{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2025:VU7623X5TDF7HO2XVN5ILJGNM2","short_pith_number":"pith:VU7623X5","schema_version":"1.0","canonical_sha256":"ad3fed6efd98cbf3bb57ab7a85a4cd66a54a34bd7e0d4251f661de25eb082c18","source":{"kind":"arxiv","id":"2503.15404","version":1},"attestation_state":"computed","paper":{"title":"Improving Adversarial Transferability on Vision Transformers via Forward Propagation Refinement","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.CR"],"primary_cat":"cs.CV","authors_text":"Bo Yang, Chao Shen, Chenhao Lin, Lu Zhou, Yuchen Ren, Zhe Liu, Zhengyu Zhao","submitted_at":"2025-03-19T16:44:23Z","abstract_excerpt":"Vision Transformers (ViTs) have been widely applied in various computer vision and vision-language tasks. To gain insights into their robustness in practical scenarios, transferable adversarial examples on ViTs have been extensively studied. A typical approach to improving adversarial transferability is by refining the surrogate model. However, existing work on ViTs has restricted their surrogate refinement to backward propagation. In this work, we instead focus on Forward Propagation Refinement (FPR) and specifically refine two key modules of ViTs: attention maps and token embeddings. For att"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2503.15404","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2025-03-19T16:44:23Z","cross_cats_sorted":["cs.CR"],"title_canon_sha256":"6b4a4aa55f2c4cbdcb77a262ed14f97561e79b323f76f6e0bf751e478f9cf91a","abstract_canon_sha256":"b6c3e76cada2462ff4e521018b3f8feb67ed4d2d2beb07bf6d5a9edf04233e1f"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T10:35:25.622274Z","signature_b64":"8APUap1cqY1LAS/KEB9405scJVZfJEnoOW6qPOpNE1Apu6yLQ2xwlTKEpfyB+3NknztrW8SG8BdYrAv21DlXCA==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"ad3fed6efd98cbf3bb57ab7a85a4cd66a54a34bd7e0d4251f661de25eb082c18","last_reissued_at":"2026-07-05T10:35:25.621532Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T10:35:25.621532Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"Improving Adversarial Transferability on Vision Transformers via Forward Propagation Refinement","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.CR"],"primary_cat":"cs.CV","authors_text":"Bo Yang, Chao Shen, Chenhao Lin, Lu Zhou, Yuchen Ren, Zhe Liu, Zhengyu Zhao","submitted_at":"2025-03-19T16:44:23Z","abstract_excerpt":"Vision Transformers (ViTs) have been widely applied in various computer vision and vision-language tasks. To gain insights into their robustness in practical scenarios, transferable adversarial examples on ViTs have been extensively studied. A typical approach to improving adversarial transferability is by refining the surrogate model. However, existing work on ViTs has restricted their surrogate refinement to backward propagation. In this work, we instead focus on Forward Propagation Refinement (FPR) and specifically refine two key modules of ViTs: attention maps and token embeddings. For att"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2503.15404","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2503.15404/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2503.15404","created_at":"2026-07-05T10:35:25.621628+00:00"},{"alias_kind":"arxiv_version","alias_value":"2503.15404v1","created_at":"2026-07-05T10:35:25.621628+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2503.15404","created_at":"2026-07-05T10:35:25.621628+00:00"},{"alias_kind":"pith_short_12","alias_value":"VU7623X5TDF7","created_at":"2026-07-05T10:35:25.621628+00:00"},{"alias_kind":"pith_short_16","alias_value":"VU7623X5TDF7HO2X","created_at":"2026-07-05T10:35:25.621628+00:00"},{"alias_kind":"pith_short_8","alias_value":"VU7623X5","created_at":"2026-07-05T10:35:25.621628+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":1,"internal_anchor_count":1,"sample":[{"citing_arxiv_id":"2505.19613","citing_title":"TESSER: Transfer-Enhancing Adversarial Attacks from Vision Transformers via Spectral and Semantic Regularization","ref_index":33,"is_internal_anchor":true}]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/VU7623X5TDF7HO2XVN5ILJGNM2","json":"https://pith.science/pith/VU7623X5TDF7HO2XVN5ILJGNM2.json","graph_json":"https://pith.science/api/pith-number/VU7623X5TDF7HO2XVN5ILJGNM2/graph.json","events_json":"https://pith.science/api/pith-number/VU7623X5TDF7HO2XVN5ILJGNM2/events.json","paper":"https://pith.science/paper/VU7623X5"},"agent_actions":{"view_html":"https://pith.science/pith/VU7623X5TDF7HO2XVN5ILJGNM2","download_json":"https://pith.science/pith/VU7623X5TDF7HO2XVN5ILJGNM2.json","view_paper":"https://pith.science/paper/VU7623X5","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2503.15404&json=true","fetch_graph":"https://pith.science/api/pith-number/VU7623X5TDF7HO2XVN5ILJGNM2/graph.json","fetch_events":"https://pith.science/api/pith-number/VU7623X5TDF7HO2XVN5ILJGNM2/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/VU7623X5TDF7HO2XVN5ILJGNM2/action/timestamp_anchor","attest_storage":"https://pith.science/pith/VU7623X5TDF7HO2XVN5ILJGNM2/action/storage_attestation","attest_author":"https://pith.science/pith/VU7623X5TDF7HO2XVN5ILJGNM2/action/author_attestation","sign_citation":"https://pith.science/pith/VU7623X5TDF7HO2XVN5ILJGNM2/action/citation_signature","submit_replication":"https://pith.science/pith/VU7623X5TDF7HO2XVN5ILJGNM2/action/replication_record"}},"created_at":"2026-07-05T10:35:25.621628+00:00","updated_at":"2026-07-05T10:35:25.621628+00:00"}