{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2017:TPFIY34VW7HDWZCCK3ZJ2HIAKP","short_pith_number":"pith:TPFIY34V","canonical_record":{"source":{"id":"1709.00045","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2017-08-31T19:11:56Z","cross_cats_sorted":["cs.CR"],"title_canon_sha256":"b6d2d1d0c2bb04755feb10ffc6c11d18d54f8ce1618b24d2ae65ec0c1af4be52","abstract_canon_sha256":"e88d74749c8b18e3592972d4412be24c454a683518dcad9b07d3a16a46123ece"},"schema_version":"1.0"},"canonical_sha256":"9bca8c6f95b7ce3b644256f29d1d0053f2b74c0fc994cb3bc2246361ec4de726","source":{"kind":"arxiv","id":"1709.00045","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1709.00045","created_at":"2026-05-18T00:36:13Z"},{"alias_kind":"arxiv_version","alias_value":"1709.00045v1","created_at":"2026-05-18T00:36:13Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1709.00045","created_at":"2026-05-18T00:36:13Z"},{"alias_kind":"pith_short_12","alias_value":"TPFIY34VW7HD","created_at":"2026-05-18T12:31:46Z"},{"alias_kind":"pith_short_16","alias_value":"TPFIY34VW7HDWZCC","created_at":"2026-05-18T12:31:46Z"},{"alias_kind":"pith_short_8","alias_value":"TPFIY34V","created_at":"2026-05-18T12:31:46Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2017:TPFIY34VW7HDWZCCK3ZJ2HIAKP","target":"record","payload":{"canonical_record":{"source":{"id":"1709.00045","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2017-08-31T19:11:56Z","cross_cats_sorted":["cs.CR"],"title_canon_sha256":"b6d2d1d0c2bb04755feb10ffc6c11d18d54f8ce1618b24d2ae65ec0c1af4be52","abstract_canon_sha256":"e88d74749c8b18e3592972d4412be24c454a683518dcad9b07d3a16a46123ece"},"schema_version":"1.0"},"canonical_sha256":"9bca8c6f95b7ce3b644256f29d1d0053f2b74c0fc994cb3bc2246361ec4de726","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-18T00:36:13.586801Z","signature_b64":"/GcDFoqM1aW1PZUWQZx9y+bTvkOQUz9vybPuE+snpPV8u/cOA19Mg6xetjs6P9gZ49gffh4SPJU0Rjd/NDYwDQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"9bca8c6f95b7ce3b644256f29d1d0053f2b74c0fc994cb3bc2246361ec4de726","last_reissued_at":"2026-05-18T00:36:13.586299Z","signature_status":"signed_v1","first_computed_at":"2026-05-18T00:36:13.586299Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1709.00045","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:36:13Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"lDHW5xLpVb3h6geqShay941rY/TX8Uy1BhofPHjLcPjuUJ5I25QElXRoZlOymKdisb/hgQUrIuhwptLNZwAvCw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-25T04:13:58.362811Z"},"content_sha256":"f2cba6abe1e6af83f02cff990058f3d7ac07744f1e230d630a5d487acec5d563","schema_version":"1.0","event_id":"sha256:f2cba6abe1e6af83f02cff990058f3d7ac07744f1e230d630a5d487acec5d563"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2017:TPFIY34VW7HDWZCCK3ZJ2HIAKP","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"On Security and Sparsity of Linear Classifiers for Adversarial Settings","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.CR"],"primary_cat":"cs.LG","authors_text":"Ambra Demontis, Battista Biggio, Fabio Roli, Giorgio Fumera, Paolo Russu","submitted_at":"2017-08-31T19:11:56Z","abstract_excerpt":"Machine-learning techniques are widely used in security-related applications, like spam and malware detection. However, in such settings, they have been shown to be vulnerable to adversarial attacks, including the deliberate manipulation of data at test time to evade detection. In this work, we focus on the vulnerability of linear classifiers to evasion attacks. This can be considered a relevant problem, as linear classifiers have been increasingly used in embedded systems and mobile devices for their low processing time and memory requirements. We exploit recent findings in robust optimizatio"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1709.00045","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:36:13Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"taMnII7JvLWJNKBln6gObzREJCF1hwOir1o1U4Zg939YnE3UwfgNA+2V9R/OU3iGBaw6puA7p1ntik8VE7qTDQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-25T04:13:58.363519Z"},"content_sha256":"4814fa32d604405427215aa6b8fdb74afd0834009a1a9c081806dfa476de0a09","schema_version":"1.0","event_id":"sha256:4814fa32d604405427215aa6b8fdb74afd0834009a1a9c081806dfa476de0a09"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/TPFIY34VW7HDWZCCK3ZJ2HIAKP/bundle.json","state_url":"https://pith.science/pith/