{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2018:PNVC367DP6V7G7BNFJ27OM2MGK","short_pith_number":"pith:PNVC367D","canonical_record":{"source":{"id":"1807.08003","kind":"arxiv","version":3},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-07-20T19:02:10Z","cross_cats_sorted":[],"title_canon_sha256":"0c9b10ba4cebb8433e005701679d38bdc05ac51c1bb9cb47e4fd7c4056afe8ab","abstract_canon_sha256":"af33eff6ca4271a9abbfd98f1cc2e6282a54ece8bb1659fc5b9928ff11b29d29"},"schema_version":"1.0"},"canonical_sha256":"7b6a2dfbe37fabf37c2d2a75f7334c328d78258a73a965de63e8629a2f87fd70","source":{"kind":"arxiv","id":"1807.08003","version":3},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1807.08003","created_at":"2026-05-17T23:49:33Z"},{"alias_kind":"arxiv_version","alias_value":"1807.08003v3","created_at":"2026-05-17T23:49:33Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1807.08003","created_at":"2026-05-17T23:49:33Z"},{"alias_kind":"pith_short_12","alias_value":"PNVC367DP6V7","created_at":"2026-05-18T12:32:46Z"},{"alias_kind":"pith_short_16","alias_value":"PNVC367DP6V7G7BN","created_at":"2026-05-18T12:32:46Z"},{"alias_kind":"pith_short_8","alias_value":"PNVC367D","created_at":"2026-05-18T12:32:46Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2018:PNVC367DP6V7G7BNFJ27OM2MGK","target":"record","payload":{"canonical_record":{"source":{"id":"1807.08003","kind":"arxiv","version":3},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-07-20T19:02:10Z","cross_cats_sorted":[],"title_canon_sha256":"0c9b10ba4cebb8433e005701679d38bdc05ac51c1bb9cb47e4fd7c4056afe8ab","abstract_canon_sha256":"af33eff6ca4271a9abbfd98f1cc2e6282a54ece8bb1659fc5b9928ff11b29d29"},"schema_version":"1.0"},"canonical_sha256":"7b6a2dfbe37fabf37c2d2a75f7334c328d78258a73a965de63e8629a2f87fd70","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:49:33.473969Z","signature_b64":"FgoWNLDI7XLymNLgvME2FIoYY5Ydnb7fDin6tjGHp1FYpMQRl+iX0HFi/tHNW1S1EZ2+9dSQnrlbxgdItRYEDg==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"7b6a2dfbe37fabf37c2d2a75f7334c328d78258a73a965de63e8629a2f87fd70","last_reissued_at":"2026-05-17T23:49:33.473341Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:49:33.473341Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1807.08003","source_version":3,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:49:33Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"XxPNBlTVzMYAN9L5LWe/Kp31SgETV3Z3bjCZ5h69tTTbDcCbyL/7DSuD8e/We9iOxzwRreZrIFRni/Lbo9J6CQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-06T22:44:08.949916Z"},"content_sha256":"776ffa73c40d3495dc5bdc9b70e1d1db9b70fd546693e9432cff8e98ea188ea9","schema_version":"1.0","event_id":"sha256:776ffa73c40d3495dc5bdc9b70e1d1db9b70fd546693e9432cff8e98ea188ea9"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2018:PNVC367DP6V7G7BNFJ27OM2MGK","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"ScaRR: Scalable Runtime Remote Attestation for Complex Systems","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.CR","authors_text":"Andrea Biondo, Eleonora Losiouk, Flavio Toffalini, JianYing Zhou, Mauro Conti","submitted_at":"2018-07-20T19:02:10Z","abstract_excerpt":"The introduction of remote attestation (RA) schemes has allowed academia and industry to enhance the security of their systems. The commercial products currently available enable only the validation of static properties, such as applications fingerprint, and do not handle runtime properties, such as control-flow correctness. This limitation pushed researchers towards the identification of new approaches, called runtime RA. However, those mainly work on embedded devices, which share very few common features with complex systems, such as virtual machines in a cloud. A naive deployment of runtime"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1807.08003","kind":"arxiv","version":3},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:49:33Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"dIDMI3pz5bmkaA+aQXyoOX5PH1huo9dqZGQM0Fsts8GHtEURDXw9/H5qk15WZq2P3adf+xzbuTiHKlbXb8U4CA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-06T22:44:08.950327Z"},"content_sha256":"c59f7dcffe41606a923347e59aae5a3b676e8f4320e24bb80357bd6d4ebede5b","schema_version":"1.0","event_id":"sha256:c59f7dcffe41606a923347e59aae5a3b676e8f4320e24bb80357bd6d4ebede5b"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/PNVC367DP6V7G7BNFJ27OM2MGK/bundle.json","state_url":"https://pith.science