{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2019:TSMLTEGDZ3WOCI3NPUJH3CSMQM","short_pith_number":"pith:TSMLTEGD","schema_version":"1.0","canonical_sha256":"9c98b990c3ceece1236d7d127d8a4c8328aa500046af3e2423c919b174882ef9","source":{"kind":"arxiv","id":"1907.02610","version":2},"attestation_state":"computed","paper":{"title":"Adversarial Robustness through Local Linearization","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.LG"],"primary_cat":"stat.ML","authors_text":"Alhussein Fawzi, Chongli Qin, Dilip Krishnan, James Martens, Krishnamurthy Dvijotham, Pushmeet Kohli, Robert Stanforth, Soham De, Sven Gowal","submitted_at":"2019-07-04T21:55:29Z","abstract_excerpt":"Adversarial training is an effective methodology for training deep neural networks that are robust against adversarial, norm-bounded perturbations. However, the computational cost of adversarial training grows prohibitively as the size of the model and number of input dimensions increase. Further, training against less expensive and therefore weaker adversaries produces models that are robust against weak attacks but break down under attacks that are stronger. This is often attributed to the phenomenon of gradient obfuscation; such models have a highly non-linear loss surface in the vicinity o"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"1907.02610","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"stat.ML","submitted_at":"2019-07-04T21:55:29Z","cross_cats_sorted":["cs.LG"],"title_canon_sha256":"32e2e0b649bac21d6c32eb97fcfb0a6a852453d78560eefeb260e27b761092cd","abstract_canon_sha256":"9f807d278283869a2b7d1e35cfc18c5e0a5af821e77338a6c899da24b1579471"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T00:11:15.161889Z","signature_b64":"9MviucmCRqRyq62rOPGbaYXTDzjWZO9ggkEjE3L0bw9pHMfWIT8ffOtf9+2Pi57WiaRXLMmS6hT54C5gI+raAQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"9c98b990c3ceece1236d7d127d8a4c8328aa500046af3e2423c919b174882ef9","last_reissued_at":"2026-07-05T00:11:15.161491Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T00:11:15.161491Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"Adversarial Robustness through Local Linearization","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.LG"],"primary_cat":"stat.ML","authors_text":"Alhussein Fawzi, Chongli Qin, Dilip Krishnan, James Martens, Krishnamurthy Dvijotham, Pushmeet Kohli, Robert Stanforth, Soham De, Sven Gowal","submitted_at":"2019-07-04T21:55:29Z","abstract_excerpt":"Adversarial training is an effective methodology for training deep neural networks that are robust against adversarial, norm-bounded perturbations. However, the computational cost of adversarial training grows prohibitively as the size of the model and number of input dimensions increase. Further, training against less expensive and therefore weaker adversaries produces models that are robust against weak attacks but break down under attacks that are stronger. This is often attributed to the phenomenon of gradient obfuscation; such models have a highly non-linear loss surface in the vicinity o"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1907.02610","kind":"arxiv","version":2},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/1907.02610/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"1907.02610","created_at":"2026-07-05T00:11:15.161549+00:00"},{"alias_kind":"arxiv_version","alias_value":"1907.02610v2","created_at":"2026-07-05T00:11:15.161549+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1907.02610","created_at":"2026-07-05T00:11:15.161549+00:00"},{"alias_kind":"pith_short_12","alias_value":"TSMLTEGDZ3WO","created_at":"2026-07-05T00:11:15.161549+00:00"},{"alias_kind":"pith_short_16","alias_value":"TSMLTEGDZ3WOCI3N","created_at":"2026-07-05T00:11:15.161549+00:00"},{"alias_kind":"pith_short_8","alias_value":"TSMLTEGD","created_at":"2026-07-05T00:11:15.161549+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":0,"internal_anchor_count":0,"sample":[]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/TSMLTEGDZ3WOCI3NPUJH3CSMQM","json":"https://pith.science/pith/TSMLTEGDZ3WOCI3NPUJH3CSMQM.json","graph_json":"https://pith.science/api/pith-number/TSMLTEGDZ3WOCI3NPUJH3CSMQM/graph.json","events_json":"https://pith.science/api/pith-number/TSMLTEGDZ3WOCI3NPUJH3CSMQM/events.json","paper":"https://pith.science/paper/TSMLTEGD"},"agent_actions":{"view_html":"https://pith.science/pith/TSMLTEGDZ3WOCI3NPUJH3CSMQM","download_json":"https://pith.science/pith/TSMLTEGDZ3WOCI3NPUJH3CSMQM.json","view_paper":"https://pith.science/paper/TSMLTEGD","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=1907.02610&json=true","fetch_graph":"https://pith.science/api/pith-number/TSMLTEGDZ3WOCI3NPUJH3CSMQM/graph.json","fetch_events":"https://pith.science/api/pith-number/TSMLTEGDZ3WOCI3NPUJH3CSMQM/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/TSMLTEGDZ3WOCI3NPUJH3CSMQM/action/timestamp_anchor","attest_storage":"https://pith.science/pith/TSMLTEGDZ3WOCI3NPUJH3CSMQM/action/storage_attestation","attest_author":"https://pith.science/pith/TSMLTEGDZ3WOCI3NPUJH3CSMQM/action/author_attestation","sign_citation":"https://pith.science/pith/TSMLTEGDZ3WOCI3NPUJH3CSMQM/action/citation_signature","submit_replication":"https://pith.science/pith/TSMLTEGDZ3WOCI3NPUJH3CSMQM/action/replication_record"}},"created_at":"2026-07-05T00:11:15.161549+00:00","updated_at":"2026-07-05T00:11:15.161549+00:00"}