{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2018:UA6LFLMYNFXGOP7S3SIW5624GJ","short_pith_number":"pith:UA6LFLMY","canonical_record":{"source":{"id":"1812.06815","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2018-12-17T14:55:41Z","cross_cats_sorted":["cs.CR"],"title_canon_sha256":"82703cc6d49059fbba5e7e474ee879381b944b081bf4d32171ebf1e69821b0c3","abstract_canon_sha256":"5cc11d8664f2ab49690cd34c43f3e3843b92d2b5c43cea386b0fb325fad4157b"},"schema_version":"1.0"},"canonical_sha256":"a03cb2ad98696e673ff2dc916efb5c326a3c4242f7d1e16ebdb7b9df697f82ec","source":{"kind":"arxiv","id":"1812.06815","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1812.06815","created_at":"2026-05-17T23:58:09Z"},{"alias_kind":"arxiv_version","alias_value":"1812.06815v1","created_at":"2026-05-17T23:58:09Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1812.06815","created_at":"2026-05-17T23:58:09Z"},{"alias_kind":"pith_short_12","alias_value":"UA6LFLMYNFXG","created_at":"2026-05-18T12:32:56Z"},{"alias_kind":"pith_short_16","alias_value":"UA6LFLMYNFXGOP7S","created_at":"2026-05-18T12:32:56Z"},{"alias_kind":"pith_short_8","alias_value":"UA6LFLMY","created_at":"2026-05-18T12:32:56Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2018:UA6LFLMYNFXGOP7S3SIW5624GJ","target":"record","payload":{"canonical_record":{"source":{"id":"1812.06815","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2018-12-17T14:55:41Z","cross_cats_sorted":["cs.CR"],"title_canon_sha256":"82703cc6d49059fbba5e7e474ee879381b944b081bf4d32171ebf1e69821b0c3","abstract_canon_sha256":"5cc11d8664f2ab49690cd34c43f3e3843b92d2b5c43cea386b0fb325fad4157b"},"schema_version":"1.0"},"canonical_sha256":"a03cb2ad98696e673ff2dc916efb5c326a3c4242f7d1e16ebdb7b9df697f82ec","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:58:09.304563Z","signature_b64":"EnR77fzaAou38Xv69vhfxkMjG+rO4oY3aH81QNKmpr2LBLE4e10F3ze/V0mDrev8qC7nmJXMIg4Le3xoLi7ABw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"a03cb2ad98696e673ff2dc916efb5c326a3c4242f7d1e16ebdb7b9df697f82ec","last_reissued_at":"2026-05-17T23:58:09.303956Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:58:09.303956Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1812.06815","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:58:09Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"V8q5+2v41HxREZ+MEI7Fx5mZEwiQ62CJen6YRj2/Aio+XngWg5flOSvLiPo4lCeMZPRvKXeLMuCrEAtKnZ9pBw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-31T20:16:54.696107Z"},"content_sha256":"c9e89f766f8fac47f03f7faae53e7ae0b4779d6d705bb057b4e5ba0380fa8476","schema_version":"1.0","event_id":"sha256:c9e89f766f8fac47f03f7faae53e7ae0b4779d6d705bb057b4e5ba0380fa8476"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2018:UA6LFLMYNFXGOP7S3SIW5624GJ","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Spartan Networks: Self-Feature-Squeezing Neural Networks for increased robustness in adversarial settings","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.CR"],"primary_cat":"cs.LG","authors_text":"Fran\\c{c}ois Menet, Jos\\'e M. Fernandez, Michel Gagnon, Paul Berthier","submitted_at":"2018-12-17T14:55:41Z","abstract_excerpt":"Deep learning models are vulnerable to adversarial examples which are input samples modified in order to maximize the error on the system. We introduce Spartan Networks, resistant deep neural networks that do not require input preprocessing nor adversarial training. These networks have an adversarial layer designed to discard some information of the network, thus forcing the system to focus on relevant input. This is done using a new activation function to discard data. The added layer trains the neural network to filter-out usually-irrelevant parts of its input. Our performance evaluation sho"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1812.06815","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:58:09Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"Uf/GsQwg+7iQ2vTfUSgMo42p8uN5/WnLfkaU3ApgnZWs/QTtLFa2+0n372snFyVfuCbHDQW0jRhn1sTDBCZNAw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-31T20:16:54.696767Z"},"content_sha256":"54219a055928954723430c1f20b725b586d9eecd37eadc9440b753af32dfa301","schema_version":"1.0","event_id":"sha256:54219a055928954723430c1f20b725b586d9eecd37eadc9440b753af32dfa301"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/UA6LFLMYNFXGOP7S3SIW5624GJ/bundle.json","state_url":"https://pith.science/pith/UA6LFLMYNFXGOP7S3SIW5624GJ/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/UA6LFLMYNFXGOP7S3SIW5624GJ/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-31T20:16:54Z","links":{"resolver":"https://pith.science/pith/UA6LFLMYNFXGOP7S3SIW5624GJ","bundle":"https://pith.science/pith/UA6LFLMYNFXGOP7S3SIW5624GJ/bundle.json","state":"https://pith.science/pith/UA6LFLMYNFXGOP7S3SIW5624GJ/state.json","well_known_bundle":"https://pith.science/.well-known/pith/UA6LFLMYNFXGOP7S3SIW5624GJ/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2018:UA6LFLMYNFXGOP7S3SIW5624GJ","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"5cc11d8664f2ab49690cd34c43f3e3843b92d2b5c43cea386b0fb325fad4157b","cross_cats_sorted":["cs.CR"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2018-12-17T14:55:41Z","title_canon_sha256":"82703cc6d49059fbba5e7e474ee879381b944b081bf4d32171ebf1e69821b0c3"},"schema_version":"1.0","source":{"id":"1812.06815","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1812.06815","created_at":"2026-05-17T23:58:09Z"},{"alias_kind":"arxiv_version","alias_value":"1812.06815v1","created_at":"2026-05-17T23:58:09Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1812.06815","created_at":"2026-05-17T23:58:09Z"},{"alias_kind":"pith_short_12","alias_value":"UA6LFLMYNFXG","created_at":"2026-05-18T12:32:56Z"},{"alias_kind":"pith_short_16","alias_value":"UA6LFLMYNFXGOP7S","created_at":"2026-05-18T12:32:56Z"},{"alias_kind":"pith_short_8","alias_value":"UA6LFLMY","created_at":"2026-05-18T12:32:56Z"}],"graph_snapshots":[{"event_id":"sha256:54219a055928954723430c1f20b725b586d9eecd37eadc9440b753af32dfa301","target":"graph","created_at":"2026-05-17T23:58:09Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Deep learning models are vulnerable to adversarial examples which are input samples modified in order to maximize the error on the system. We introduce Spartan Networks, resistant deep neural networks that do not require input preprocessing nor adversarial training. These networks have an adversarial layer designed to discard some information of the network, thus forcing the system to focus on relevant input. This is done using a new activation function to discard data. The added layer trains the neural network to filter-out usually-irrelevant parts of its input. Our performance evaluation sho","authors_text":"Fran\\c{c}ois Menet, Jos\\'e M. Fernandez, Michel Gagnon, Paul Berthier","cross_cats":["cs.CR"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2018-12-17T14:55:41Z","title":"Spartan Networks: Self-Feature-Squeezing Neural Networks for increased robustness in adversarial settings"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1812.06815","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:c9e89f766f8fac47f03f7faae53e7ae0b4779d6d705bb057b4e5ba0380fa8476","target":"record","created_at":"2026-05-17T23:58:09Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"5cc11d8664f2ab49690cd34c43f3e3843b92d2b5c43cea386b0fb325fad4157b","cross_cats_sorted":["cs.CR"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2018-12-17T14:55:41Z","title_canon_sha256":"82703cc6d49059fbba5e7e474ee879381b944b081bf4d32171ebf1e69821b0c3"},"schema_version":"1.0","source":{"id":"1812.06815","kind":"arxiv","version":1}},"canonical_sha256":"a03cb2ad98696e673ff2dc916efb5c326a3c4242f7d1e16ebdb7b9df697f82ec","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"a03cb2ad98696e673ff2dc916efb5c326a3c4242f7d1e16ebdb7b9df697f82ec","first_computed_at":"2026-05-17T23:58:09.303956Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-17T23:58:09.303956Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"EnR77fzaAou38Xv69vhfxkMjG+rO4oY3aH81QNKmpr2LBLE4e10F3ze/V0mDrev8qC7nmJXMIg4Le3xoLi7ABw==","signature_status":"signed_v1","signed_at":"2026-05-17T23:58:09.304563Z","signed_message":"canonical_sha256_bytes"},"source_id":"1812.06815","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:c9e89f766f8fac47f03f7faae53e7ae0b4779d6d705bb057b4e5ba0380fa8476","sha256:54219a055928954723430c1f20b725b586d9eecd37eadc9440b753af32dfa301"],"state_sha256":"9cd2de87f460c77017819cb03c4340fe570f316ef244e41c7a456594c1b49c18"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"9WPaXqHRok9lPx6acJqAMBVk2Qc+u9QU2LgS4e0k6d+ifG+7PgViZNZ9JCEru6QgmSrDV7a/tV1czdiULEESCw==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-31T20:16:54.700527Z","bundle_sha256":"139ca11caa99089fb15159ae35b6fae23c5207ab8ba0eff7ecce5ae29a429a16"}}