{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2018:UZPY5KCQWKS5Z3GY26DH67TJNN","short_pith_number":"pith:UZPY5KCQ","canonical_record":{"source":{"id":"1801.02850","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-01-09T09:36:56Z","cross_cats_sorted":["cs.LG","stat.ML"],"title_canon_sha256":"56e30b53b569a28c7706403bf6d9a0f1a4ecdcfc14fbfc6435b345cb94cb174a","abstract_canon_sha256":"305222c3b06c5190c90e9177417bbf3aa47c587fe34d84168ca3ab54fc45603a"},"schema_version":"1.0"},"canonical_sha256":"a65f8ea850b2a5dcecd8d7867f7e696b59134999cf65491267eda40cb85a224f","source":{"kind":"arxiv","id":"1801.02850","version":2},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1801.02850","created_at":"2026-05-17T23:58:48Z"},{"alias_kind":"arxiv_version","alias_value":"1801.02850v2","created_at":"2026-05-17T23:58:48Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1801.02850","created_at":"2026-05-17T23:58:48Z"},{"alias_kind":"pith_short_12","alias_value":"UZPY5KCQWKS5","created_at":"2026-05-18T12:32:56Z"},{"alias_kind":"pith_short_16","alias_value":"UZPY5KCQWKS5Z3GY","created_at":"2026-05-18T12:32:56Z"},{"alias_kind":"pith_short_8","alias_value":"UZPY5KCQ","created_at":"2026-05-18T12:32:56Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2018:UZPY5KCQWKS5Z3GY26DH67TJNN","target":"record","payload":{"canonical_record":{"source":{"id":"1801.02850","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-01-09T09:36:56Z","cross_cats_sorted":["cs.LG","stat.ML"],"title_canon_sha256":"56e30b53b569a28c7706403bf6d9a0f1a4ecdcfc14fbfc6435b345cb94cb174a","abstract_canon_sha256":"305222c3b06c5190c90e9177417bbf3aa47c587fe34d84168ca3ab54fc45603a"},"schema_version":"1.0"},"canonical_sha256":"a65f8ea850b2a5dcecd8d7867f7e696b59134999cf65491267eda40cb85a224f","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:58:48.362722Z","signature_b64":"1+eBzP1bh7EQa3flGOGGsmMcLJWqFisAyY0uahfQCVq0fbbGJfR15/WY0TPKqN27KToq0DUtmdyCWCIjSRtnDQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"a65f8ea850b2a5dcecd8d7867f7e696b59134999cf65491267eda40cb85a224f","last_reissued_at":"2026-05-17T23:58:48.362224Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:58:48.362224Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1801.02850","source_version":2,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:58:48Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"6U2+Ev9FvLg+O0UeyuiFX8xG3j76/WW7EDSRbbKyvMPgIY2ejBMDMNLm2gVCLrHy7nwbdXssGOI1VQOobNwSCQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-02T21:05:30.712181Z"},"content_sha256":"68a4287e8ce98bd4f7fa3d396e351f3761b6931b1b1984f81c6dd480914a0c5b","schema_version":"1.0","event_id":"sha256:68a4287e8ce98bd4f7fa3d396e351f3761b6931b1b1984f81c6dd480914a0c5b"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2018:UZPY5KCQWKS5Z3GY26DH67TJNN","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Less is More: Culling the Training Set to Improve Robustness of Deep Neural Networks","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.LG","stat.ML"],"primary_cat":"cs.CR","authors_text":"Hao Chen, Jiyu Chen, Yongshuai Liu","submitted_at":"2018-01-09T09:36:56Z","abstract_excerpt":"Deep neural networks are vulnerable to adversarial examples. Prior defenses attempted to make deep networks more robust by either changing the network architecture or augmenting the training set with adversarial examples, but both have inherent limitations. Motivated by recent research that shows outliers in the training set have a high negative influence on the trained model, we studied the relationship between model robustness and the quality of the training set. We first show that outliers give the model better generalization ability but weaker robustness. Next, we propose an adversarial ex"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1801.02850","kind":"arxiv","version":2},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:58:48Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"EYcF2nGZmCVZttWPvdiPpbvk8jDCGxKTaz+wV7dMzRdoCeiJewe7i31rhwCyli1cHVjBmTz7vPd64AQrsNTnDg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-02T21:05:30.712898Z"},"content_sha256":"58d67ada1a14827a591fda346339c4a5942aa87f1bb4b4e49d3b3a07ab92c14c","schema_version":"1.0","event_id":"sha256:58d67ada1a14827a591fda346339c4a5942aa87f1bb4b4e49d3b3a07ab92c14c"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/UZPY5KCQWKS5Z3GY26DH67TJNN/bundle.json","state_url":"https://pith.science/pith/UZPY5KCQWKS5Z3GY26DH67