{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2017:TTZOEKNXNM5OGVABQGBMOSL6WS","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"847a2686a899c0611244163069c90520ad069cc0e9d81b2b92b3642846747ea6","cross_cats_sorted":["cs.AI","cs.CV","cs.LG"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"stat.ML","submitted_at":"2017-02-14T15:44:26Z","title_canon_sha256":"e71f6ece0b2e1391039456ac2b045358574b1abbd697453b23c5e7cf64d5abd1"},"schema_version":"1.0","source":{"id":"1702.04267","kind":"arxiv","version":2}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1702.04267","created_at":"2026-05-18T00:50:16Z"},{"alias_kind":"arxiv_version","alias_value":"1702.04267v2","created_at":"2026-05-18T00:50:16Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1702.04267","created_at":"2026-05-18T00:50:16Z"},{"alias_kind":"pith_short_12","alias_value":"TTZOEKNXNM5O","created_at":"2026-05-18T12:31:46Z"},{"alias_kind":"pith_short_16","alias_value":"TTZOEKNXNM5OGVAB","created_at":"2026-05-18T12:31:46Z"},{"alias_kind":"pith_short_8","alias_value":"TTZOEKNX","created_at":"2026-05-18T12:31:46Z"}],"graph_snapshots":[{"event_id":"sha256:924d19095b3efdfad8b145aeebf3a568257c05f9d34a58fb742d7b69bb05b19d","target":"graph","created_at":"2026-05-18T00:50:16Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Machine learning and deep learning in particular has advanced tremendously on perceptual tasks in recent years. However, it remains vulnerable against adversarial perturbations of the input that have been crafted specifically to fool the system while being quasi-imperceptible to a human. In this work, we propose to augment deep neural networks with a small \"detector\" subnetwork which is trained on the binary classification task of distinguishing genuine data from data containing adversarial perturbations. Our method is orthogonal to prior work on addressing adversarial perturbations, which has","authors_text":"Bastian Bischoff, Jan Hendrik Metzen, Tim Genewein, Volker Fischer","cross_cats":["cs.AI","cs.CV","cs.LG"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"stat.ML","submitted_at":"2017-02-14T15:44:26Z","title":"On Detecting Adversarial Perturbations"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1702.04267","kind":"arxiv","version":2},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:ff66f2014dd2efee40a0e17f897790e9d41867abd76d499306cc7972a10256b5","target":"record","created_at":"2026-05-18T00:50:16Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"847a2686a899c0611244163069c90520ad069cc0e9d81b2b92b3642846747ea6","cross_cats_sorted":["cs.AI","cs.CV","cs.LG"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"stat.ML","submitted_at":"2017-02-14T15:44:26Z","title_canon_sha256":"e71f6ece0b2e1391039456ac2b045358574b1abbd697453b23c5e7cf64d5abd1"},"schema_version":"1.0","source":{"id":"1702.04267","kind":"arxiv","version":2}},"canonical_sha256":"9cf2e229b76b3ae354018182c7497eb4926aa2417cda9a8c8430d6fc5ceb3631","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"9cf2e229b76b3ae354018182c7497eb4926aa2417cda9a8c8430d6fc5ceb3631","first_computed_at":"2026-05-18T00:50:16.705831Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-18T00:50:16.705831Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"JZX1VGIu10A4KbQjwoqV0NkUl0zLDd82Osmbf+g+SCzgjD8y0u02d21PKdV/R3sBFO5YLDRn8W1mbd65iG3zAQ==","signature_status":"signed_v1","signed_at":"2026-05-18T00:50:16.706468Z","signed_message":"canonical_sha256_bytes"},"source_id":"1702.04267","source_kind":"arxiv","source_version":2}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:ff66f2014dd2efee40a0e17f897790e9d41867abd76d499306cc7972a10256b5","sha256:924d19095b3efdfad8b145aeebf3a568257c05f9d34a58fb742d7b69bb05b19d"],"state_sha256":"4c7ea45e19feefd316e3d0cd5b0ede16ad798f2404f3652f6cca0195d3bacd0c"}