_at":"2026-05-17T23:58:46Z"},{"alias_kind":"arxiv_version","alias_value":"1812.03230v1","created_at":"2026-05-17T23:58:46Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1812.03230","created_at":"2026-05-17T23:58:46Z"},{"alias_kind":"pith_short_12","alias_value":"OQPUBEJVFFQD","created_at":"2026-05-18T12:32:43Z"},{"alias_kind":"pith_short_16","alias_value":"OQPUBEJVFFQDL5O4","created_at":"2026-05-18T12:32:43Z"},{"alias_kind":"pith_short_8","alias_value":"OQPUBEJV","created_at":"2026-05-18T12:32:43Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2018:OQPUBEJVFFQDL5O4AMFRTZLE36","target":"record","payload":{"canonical_record":{"source":{"id":"1812.03230","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-12-07T22:23:13Z","cross_cats_sorted":["cs.LG"],"title_canon_sha256":"68ef45a6ac9e755c16fee773cd8377e3be6446ce796a08201c0000f5391ae006","abstract_canon_sha256":"631cfe2a6f3a0ef7c8b5e756e50e9093fd828d252f9a07d1d40f0ed1617b8ba6"},"schema_version":"1.0"},"canonical_sha256":"741f409135296035f5dc030b19e564df9481cd19eb93ba7dc8b79ce90afd75e4","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:58:46.830342Z","signature_b64":"vA/qrhiHvHOMMzDA4vcrjFUsgvdPVuYl2WPaeN9jxABpUUa33Cl+D6zokp7SAmWZ2y/lt+zxRglKpfqEFZQ0DA==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"741f409135296035f5dc030b19e564df9481cd19eb93ba7dc8b79ce90afd75e4","last_reissued_at":"2026-05-17T23:58:46.829840Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:58:46.829840Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1812.03230","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:58:46Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"l8GoUHWUo1SQPBIncNDBris81UytCVZYRc/gnrV0xoxmeCCrBXsRWhgBEkki8Gov8H3vel/Vvh1GO6/wP8yBDw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-30T05:00:58.741709Z"},"content_sha256":"5e160d0d0b3f2ab293f9c587985a5506d9bebe4c6bca502c464273ac48423a16","schema_version":"1.0","event_id":"sha256:5e160d0d0b3f2ab293f9c587985a5506d9bebe4c6bca502c464273ac48423a16"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2018:OQPUBEJVFFQDL5O4AMFRTZLE36","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Reaching Data Confidentiality and Model Accountability on the CalTrain","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.LG"],"primary_cat":"cs.CR","authors_text":"Dimitrios Pendarakis, Dong Su, Hani Jamjoom, Heqing Huang, Ian Molloy, Jialong Zhang, Tengfei Ma, Zhongshu Gu","submitted_at":"2018-12-07T22:23:13Z","abstract_excerpt":"Distributed collaborative learning (DCL) paradigms enable building joint machine learning models from distrusting multi-party participants. Data confidentiality is guaranteed by retaining private training data on each participant's local infrastructure. However, this approach to achieving data confidentiality makes today's DCL designs fundamentally vulnerable to data poisoning and backdoor attacks. It also limits DCL's model accountability, which is key to backtracking the responsible \"bad\" training data instances/contributors. In this paper, we introduce CALTRAIN, a Trusted Execution Environm"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1812.03230","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:58:46Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"Ss6+7pW1CQ+hpvHG6u1cRmg4RDNGoO2SNnAAhG38Ahksi8eSxLexPol5XPOa3NdUq1rWD3sw4czj7RIRMhKZDg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-30T05:00:58.742060Z"},"content_sha256":"60d1def6fb2974b59480ed412402f2df84b21ace34b244e359f39bb2388e369d","schema_version":"1.0","event_id":"sha256:60d1def6fb2974b59480ed412402f2df84b21ace34b244e359f39bb2388e369d"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/OQPUBEJVFFQDL5O4AMFRTZLE36/bundle.json","state_url":"https://pith.science/pith/OQPUBEJVFFQDL5O4AMFRTZLE36/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/OQPUBEJVFFQDL5O4AMFRTZLE36/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-30T05:00:58Z","links":{"resolver":"https://pith.science/pith/OQPUBEJVFFQDL5O4AMFRTZLE36","bundle":"https://pith.science/pith/OQPUBEJVFFQDL5O4AMFRTZLE36/bundle.json","state":"https://pith