{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2018:UA32DDNWIGREWGHAI2NSHHZYUD","short_pith_number":"pith:UA32DDNW","schema_version":"1.0","canonical_sha256":"a037a18db641a24b18e0469b239f38a0d3c3ed4d3c24081534d045ee9ddd08ce","source":{"kind":"arxiv","id":"1808.10307","version":1},"attestation_state":"computed","paper":{"title":"Backdoor Embedding in Convolutional Neural Network Models via Invisible Perturbation","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.LG","stat.ML"],"primary_cat":"cs.CR","authors_text":"Anna Squicciarini, Cong Liao, David Miller, Haoti Zhong, Sencun Zhu","submitted_at":"2018-08-30T14:13:39Z","abstract_excerpt":"Deep learning models have consistently outperformed traditional machine learning models in various classification tasks, including image classification. As such, they have become increasingly prevalent in many real world applications including those where security is of great concern. Such popularity, however, may attract attackers to exploit the vulnerabilities of the deployed deep learning models and launch attacks against security-sensitive applications. In this paper, we focus on a specific type of data poisoning attack, which we refer to as a {\\em backdoor injection attack}. The main goal"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"1808.10307","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-08-30T14:13:39Z","cross_cats_sorted":["cs.LG","stat.ML"],"title_canon_sha256":"46599fa3d945d2b61ef3da870e60fe496ae2afe40fa4727eb91bb9847f367097","abstract_canon_sha256":"2a2fe5b0ebaed2442b3e7741ec9ba8e25fa89f61cfba24a500bd74991d2ce225"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-18T00:06:49.197016Z","signature_b64":"jf8+Hm3hpBY8Qc3ajXhSPx2GoPUoMWDbYx0b0qn/ZDWoV8dRohX91YicLC9wwvSidaqINWPsv9uFAtA6XBp4Bg==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"a037a18db641a24b18e0469b239f38a0d3c3ed4d3c24081534d045ee9ddd08ce","last_reissued_at":"2026-05-18T00:06:49.196480Z","signature_status":"signed_v1","first_computed_at":"2026-05-18T00:06:49.196480Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"Backdoor Embedding in Convolutional Neural Network Models via Invisible Perturbation","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.LG","stat.ML"],"primary_cat":"cs.CR","authors_text":"Anna Squicciarini, Cong Liao, David Miller, Haoti Zhong, Sencun Zhu","submitted_at":"2018-08-30T14:13:39Z","abstract_excerpt":"Deep learning models have consistently outperformed traditional machine learning models in various classification tasks, including image classification. As such, they have become increasingly prevalent in many real world applications including those where security is of great concern. Such popularity, however, may attract attackers to exploit the vulnerabilities of the deployed deep learning models and launch attacks against security-sensitive applications. In this paper, we focus on a specific type of data poisoning attack, which we refer to as a {\\em backdoor injection attack}. The main goal"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1808.10307","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"1808.10307","created_at":"2026-05-18T00:06:49.196559+00:00"},{"alias_kind":"arxiv_version","alias_value":"1808.10307v1","created_at":"2026-05-18T00:06:49.196559+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1808.10307","created_at":"2026-05-18T00:06:49.196559+00:00"},{"alias_kind":"pith_short_12","alias_value":"UA32DDNWIGRE","created_at":"2026-05-18T12:32:56.356000+00:00"},{"alias_kind":"pith_short_16","alias_value":"UA32DDNWIGREWGHA","created_at":"2026-05-18T12:32:56.356000+00:00"},{"alias_kind":"pith_short_8","alias_value":"UA32DDNW","created_at":"2026-05-18T12:32:56.356000+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":0,"internal_anchor_count":0,"sample":[]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/UA32DDNWIGREWGHAI2NSHHZYUD","json":"https://pith.science/pith/UA32DDNWIGREWGHAI2NSHHZYUD.json","graph_json":"https://pith.science/api/pith-number/UA32DDNWIGREWGHAI2NSHHZYUD/graph.json","events_json":"https://pith.science/api/pith-number/UA32DDNWIGREWGHAI2NSHHZYUD/events.json","paper":"https://pith.science/paper/UA32DDNW"},"agent_actions":{"view_html":"https://pith.science/pith/UA32DDNWIGREWGHAI2NSHHZYUD","download_json":"https://pith.science/pith/UA32DDNWIGREWGHAI2NSHHZYUD.json","view_paper":"https://pith.science/paper/UA32DDNW","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=1808.10307&json=true","fetch_graph":"https://pith.science/api/pith-number/UA32DDNWIGREWGHAI2NSHHZYUD/graph.json","fetch_events":"https://pith.science/api/pith-number/UA32DDNWIGREWGHAI2NSHHZYUD/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/UA32DDNWIGREWGHAI2NSHHZYUD/action/timestamp_anchor","attest_storage":"https://pith.science/pith/UA32DDNWIGREWGHAI2NSHHZYUD/action/storage_attestation","attest_author":"https://pith.science/pith/UA32DDNWIGREWGHAI2NSHHZYUD/action/author_attestation","sign_citation":"https://pith.science/pith/UA32DDNWIGREWGHAI2NSHHZYUD/action/citation_signature","submit_replication":"https://pith.science/pith/UA32DDNWIGREWGHAI2NSHHZYUD/action/replication_record"}},"created_at":"2026-05-18T00:06:49.196559+00:00","updated_at":"2026-05-18T00:06:49.196559+00:00"}