{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2018:QNKCDDJ2MHTQ6V4MTDLJOWG74S","short_pith_number":"pith:QNKCDDJ2","canonical_record":{"source":{"id":"1808.07713","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.IT","submitted_at":"2018-08-23T12:12:10Z","cross_cats_sorted":["cs.CR","cs.LG","eess.SP","math.IT","stat.ML"],"title_canon_sha256":"7e4e75057fbae94a92db09cb3d7af1e87d165b72f50332428d137c926ee78a32","abstract_canon_sha256":"82a2c35d8ae9f40ceab9170eb6a2404d4d1fb1bb78e155c1e6e40519a032574a"},"schema_version":"1.0"},"canonical_sha256":"8354218d3a61e70f578c98d69758dfe4b442077b112634b3494a944f804cefae","source":{"kind":"arxiv","id":"1808.07713","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1808.07713","created_at":"2026-05-18T00:07:24Z"},{"alias_kind":"arxiv_version","alias_value":"1808.07713v1","created_at":"2026-05-18T00:07:24Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1808.07713","created_at":"2026-05-18T00:07:24Z"},{"alias_kind":"pith_short_12","alias_value":"QNKCDDJ2MHTQ","created_at":"2026-05-18T12:32:46Z"},{"alias_kind":"pith_short_16","alias_value":"QNKCDDJ2MHTQ6V4M","created_at":"2026-05-18T12:32:46Z"},{"alias_kind":"pith_short_8","alias_value":"QNKCDDJ2","created_at":"2026-05-18T12:32:46Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2018:QNKCDDJ2MHTQ6V4MTDLJOWG74S","target":"record","payload":{"canonical_record":{"source":{"id":"1808.07713","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.IT","submitted_at":"2018-08-23T12:12:10Z","cross_cats_sorted":["cs.CR","cs.LG","eess.SP","math.IT","stat.ML"],"title_canon_sha256":"7e4e75057fbae94a92db09cb3d7af1e87d165b72f50332428d137c926ee78a32","abstract_canon_sha256":"82a2c35d8ae9f40ceab9170eb6a2404d4d1fb1bb78e155c1e6e40519a032574a"},"schema_version":"1.0"},"canonical_sha256":"8354218d3a61e70f578c98d69758dfe4b442077b112634b3494a944f804cefae","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-18T00:07:24.443008Z","signature_b64":"30aCKEZy7Llw8JV21gu2pxzVoGjR27UjBM1hVw2Tc/YJEZYDtMOHmZgPnv8Uebu8yCagTDCAudZ8cMKkHvphDw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"8354218d3a61e70f578c98d69758dfe4b442077b112634b3494a944f804cefae","last_reissued_at":"2026-05-18T00:07:24.442605Z","signature_status":"signed_v1","first_computed_at":"2026-05-18T00:07:24.442605Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1808.07713","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:07:24Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"xfL9RRmoBmhWKViMAoOmh/a5WGmh5w+yIbbo/aIdu4J2yF2uho/BCFPeQ6T3zGMroZ/zbSrtY1fmjQvzpa7CDw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-02T17:26:26.707898Z"},"content_sha256":"0b057ed30d99e4b187deff9f62507092cb7e20df026737defa49f4261e4c39f6","schema_version":"1.0","event_id":"sha256:0b057ed30d99e4b187deff9f62507092cb7e20df026737defa49f4261e4c39f6"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2018:QNKCDDJ2MHTQ6V4MTDLJOWG74S","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Adversarial Attacks on Deep-Learning Based Radio Signal Classification","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.CR","cs.LG","eess.SP","math.IT","stat.ML"],"primary_cat":"cs.IT","authors_text":"Erik G. Larsson, Meysam Sadeghi","submitted_at":"2018-08-23T12:12:10Z","abstract_excerpt":"Deep learning (DL), despite its enormous success in many computer vision and language processing applications, is exceedingly vulnerable to adversarial attacks. We consider the use of DL for radio signal (modulation) classification tasks, and present practical methods for the crafting of white-box and universal black-box adversarial attacks in that application. We show that these attacks can considerably reduce the classification performance, with extremely small perturbations of the input. In particular, these attacks are significantly more powerful than classical jamming attacks, which