.science/pith/OQPUBEJVFFQDL5O4AMFRTZLE36/state.json","well_known_bundle":"https://pith.science/.well-known/pith/OQPUBEJVFFQDL5O4AMFRTZLE36/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2018:OQPUBEJVFFQDL5O4AMFRTZLE36","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"631cfe2a6f3a0ef7c8b5e756e50e9093fd828d252f9a07d1d40f0ed1617b8ba6","cross_cats_sorted":["cs.LG"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-12-07T22:23:13Z","title_canon_sha256":"68ef45a6ac9e755c16fee773cd8377e3be6446ce796a08201c0000f5391ae006"},"schema_version":"1.0","source":{"id":"1812.03230","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1812.03230","created_at":"2026-05-17T23:58:46Z"},{"alias_kind":"arxiv_version","alias_value":"1812.03230v1","created_at":"2026-05-17T23:58:46Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1812.03230","created_at":"2026-05-17T23:58:46Z"},{"alias_kind":"pith_short_12","alias_value":"OQPUBEJVFFQD","created_at":"2026-05-18T12:32:43Z"},{"alias_kind":"pith_short_16","alias_value":"OQPUBEJVFFQDL5O4","created_at":"2026-05-18T12:32:43Z"},{"alias_kind":"pith_short_8","alias_value":"OQPUBEJV","created_at":"2026-05-18T12:32:43Z"}],"graph_snapshots":[{"event_id":"sha256:60d1def6fb2974b59480ed412402f2df84b21ace34b244e359f39bb2388e369d","target":"graph","created_at":"2026-05-17T23:58:46Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Distributed collaborative learning (DCL) paradigms enable building joint machine learning models from distrusting multi-party participants. Data confidentiality is guaranteed by retaining private training data on each participant's local infrastructure. However, this approach to achieving data confidentiality makes today's DCL designs fundamentally vulnerable to data poisoning and backdoor attacks. It also limits DCL's model accountability, which is key to backtracking the responsible \"bad\" training data instances/contributors. In this paper, we introduce CALTRAIN, a Trusted Execution Environm","authors_text":"Dimitrios Pendarakis, Dong Su, Hani Jamjoom, Heqing Huang, Ian Molloy, Jialong Zhang, Tengfei Ma, Zhongshu Gu","cross_cats":["cs.LG"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-12-07T22:23:13Z","title":"Reaching Data Confidentiality and Model Accountability on the CalTrain"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1812.03230","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:5e160d0d0b3f2ab293f9c587985a5506d9bebe4c6bca502c464273ac48423a16","target":"record","created_at":"2026-05-17T23:58:46Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"631cfe2a6f3a0ef7c8b5e756e50e9093fd828d252f9a07d1d40f0ed1617b8ba6","cross_cats_sorted":["cs.LG"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-12-07T22:23:13Z","title_canon_sha256":"68ef45a6ac9e755c16fee773cd8377e3be6446ce796a08201c0000f5391ae006"},"schema_version":"1.0","source":{"id":"1812.03230","kind":"arxiv","version":1}},"canonical_sha256":"741f409135296035f5dc030b19e564df9481cd19eb93ba7dc8b79ce90afd75e4","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"741f409135296035f5dc030b19e564df9481cd19eb93ba7dc8b79ce90afd75e4","first_computed_at":"2026-05-17T23:58:46.829840Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-17T23:58:46.829840Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"vA/qrhiHvHOMMzDA4vcrjFUsgvdPVuYl2WPaeN9jxABpUUa33Cl+D6zokp7SAmWZ2y/lt+zxRglKpfqEFZQ0DA==","signature_status":"signed_v1","signed_at":"2026-05-17T23:58:46.830342Z","signed_message":"canonical_sha256_bytes"},"source_id":"1812.03230","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:5e160d0d0b3f2ab293f9c587985a5506d9bebe4c6bca502c464273ac48423a16","sha256:60d1def6fb2974b59480ed412402f2df84b21ace34b244e359f39bb2388e369d"],"state_sha256":"2663d9e8cb3b00d98f919ae15b25fbc985c5aa7d1f21538115367c71dd2cf036"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"BYwZhHq+PHpkHGBkkT5Al3r/tbZ4UZuWkmXV0STy4fSrusqLnmOoQcSaP1zzFWXxZAezAglOPQ6oIq+6+KbrAQ==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-30T05:00:58.744017Z","bundle_sha256":"f8aa64b1d8cd5e1db035d0829e3296c7e0b5b6ffd2c18a12c0eb6bb9ca37edd4"}}