/pith/PNVC367DP6V7G7BNFJ27OM2MGK/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/PNVC367DP6V7G7BNFJ27OM2MGK/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-06T22:44:08Z","links":{"resolver":"https://pith.science/pith/PNVC367DP6V7G7BNFJ27OM2MGK","bundle":"https://pith.science/pith/PNVC367DP6V7G7BNFJ27OM2MGK/bundle.json","state":"https://pith.science/pith/PNVC367DP6V7G7BNFJ27OM2MGK/state.json","well_known_bundle":"https://pith.science/.well-known/pith/PNVC367DP6V7G7BNFJ27OM2MGK/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2018:PNVC367DP6V7G7BNFJ27OM2MGK","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"af33eff6ca4271a9abbfd98f1cc2e6282a54ece8bb1659fc5b9928ff11b29d29","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-07-20T19:02:10Z","title_canon_sha256":"0c9b10ba4cebb8433e005701679d38bdc05ac51c1bb9cb47e4fd7c4056afe8ab"},"schema_version":"1.0","source":{"id":"1807.08003","kind":"arxiv","version":3}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1807.08003","created_at":"2026-05-17T23:49:33Z"},{"alias_kind":"arxiv_version","alias_value":"1807.08003v3","created_at":"2026-05-17T23:49:33Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1807.08003","created_at":"2026-05-17T23:49:33Z"},{"alias_kind":"pith_short_12","alias_value":"PNVC367DP6V7","created_at":"2026-05-18T12:32:46Z"},{"alias_kind":"pith_short_16","alias_value":"PNVC367DP6V7G7BN","created_at":"2026-05-18T12:32:46Z"},{"alias_kind":"pith_short_8","alias_value":"PNVC367D","created_at":"2026-05-18T12:32:46Z"}],"graph_snapshots":[{"event_id":"sha256:c59f7dcffe41606a923347e59aae5a3b676e8f4320e24bb80357bd6d4ebede5b","target":"graph","created_at":"2026-05-17T23:49:33Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"The introduction of remote attestation (RA) schemes has allowed academia and industry to enhance the security of their systems. The commercial products currently available enable only the validation of static properties, such as applications fingerprint, and do not handle runtime properties, such as control-flow correctness. This limitation pushed researchers towards the identification of new approaches, called runtime RA. However, those mainly work on embedded devices, which share very few common features with complex systems, such as virtual machines in a cloud. A naive deployment of runtime","authors_text":"Andrea Biondo, Eleonora Losiouk, Flavio Toffalini, JianYing Zhou, Mauro Conti","cross_cats":[],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-07-20T19:02:10Z","title":"ScaRR: Scalable Runtime Remote Attestation for Complex Systems"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1807.08003","kind":"arxiv","version":3},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:776ffa73c40d3495dc5bdc9b70e1d1db9b70fd546693e9432cff8e98ea188ea9","target":"record","created_at":"2026-05-17T23:49:33Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"af33eff6ca4271a9abbfd98f1cc2e6282a54ece8bb1659fc5b9928ff11b29d29","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-07-20T19:02:10Z","title_canon_sha256":"0c9b10ba4cebb8433e005701679d38bdc05ac51c1bb9cb47e4fd7c4056afe8ab"},"schema_version":"1.0","source":{"id":"1807.08003","kind":"arxiv","version":3}},"canonical_sha256":"7b6a2dfbe37fabf37c2d2a75f7334c328d78258a73a965de63e8629a2f87fd70","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"7b6a2dfbe37fabf37c2d2a75f7334c328d78258a73a965de63e8629a2f87fd70","first_computed_at":"2026-05-17T23:49:33.473341Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-17T23:49:33.473341Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"FgoWNLDI7XLymNLgvME2FIoYY5Ydnb7fDin6tjGHp1FYpMQRl+iX0HFi/tHNW1S1EZ2+9dSQnrlbxgdItRYEDg==","signature_status":"signed_v1","signed_at":"2026-05-17T23:49:33.473969Z","signed_message":"canonical_sha256_bytes"},"source_id":"1807.08003","source_kind":"arxiv","source_version":3}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:776ffa73c40d3495dc5bdc9b70e1d1db9b70fd546693e9432cff8e98ea188ea9","sha256:c59f7dcffe41606a923347e59aae5a3b676e8f4320e24bb80357bd6d4ebede5b"],"state_sha256":"77ca99af0883ef31bf8a681f2b5f21e4565e7e37275850eb6547c8bb43c7f079"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"eLEfb9L0oniiUMZqPzxOjP8uiOdrCnY2E2q25ovbka8ncGjx+7DuTidmBjB9OCmxBc+NHoyQMe+X+UGAKv5KDQ==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-06T22:44:08.952555Z","bundle_sha256":"0e8c8f183e593b56c155d434c4a140b1736cabe1f82cbc34398d541a04ec0036"}}