{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2014:TRDMTI2UW4WE4CVNKZYILMMXSH","short_pith_number":"pith:TRDMTI2U","canonical_record":{"source":{"id":"1406.1154","kind":"arxiv","version":3},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2014-06-04T19:14:47Z","cross_cats_sorted":[],"title_canon_sha256":"a657b74ded9810a448909876fb9d7e0c9769532721fd836b545b401c7c3a7c68","abstract_canon_sha256":"abb995fc1e37a266831c780c778f10ee581fb464ebe6af1bb86d9589054667e1"},"schema_version":"1.0"},"canonical_sha256":"9c46c9a354b72c4e0aad567085b19791f3dac4c1edb96eb059eeab1adefb3d23","source":{"kind":"arxiv","id":"1406.1154","version":3},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1406.1154","created_at":"2026-05-18T02:42:14Z"},{"alias_kind":"arxiv_version","alias_value":"1406.1154v3","created_at":"2026-05-18T02:42:14Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1406.1154","created_at":"2026-05-18T02:42:14Z"},{"alias_kind":"pith_short_12","alias_value":"TRDMTI2UW4WE","created_at":"2026-05-18T12:28:49Z"},{"alias_kind":"pith_short_16","alias_value":"TRDMTI2UW4WE4CVN","created_at":"2026-05-18T12:28:49Z"},{"alias_kind":"pith_short_8","alias_value":"TRDMTI2U","created_at":"2026-05-18T12:28:49Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2014:TRDMTI2UW4WE4CVNKZYILMMXSH","target":"record","payload":{"canonical_record":{"source":{"id":"1406.1154","kind":"arxiv","version":3},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2014-06-04T19:14:47Z","cross_cats_sorted":[],"title_canon_sha256":"a657b74ded9810a448909876fb9d7e0c9769532721fd836b545b401c7c3a7c68","abstract_canon_sha256":"abb995fc1e37a266831c780c778f10ee581fb464ebe6af1bb86d9589054667e1"},"schema_version":"1.0"},"canonical_sha256":"9c46c9a354b72c4e0aad567085b19791f3dac4c1edb96eb059eeab1adefb3d23","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-18T02:42:14.402685Z","signature_b64":"B2IVPoHHvz7i0Ep7jyKycuXp/5dDeRnAwQjv/bO/zcg588FJPZZiulQ1K55DKPI7YnaXy3A8WIPKMXpwTdjwCA==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"9c46c9a354b72c4e0aad567085b19791f3dac4c1edb96eb059eeab1adefb3d23","last_reissued_at":"2026-05-18T02:42:14.402307Z","signature_status":"signed_v1","first_computed_at":"2026-05-18T02:42:14.402307Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1406.1154","source_version":3,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T02:42:14Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"PZno2KjDOXXeskUaYraZgC79qF/5WsNDbGcbe25tjcFigmsHDy7gPmtJcDThevjKxI6utaU6C+ixIUwgvydFDw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-31T21:25:10.499516Z"},"content_sha256":"26a69f9fee29c10a7bc15dfe9af82a3ad14a2e4c3bb62260f107bbba028768ab","schema_version":"1.0","event_id":"sha256:26a69f9fee29c10a7bc15dfe9af82a3ad14a2e4c3bb62260f107bbba028768ab"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2014:TRDMTI2UW4WE4CVNKZYILMMXSH","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Decodability Attack against the Fuzzy Commitment Scheme with Public Feature Transforms","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.CR","authors_text":"Benjamin Tams","submitted_at":"2014-06-04T19:14:47Z","abstract_excerpt":"The fuzzy commitment scheme is a cryptographic primitive that can be used to store biometric templates being encoded as fixed-length feature vectors protected. If multiple related records generated from the same biometric instance can be intercepted, their correspondence can be determined using the decodability attack. In 2011, Kelkboom et al. proposed to pass the feature vectors through a record-specific but public permutation process in order to prevent this attack. In this paper, it is shown that this countermeasure enables another attack also analyzed by Simoens et al. in 2009 which can ev"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1406.1154","kind":"arxiv","version":3},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T02:42:14Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"wsJCXtopS9NC22zVNfUNOpTtD36JUjtR4c5ROyzchL1TVK66xfzducP8Q7cPl+LVJOdlwykuGz0EEvnOFKYdCQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-31T21:25:10.499863Z"},"content_sha256":"8fe6dbb9b5239850369d5a6286f42307098473b595bed212eca6068ff66e0cd9","schema_version":"1.0","event_id":"sha256:8fe6dbb9b5239850369d5a6286f42307098473b595bed212eca6068ff66e0cd9"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/TRDMTI2UW4WE4CVNKZYILMMXSH/bundle.json","state_url":"https