{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2025:UT6AIYYDH4FLV636OVSYLNNHRW","short_pith_number":"pith:UT6AIYYD","schema_version":"1.0","canonical_sha256":"a4fc0463033f0abafb7e756585b5a78db29c6b172b66891736bf828417be0d13","source":{"kind":"arxiv","id":"2511.17688","version":2},"attestation_state":"computed","paper":{"title":"Enhancing Adversarial Transferability through Block Stretch and Shrink","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":["cs.AI"],"primary_cat":"cs.LG","authors_text":"Chenhao Lu, Feng Ye, Guanliang Huang, Lunzhe Chen, Quan Liu, Shuming Zhen, Xudong Ke","submitted_at":"2025-11-21T14:00:01Z","abstract_excerpt":"Input transformation-based attacks improve adversarial transferability by aggregating gradients over transformed inputs. Existing analyses mainly explain their efficacy from image diversity, semantic preservation, attention variance or hypothesis space augmentation, yet overlook the critical role of model frontend responses.\n  In this paper, we revisit transformation-based attacks from an implicit ensemble perspective: each transformation can be viewed as a pre-processing operator before the surrogate model, inducing a distinct frontend response for gradient aggregation. Based on this view, we"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2511.17688","kind":"arxiv","version":2},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2025-11-21T14:00:01Z","cross_cats_sorted":["cs.AI"],"title_canon_sha256":"2a64eccbb2185f1280bb2b3b9d9f3fd064fe2ee0064a023ae98f682b30d61803","abstract_canon_sha256":"ceb07f6ad22637d67059d2afbf9762fed363cabfa0b3cd8d2c2a2cf2ca125b85"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-14T01:22:02.317400Z","signature_b64":"p/PfVDNWLB1vKIEZTEnMCManx7i3gKluyMxk6nswzEZGaDnsMPibhpi9WhrdHIYrpQjfJDF5ATePA69utXo2CA==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"a4fc0463033f0abafb7e756585b5a78db29c6b172b66891736bf828417be0d13","last_reissued_at":"2026-07-14T01:22:02.316415Z","signature_status":"signed_v1","first_computed_at":"2026-07-14T01:22:02.316415Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"Enhancing Adversarial Transferability through Block Stretch and Shrink","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":["cs.AI"],"primary_cat":"cs.LG","authors_text":"Chenhao Lu, Feng Ye, Guanliang Huang, Lunzhe Chen, Quan Liu, Shuming Zhen, Xudong Ke","submitted_at":"2025-11-21T14:00:01Z","abstract_excerpt":"Input transformation-based attacks improve adversarial transferability by aggregating gradients over transformed inputs. Existing analyses mainly explain their efficacy from image diversity, semantic preservation, attention variance or hypothesis space augmentation, yet overlook the critical role of model frontend responses.\n  In this paper, we revisit transformation-based attacks from an implicit ensemble perspective: each transformation can be viewed as a pre-processing operator before the surrogate model, inducing a distinct frontend response for gradient aggregation. Based on this view, we"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2511.17688","kind":"arxiv","version":2},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2511.17688/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2511.17688","created_at":"2026-07-14T01:22:02.316896+00:00"},{"alias_kind":"arxiv_version","alias_value":"2511.17688v2","created_at":"2026-07-14T01:22:02.316896+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2511.17688","created_at":"2026-07-14T01:22:02.316896+00:00"},{"alias_kind":"pith_short_12","alias_value":"UT6AIYYDH4FL","created_at":"2026-07-14T01:22:02.316896+00:00"},{"alias_kind":"pith_short_16","alias_value":"UT6AIYYDH4FLV636","created_at":"2026-07-14T01:22:02.316896+00:00"},{"alias_kind":"pith_short_8","alias_value":"UT6AIYYD","created_at":"2026-07-14T01:22:02.316896+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":0,"internal_anchor_count":0,"sample":[]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/UT6AIYYDH4FLV636OVSYLNNHRW","json":"https://pith.science/pith/UT6AIYYDH4FLV636OVSYLNNHRW.json","graph_json":"https://pith.science/api/pith-number/UT6AIYYDH4FLV636OVSYLNNHRW/graph.json","events_json":"https://pith.science/api/pith-number/UT6AIYYDH4FLV636OVSYLNNHRW/events.json","paper":"https://pith.science/paper/UT6AIYYD"},"agent_actions":{"view_html":"https://pith.science/pith/UT6AIYYDH4FLV636OVSYLNNHRW","download_json":"https://pith.science/pith/UT6AIYYDH4FLV636OVSYLNNHRW.json","view_paper":"https://pith.science/paper/UT6AIYYD","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2511.17688&json=true","fetch_graph":"https://pith.science/api/pith-number/UT6AIYYDH4FLV636OVSYLNNHRW/graph.json","fetch_events":"https://pith.science/api/pith-number/UT6AIYYDH4FLV636OVSYLNNHRW/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/UT6AIYYDH4FLV636OVSYLNNHRW/action/timestamp_anchor","attest_storage":"https://pith.science/pith/UT6AIYYDH4FLV636OVSYLNNHRW/action/storage_attestation","attest_author":"https://pith.science/pith/UT6AIYYDH4FLV636OVSYLNNHRW/action/author_attestation","sign_citation":"https://pith.science/pith/UT6AIYYDH4FLV636OVSYLNNHRW/action/citation_signature","submit_replication":"https://pith.science/pith/UT6AIYYDH4FLV636OVSYLNNHRW/action/replication_record"}},"created_at":"2026-07-14T01:22:02.316896+00:00","updated_at":"2026-07-14T01:22:02.316896+00:00"}