{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2019:T4JIJMKPFWE6CBUZJEV23ZKJ5C","short_pith_number":"pith:T4JIJMKP","canonical_record":{"source":{"id":"1905.10906","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-05-26T23:55:35Z","cross_cats_sorted":["cs.CR","stat.ML"],"title_canon_sha256":"219c87507f20794ccc149185893705d6f325e9bc643040bec9116a15885370aa","abstract_canon_sha256":"8c931207485296916e9be55512079b074327cb935669b4f79481cf2b4a89191c"},"schema_version":"1.0"},"canonical_sha256":"9f1284b14f2d89e10699492bade549e8bbc71b400d51646c45c198832c5addf2","source":{"kind":"arxiv","id":"1905.10906","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1905.10906","created_at":"2026-05-17T23:45:03Z"},{"alias_kind":"arxiv_version","alias_value":"1905.10906v1","created_at":"2026-05-17T23:45:03Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1905.10906","created_at":"2026-05-17T23:45:03Z"},{"alias_kind":"pith_short_12","alias_value":"T4JIJMKPFWE6","created_at":"2026-05-18T12:33:27Z"},{"alias_kind":"pith_short_16","alias_value":"T4JIJMKPFWE6CBUZ","created_at":"2026-05-18T12:33:27Z"},{"alias_kind":"pith_short_8","alias_value":"T4JIJMKP","created_at":"2026-05-18T12:33:27Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2019:T4JIJMKPFWE6CBUZJEV23ZKJ5C","target":"record","payload":{"canonical_record":{"source":{"id":"1905.10906","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-05-26T23:55:35Z","cross_cats_sorted":["cs.CR","stat.ML"],"title_canon_sha256":"219c87507f20794ccc149185893705d6f325e9bc643040bec9116a15885370aa","abstract_canon_sha256":"8c931207485296916e9be55512079b074327cb935669b4f79481cf2b4a89191c"},"schema_version":"1.0"},"canonical_sha256":"9f1284b14f2d89e10699492bade549e8bbc71b400d51646c45c198832c5addf2","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:45:03.457424Z","signature_b64":"bhqMI1oCFVl5hC1q3YT1p2jsSKWffM9wdNyZhmm45M4DUxDcDK4Bq3TA1nu7UmZ4hXQ35q9SH1tN92taqWTGDg==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"9f1284b14f2d89e10699492bade549e8bbc71b400d51646c45c198832c5addf2","last_reissued_at":"2026-05-17T23:45:03.456816Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:45:03.456816Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1905.10906","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:45:03Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"KlkIIUMHqrWMphZeYE29ZfE3HU6HXHObvKQF5JSZKdD8SLJS2EV6kD2HbpYdb+zNHLw4huYytBU5a+KndfmbCg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-12T00:45:12.888575Z"},"content_sha256":"c09a42bacd5d20e8bc9e9a5dbf7c75a55592f88d2b700c9cd27d0f3ca869e854","schema_version":"1.0","event_id":"sha256:c09a42bacd5d20e8bc9e9a5dbf7c75a55592f88d2b700c9cd27d0f3ca869e854"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2019:T4JIJMKPFWE6CBUZJEV23ZKJ5C","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Non-Determinism in Neural Networks for Adversarial Robustness","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.CR","stat.ML"],"primary_cat":"cs.LG","authors_text":"Abelino Jimenez, Bhiksha Raj, Daanish Ali Khan, Linhong Li, Ninghao Sha, Rita Singh, Zhuoran Liu","submitted_at":"2019-05-26T23:55:35Z","abstract_excerpt":"Recent breakthroughs in the field of deep learning have led to advancements in a broad spectrum of tasks in computer vision, audio processing, natural language processing and other areas. In most instances where these tasks are deployed in real-world scenarios, the models used in them have been shown to be susceptible to adversarial attacks, making it imperative for us to address the challenge of their adversarial robustness. Existing techniques for adversarial robustness fall into three broad categories: defensive distillation techniques, adversarial training techniques, and randomized or non"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1905.10906","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:45:03Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"x3+FMNX8/bnXCHROxftqwrrlkweiH1UYrVSq5NqscTTT+eIQvwSjMUUbsi74amJHaNv+L1KgbgQUhKWM5J9/CA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-12T00:45:12.889358Z"},"content_sha256":"a07742596368a7a38494f6dc0d93eb88fcd368654f53250bdb2072081d49584e","schema_version":"1.0","event_id":"sha256:a07742596368a7a38494f6dc0d93eb88fcd368654f53250bdb2072081d49584e"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/T4JIJMKPFWE6CBUZJEV23ZKJ5C/bundle.json","state_url":"https://pith.science/pith/T4