{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2018:SPD42OIM6VDSOBV73SLCFTUPBF","short_pith_number":"pith:SPD42OIM","canonical_record":{"source":{"id":"1812.02737","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2018-12-06T03:12:16Z","cross_cats_sorted":["cs.CR"],"title_canon_sha256":"5f54aca7e818d3ccda8d592b6ae2968acb723c8089f7ed32b89fdd1189402fd6","abstract_canon_sha256":"999ca89c6696b74fb3e11adf9d70c0603d6fff30f622a9b0aa22b996a969c617"},"schema_version":"1.0"},"canonical_sha256":"93c7cd390cf5472706bfdc9622ce8f097acb3e30cfdd8c2cc573fda31bcc5431","source":{"kind":"arxiv","id":"1812.02737","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1812.02737","created_at":"2026-05-17T23:58:52Z"},{"alias_kind":"arxiv_version","alias_value":"1812.02737v1","created_at":"2026-05-17T23:58:52Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1812.02737","created_at":"2026-05-17T23:58:52Z"},{"alias_kind":"pith_short_12","alias_value":"SPD42OIM6VDS","created_at":"2026-05-18T12:32:53Z"},{"alias_kind":"pith_short_16","alias_value":"SPD42OIM6VDSOBV7","created_at":"2026-05-18T12:32:53Z"},{"alias_kind":"pith_short_8","alias_value":"SPD42OIM","created_at":"2026-05-18T12:32:53Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2018:SPD42OIM6VDSOBV73SLCFTUPBF","target":"record","payload":{"canonical_record":{"source":{"id":"1812.02737","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2018-12-06T03:12:16Z","cross_cats_sorted":["cs.CR"],"title_canon_sha256":"5f54aca7e818d3ccda8d592b6ae2968acb723c8089f7ed32b89fdd1189402fd6","abstract_canon_sha256":"999ca89c6696b74fb3e11adf9d70c0603d6fff30f622a9b0aa22b996a969c617"},"schema_version":"1.0"},"canonical_sha256":"93c7cd390cf5472706bfdc9622ce8f097acb3e30cfdd8c2cc573fda31bcc5431","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:58:52.004676Z","signature_b64":"24liXITgMt6XSDiSMmOt3RMwz/SZRE6Tid4FccQ8Bl9puAL/jgV1J2+NdKqnucG80o8HM0W6KhRxLG1rJXP1Dw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"93c7cd390cf5472706bfdc9622ce8f097acb3e30cfdd8c2cc573fda31bcc5431","last_reissued_at":"2026-05-17T23:58:52.003930Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:58:52.003930Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1812.02737","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:58:52Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"Nwh+pHGdbSlRNs399SbUDwawX4GZYzq/k6Gz46ErzhU1WoUTSSTZ4+xOA+kdzw4hDck+0BKWGM4IjWq5Xd0BDg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-07-03T23:38:36.547387Z"},"content_sha256":"e97aa4f4695ae64b901cb8781361330c4eae07ff79dc9852bc65e8b4f81d2390","schema_version":"1.0","event_id":"sha256:e97aa4f4695ae64b901cb8781361330c4eae07ff79dc9852bc65e8b4f81d2390"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2018:SPD42OIM6VDSOBV73SLCFTUPBF","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"On Configurable Defense against Adversarial Example Attacks","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.CR"],"primary_cat":"cs.LG","authors_text":"Bo Luo, Min Li, Qiang Xu, Yu Li","submitted_at":"2018-12-06T03:12:16Z","abstract_excerpt":"Machine learning systems based on deep neural networks (DNNs) have gained mainstream adoption in many applications. Recently, however, DNNs are shown to be vulnerable to adversarial example attacks with slight perturbations on the inputs. Existing defense mechanisms against such attacks try to improve the overall robustness of the system, but they do not differentiate different targeted attacks even though the corresponding impacts may vary significantly. To tackle this problem, we propose a novel configurable defense mechanism in this work, wherein we are able to flexibly tune the robustness "},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1812.02737","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:58:52Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"WgiLoFJKdpANfjek2v7v3ybtZclt15y1FhFLWWkr2DbaabYJx+EyVvWqL96Uv4JHLzMsCtJJdJpUCNUflnJYAg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-07-03T23:38:36.547971Z"},"content_sha256":"4ffaca62d4909dc45ad8ea6542067dc5d16a5c0af979b885f1965e8c9c2ec4cf","schema_version":"1.0","event_id":"sha256:4ffaca62d4909dc45ad8ea6542067dc5d16a5c0af979b885f1965e8c9c2ec4cf"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/SPD42OIM6VDSOBV73SLCFTUPBF/bundle.json","state_url":"https://pith.science/pith/SPD42OIM6VDSOBV73SLCFTUPBF/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/SPD42OIM6VDSOBV73SLCFTUPBF/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-07-03T23:38:36Z","links":{"resolver":"https://pith.science/pith/SPD42OIM6VDSOBV73SLCFTUPBF","bundle":"https://pith.science/pith/SPD42OIM6VDSOBV73SLCFTUPBF/bundle.json","state":"https://pith.science/pith/SPD42OIM6VDSOBV73SLCFTUPBF/state.json","well_known_bundle":"https://pith.science/.well-known/pith/SPD42OIM6VDSOBV73SLCFTUPBF/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2018:SPD42OIM6VDSOBV73SLCFTUPBF","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"999ca89c6696b74fb3e11adf9d70c0603d6fff30f622a9b0aa22b996a969c617","cross_cats_sorted":["cs.CR"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2018-12-06T03:12:16Z","title_canon_sha256":"5f54aca7e818d3ccda8d592b6ae2968acb723c8089f7ed32b89fdd1189402fd6"},"schema_version":"1.0","source":{"id":"1812.02737","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1812.02737","created_at":"2026-05-17T23:58:52Z"},{"alias_kind":"arxiv_version","alias_value":"1812.02737v1","created_at":"2026-05-17T23:58:52Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1812.02737","created_at":"2026-05-17T23:58:52Z"},{"alias_kind":"pith_short_12","alias_value":"SPD42OIM6VDS","created_at":"2026-05-18T12:32:53Z"},{"alias_kind":"pith_short_16","alias_value":"SPD42OIM6VDSOBV7","created_at":"2026-05-18T12:32:53Z"},{"alias_kind":"pith_short_8","alias_value":"SPD42OIM","created_at":"2026-05-18T12:32:53Z"}],"graph_snapshots":[{"event_id":"sha256:4ffaca62d4909dc45ad8ea6542067dc5d16a5c0af979b885f1965e8c9c2ec4cf","target":"graph","created_at":"2026-05-17T23:58:52Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Machine learning systems based on deep neural networks (DNNs) have gained mainstream adoption in many applications. Recently, however, DNNs are shown to be vulnerable to adversarial example attacks with slight perturbations on the inputs. Existing defense mechanisms against such attacks try to improve the overall robustness of the system, but they do not differentiate different targeted attacks even though the corresponding impacts may vary significantly. To tackle this problem, we propose a novel configurable defense mechanism in this work, wherein we are able to flexibly tune the robustness ","authors_text":"Bo Luo, Min Li, Qiang Xu, Yu Li","cross_cats":["cs.CR"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2018-12-06T03:12:16Z","title":"On Configurable Defense against Adversarial Example Attacks"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1812.02737","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:e97aa4f4695ae64b901cb8781361330c4eae07ff79dc9852bc65e8b4f81d2390","target":"record","created_at":"2026-05-17T23:58:52Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"999ca89c6696b74fb3e11adf9d70c0603d6fff30f622a9b0aa22b996a969c617","cross_cats_sorted":["cs.CR"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2018-12-06T03:12:16Z","title_canon_sha256":"5f54aca7e818d3ccda8d592b6ae2968acb723c8089f7ed32b89fdd1189402fd6"},"schema_version":"1.0","source":{"id":"1812.02737","kind":"arxiv","version":1}},"canonical_sha256":"93c7cd390cf5472706bfdc9622ce8f097acb3e30cfdd8c2cc573fda31bcc5431","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"93c7cd390cf5472706bfdc9622ce8f097acb3e30cfdd8c2cc573fda31bcc5431","first_computed_at":"2026-05-17T23:58:52.003930Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-17T23:58:52.003930Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"24liXITgMt6XSDiSMmOt3RMwz/SZRE6Tid4FccQ8Bl9puAL/jgV1J2+NdKqnucG80o8HM0W6KhRxLG1rJXP1Dw==","signature_status":"signed_v1","signed_at":"2026-05-17T23:58:52.004676Z","signed_message":"canonical_sha256_bytes"},"source_id":"1812.02737","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:e97aa4f4695ae64b901cb8781361330c4eae07ff79dc9852bc65e8b4f81d2390","sha256:4ffaca62d4909dc45ad8ea6542067dc5d16a5c0af979b885f1965e8c9c2ec4cf"],"state_sha256":"4cba244856d6e93a7d70528328951845646c0574dd9aab19995c2ef888b42077"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"QWzSsKnjTrj5n8yYD5g+C8eIBuVlRcALfLUpOwx+VECH08A+XAbknV0s2Uf4uIiU4y/164EgSg5cm4G34HYsAA==","signed_message":"bundle_sha256_bytes","signed_at":"2026-07-03T23:38:36.551395Z","bundle_sha256":"f30a0354977104bd4ac2ea2b05248d1e2ebb21596cc3c151d0b01bb33fab65c0"}}