{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2018:RFGEHDBFPZR6GGUEFUYYWICVSD","short_pith_number":"pith:RFGEHDBF","canonical_record":{"source":{"id":"1806.05476","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2018-06-14T11:32:27Z","cross_cats_sorted":["stat.ML"],"title_canon_sha256":"7265913a5ac37b893aad9399a3c8404862bbcce514c024bb59a235fe309319fe","abstract_canon_sha256":"ed5e49aa3532bb5bb2c678c244b6ed4d369976643e4dffc45979d7d83780c3f6"},"schema_version":"1.0"},"canonical_sha256":"894c438c257e63e31a842d318b205590ca6a0a0c92d40238f5398c290ca66558","source":{"kind":"arxiv","id":"1806.05476","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1806.05476","created_at":"2026-05-18T00:02:44Z"},{"alias_kind":"arxiv_version","alias_value":"1806.05476v1","created_at":"2026-05-18T00:02:44Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1806.05476","created_at":"2026-05-18T00:02:44Z"},{"alias_kind":"pith_short_12","alias_value":"RFGEHDBFPZR6","created_at":"2026-05-18T12:32:50Z"},{"alias_kind":"pith_short_16","alias_value":"RFGEHDBFPZR6GGUE","created_at":"2026-05-18T12:32:50Z"},{"alias_kind":"pith_short_8","alias_value":"RFGEHDBF","created_at":"2026-05-18T12:32:50Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2018:RFGEHDBFPZR6GGUEFUYYWICVSD","target":"record","payload":{"canonical_record":{"source":{"id":"1806.05476","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2018-06-14T11:32:27Z","cross_cats_sorted":["stat.ML"],"title_canon_sha256":"7265913a5ac37b893aad9399a3c8404862bbcce514c024bb59a235fe309319fe","abstract_canon_sha256":"ed5e49aa3532bb5bb2c678c244b6ed4d369976643e4dffc45979d7d83780c3f6"},"schema_version":"1.0"},"canonical_sha256":"894c438c257e63e31a842d318b205590ca6a0a0c92d40238f5398c290ca66558","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-18T00:02:44.720462Z","signature_b64":"d4WbpRHORmnhDWWXU2sp9vW+rJk7nlWQ2tcza1d8Q7LY9bmcb9Do3Ir3sXoxZ6gwZsVJdLMOGUe2bCzUUayEDw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"894c438c257e63e31a842d318b205590ca6a0a0c92d40238f5398c290ca66558","last_reissued_at":"2026-05-18T00:02:44.720022Z","signature_status":"signed_v1","first_computed_at":"2026-05-18T00:02:44.720022Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1806.05476","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:02:44Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"sj5XlNI7MIY+cwxasZiXmLa2TR5lYgz7hiaXrF2roj0SCmCcGCkkEDhfrl75U6ia0mSp6ThigX9XiAsfOs71BQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-03T20:38:34.800691Z"},"content_sha256":"6623d3c1b01164dc7dfdae6a20a7c3208199932ba852b017d6bd38c5b16bd8e4","schema_version":"1.0","event_id":"sha256:6623d3c1b01164dc7dfdae6a20a7c3208199932ba852b017d6bd38c5b16bd8e4"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2018:RFGEHDBFPZR6GGUEFUYYWICVSD","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Copycat CNN: Stealing Knowledge by Persuading Confession with Random Non-Labeled Data","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["stat.ML"],"primary_cat":"cs.CV","authors_text":"Alberto F. De Souza, Claudine Badue, Jacson Rodrigues Correia-Silva, Rodrigo F. Berriel, Thiago Oliveira-Santos","submitted_at":"2018-06-14T11:32:27Z","abstract_excerpt":"In the past few years, Convolutional Neural Networks (CNNs) have been achieving state-of-the-art performance on a variety of problems. Many companies employ resources and money to generate these models and provide them as an API, therefore it is in their best interest to protect them, i.e., to avoid that someone else copies them. Recent studies revealed that state-of-the-art CNNs are vulnerable to adversarial examples attacks, and this weakness indicates that CNNs do not need to operate in the problem domain (PD). Therefore, we hypothesize that they also do not need to be trained with