{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2017:PGW3D6VVOQSRDJW6FFCQ75CLF2","short_pith_number":"pith:PGW3D6VV","canonical_record":{"source":{"id":"1709.01604","kind":"arxiv","version":5},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2017-09-05T21:56:24Z","cross_cats_sorted":["cs.LG","stat.ML"],"title_canon_sha256":"eb053953154bc19f54b313e77c59ffc509a6a051ff9a4ce88a65b5558c282cb8","abstract_canon_sha256":"d7d7a67c04cec6b1b6cb5ff615d57bd3e1454ef1acfaffca28b848754a26c264"},"schema_version":"1.0"},"canonical_sha256":"79adb1fab5742511a6de29450ff44b2eba7454839cbd18a0bc7c9f0d3d6fda30","source":{"kind":"arxiv","id":"1709.01604","version":5},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1709.01604","created_at":"2026-05-18T00:16:44Z"},{"alias_kind":"arxiv_version","alias_value":"1709.01604v5","created_at":"2026-05-18T00:16:44Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1709.01604","created_at":"2026-05-18T00:16:44Z"},{"alias_kind":"pith_short_12","alias_value":"PGW3D6VVOQSR","created_at":"2026-05-18T12:31:37Z"},{"alias_kind":"pith_short_16","alias_value":"PGW3D6VVOQSRDJW6","created_at":"2026-05-18T12:31:37Z"},{"alias_kind":"pith_short_8","alias_value":"PGW3D6VV","created_at":"2026-05-18T12:31:37Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2017:PGW3D6VVOQSRDJW6FFCQ75CLF2","target":"record","payload":{"canonical_record":{"source":{"id":"1709.01604","kind":"arxiv","version":5},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2017-09-05T21:56:24Z","cross_cats_sorted":["cs.LG","stat.ML"],"title_canon_sha256":"eb053953154bc19f54b313e77c59ffc509a6a051ff9a4ce88a65b5558c282cb8","abstract_canon_sha256":"d7d7a67c04cec6b1b6cb5ff615d57bd3e1454ef1acfaffca28b848754a26c264"},"schema_version":"1.0"},"canonical_sha256":"79adb1fab5742511a6de29450ff44b2eba7454839cbd18a0bc7c9f0d3d6fda30","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-18T00:16:44.988947Z","signature_b64":"dp9AmbR31L0bhfSzsOhsU0llfbVi0Rm87ugX3X/NEr+L0oGKgZBvOGdK55C/SqfaAzZ/PPNFPGcmB2lOXQ6VDw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"79adb1fab5742511a6de29450ff44b2eba7454839cbd18a0bc7c9f0d3d6fda30","last_reissued_at":"2026-05-18T00:16:44.988386Z","signature_status":"signed_v1","first_computed_at":"2026-05-18T00:16:44.988386Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1709.01604","source_version":5,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:16:44Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"YKdx0SCsavd7XzgpZDuX1RHwAOizItrCUlk7CXE2whzbrhwC0zXdWk/2sHCPGDSRARGF+X4vLZ/wTboa3EXzBw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-28T19:24:04.831564Z"},"content_sha256":"587444624d867ab04a21a3f19d76f17c2bad752a8e054e3d924afcef532f2968","schema_version":"1.0","event_id":"sha256:587444624d867ab04a21a3f19d76f17c2bad752a8e054e3d924afcef532f2968"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2017:PGW3D6VVOQSRDJW6FFCQ75CLF2","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Privacy Risk in Machine Learning: Analyzing the Connection to Overfitting","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.LG","stat.ML"],"primary_cat":"cs.CR","authors_text":"Irene Giacomelli, Matt Fredrikson, Samuel Yeom, Somesh Jha","submitted_at":"2017-09-05T21:56:24Z","abstract_excerpt":"Machine learning algorithms, when applied to sensitive data, pose a distinct threat to privacy. A growing body of prior work demonstrates that models produced by these algorithms may leak specific private information in the training data to an attacker, either through the models' structure or their observable behavior. However, the underlying cause of this privacy risk is not well understood beyond a handful of anecdotal accounts that suggest overfitting and influence might play a role.\n  This paper examines the effect that overfitting and influence have on the ability of an attacker to learn "},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1709.01604","kind":"arxiv","version":5},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:16:44Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"zYtO5kpKZgzNzytO/M4Ur4zbFzO16RuQP+Sh4Cro0c26ybxwe6urDpoaGlBcxpBPnS9YFp/lQO2jY3wBCu4rAA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-28T19:24:04.832227Z"},"content_sha256":"f42006be54124550919a1a90f95475be87cb30b288efb7dc41c3aa3f388d51cb","schema_version":"1.0","event_id":"sha256:f42006be54124550919a1a90f95475be87cb30b288efb7dc41c3aa3f388d51cb"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/PGW3D6VVOQSRDJW6FFCQ75CLF2/bundle.json","state_url":"https://pith.science/pith/PGW3D6VVOQSRDJW6FFCQ75CLF2/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/PGW3D6VVOQSRDJW6FFCQ75CLF2/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-28T19:24:04Z","links":{"resolver":"https://pith.science/pith/PGW3D6VVOQSRDJW6FFCQ75CLF2","bundle":"https://pith.science/pith/PGW3D6VVOQSRDJW6FFCQ75CLF2/bundle.json","state":"https://pith.science/pith/PGW3D6VVOQSRDJW6FFCQ75CLF2/state.json","well_known_bundle":"https://pith.science/.well-known/pith/PGW3D6VVOQSRDJW6FFCQ75CLF2/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2017:PGW3D6VVOQSRDJW6FFCQ75CLF2","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"d7d7a67c04cec6b1b6cb5ff615d57bd3e1454ef1acfaffca28b848754a26c264","cross_cats_sorted":["cs.LG","stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2017-09-05T21:56:24Z","title_canon_sha256":"eb053953154bc19f54b313e77c59ffc509a6a051ff9a4ce88a65b5558c282cb8"},"schema_version":"1.0","source":{"id":"1709.01604","kind":"arxiv","version":5}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1709.01604","created_at":"2026-05-18T00:16:44Z"},{"alias_kind":"arxiv_version","alias_value":"1709.01604v5","created_at":"2026-05-18T00:16:44Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1709.01604","created_at":"2026-05-18T00:16:44Z"},{"alias_kind":"pith_short_12","alias_value":"PGW3D6VVOQSR","created_at":"2026-05-18T12:31:37Z"},{"alias_kind":"pith_short_16","alias_value":"PGW3D6VVOQSRDJW6","created_at":"2026-05-18T12:31:37Z"},{"alias_kind":"pith_short_8","alias_value":"PGW3D6VV","created_at":"2026-05-18T12:31:37Z"}],"graph_snapshots":[{"event_id":"sha256:f42006be54124550919a1a90f95475be87cb30b288efb7dc41c3aa3f388d51cb","target":"graph","created_at":"2026-05-18T00:16:44Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Machine learning algorithms, when applied to sensitive data, pose a distinct threat to privacy. A growing body of prior work demonstrates that models produced by these algorithms may leak specific private information in the training data to an attacker, either through the models' structure or their observable behavior. However, the underlying cause of this privacy risk is not well understood beyond a handful of anecdotal accounts that suggest overfitting and influence might play a role.\n  This paper examines the effect that overfitting and influence have on the ability of an attacker to learn ","authors_text":"Irene Giacomelli, Matt Fredrikson, Samuel Yeom, Somesh Jha","cross_cats":["cs.LG","stat.ML"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2017-09-05T21:56:24Z","title":"Privacy Risk in Machine Learning: Analyzing the Connection to Overfitting"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1709.01604","kind":"arxiv","version":5},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:587444624d867ab04a21a3f19d76f17c2bad752a8e054e3d924afcef532f2968","target":"record","created_at":"2026-05-18T00:16:44Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"d7d7a67c04cec6b1b6cb5ff615d57bd3e1454ef1acfaffca28b848754a26c264","cross_cats_sorted":["cs.LG","stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2017-09-05T21:56:24Z","title_canon_sha256":"eb053953154bc19f54b313e77c59ffc509a6a051ff9a4ce88a65b5558c282cb8"},"schema_version":"1.0","source":{"id":"1709.01604","kind":"arxiv","version":5}},"canonical_sha256":"79adb1fab5742511a6de29450ff44b2eba7454839cbd18a0bc7c9f0d3d6fda30","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"79adb1fab5742511a6de29450ff44b2eba7454839cbd18a0bc7c9f0d3d6fda30","first_computed_at":"2026-05-18T00:16:44.988386Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-18T00:16:44.988386Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"dp9AmbR31L0bhfSzsOhsU0llfbVi0Rm87ugX3X/NEr+L0oGKgZBvOGdK55C/SqfaAzZ/PPNFPGcmB2lOXQ6VDw==","signature_status":"signed_v1","signed_at":"2026-05-18T00:16:44.988947Z","signed_message":"canonical_sha256_bytes"},"source_id":"1709.01604","source_kind":"arxiv","source_version":5}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:587444624d867ab04a21a3f19d76f17c2bad752a8e054e3d924afcef532f2968","sha256:f42006be54124550919a1a90f95475be87cb30b288efb7dc41c3aa3f388d51cb"],"state_sha256":"b370a58ee953349e9827a68b6eadb2391d98de17d6f498533e8a07d27835f6f1"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"Xiip8AlysE4FOH23HCL7YgDARYV6fYsKyLmSSDVQOu4i7LePv/sQvu33orQ54mZxk/h0CxHjqSBSJczaBIXlBQ==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-28T19:24:04.836393Z","bundle_sha256":"aef1dcb3f42e642f4dbd42d47096da18106e87894b2cafe51ea5aff8321234a8"}}