{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2017:RHMGAA754ESOL7TEFNVJHNFOBJ","short_pith_number":"pith:RHMGAA75","canonical_record":{"source":{"id":"1707.05970","kind":"arxiv","version":5},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2017-07-19T08:16:31Z","cross_cats_sorted":["cs.LG","cs.NE"],"title_canon_sha256":"121e15055b75d1d2c52eef16a09c14eb19af1061d389ea9555c9a8c64d0fb834","abstract_canon_sha256":"b55825a4f71e88afb4f782b596f83ba91368bd228adfeeb094e44843519c1eb1"},"schema_version":"1.0"},"canonical_sha256":"89d86003fde124e5fe642b6a93b4ae0a4cffadd9dae4e84f8662c23cd56f1afc","source":{"kind":"arxiv","id":"1707.05970","version":5},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1707.05970","created_at":"2026-05-18T00:12:35Z"},{"alias_kind":"arxiv_version","alias_value":"1707.05970v5","created_at":"2026-05-18T00:12:35Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1707.05970","created_at":"2026-05-18T00:12:35Z"},{"alias_kind":"pith_short_12","alias_value":"RHMGAA754ESO","created_at":"2026-05-18T12:31:39Z"},{"alias_kind":"pith_short_16","alias_value":"RHMGAA754ESOL7TE","created_at":"2026-05-18T12:31:39Z"},{"alias_kind":"pith_short_8","alias_value":"RHMGAA75","created_at":"2026-05-18T12:31:39Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2017:RHMGAA754ESOL7TEFNVJHNFOBJ","target":"record","payload":{"canonical_record":{"source":{"id":"1707.05970","kind":"arxiv","version":5},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2017-07-19T08:16:31Z","cross_cats_sorted":["cs.LG","cs.NE"],"title_canon_sha256":"121e15055b75d1d2c52eef16a09c14eb19af1061d389ea9555c9a8c64d0fb834","abstract_canon_sha256":"b55825a4f71e88afb4f782b596f83ba91368bd228adfeeb094e44843519c1eb1"},"schema_version":"1.0"},"canonical_sha256":"89d86003fde124e5fe642b6a93b4ae0a4cffadd9dae4e84f8662c23cd56f1afc","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-18T00:12:35.200939Z","signature_b64":"xNUhTIkuL3QhhogV/JC5wfa0P6VPX8qzetqsDAnMRHdcmpqoL7D8zQEMHmSA3BpGNlw0NkDApeVXAmEBRz4gCQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"89d86003fde124e5fe642b6a93b4ae0a4cffadd9dae4e84f8662c23cd56f1afc","last_reissued_at":"2026-05-18T00:12:35.200467Z","signature_status":"signed_v1","first_computed_at":"2026-05-18T00:12:35.200467Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1707.05970","source_version":5,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:12:35Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"76RA8KHTHS5mZoistom5u3HMLCt7IM8pSWFAwb1XjusRgtMJH4vVoLC6tjoCBgbygYkng530/BqeAqEILvNxAA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-25T16:12:53.481218Z"},"content_sha256":"abac626569a5aac1330328aa09425c8fca509a74a751896dcfb424cb33482718","schema_version":"1.0","event_id":"sha256:abac626569a5aac1330328aa09425c8fca509a74a751896dcfb424cb33482718"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2017:RHMGAA754ESOL7TEFNVJHNFOBJ","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Generic Black-Box End-to-End Attack Against State of the Art API Call Based Malware Classifiers","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.LG","cs.NE"],"primary_cat":"cs.CR","authors_text":"Asaf Shabtai, Ishai Rosenberg, Lior Rokach, Yuval Elovici","submitted_at":"2017-07-19T08:16:31Z","abstract_excerpt":"In this paper, we present a black-box attack against API call based machine learning malware classifiers, focusing on generating adversarial sequences combining API calls and static features (e.g., printable strings) that will be misclassified by the classifier without affecting the malware functionality. We show that this attack is effective against many classifiers due to the transferability principle between RNN variants, feed forward DNNs, and traditional machine learning classifiers such as SVM. We also implement GADGET, a software framework to convert any malware binary to a binary undet"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1707.05970","kind":"arxiv","version":5},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:12:35Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"ClcBZ9rwkOvpDD+4sSJkFbVQjMEkXhcbfmJJyi749xj1zLvvej+CmSDMCiVJiB00+QJCyLZ9g1aC1k31vsipBA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-25T16:12:53.481914Z"},"content_sha256":"9912a22f7665875f4a68c66b0606f93fb4a38dbf375970c4bd7e992d35d87038","schema_version":"1.0","event_id":"sha256:9912a22f7665875f4a68c66b0606f93fb4a38dbf375970c4bd7e992d35d87038"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/RHMGAA754ESOL7TEFNVJHNFOBJ/bundle.json","state_url":"https://pith.science