TJNN/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/UZPY5KCQWKS5Z3GY26DH67TJNN/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-02T21:05:30Z","links":{"resolver":"https://pith.science/pith/UZPY5KCQWKS5Z3GY26DH67TJNN","bundle":"https://pith.science/pith/UZPY5KCQWKS5Z3GY26DH67TJNN/bundle.json","state":"https://pith.science/pith/UZPY5KCQWKS5Z3GY26DH67TJNN/state.json","well_known_bundle":"https://pith.science/.well-known/pith/UZPY5KCQWKS5Z3GY26DH67TJNN/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2018:UZPY5KCQWKS5Z3GY26DH67TJNN","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"305222c3b06c5190c90e9177417bbf3aa47c587fe34d84168ca3ab54fc45603a","cross_cats_sorted":["cs.LG","stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-01-09T09:36:56Z","title_canon_sha256":"56e30b53b569a28c7706403bf6d9a0f1a4ecdcfc14fbfc6435b345cb94cb174a"},"schema_version":"1.0","source":{"id":"1801.02850","kind":"arxiv","version":2}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1801.02850","created_at":"2026-05-17T23:58:48Z"},{"alias_kind":"arxiv_version","alias_value":"1801.02850v2","created_at":"2026-05-17T23:58:48Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1801.02850","created_at":"2026-05-17T23:58:48Z"},{"alias_kind":"pith_short_12","alias_value":"UZPY5KCQWKS5","created_at":"2026-05-18T12:32:56Z"},{"alias_kind":"pith_short_16","alias_value":"UZPY5KCQWKS5Z3GY","created_at":"2026-05-18T12:32:56Z"},{"alias_kind":"pith_short_8","alias_value":"UZPY5KCQ","created_at":"2026-05-18T12:32:56Z"}],"graph_snapshots":[{"event_id":"sha256:58d67ada1a14827a591fda346339c4a5942aa87f1bb4b4e49d3b3a07ab92c14c","target":"graph","created_at":"2026-05-17T23:58:48Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Deep neural networks are vulnerable to adversarial examples. Prior defenses attempted to make deep networks more robust by either changing the network architecture or augmenting the training set with adversarial examples, but both have inherent limitations. Motivated by recent research that shows outliers in the training set have a high negative influence on the trained model, we studied the relationship between model robustness and the quality of the training set. We first show that outliers give the model better generalization ability but weaker robustness. Next, we propose an adversarial ex","authors_text":"Hao Chen, Jiyu Chen, Yongshuai Liu","cross_cats":["cs.LG","stat.ML"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-01-09T09:36:56Z","title":"Less is More: Culling the Training Set to Improve Robustness of Deep Neural Networks"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1801.02850","kind":"arxiv","version":2},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:68a4287e8ce98bd4f7fa3d396e351f3761b6931b1b1984f81c6dd480914a0c5b","target":"record","created_at":"2026-05-17T23:58:48Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"305222c3b06c5190c90e9177417bbf3aa47c587fe34d84168ca3ab54fc45603a","cross_cats_sorted":["cs.LG","stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-01-09T09:36:56Z","title_canon_sha256":"56e30b53b569a28c7706403bf6d9a0f1a4ecdcfc14fbfc6435b345cb94cb174a"},"schema_version":"1.0","source":{"id":"1801.02850","kind":"arxiv","version":2}},"canonical_sha256":"a65f8ea850b2a5dcecd8d7867f7e696b59134999cf65491267eda40cb85a224f","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"a65f8ea850b2a5dcecd8d7867f7e696b59134999cf65491267eda40cb85a224f","first_computed_at":"2026-05-17T23:58:48.362224Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-17T23:58:48.362224Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"1+eBzP1bh7EQa3flGOGGsmMcLJWqFisAyY0uahfQCVq0fbbGJfR15/WY0TPKqN27KToq0DUtmdyCWCIjSRtnDQ==","signature_status":"signed_v1","signed_at":"2026-05-17T23:58:48.362722Z","signed_message":"canonical_sha256_bytes"},"source_id":"1801.02850","source_kind":"arxiv","source_version":2}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:68a4287e8ce98bd4f7fa3d396e351f3761b6931b1b1984f81c6dd480914a0c5b","sha256:58d67ada1a14827a591fda346339c4a5942aa87f1bb4b4e49d3b3a07ab92c14c"],"state_sha256":"d5f424503555c69c0e1fe70bb061ad347065b8a0ef4929690127b570bbcce5ab"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"u47YCDise4JYWd8ZrgqnZslIfi045Gsoei3SCIg5uUVuJV1G1+7BYjbtY4bxFjSjFmavT+If2AUTCavvdJOODw==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-02T21:05:30.717058Z","bundle_sha256":"236fb2e0b1dfaea2c609a98e0a79de2901e0fdaa59a685c90bcb6b1869eca8f2"}}