{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2024:UPYINLDCO6IPCMF6LTGHXV3IOM","short_pith_number":"pith:UPYINLDC","schema_version":"1.0","canonical_sha256":"a3f086ac627790f130be5ccc7bd768732e4a04e9c584a81b91ab3b48da84d3e8","source":{"kind":"arxiv","id":"2401.16352","version":4},"attestation_state":"computed","paper":{"title":"Adversarial Training on Purification (AToP): Advancing Both Robustness and Generalization","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.AI"],"primary_cat":"cs.CV","authors_text":"Chao Li, Guang Lin, Jianhai Zhang, Qibin Zhao, Toshihisa Tanaka","submitted_at":"2024-01-29T17:56:42Z","abstract_excerpt":"The deep neural networks are known to be vulnerable to well-designed adversarial attacks. The most successful defense technique based on adversarial training (AT) can achieve optimal robustness against particular attacks but cannot generalize well to unseen attacks. Another effective defense technique based on adversarial purification (AP) can enhance generalization but cannot achieve optimal robustness. Meanwhile, both methods share one common limitation on the degraded standard accuracy. To mitigate these issues, we propose a novel pipeline to acquire the robust purifier model, named Adversa"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2401.16352","kind":"arxiv","version":4},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2024-01-29T17:56:42Z","cross_cats_sorted":["cs.AI"],"title_canon_sha256":"f4e30d2cee53b3db1757e0c9a4fb2c821635c0de1944422672441fa6e66c8ccc","abstract_canon_sha256":"18ea88d5a6ad62e6d417a76a5d371c066cb0e3063e0a82630ee1399fc277df6e"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T08:58:21.585163Z","signature_b64":"rjmKKND2jVttGRc57R47FHquzipgsLlskCyjamS3G357D3PJQSbdM7dUX2HacIDxKfUJaCaGnzwKZl2uyh9GAw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"a3f086ac627790f130be5ccc7bd768732e4a04e9c584a81b91ab3b48da84d3e8","last_reissued_at":"2026-07-05T08:58:21.584710Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T08:58:21.584710Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"Adversarial Training on Purification (AToP): Advancing Both Robustness and Generalization","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.AI"],"primary_cat":"cs.CV","authors_text":"Chao Li, Guang Lin, Jianhai Zhang, Qibin Zhao, Toshihisa Tanaka","submitted_at":"2024-01-29T17:56:42Z","abstract_excerpt":"The deep neural networks are known to be vulnerable to well-designed adversarial attacks. The most successful defense technique based on adversarial training (AT) can achieve optimal robustness against particular attacks but cannot generalize well to unseen attacks. Another effective defense technique based on adversarial purification (AP) can enhance generalization but cannot achieve optimal robustness. Meanwhile, both methods share one common limitation on the degraded standard accuracy. To mitigate these issues, we propose a novel pipeline to acquire the robust purifier model, named Adversa"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2401.16352","kind":"arxiv","version":4},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2401.16352/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2401.16352","created_at":"2026-07-05T08:58:21.584760+00:00"},{"alias_kind":"arxiv_version","alias_value":"2401.16352v4","created_at":"2026-07-05T08:58:21.584760+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2401.16352","created_at":"2026-07-05T08:58:21.584760+00:00"},{"alias_kind":"pith_short_12","alias_value":"UPYINLDCO6IP","created_at":"2026-07-05T08:58:21.584760+00:00"},{"alias_kind":"pith_short_16","alias_value":"UPYINLDCO6IPCMF6","created_at":"2026-07-05T08:58:21.584760+00:00"},{"alias_kind":"pith_short_8","alias_value":"UPYINLDC","created_at":"2026-07-05T08:58:21.584760+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":0,"internal_anchor_count":0,"sample":[]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/UPYINLDCO6IPCMF6LTGHXV3IOM","json":"https://pith.science/pith/UPYINLDCO6IPCMF6LTGHXV3IOM.json","graph_json":"https://pith.science/api/pith-number/UPYINLDCO6IPCMF6LTGHXV3IOM/graph.json","events_json":"https://pith.science/api/pith-number/UPYINLDCO6IPCMF6LTGHXV3IOM/events.json","paper":"https://pith.science/paper/UPYINLDC"},"agent_actions":{"view_html":"https://pith.science/pith/UPYINLDCO6IPCMF6LTGHXV3IOM","download_json":"https://pith.science/pith/UPYINLDCO6IPCMF6LTGHXV3IOM.json","view_paper":"https://pith.science/paper/UPYINLDC","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2401.16352&json=true","fetch_graph":"https://pith.science/api/pith-number/UPYINLDCO6IPCMF6LTGHXV3IOM/graph.json","fetch_events":"https://pith.science/api/pith-number/UPYINLDCO6IPCMF6LTGHXV3IOM/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/UPYINLDCO6IPCMF6LTGHXV3IOM/action/timestamp_anchor","attest_storage":"https://pith.science/pith/UPYINLDCO6IPCMF6LTGHXV3IOM/action/storage_attestation","attest_author":"https://pith.science/pith/UPYINLDCO6IPCMF6LTGHXV3IOM/action/author_attestation","sign_citation":"https://pith.science/pith/UPYINLDCO6IPCMF6LTGHXV3IOM/action/citation_signature","submit_replication":"https://pith.science/pith/UPYINLDCO6IPCMF6LTGHXV3IOM/action/replication_record"}},"created_at":"2026-07-05T08:58:21.584760+00:00","updated_at":"2026-07-05T08:58:21.584760+00:00"}