{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2021:TJDBGMCOO3VO675YPYRTBVVRAN","short_pith_number":"pith:TJDBGMCO","schema_version":"1.0","canonical_sha256":"9a4613304e76eaef7fb87e2330d6b1036f84b193f48b16847e30c2d6af0db8d5","source":{"kind":"arxiv","id":"2112.06274","version":1},"attestation_state":"computed","paper":{"title":"SparseFed: Mitigating Model Poisoning Attacks in Federated Learning with Sparsification","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.AI","cs.CR"],"primary_cat":"cs.LG","authors_text":"Arjun N. Bhagoji, Ashwinee Panda, Prateek Mittal, Saeed Mahloujifar, Supriyo Chakraborty","submitted_at":"2021-12-12T16:34:52Z","abstract_excerpt":"Federated learning is inherently vulnerable to model poisoning attacks because its decentralized nature allows attackers to participate with compromised devices. In model poisoning attacks, the attacker reduces the model's performance on targeted sub-tasks (e.g. classifying planes as birds) by uploading \"poisoned\" updates. In this report we introduce \\algoname{}, a novel defense that uses global top-k update sparsification and device-level gradient clipping to mitigate model poisoning attacks. We propose a theoretical framework for analyzing the robustness of defenses against poisoning attacks"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2112.06274","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2021-12-12T16:34:52Z","cross_cats_sorted":["cs.AI","cs.CR"],"title_canon_sha256":"6a52048a7f007cc172da84524c7ef0b522f51390979f69df2525df677d90d3c5","abstract_canon_sha256":"b98e20b5f40f63eab01c5ece31f5fafdba5960a9edb492675ad7d18e65e1b6c4"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T03:40:12.177340Z","signature_b64":"+GIaKQAWQYBNwwdqYPSL+9o4wUyU0qBveNxu0gF1B0rKbAopG5k7utCLNusotG+59CLVsi3btLNJm4KfUylSCw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"9a4613304e76eaef7fb87e2330d6b1036f84b193f48b16847e30c2d6af0db8d5","last_reissued_at":"2026-07-05T03:40:12.176877Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T03:40:12.176877Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"SparseFed: Mitigating Model Poisoning Attacks in Federated Learning with Sparsification","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.AI","cs.CR"],"primary_cat":"cs.LG","authors_text":"Arjun N. Bhagoji, Ashwinee Panda, Prateek Mittal, Saeed Mahloujifar, Supriyo Chakraborty","submitted_at":"2021-12-12T16:34:52Z","abstract_excerpt":"Federated learning is inherently vulnerable to model poisoning attacks because its decentralized nature allows attackers to participate with compromised devices. In model poisoning attacks, the attacker reduces the model's performance on targeted sub-tasks (e.g. classifying planes as birds) by uploading \"poisoned\" updates. In this report we introduce \\algoname{}, a novel defense that uses global top-k update sparsification and device-level gradient clipping to mitigate model poisoning attacks. We propose a theoretical framework for analyzing the robustness of defenses against poisoning attacks"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2112.06274","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2112.06274/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2112.06274","created_at":"2026-07-05T03:40:12.176933+00:00"},{"alias_kind":"arxiv_version","alias_value":"2112.06274v1","created_at":"2026-07-05T03:40:12.176933+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2112.06274","created_at":"2026-07-05T03:40:12.176933+00:00"},{"alias_kind":"pith_short_12","alias_value":"TJDBGMCOO3VO","created_at":"2026-07-05T03:40:12.176933+00:00"},{"alias_kind":"pith_short_16","alias_value":"TJDBGMCOO3VO675Y","created_at":"2026-07-05T03:40:12.176933+00:00"},{"alias_kind":"pith_short_8","alias_value":"TJDBGMCO","created_at":"2026-07-05T03:40:12.176933+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":0,"internal_anchor_count":0,"sample":[]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/TJDBGMCOO3VO675YPYRTBVVRAN","json":"https://pith.science/pith/TJDBGMCOO3VO675YPYRTBVVRAN.json","graph_json":"https://pith.science/api/pith-number/TJDBGMCOO3VO675YPYRTBVVRAN/graph.json","events_json":"https://pith.science/api/pith-number/TJDBGMCOO3VO675YPYRTBVVRAN/events.json","paper":"https://pith.science/paper/TJDBGMCO"},"agent_actions":{"view_html":"https://pith.science/pith/TJDBGMCOO3VO675YPYRTBVVRAN","download_json":"https://pith.science/pith/TJDBGMCOO3VO675YPYRTBVVRAN.json","view_paper":"https://pith.science/paper/TJDBGMCO","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2112.06274&json=true","fetch_graph":"https://pith.science/api/pith-number/TJDBGMCOO3VO675YPYRTBVVRAN/graph.json","fetch_events":"https://pith.science/api/pith-number/TJDBGMCOO3VO675YPYRTBVVRAN/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/TJDBGMCOO3VO675YPYRTBVVRAN/action/timestamp_anchor","attest_storage":"https://pith.science/pith/TJDBGMCOO3VO675YPYRTBVVRAN/action/storage_attestation","attest_author":"https://pith.science/pith/TJDBGMCOO3VO675YPYRTBVVRAN/action/author_attestation","sign_citation":"https://pith.science/pith/TJDBGMCOO3VO675YPYRTBVVRAN/action/citation_signature","submit_replication":"https://pith.science/pith/TJDBGMCOO3VO675YPYRTBVVRAN/action/replication_record"}},"created_at":"2026-07-05T03:40:12.176933+00:00","updated_at":"2026-07-05T03:40:12.176933+00:00"}