raise"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1808.07713","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:07:24Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"4TRzQkgY2VSAzbKFg4Hf+uKu5jZsch+JedokCCIHqm+JP1R+fVKWGqtwCIBO/I5Kbzj3P2IhHCORY7+i8tlEBw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-02T17:26:26.708249Z"},"content_sha256":"22f7a6d2c341fd098cba0303c15c988764de45bcb5a3a225514112b59cf0c6e4","schema_version":"1.0","event_id":"sha256:22f7a6d2c341fd098cba0303c15c988764de45bcb5a3a225514112b59cf0c6e4"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/QNKCDDJ2MHTQ6V4MTDLJOWG74S/bundle.json","state_url":"https://pith.science/pith/QNKCDDJ2MHTQ6V4MTDLJOWG74S/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/QNKCDDJ2MHTQ6V4MTDLJOWG74S/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-02T17:26:26Z","links":{"resolver":"https://pith.science/pith/QNKCDDJ2MHTQ6V4MTDLJOWG74S","bundle":"https://pith.science/pith/QNKCDDJ2MHTQ6V4MTDLJOWG74S/bundle.json","state":"https://pith.science/pith/QNKCDDJ2MHTQ6V4MTDLJOWG74S/state.json","well_known_bundle":"https://pith.science/.well-known/pith/QNKCDDJ2MHTQ6V4MTDLJOWG74S/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2018:QNKCDDJ2MHTQ6V4MTDLJOWG74S","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"82a2c35d8ae9f40ceab9170eb6a2404d4d1fb1bb78e155c1e6e40519a032574a","cross_cats_sorted":["cs.CR","cs.LG","eess.SP","math.IT","stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.IT","submitted_at":"2018-08-23T12:12:10Z","title_canon_sha256":"7e4e75057fbae94a92db09cb3d7af1e87d165b72f50332428d137c926ee78a32"},"schema_version":"1.0","source":{"id":"1808.07713","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1808.07713","created_at":"2026-05-18T00:07:24Z"},{"alias_kind":"arxiv_version","alias_value":"1808.07713v1","created_at":"2026-05-18T00:07:24Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1808.07713","created_at":"2026-05-18T00:07:24Z"},{"alias_kind":"pith_short_12","alias_value":"QNKCDDJ2MHTQ","created_at":"2026-05-18T12:32:46Z"},{"alias_kind":"pith_short_16","alias_value":"QNKCDDJ2MHTQ6V4M","created_at":"2026-05-18T12:32:46Z"},{"alias_kind":"pith_short_8","alias_value":"QNKCDDJ2","created_at":"2026-05-18T12:32:46Z"}],"graph_snapshots":[{"event_id":"sha256:22f7a6d2c341fd098cba0303c15c988764de45bcb5a3a225514112b59cf0c6e4","target":"graph","created_at":"2026-05-18T00:07:24Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Deep learning (DL), despite its enormous success in many computer vision and language processing applications, is exceedingly vulnerable to adversarial attacks. We consider the use of DL for radio signal (modulation) classification tasks, and present practical methods for the crafting of white-box and universal black-box adversarial attacks in that application. We show that these attacks can considerably reduce the classification performance, with extremely small perturbations of the input. In particular, these attacks are significantly more powerful than classical jamming attacks, which raise","authors_text":"Erik G. Larsson, Meysam Sadeghi","cross_cats":["cs.CR","cs.LG","eess.SP","math.IT","stat.ML"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.IT","submitted_at":"2018-08-23T12:12:10Z","title":"Adversarial Attacks on Deep-Learning Based Radio Signal Classification"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1808.07713","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:0b057ed30d99e4b187deff9f62507092cb7e20df026737defa49f4261e4c39f6","target":"record","created_at":"2026-05-18T00:07:24Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"82a2c35d8ae9f40ceab9170eb6a2404d4d1fb1bb78e155c1e6e40519a032574a","cross_cats_sorted":["cs.CR","cs.LG","eess.SP","math.IT","stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.IT","submitted_at":"2018-08-23T12:12:10Z","title_canon_sha256":"7e4e75057fbae94a92db09cb3d7af1e87d165b72f50332428d137c926ee78a32"},"schema_version":"1.0","source":{"id":"1808.07713","kind":"arxiv","version":1}},"canonical_sha256":"8354218d3a61e70f578c98d69758dfe4b442077b112634b3494a944f804cefae","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"8354218d3a61e70f578c98d69758dfe4b442077b112634b3494a944f804cefae","first_computed_at":"2026-05-18T00:07:24.442605Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-18T00:07:24.442605Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"30aCKEZy7Llw8JV21gu2pxzVoGjR27UjBM1hVw2Tc/YJEZYDtMOHmZgPnv8Uebu8yCagTDCAudZ8cMKkHvphDw==","signature_status":"signed_v1","signed_at":"2026-05-18T00:07:24.443008Z","signed_message":"canonical_sha256_bytes"},"source_id":"1808.07713","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:0b057ed30d99e4b187deff9f62507092cb7e20df026737defa49f4261e4c39f6","sha256:22f7a6d2c341fd098cba0303c15c988764de45bcb5a3a225514112b59cf0c6e4"],"state_sha256":"61b15e51cf1df48b21553234b0ba5c13eba9eb04c4e04230e9c48fa29e5ccff5"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"4HXp97XBfrzm+M8RV4iYZ4/IZuCF2bdyrJdLsmyc/QRMaUgfa5yKkQm/haiOYr8tzIdnTN3SqNpUtKdHao0JBg==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-02T17:26:26.710236Z","bundle_sha256":"e7f3387bb5ea2aabfc0c7ab458c3a0bc5ea5d7a7b0574c3dd52d82e3436ed097"}}