{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2026:QZV5YOCKNVB4TR3AUHG45XP6OA","short_pith_number":"pith:QZV5YOCK","canonical_record":{"source":{"id":"2605.19262","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2026-05-19T02:20:08Z","cross_cats_sorted":["cs.CR"],"title_canon_sha256":"c8497f7a8a285849516016990348d1903d4fb56c58ed33ab0ede73cff4c4c914","abstract_canon_sha256":"32f87e89b4ddaf8dcd767059163187ac5da758627fec899094a341f4082a733d"},"schema_version":"1.0"},"canonical_sha256":"866bdc384a6d43c9c760a1cdceddfe703e6c2db4054e1bb967e3b2f8d3c8cb8c","source":{"kind":"arxiv","id":"2605.19262","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2605.19262","created_at":"2026-05-20T01:05:36Z"},{"alias_kind":"arxiv_version","alias_value":"2605.19262v1","created_at":"2026-05-20T01:05:36Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2605.19262","created_at":"2026-05-20T01:05:36Z"},{"alias_kind":"pith_short_12","alias_value":"QZV5YOCKNVB4","created_at":"2026-05-20T01:05:36Z"},{"alias_kind":"pith_short_16","alias_value":"QZV5YOCKNVB4TR3A","created_at":"2026-05-20T01:05:36Z"},{"alias_kind":"pith_short_8","alias_value":"QZV5YOCK","created_at":"2026-05-20T01:05:36Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2026:QZV5YOCKNVB4TR3AUHG45XP6OA","target":"record","payload":{"canonical_record":{"source":{"id":"2605.19262","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2026-05-19T02:20:08Z","cross_cats_sorted":["cs.CR"],"title_canon_sha256":"c8497f7a8a285849516016990348d1903d4fb56c58ed33ab0ede73cff4c4c914","abstract_canon_sha256":"32f87e89b4ddaf8dcd767059163187ac5da758627fec899094a341f4082a733d"},"schema_version":"1.0"},"canonical_sha256":"866bdc384a6d43c9c760a1cdceddfe703e6c2db4054e1bb967e3b2f8d3c8cb8c","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-20T01:05:36.519520Z","signature_b64":"AVZAZJ2CH4zpTYEoWpM8VjuXTL6yj1vm4Mgn7gw+7LwZr+Fefh8dOuUdnsv0441vu/YBDdfIoZisUhuqji9vDQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"866bdc384a6d43c9c760a1cdceddfe703e6c2db4054e1bb967e3b2f8d3c8cb8c","last_reissued_at":"2026-05-20T01:05:36.518775Z","signature_status":"signed_v1","first_computed_at":"2026-05-20T01:05:36.518775Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"2605.19262","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-20T01:05:36Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"rAkzOKKtuVQEvv/1qSfBWPrq/7x5O8b9k8upEPHxtK9VS6nG8BhwFqM73hBVpU16ZpGFU/kiZXMHa3IxmVw5DQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-11T12:23:17.344528Z"},"content_sha256":"b2ec33ccd26b7d1ec6f6a566eb4b345fd56d1105ccc748d1e236f3de2d1db76f","schema_version":"1.0","event_id":"sha256:b2ec33ccd26b7d1ec6f6a566eb4b345fd56d1105ccc748d1e236f3de2d1db76f"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2026:QZV5YOCKNVB4TR3AUHG45XP6OA","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Backdooring Masked Diffusion Language Models","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.CR"],"primary_cat":"cs.LG","authors_text":"Chengyu Huang, Chengzhong Wang, Daniel Yiming Cao, Pin-Yu Chen, Shengwei An, Sheng-Yen Chou","submitted_at":"2026-05-19T02:20:08Z","abstract_excerpt":"Masked diffusion language models (MDLMs) are emerging as a compelling new paradigm for text generation, but their training-time security remains largely unexplored. Existing backdoor attacks on Gaussian diffusion models or autoregressive language models do not directly apply to MDLMs because MDLMs rely on discrete state corruption and iterative denoising rather than continuous noising or left-to-right prediction. In this work, we present the first systematic study of training-time backdoor attacks on MDLMs. We propose SHADOWMASK, a backdoor attack that modifies the MDLM forward corruption proc"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2605.19262","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2605.19262/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-20T01:05:36Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"H+5XSsKGdoqCmW53wGky6V/klj7bYRFFYWX4ddE5BEclVv1VTpTqhBbUt5iHhd/vuPtum6+G6Yu+tJgsM3JFBg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-11T12:23:17.344912Z"},"content_sha256":"b8d4025d919f01b93010c373d19f3ca4930473d41ee0287e3d0e1027edc895c3","schema_version":"1.0","event_id":"sha256:b8d4025d919f01b93010c373d19f3ca4930473d41ee0287e3d0e1027edc895c3"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/QZV5YOCKNVB4TR3AUHG45XP6OA/bundle.json","state_url":"https://pith.science/