/pith/RHMGAA754ESOL7TEFNVJHNFOBJ/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/RHMGAA754ESOL7TEFNVJHNFOBJ/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-25T16:12:53Z","links":{"resolver":"https://pith.science/pith/RHMGAA754ESOL7TEFNVJHNFOBJ","bundle":"https://pith.science/pith/RHMGAA754ESOL7TEFNVJHNFOBJ/bundle.json","state":"https://pith.science/pith/RHMGAA754ESOL7TEFNVJHNFOBJ/state.json","well_known_bundle":"https://pith.science/.well-known/pith/RHMGAA754ESOL7TEFNVJHNFOBJ/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2017:RHMGAA754ESOL7TEFNVJHNFOBJ","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"b55825a4f71e88afb4f782b596f83ba91368bd228adfeeb094e44843519c1eb1","cross_cats_sorted":["cs.LG","cs.NE"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2017-07-19T08:16:31Z","title_canon_sha256":"121e15055b75d1d2c52eef16a09c14eb19af1061d389ea9555c9a8c64d0fb834"},"schema_version":"1.0","source":{"id":"1707.05970","kind":"arxiv","version":5}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1707.05970","created_at":"2026-05-18T00:12:35Z"},{"alias_kind":"arxiv_version","alias_value":"1707.05970v5","created_at":"2026-05-18T00:12:35Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1707.05970","created_at":"2026-05-18T00:12:35Z"},{"alias_kind":"pith_short_12","alias_value":"RHMGAA754ESO","created_at":"2026-05-18T12:31:39Z"},{"alias_kind":"pith_short_16","alias_value":"RHMGAA754ESOL7TE","created_at":"2026-05-18T12:31:39Z"},{"alias_kind":"pith_short_8","alias_value":"RHMGAA75","created_at":"2026-05-18T12:31:39Z"}],"graph_snapshots":[{"event_id":"sha256:9912a22f7665875f4a68c66b0606f93fb4a38dbf375970c4bd7e992d35d87038","target":"graph","created_at":"2026-05-18T00:12:35Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"In this paper, we present a black-box attack against API call based machine learning malware classifiers, focusing on generating adversarial sequences combining API calls and static features (e.g., printable strings) that will be misclassified by the classifier without affecting the malware functionality. We show that this attack is effective against many classifiers due to the transferability principle between RNN variants, feed forward DNNs, and traditional machine learning classifiers such as SVM. We also implement GADGET, a software framework to convert any malware binary to a binary undet","authors_text":"Asaf Shabtai, Ishai Rosenberg, Lior Rokach, Yuval Elovici","cross_cats":["cs.LG","cs.NE"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2017-07-19T08:16:31Z","title":"Generic Black-Box End-to-End Attack Against State of the Art API Call Based Malware Classifiers"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1707.05970","kind":"arxiv","version":5},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:abac626569a5aac1330328aa09425c8fca509a74a751896dcfb424cb33482718","target":"record","created_at":"2026-05-18T00:12:35Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"b55825a4f71e88afb4f782b596f83ba91368bd228adfeeb094e44843519c1eb1","cross_cats_sorted":["cs.LG","cs.NE"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2017-07-19T08:16:31Z","title_canon_sha256":"121e15055b75d1d2c52eef16a09c14eb19af1061d389ea9555c9a8c64d0fb834"},"schema_version":"1.0","source":{"id":"1707.05970","kind":"arxiv","version":5}},"canonical_sha256":"89d86003fde124e5fe642b6a93b4ae0a4cffadd9dae4e84f8662c23cd56f1afc","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"89d86003fde124e5fe642b6a93b4ae0a4cffadd9dae4e84f8662c23cd56f1afc","first_computed_at":"2026-05-18T00:12:35.200467Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-18T00:12:35.200467Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"xNUhTIkuL3QhhogV/JC5wfa0P6VPX8qzetqsDAnMRHdcmpqoL7D8zQEMHmSA3BpGNlw0NkDApeVXAmEBRz4gCQ==","signature_status":"signed_v1","signed_at":"2026-05-18T00:12:35.200939Z","signed_message":"canonical_sha256_bytes"},"source_id":"1707.05970","source_kind":"arxiv","source_version":5}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:abac626569a5aac1330328aa09425c8fca509a74a751896dcfb424cb33482718","sha256:9912a22f7665875f4a68c66b0606f93fb4a38dbf375970c4bd7e992d35d87038"],"state_sha256":"7710f45c55e0f7f426cb98a5749374635e6dba0d94e53b81b014672ada49715f"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"XNz7kOapW1Ywa1CbvsvkiQSoJn8ln3FNMvRfyNPIQLZ8t1WjXgJFcHaQXa3NqvLRTuekxGuwO1jqTY23VsG5AA==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-25T16:12:53.485024Z","bundle_sha256":"6f6717a43b92ef1e0438707bdf888f4ce15f9bf18051247f394a6da6e11b5277"}}