{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2022:OULRMOJIFQVKWZFETTL4YGHAIP","short_pith_number":"pith:OULRMOJI","schema_version":"1.0","canonical_sha256":"75171639282c2aab64a49cd7cc18e043dc9b40046c1c81444f18590edf078114","source":{"kind":"arxiv","id":"2209.11715","version":3},"attestation_state":"computed","paper":{"title":"The \"Beatrix'' Resurrections: Robust Backdoor Detection via Gram Matrices","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.AI"],"primary_cat":"cs.CR","authors_text":"Derui Wang, Minhui Xue, Ruoxi Sun, Sheng Wen, Wanlun Ma, Yang Xiang","submitted_at":"2022-09-23T16:47:19Z","abstract_excerpt":"Deep Neural Networks (DNNs) are susceptible to backdoor attacks during training. The model corrupted in this way functions normally, but when triggered by certain patterns in the input, produces a predefined target label. Existing defenses usually rely on the assumption of the universal backdoor setting in which poisoned samples share the same uniform trigger. However, recent advanced backdoor attacks show that this assumption is no longer valid in dynamic backdoors where the triggers vary from input to input, thereby defeating the existing defenses.\n  In this work, we propose a novel techniqu"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2209.11715","kind":"arxiv","version":3},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2022-09-23T16:47:19Z","cross_cats_sorted":["cs.AI"],"title_canon_sha256":"083a442139737099a75d0f3e0a1934f7ffdf5f644541d9de9814ef0c46e0325d","abstract_canon_sha256":"3bfbe072002af470c3412afd5516177a4d4b995501caa533601f09e5c2355ca5"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T05:26:09.347188Z","signature_b64":"j7DzxnUPhZSN1NgpRoioeiG2zFh+WfyjmXomCfWA64ZU4VMiyOxm1th4DdXBSyGrkiOzv7OWmm7kwG/TpHfqDA==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"75171639282c2aab64a49cd7cc18e043dc9b40046c1c81444f18590edf078114","last_reissued_at":"2026-07-05T05:26:09.346805Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T05:26:09.346805Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"The \"Beatrix'' Resurrections: Robust Backdoor Detection via Gram Matrices","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.AI"],"primary_cat":"cs.CR","authors_text":"Derui Wang, Minhui Xue, Ruoxi Sun, Sheng Wen, Wanlun Ma, Yang Xiang","submitted_at":"2022-09-23T16:47:19Z","abstract_excerpt":"Deep Neural Networks (DNNs) are susceptible to backdoor attacks during training. The model corrupted in this way functions normally, but when triggered by certain patterns in the input, produces a predefined target label. Existing defenses usually rely on the assumption of the universal backdoor setting in which poisoned samples share the same uniform trigger. However, recent advanced backdoor attacks show that this assumption is no longer valid in dynamic backdoors where the triggers vary from input to input, thereby defeating the existing defenses.\n  In this work, we propose a novel techniqu"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2209.11715","kind":"arxiv","version":3},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2209.11715/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2209.11715","created_at":"2026-07-05T05:26:09.346861+00:00"},{"alias_kind":"arxiv_version","alias_value":"2209.11715v3","created_at":"2026-07-05T05:26:09.346861+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2209.11715","created_at":"2026-07-05T05:26:09.346861+00:00"},{"alias_kind":"pith_short_12","alias_value":"OULRMOJIFQVK","created_at":"2026-07-05T05:26:09.346861+00:00"},{"alias_kind":"pith_short_16","alias_value":"OULRMOJIFQVKWZFE","created_at":"2026-07-05T05:26:09.346861+00:00"},{"alias_kind":"pith_short_8","alias_value":"OULRMOJI","created_at":"2026-07-05T05:26:09.346861+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":1,"internal_anchor_count":1,"sample":[{"citing_arxiv_id":"2505.19821","citing_title":"Poison in the Well: Feature Embedding Disruption in Backdoor Attacks","ref_index":10,"is_internal_anchor":true}]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/OULRMOJIFQVKWZFETTL4YGHAIP","json":"https://pith.science/pith/OULRMOJIFQVKWZFETTL4YGHAIP.json","graph_json":"https://pith.science/api/pith-number/OULRMOJIFQVKWZFETTL4YGHAIP/graph.json","events_json":"https://pith.science/api/pith-number/OULRMOJIFQVKWZFETTL4YGHAIP/events.json","paper":"https://pith.science/paper/OULRMOJI"},"agent_actions":{"view_html":"https://pith.science/pith/OULRMOJIFQVKWZFETTL4YGHAIP","download_json":"https://pith.science/pith/OULRMOJIFQVKWZFETTL4YGHAIP.json","view_paper":"https://pith.science/paper/OULRMOJI","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2209.11715&json=true","fetch_graph":"https://pith.science/api/pith-number/OULRMOJIFQVKWZFETTL4YGHAIP/graph.json","fetch_events":"https://pith.science/api/pith-number/OULRMOJIFQVKWZFETTL4YGHAIP/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/OULRMOJIFQVKWZFETTL4YGHAIP/action/timestamp_anchor","attest_storage":"https://pith.science/pith/OULRMOJIFQVKWZFETTL4YGHAIP/action/storage_attestation","attest_author":"https://pith.science/pith/OULRMOJIFQVKWZFETTL4YGHAIP/action/author_attestation","sign_citation":"https://pith.science/pith/OULRMOJIFQVKWZFETTL4YGHAIP/action/citation_signature","submit_replication":"https://pith.science/pith/OULRMOJIFQVKWZFETTL4YGHAIP/action/replication_record"}},"created_at":"2026-07-05T05:26:09.346861+00:00","updated_at":"2026-07-05T05:26:09.346861+00:00"}