pith/QZV5YOCKNVB4TR3AUHG45XP6OA/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/QZV5YOCKNVB4TR3AUHG45XP6OA/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-11T12:23:17Z","links":{"resolver":"https://pith.science/pith/QZV5YOCKNVB4TR3AUHG45XP6OA","bundle":"https://pith.science/pith/QZV5YOCKNVB4TR3AUHG45XP6OA/bundle.json","state":"https://pith.science/pith/QZV5YOCKNVB4TR3AUHG45XP6OA/state.json","well_known_bundle":"https://pith.science/.well-known/pith/QZV5YOCKNVB4TR3AUHG45XP6OA/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2026:QZV5YOCKNVB4TR3AUHG45XP6OA","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"32f87e89b4ddaf8dcd767059163187ac5da758627fec899094a341f4082a733d","cross_cats_sorted":["cs.CR"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2026-05-19T02:20:08Z","title_canon_sha256":"c8497f7a8a285849516016990348d1903d4fb56c58ed33ab0ede73cff4c4c914"},"schema_version":"1.0","source":{"id":"2605.19262","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2605.19262","created_at":"2026-05-20T01:05:36Z"},{"alias_kind":"arxiv_version","alias_value":"2605.19262v1","created_at":"2026-05-20T01:05:36Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2605.19262","created_at":"2026-05-20T01:05:36Z"},{"alias_kind":"pith_short_12","alias_value":"QZV5YOCKNVB4","created_at":"2026-05-20T01:05:36Z"},{"alias_kind":"pith_short_16","alias_value":"QZV5YOCKNVB4TR3A","created_at":"2026-05-20T01:05:36Z"},{"alias_kind":"pith_short_8","alias_value":"QZV5YOCK","created_at":"2026-05-20T01:05:36Z"}],"graph_snapshots":[{"event_id":"sha256:b8d4025d919f01b93010c373d19f3ca4930473d41ee0287e3d0e1027edc895c3","target":"graph","created_at":"2026-05-20T01:05:36Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/2605.19262/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"Masked diffusion language models (MDLMs) are emerging as a compelling new paradigm for text generation, but their training-time security remains largely unexplored. Existing backdoor attacks on Gaussian diffusion models or autoregressive language models do not directly apply to MDLMs because MDLMs rely on discrete state corruption and iterative denoising rather than continuous noising or left-to-right prediction. In this work, we present the first systematic study of training-time backdoor attacks on MDLMs. We propose SHADOWMASK, a backdoor attack that modifies the MDLM forward corruption proc","authors_text":"Chengyu Huang, Chengzhong Wang, Daniel Yiming Cao, Pin-Yu Chen, Shengwei An, Sheng-Yen Chou","cross_cats":["cs.CR"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2026-05-19T02:20:08Z","title":"Backdooring Masked Diffusion Language Models"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2605.19262","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:b2ec33ccd26b7d1ec6f6a566eb4b345fd56d1105ccc748d1e236f3de2d1db76f","target":"record","created_at":"2026-05-20T01:05:36Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"32f87e89b4ddaf8dcd767059163187ac5da758627fec899094a341f4082a733d","cross_cats_sorted":["cs.CR"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2026-05-19T02:20:08Z","title_canon_sha256":"c8497f7a8a285849516016990348d1903d4fb56c58ed33ab0ede73cff4c4c914"},"schema_version":"1.0","source":{"id":"2605.19262","kind":"arxiv","version":1}},"canonical_sha256":"866bdc384a6d43c9c760a1cdceddfe703e6c2db4054e1bb967e3b2f8d3c8cb8c","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"866bdc384a6d43c9c760a1cdceddfe703e6c2db4054e1bb967e3b2f8d3c8cb8c","first_computed_at":"2026-05-20T01:05:36.518775Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-20T01:05:36.518775Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"AVZAZJ2CH4zpTYEoWpM8VjuXTL6yj1vm4Mgn7gw+7LwZr+Fefh8dOuUdnsv0441vu/YBDdfIoZisUhuqji9vDQ==","signature_status":"signed_v1","signed_at":"2026-05-20T01:05:36.519520Z","signed_message":"canonical_sha256_bytes"},"source_id":"2605.19262","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:b2ec33ccd26b7d1ec6f6a566eb4b345fd56d1105ccc748d1e236f3de2d1db76f","sha256:b8d4025d919f01b93010c373d19f3ca4930473d41ee0287e3d0e1027edc895c3"],"state_sha256":"933185b8fe50716dcf6a7dcb91bd0a54a012a8062d62841fc2c7baf22aae7597"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"iapEBhWrRtYX2hvPKe1RUwDgtR0U25E/7jUajTADpDuWh6l0nLnJC+qIqsIDLRqkgHg18us1phSRvn1dygpqAQ==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-11T12:23:17.346993Z","bundle_sha256":"38d19dbaceaaef14ce0208200649fd0fef99a2f64f905b562bf8e85cafeef813"}}