examples"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1806.05476","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:02:44Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"bdhn9GuCSkPZUSVcC00L/ICR4QyvRWHvjE26QRoOH70iDbXgRDpfMbGLscBsAVv73elCOh8czEJTE0np7ZDMDg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-03T20:38:34.801040Z"},"content_sha256":"ea04c89882a806d901449d6098d9e83d748e4457725949e7b28fa22811a7678e","schema_version":"1.0","event_id":"sha256:ea04c89882a806d901449d6098d9e83d748e4457725949e7b28fa22811a7678e"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/RFGEHDBFPZR6GGUEFUYYWICVSD/bundle.json","state_url":"https://pith.science/pith/RFGEHDBFPZR6GGUEFUYYWICVSD/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/RFGEHDBFPZR6GGUEFUYYWICVSD/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-03T20:38:34Z","links":{"resolver":"https://pith.science/pith/RFGEHDBFPZR6GGUEFUYYWICVSD","bundle":"https://pith.science/pith/RFGEHDBFPZR6GGUEFUYYWICVSD/bundle.json","state":"https://pith.science/pith/RFGEHDBFPZR6GGUEFUYYWICVSD/state.json","well_known_bundle":"https://pith.science/.well-known/pith/RFGEHDBFPZR6GGUEFUYYWICVSD/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2018:RFGEHDBFPZR6GGUEFUYYWICVSD","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"ed5e49aa3532bb5bb2c678c244b6ed4d369976643e4dffc45979d7d83780c3f6","cross_cats_sorted":["stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2018-06-14T11:32:27Z","title_canon_sha256":"7265913a5ac37b893aad9399a3c8404862bbcce514c024bb59a235fe309319fe"},"schema_version":"1.0","source":{"id":"1806.05476","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1806.05476","created_at":"2026-05-18T00:02:44Z"},{"alias_kind":"arxiv_version","alias_value":"1806.05476v1","created_at":"2026-05-18T00:02:44Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1806.05476","created_at":"2026-05-18T00:02:44Z"},{"alias_kind":"pith_short_12","alias_value":"RFGEHDBFPZR6","created_at":"2026-05-18T12:32:50Z"},{"alias_kind":"pith_short_16","alias_value":"RFGEHDBFPZR6GGUE","created_at":"2026-05-18T12:32:50Z"},{"alias_kind":"pith_short_8","alias_value":"RFGEHDBF","created_at":"2026-05-18T12:32:50Z"}],"graph_snapshots":[{"event_id":"sha256:ea04c89882a806d901449d6098d9e83d748e4457725949e7b28fa22811a7678e","target":"graph","created_at":"2026-05-18T00:02:44Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"In the past few years, Convolutional Neural Networks (CNNs) have been achieving state-of-the-art performance on a variety of problems. Many companies employ resources and money to generate these models and provide them as an API, therefore it is in their best interest to protect them, i.e., to avoid that someone else copies them. Recent studies revealed that state-of-the-art CNNs are vulnerable to adversarial examples attacks, and this weakness indicates that CNNs do not need to operate in the problem domain (PD). Therefore, we hypothesize that they also do not need to be trained with examples","authors_text":"Alberto F. De Souza, Claudine Badue, Jacson Rodrigues Correia-Silva, Rodrigo F. Berriel, Thiago Oliveira-Santos","cross_cats":["stat.ML"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2018-06-14T11:32:27Z","title":"Copycat CNN: Stealing Knowledge by Persuading Confession with Random Non-Labeled Data"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1806.05476","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:6623d3c1b01164dc7dfdae6a20a7c3208199932ba852b017d6bd38c5b16bd8e4","target":"record","created_at":"2026-05-18T00:02:44Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"ed5e49aa3532bb5bb2c678c244b6ed4d369976643e4dffc45979d7d83780c3f6","cross_cats_sorted":["stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2018-06-14T11:32:27Z","title_canon_sha256":"7265913a5ac37b893aad9399a3c8404862bbcce514c024bb59a235fe309319fe"},"schema_version":"1.0","source":{"id":"1806.05476","kind":"arxiv","version":1}},"canonical_sha256":"894c438c257e63e31a842d318b205590ca6a0a0c92d40238f5398c290ca66558","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"894c438c257e63e31a842d318b205590ca6a0a0c92d40238f5398c290ca66558","first_computed_at":"2026-05-18T00:02:44.720022Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-18T00:02:44.720022Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"d4WbpRHORmnhDWWXU2sp9vW+rJk7nlWQ2tcza1d8Q7LY9bmcb9Do3Ir3sXoxZ6gwZsVJdLMOGUe2bCzUUayEDw==","signature_status":"signed_v1","signed_at":"2026-05-18T00:02:44.720462Z","signed_message":"canonical_sha256_bytes"},"source_id":"1806.05476","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:6623d3c1b01164dc7dfdae6a20a7c3208199932ba852b017d6bd38c5b16bd8e4","sha256:ea04c89882a806d901449d6098d9e83d748e4457725949e7b28fa22811a7678e"],"state_sha256":"e6dc24c7c6f42dd0cc1a39d19f2d91ca6a008e30f4a61954843fe010868d0e47"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"latNC91VaWXUHLafAD8oOoWPoSlTvfMDJvBBo0i8HB/TwvxWwa31A7Y+PgaDQTxrqLTMs5Do25vVfuVMUgdiCw==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-03T20:38:34.802985Z","bundle_sha256":"a5f2864ca78599b3598108bcf61c08b8345b02ccf4b89784e08f5aa62c5dec52"}}