://pith.science/pith/TRDMTI2UW4WE4CVNKZYILMMXSH/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/TRDMTI2UW4WE4CVNKZYILMMXSH/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-31T21:25:10Z","links":{"resolver":"https://pith.science/pith/TRDMTI2UW4WE4CVNKZYILMMXSH","bundle":"https://pith.science/pith/TRDMTI2UW4WE4CVNKZYILMMXSH/bundle.json","state":"https://pith.science/pith/TRDMTI2UW4WE4CVNKZYILMMXSH/state.json","well_known_bundle":"https://pith.science/.well-known/pith/TRDMTI2UW4WE4CVNKZYILMMXSH/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2014:TRDMTI2UW4WE4CVNKZYILMMXSH","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"abb995fc1e37a266831c780c778f10ee581fb464ebe6af1bb86d9589054667e1","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2014-06-04T19:14:47Z","title_canon_sha256":"a657b74ded9810a448909876fb9d7e0c9769532721fd836b545b401c7c3a7c68"},"schema_version":"1.0","source":{"id":"1406.1154","kind":"arxiv","version":3}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1406.1154","created_at":"2026-05-18T02:42:14Z"},{"alias_kind":"arxiv_version","alias_value":"1406.1154v3","created_at":"2026-05-18T02:42:14Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1406.1154","created_at":"2026-05-18T02:42:14Z"},{"alias_kind":"pith_short_12","alias_value":"TRDMTI2UW4WE","created_at":"2026-05-18T12:28:49Z"},{"alias_kind":"pith_short_16","alias_value":"TRDMTI2UW4WE4CVN","created_at":"2026-05-18T12:28:49Z"},{"alias_kind":"pith_short_8","alias_value":"TRDMTI2U","created_at":"2026-05-18T12:28:49Z"}],"graph_snapshots":[{"event_id":"sha256:8fe6dbb9b5239850369d5a6286f42307098473b595bed212eca6068ff66e0cd9","target":"graph","created_at":"2026-05-18T02:42:14Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"The fuzzy commitment scheme is a cryptographic primitive that can be used to store biometric templates being encoded as fixed-length feature vectors protected. If multiple related records generated from the same biometric instance can be intercepted, their correspondence can be determined using the decodability attack. In 2011, Kelkboom et al. proposed to pass the feature vectors through a record-specific but public permutation process in order to prevent this attack. In this paper, it is shown that this countermeasure enables another attack also analyzed by Simoens et al. in 2009 which can ev","authors_text":"Benjamin Tams","cross_cats":[],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2014-06-04T19:14:47Z","title":"Decodability Attack against the Fuzzy Commitment Scheme with Public Feature Transforms"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1406.1154","kind":"arxiv","version":3},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:26a69f9fee29c10a7bc15dfe9af82a3ad14a2e4c3bb62260f107bbba028768ab","target":"record","created_at":"2026-05-18T02:42:14Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"abb995fc1e37a266831c780c778f10ee581fb464ebe6af1bb86d9589054667e1","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2014-06-04T19:14:47Z","title_canon_sha256":"a657b74ded9810a448909876fb9d7e0c9769532721fd836b545b401c7c3a7c68"},"schema_version":"1.0","source":{"id":"1406.1154","kind":"arxiv","version":3}},"canonical_sha256":"9c46c9a354b72c4e0aad567085b19791f3dac4c1edb96eb059eeab1adefb3d23","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"9c46c9a354b72c4e0aad567085b19791f3dac4c1edb96eb059eeab1adefb3d23","first_computed_at":"2026-05-18T02:42:14.402307Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-18T02:42:14.402307Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"B2IVPoHHvz7i0Ep7jyKycuXp/5dDeRnAwQjv/bO/zcg588FJPZZiulQ1K55DKPI7YnaXy3A8WIPKMXpwTdjwCA==","signature_status":"signed_v1","signed_at":"2026-05-18T02:42:14.402685Z","signed_message":"canonical_sha256_bytes"},"source_id":"1406.1154","source_kind":"arxiv","source_version":3}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:26a69f9fee29c10a7bc15dfe9af82a3ad14a2e4c3bb62260f107bbba028768ab","sha256:8fe6dbb9b5239850369d5a6286f42307098473b595bed212eca6068ff66e0cd9"],"state_sha256":"5f932d81435bd991974ca9eff846ff8c85cde8d8c965f563041b024c8e0b0c7f"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"f5LqBoGb5KYhrIdE76XQ2bppQ5MRU9dW6eusHMWOi9fPWQx+8Dl5yTHxs20S53BnFVY3h0BYZi8VF0izZTyiDA==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-31T21:25:10.501807Z","bundle_sha256":"7a213fdbf265383684599c55f1407fb079be943197d8fdd5d588ed276d5dbbf6"}}