{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2025:UERTGWQBVPFJUSDMZWGQDAFFSN","short_pith_number":"pith:UERTGWQB","schema_version":"1.0","canonical_sha256":"a123335a01abca9a486ccd8d0180a5935cadb0b68f4d2e4f821bcd6d4bfa61c2","source":{"kind":"arxiv","id":"2507.08983","version":1},"attestation_state":"computed","paper":{"title":"Exploiting Leaderboards for Large-Scale Distribution of Malicious Models","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.CR"],"primary_cat":"cs.LG","authors_text":"Alina Oprea, Ali Naseh, Amir Houmansadr, Anshuman Suri, Harsh Chaudhari, Yuefeng Peng","submitted_at":"2025-07-11T19:35:29Z","abstract_excerpt":"While poisoning attacks on machine learning models have been extensively studied, the mechanisms by which adversaries can distribute poisoned models at scale remain largely unexplored. In this paper, we shed light on how model leaderboards -- ranked platforms for model discovery and evaluation -- can serve as a powerful channel for adversaries for stealthy large-scale distribution of poisoned models. We present TrojanClimb, a general framework that enables injection of malicious behaviors while maintaining competitive leaderboard performance. We demonstrate its effectiveness across four divers"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2507.08983","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2025-07-11T19:35:29Z","cross_cats_sorted":["cs.CR"],"title_canon_sha256":"b7d4a239e94a1cd89068821483b04e8e06c164c18b504c3a4eb286ea936c67f2","abstract_canon_sha256":"654e98fd36cebe44bd6b749f542f5477ff9e11fa066a51a29dc5cda8fbf630e0"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T11:36:01.605178Z","signature_b64":"y1eTBDnCQhTOuu9CLUnIuTwK8mF3jBWQj5aiK8QLRkQWbdpzf+y4puHLCf1+Ht3RxVOqYceEIpmR2mC0aZN+AQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"a123335a01abca9a486ccd8d0180a5935cadb0b68f4d2e4f821bcd6d4bfa61c2","last_reissued_at":"2026-07-05T11:36:01.604780Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T11:36:01.604780Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"Exploiting Leaderboards for Large-Scale Distribution of Malicious Models","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.CR"],"primary_cat":"cs.LG","authors_text":"Alina Oprea, Ali Naseh, Amir Houmansadr, Anshuman Suri, Harsh Chaudhari, Yuefeng Peng","submitted_at":"2025-07-11T19:35:29Z","abstract_excerpt":"While poisoning attacks on machine learning models have been extensively studied, the mechanisms by which adversaries can distribute poisoned models at scale remain largely unexplored. In this paper, we shed light on how model leaderboards -- ranked platforms for model discovery and evaluation -- can serve as a powerful channel for adversaries for stealthy large-scale distribution of poisoned models. We present TrojanClimb, a general framework that enables injection of malicious behaviors while maintaining competitive leaderboard performance. We demonstrate its effectiveness across four divers"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2507.08983","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2507.08983/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2507.08983","created_at":"2026-07-05T11:36:01.604836+00:00"},{"alias_kind":"arxiv_version","alias_value":"2507.08983v1","created_at":"2026-07-05T11:36:01.604836+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2507.08983","created_at":"2026-07-05T11:36:01.604836+00:00"},{"alias_kind":"pith_short_12","alias_value":"UERTGWQBVPFJ","created_at":"2026-07-05T11:36:01.604836+00:00"},{"alias_kind":"pith_short_16","alias_value":"UERTGWQBVPFJUSDM","created_at":"2026-07-05T11:36:01.604836+00:00"},{"alias_kind":"pith_short_8","alias_value":"UERTGWQB","created_at":"2026-07-05T11:36:01.604836+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":0,"internal_anchor_count":0,"sample":[]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/UERTGWQBVPFJUSDMZWGQDAFFSN","json":"https://pith.science/pith/UERTGWQBVPFJUSDMZWGQDAFFSN.json","graph_json":"https://pith.science/api/pith-number/UERTGWQBVPFJUSDMZWGQDAFFSN/graph.json","events_json":"https://pith.science/api/pith-number/UERTGWQBVPFJUSDMZWGQDAFFSN/events.json","paper":"https://pith.science/paper/UERTGWQB"},"agent_actions":{"view_html":"https://pith.science/pith/UERTGWQBVPFJUSDMZWGQDAFFSN","download_json":"https://pith.science/pith/UERTGWQBVPFJUSDMZWGQDAFFSN.json","view_paper":"https://pith.science/paper/UERTGWQB","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2507.08983&json=true","fetch_graph":"https://pith.science/api/pith-number/UERTGWQBVPFJUSDMZWGQDAFFSN/graph.json","fetch_events":"https://pith.science/api/pith-number/UERTGWQBVPFJUSDMZWGQDAFFSN/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/UERTGWQBVPFJUSDMZWGQDAFFSN/action/timestamp_anchor","attest_storage":"https://pith.science/pith/UERTGWQBVPFJUSDMZWGQDAFFSN/action/storage_attestation","attest_author":"https://pith.science/pith/UERTGWQBVPFJUSDMZWGQDAFFSN/action/author_attestation","sign_citation":"https://pith.science/pith/UERTGWQBVPFJUSDMZWGQDAFFSN/action/citation_signature","submit_replication":"https://pith.science/pith/UERTGWQBVPFJUSDMZWGQDAFFSN/action/replication_record"}},"created_at":"2026-07-05T11:36:01.604836+00:00","updated_at":"2026-07-05T11:36:01.604836+00:00"}