TPFIY34VW7HDWZCCK3ZJ2HIAKP/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/TPFIY34VW7HDWZCCK3ZJ2HIAKP/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-25T04:13:58Z","links":{"resolver":"https://pith.science/pith/TPFIY34VW7HDWZCCK3ZJ2HIAKP","bundle":"https://pith.science/pith/TPFIY34VW7HDWZCCK3ZJ2HIAKP/bundle.json","state":"https://pith.science/pith/TPFIY34VW7HDWZCCK3ZJ2HIAKP/state.json","well_known_bundle":"https://pith.science/.well-known/pith/TPFIY34VW7HDWZCCK3ZJ2HIAKP/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2017:TPFIY34VW7HDWZCCK3ZJ2HIAKP","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"e88d74749c8b18e3592972d4412be24c454a683518dcad9b07d3a16a46123ece","cross_cats_sorted":["cs.CR"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2017-08-31T19:11:56Z","title_canon_sha256":"b6d2d1d0c2bb04755feb10ffc6c11d18d54f8ce1618b24d2ae65ec0c1af4be52"},"schema_version":"1.0","source":{"id":"1709.00045","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1709.00045","created_at":"2026-05-18T00:36:13Z"},{"alias_kind":"arxiv_version","alias_value":"1709.00045v1","created_at":"2026-05-18T00:36:13Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1709.00045","created_at":"2026-05-18T00:36:13Z"},{"alias_kind":"pith_short_12","alias_value":"TPFIY34VW7HD","created_at":"2026-05-18T12:31:46Z"},{"alias_kind":"pith_short_16","alias_value":"TPFIY34VW7HDWZCC","created_at":"2026-05-18T12:31:46Z"},{"alias_kind":"pith_short_8","alias_value":"TPFIY34V","created_at":"2026-05-18T12:31:46Z"}],"graph_snapshots":[{"event_id":"sha256:4814fa32d604405427215aa6b8fdb74afd0834009a1a9c081806dfa476de0a09","target":"graph","created_at":"2026-05-18T00:36:13Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Machine-learning techniques are widely used in security-related applications, like spam and malware detection. However, in such settings, they have been shown to be vulnerable to adversarial attacks, including the deliberate manipulation of data at test time to evade detection. In this work, we focus on the vulnerability of linear classifiers to evasion attacks. This can be considered a relevant problem, as linear classifiers have been increasingly used in embedded systems and mobile devices for their low processing time and memory requirements. We exploit recent findings in robust optimizatio","authors_text":"Ambra Demontis, Battista Biggio, Fabio Roli, Giorgio Fumera, Paolo Russu","cross_cats":["cs.CR"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2017-08-31T19:11:56Z","title":"On Security and Sparsity of Linear Classifiers for Adversarial Settings"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1709.00045","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:f2cba6abe1e6af83f02cff990058f3d7ac07744f1e230d630a5d487acec5d563","target":"record","created_at":"2026-05-18T00:36:13Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"e88d74749c8b18e3592972d4412be24c454a683518dcad9b07d3a16a46123ece","cross_cats_sorted":["cs.CR"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2017-08-31T19:11:56Z","title_canon_sha256":"b6d2d1d0c2bb04755feb10ffc6c11d18d54f8ce1618b24d2ae65ec0c1af4be52"},"schema_version":"1.0","source":{"id":"1709.00045","kind":"arxiv","version":1}},"canonical_sha256":"9bca8c6f95b7ce3b644256f29d1d0053f2b74c0fc994cb3bc2246361ec4de726","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"9bca8c6f95b7ce3b644256f29d1d0053f2b74c0fc994cb3bc2246361ec4de726","first_computed_at":"2026-05-18T00:36:13.586299Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-18T00:36:13.586299Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"/GcDFoqM1aW1PZUWQZx9y+bTvkOQUz9vybPuE+snpPV8u/cOA19Mg6xetjs6P9gZ49gffh4SPJU0Rjd/NDYwDQ==","signature_status":"signed_v1","signed_at":"2026-05-18T00:36:13.586801Z","signed_message":"canonical_sha256_bytes"},"source_id":"1709.00045","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:f2cba6abe1e6af83f02cff990058f3d7ac07744f1e230d630a5d487acec5d563","sha256:4814fa32d604405427215aa6b8fdb74afd0834009a1a9c081806dfa476de0a09"],"state_sha256":"59f71e7b8f35d514375d281655c9f05b7f2a85d8de68472007072a4e199d256f"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"oXdfqW02o1jL2fLCCbJMpaIvaTBLToOHPSSoy0oo13aYuERWQGT4+gKscj1cyW++MVX4AftibZ6PnXmMW7fqCg==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-25T04:13:58.367463Z","bundle_sha256":"9148f789a5ed6a8f9dab881d0ccddab7ebe3b38988b4745c8ffcda1fd32fc84d"}}