{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2019:TRC3IHR6GS5CCEINQNXSP2SLB6","short_pith_number":"pith:TRC3IHR6","canonical_record":{"source":{"id":"1901.01759","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2019-01-07T11:57:05Z","cross_cats_sorted":[],"title_canon_sha256":"a00b8ca07f79b66eba87907acf959a6e84fd5c30e8e2584089fcf39c70b9320a","abstract_canon_sha256":"bf237a5fba98b08f9ab7fa8603d436b8814996929013b881c5d0ad3b22a725c6"},"schema_version":"1.0"},"canonical_sha256":"9c45b41e3e34ba21110d836f27ea4b0f8729736beb7dfee0b0a0acb5a8ab95da","source":{"kind":"arxiv","id":"1901.01759","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1901.01759","created_at":"2026-05-17T23:56:51Z"},{"alias_kind":"arxiv_version","alias_value":"1901.01759v1","created_at":"2026-05-17T23:56:51Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1901.01759","created_at":"2026-05-17T23:56:51Z"},{"alias_kind":"pith_short_12","alias_value":"TRC3IHR6GS5C","created_at":"2026-05-18T12:33:30Z"},{"alias_kind":"pith_short_16","alias_value":"TRC3IHR6GS5CCEIN","created_at":"2026-05-18T12:33:30Z"},{"alias_kind":"pith_short_8","alias_value":"TRC3IHR6","created_at":"2026-05-18T12:33:30Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2019:TRC3IHR6GS5CCEINQNXSP2SLB6","target":"record","payload":{"canonical_record":{"source":{"id":"1901.01759","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2019-01-07T11:57:05Z","cross_cats_sorted":[],"title_canon_sha256":"a00b8ca07f79b66eba87907acf959a6e84fd5c30e8e2584089fcf39c70b9320a","abstract_canon_sha256":"bf237a5fba98b08f9ab7fa8603d436b8814996929013b881c5d0ad3b22a725c6"},"schema_version":"1.0"},"canonical_sha256":"9c45b41e3e34ba21110d836f27ea4b0f8729736beb7dfee0b0a0acb5a8ab95da","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:56:51.313727Z","signature_b64":"p0VCBsetaqN6KSLP9i0D+T5zYURaKJTsPZNtaD+eYQCMskYR81+boKeSnkpAFXHFat+gxIpHpXyUZFYEVnPJAw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"9c45b41e3e34ba21110d836f27ea4b0f8729736beb7dfee0b0a0acb5a8ab95da","last_reissued_at":"2026-05-17T23:56:51.313212Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:56:51.313212Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1901.01759","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:56:51Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"xnbt+WPYumCrRnms1uzqiRCJVlN9TGRt437mSNYN8w6ApEZuVBDD9jL/iqWLE79/7lcKKL+WM5gZB10x4DAbBA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-02T07:53:52.609436Z"},"content_sha256":"eefa34a1624680518e6f1d783d226ee61df7c6b3dd48eb94f1a9cdebf979c27f","schema_version":"1.0","event_id":"sha256:eefa34a1624680518e6f1d783d226ee61df7c6b3dd48eb94f1a9cdebf979c27f"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2019:TRC3IHR6GS5CCEINQNXSP2SLB6","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Extracting Secrets from Encrypted Virtual Machines","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.CR","authors_text":"Julian Horsch, Manuel Huber, Mathias Morbitzer","submitted_at":"2019-01-07T11:57:05Z","abstract_excerpt":"AMD SEV is a hardware extension for main memory encryption on multi-tenant systems. SEV uses an on-chip coprocessor, the AMD Secure Processor, to transparently encrypt virtual machine memory with individual, ephemeral keys never leaving the coprocessor. The goal is to protect the confidentiality of the tenants' memory from a malicious or compromised hypervisor and from memory attacks, for instance via cold boot or DMA. The SEVered attack has shown that it is nevertheless possible for a hypervisor to extract memory in plaintext from SEV-encrypted virtual machines without access to their encrypt"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1901.01759","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:56:51Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"wIt7Bn6/y7utHbySv0zZpqVFjKoqQA2ZU1pP0exC1c9RkWuGX5qrV+gUI94LMgJTY6zcY2LiIq4Lq9JPzIIWDg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-02T07:53:52.609787Z"},"content_sha256":"74bd4c27d35d8036e420f6649387f6a3130fcc21d01b4960ab54f289991d2b4f","schema_version":"1.0","event_id":"sha256:74bd4c27d35d8036e420f6649387f6a3130fcc21d01b4960ab54f289991d2b4f"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/TRC3IHR6GS5CCEINQNXSP2SLB6/bundle.json","state_url":"https://pith.science/pith/TRC3IHR6GS5CCEINQNXSP2SLB6/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/TRC3IHR6GS5CCEINQNXSP2SLB6/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-02T07:53:52Z","links":{"resolver":"https://pith.science/pith/TRC3IHR6GS5CCEINQNXSP2SLB6","bundle":"https://pith.science/pith/TRC3IHR6GS5CCEINQNXSP2SLB6/bundle.json","state":"https://pith.science/pith/TRC3IHR6GS5CCEINQNXSP2SLB6/state.json","well_known_bundle":"https://pith.science/.well-known/pith/TRC3IHR6GS5CCEINQNXSP2SLB6/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2019:TRC3IHR6GS5CCEINQNXSP2SLB6","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"bf237a5fba98b08f9ab7fa8603d436b8814996929013b881c5d0ad3b22a725c6","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2019-01-07T11:57:05Z","title_canon_sha256":"a00b8ca07f79b66eba87907acf959a6e84fd5c30e8e2584089fcf39c70b9320a"},"schema_version":"1.0","source":{"id":"1901.01759","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1901.01759","created_at":"2026-05-17T23:56:51Z"},{"alias_kind":"arxiv_version","alias_value":"1901.01759v1","created_at":"2026-05-17T23:56:51Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1901.01759","created_at":"2026-05-17T23:56:51Z"},{"alias_kind":"pith_short_12","alias_value":"TRC3IHR6GS5C","created_at":"2026-05-18T12:33:30Z"},{"alias_kind":"pith_short_16","alias_value":"TRC3IHR6GS5CCEIN","created_at":"2026-05-18T12:33:30Z"},{"alias_kind":"pith_short_8","alias_value":"TRC3IHR6","created_at":"2026-05-18T12:33:30Z"}],"graph_snapshots":[{"event_id":"sha256:74bd4c27d35d8036e420f6649387f6a3130fcc21d01b4960ab54f289991d2b4f","target":"graph","created_at":"2026-05-17T23:56:51Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"AMD SEV is a hardware extension for main memory encryption on multi-tenant systems. SEV uses an on-chip coprocessor, the AMD Secure Processor, to transparently encrypt virtual machine memory with individual, ephemeral keys never leaving the coprocessor. The goal is to protect the confidentiality of the tenants' memory from a malicious or compromised hypervisor and from memory attacks, for instance via cold boot or DMA. The SEVered attack has shown that it is nevertheless possible for a hypervisor to extract memory in plaintext from SEV-encrypted virtual machines without access to their encrypt","authors_text":"Julian Horsch, Manuel Huber, Mathias Morbitzer","cross_cats":[],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2019-01-07T11:57:05Z","title":"Extracting Secrets from Encrypted Virtual Machines"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1901.01759","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:eefa34a1624680518e6f1d783d226ee61df7c6b3dd48eb94f1a9cdebf979c27f","target":"record","created_at":"2026-05-17T23:56:51Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"bf237a5fba98b08f9ab7fa8603d436b8814996929013b881c5d0ad3b22a725c6","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2019-01-07T11:57:05Z","title_canon_sha256":"a00b8ca07f79b66eba87907acf959a6e84fd5c30e8e2584089fcf39c70b9320a"},"schema_version":"1.0","source":{"id":"1901.01759","kind":"arxiv","version":1}},"canonical_sha256":"9c45b41e3e34ba21110d836f27ea4b0f8729736beb7dfee0b0a0acb5a8ab95da","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"9c45b41e3e34ba21110d836f27ea4b0f8729736beb7dfee0b0a0acb5a8ab95da","first_computed_at":"2026-05-17T23:56:51.313212Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-17T23:56:51.313212Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"p0VCBsetaqN6KSLP9i0D+T5zYURaKJTsPZNtaD+eYQCMskYR81+boKeSnkpAFXHFat+gxIpHpXyUZFYEVnPJAw==","signature_status":"signed_v1","signed_at":"2026-05-17T23:56:51.313727Z","signed_message":"canonical_sha256_bytes"},"source_id":"1901.01759","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:eefa34a1624680518e6f1d783d226ee61df7c6b3dd48eb94f1a9cdebf979c27f","sha256:74bd4c27d35d8036e420f6649387f6a3130fcc21d01b4960ab54f289991d2b4f"],"state_sha256":"cb6b7355926a9907cba08d6f27a120da34d134b880fa03f1ebdfdf12f7f4b14c"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"MX76BorntZUbw0syNNYOV05mT7noq3D5TYR4w3+BDmbt+4R+ExQEYQkGnhivmDU5VpCxsgTtH9NGyv9WhY7jAg==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-02T07:53:52.611649Z","bundle_sha256":"c280c92d8a5266064afb6b6e0bfb7603ccf76922a6ebecd9b286c9d18144b747"}}