JIJMKPFWE6CBUZJEV23ZKJ5C/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/T4JIJMKPFWE6CBUZJEV23ZKJ5C/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-12T00:45:12Z","links":{"resolver":"https://pith.science/pith/T4JIJMKPFWE6CBUZJEV23ZKJ5C","bundle":"https://pith.science/pith/T4JIJMKPFWE6CBUZJEV23ZKJ5C/bundle.json","state":"https://pith.science/pith/T4JIJMKPFWE6CBUZJEV23ZKJ5C/state.json","well_known_bundle":"https://pith.science/.well-known/pith/T4JIJMKPFWE6CBUZJEV23ZKJ5C/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2019:T4JIJMKPFWE6CBUZJEV23ZKJ5C","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"8c931207485296916e9be55512079b074327cb935669b4f79481cf2b4a89191c","cross_cats_sorted":["cs.CR","stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-05-26T23:55:35Z","title_canon_sha256":"219c87507f20794ccc149185893705d6f325e9bc643040bec9116a15885370aa"},"schema_version":"1.0","source":{"id":"1905.10906","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1905.10906","created_at":"2026-05-17T23:45:03Z"},{"alias_kind":"arxiv_version","alias_value":"1905.10906v1","created_at":"2026-05-17T23:45:03Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1905.10906","created_at":"2026-05-17T23:45:03Z"},{"alias_kind":"pith_short_12","alias_value":"T4JIJMKPFWE6","created_at":"2026-05-18T12:33:27Z"},{"alias_kind":"pith_short_16","alias_value":"T4JIJMKPFWE6CBUZ","created_at":"2026-05-18T12:33:27Z"},{"alias_kind":"pith_short_8","alias_value":"T4JIJMKP","created_at":"2026-05-18T12:33:27Z"}],"graph_snapshots":[{"event_id":"sha256:a07742596368a7a38494f6dc0d93eb88fcd368654f53250bdb2072081d49584e","target":"graph","created_at":"2026-05-17T23:45:03Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Recent breakthroughs in the field of deep learning have led to advancements in a broad spectrum of tasks in computer vision, audio processing, natural language processing and other areas. In most instances where these tasks are deployed in real-world scenarios, the models used in them have been shown to be susceptible to adversarial attacks, making it imperative for us to address the challenge of their adversarial robustness. Existing techniques for adversarial robustness fall into three broad categories: defensive distillation techniques, adversarial training techniques, and randomized or non","authors_text":"Abelino Jimenez, Bhiksha Raj, Daanish Ali Khan, Linhong Li, Ninghao Sha, Rita Singh, Zhuoran Liu","cross_cats":["cs.CR","stat.ML"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-05-26T23:55:35Z","title":"Non-Determinism in Neural Networks for Adversarial Robustness"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1905.10906","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:c09a42bacd5d20e8bc9e9a5dbf7c75a55592f88d2b700c9cd27d0f3ca869e854","target":"record","created_at":"2026-05-17T23:45:03Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"8c931207485296916e9be55512079b074327cb935669b4f79481cf2b4a89191c","cross_cats_sorted":["cs.CR","stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-05-26T23:55:35Z","title_canon_sha256":"219c87507f20794ccc149185893705d6f325e9bc643040bec9116a15885370aa"},"schema_version":"1.0","source":{"id":"1905.10906","kind":"arxiv","version":1}},"canonical_sha256":"9f1284b14f2d89e10699492bade549e8bbc71b400d51646c45c198832c5addf2","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"9f1284b14f2d89e10699492bade549e8bbc71b400d51646c45c198832c5addf2","first_computed_at":"2026-05-17T23:45:03.456816Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-17T23:45:03.456816Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"bhqMI1oCFVl5hC1q3YT1p2jsSKWffM9wdNyZhmm45M4DUxDcDK4Bq3TA1nu7UmZ4hXQ35q9SH1tN92taqWTGDg==","signature_status":"signed_v1","signed_at":"2026-05-17T23:45:03.457424Z","signed_message":"canonical_sha256_bytes"},"source_id":"1905.10906","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:c09a42bacd5d20e8bc9e9a5dbf7c75a55592f88d2b700c9cd27d0f3ca869e854","sha256:a07742596368a7a38494f6dc0d93eb88fcd368654f53250bdb2072081d49584e"],"state_sha256":"6fc8fd826c1792f4361c982a4b4c074aa2dca667088dc32c915859841e646873"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"GmBRfq2VJGebg/D9LAUcyACGcLM4sGJQRMOgDZWlprlAIxvBtirEhYDr7f3f0sTMCArMwhRGfgZcJrTdQ5yTCQ==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-12T00:45:12.893376Z","bundle_sha256":"4146cea241b4c9d7b1bd91b5d707a6eda490a65e07196113a2c3ac30216cbc98"}}