{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2016:WDJ6L3MQFQGGLSLNOWT74DZIUO","short_pith_number":"pith:WDJ6L3MQ","canonical_record":{"source":{"id":"1612.07767","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2016-12-22T19:45:31Z","cross_cats_sorted":[],"title_canon_sha256":"ab9aceb6e23fecc15d47d44d0dd462db749291143c99b9f32d28b5c1b63a1b79","abstract_canon_sha256":"88ba216178fb4e90107250836820bffb6ba702690521000070c697577939a068"},"schema_version":"1.0"},"canonical_sha256":"b0d3e5ed902c0c65c96d75a7fe0f28a3887c40a0e2ab1593283c09b915e03de9","source":{"kind":"arxiv","id":"1612.07767","version":2},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1612.07767","created_at":"2026-05-18T00:31:56Z"},{"alias_kind":"arxiv_version","alias_value":"1612.07767v2","created_at":"2026-05-18T00:31:56Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1612.07767","created_at":"2026-05-18T00:31:56Z"},{"alias_kind":"pith_short_12","alias_value":"WDJ6L3MQFQGG","created_at":"2026-05-18T12:30:48Z"},{"alias_kind":"pith_short_16","alias_value":"WDJ6L3MQFQGGLSLN","created_at":"2026-05-18T12:30:48Z"},{"alias_kind":"pith_short_8","alias_value":"WDJ6L3MQ","created_at":"2026-05-18T12:30:48Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2016:WDJ6L3MQFQGGLSLNOWT74DZIUO","target":"record","payload":{"canonical_record":{"source":{"id":"1612.07767","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2016-12-22T19:45:31Z","cross_cats_sorted":[],"title_canon_sha256":"ab9aceb6e23fecc15d47d44d0dd462db749291143c99b9f32d28b5c1b63a1b79","abstract_canon_sha256":"88ba216178fb4e90107250836820bffb6ba702690521000070c697577939a068"},"schema_version":"1.0"},"canonical_sha256":"b0d3e5ed902c0c65c96d75a7fe0f28a3887c40a0e2ab1593283c09b915e03de9","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-18T00:31:56.036041Z","signature_b64":"NLGp5RKupjMUSEsbE1uZsfHlzXiri1lc3crxgVPOuW3DE18PAqzIJeu8wyiCwGJQ8F0nVhh3veCCx+wM2B9rBw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"b0d3e5ed902c0c65c96d75a7fe0f28a3887c40a0e2ab1593283c09b915e03de9","last_reissued_at":"2026-05-18T00:31:56.035656Z","signature_status":"signed_v1","first_computed_at":"2026-05-18T00:31:56.035656Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1612.07767","source_version":2,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:31:56Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"/34YiodoFku3+VApkIbO0hccBmEa+NqioiOdnCEPcse84o9GNMHHXEc18mvzYwCbFZiLvqbv3uxDfpVVwXw0Dg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-09T09:26:28.654752Z"},"content_sha256":"68f02dbd7e28f72b61735ea8320655a57b97cf3951babd4bb78343961bdd9a0c","schema_version":"1.0","event_id":"sha256:68f02dbd7e28f72b61735ea8320655a57b97cf3951babd4bb78343961bdd9a0c"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2016:WDJ6L3MQFQGGLSLNOWT74DZIUO","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Adversarial Examples Detection in Deep Networks with Convolutional Filter Statistics","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.CV","authors_text":"Fuxin Li, Xin Li","submitted_at":"2016-12-22T19:45:31Z","abstract_excerpt":"Deep learning has greatly improved visual recognition in recent years. However, recent research has shown that there exist many adversarial examples that can negatively impact the performance of such an architecture. This paper focuses on detecting those adversarial examples by analyzing whether they come from the same distribution as the normal examples. Instead of directly training a deep neural network to detect adversarials, a much simpler approach was proposed based on statistics on outputs from convolutional layers. A cascade classifier was designed to efficiently detect adversarials. Fu"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1612.07767","kind":"arxiv","version":2},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:31:56Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"iItR8yoFMO96sxZhe7ZcQi9hwUdE6uYqR/oEMBFWDQhb5cB3DYLSp3JXqKqWzHR4Lf1sIlawX0CdKtw972WDAw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-09T09:26:28.655459Z"},"content_sha256":"cc964754ee902263feaad278d936ac8c790b8a0585a2b9b0e33b96ada04d0195","schema_version":"1.0","event_id":"sha256:cc964754ee902263feaad278d936ac8c790b8a0585a2b9b0e33b96ada04d0195"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/WDJ6L3MQFQGGLSLNOWT74DZIUO/bundle.json","state_url":"https://pith.science/pith/WDJ6L3MQFQGGLSLNOWT74DZIUO/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/WDJ6L3MQFQGGLSLNOWT74DZIUO/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-09T09:26:28Z","links":{"resolver":"https://pith.science/pith/WDJ6L3MQFQGGLSLNOWT74DZIUO","bundle":"https://pith.science/pith/WDJ6L3MQFQGGLSLNOWT74DZIUO/bundle.json","state":"https://pith.science/pith/WDJ6L3MQFQGGLSLNOWT74DZIUO/state.json","well_known_bundle":"https://pith.science/.well-known/pith/WDJ6L3MQFQGGLSLNOWT74DZIUO/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2016:WDJ6L3MQFQGGLSLNOWT74DZIUO","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"88ba216178fb4e90107250836820bffb6ba702690521000070c697577939a068","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2016-12-22T19:45:31Z","title_canon_sha256":"ab9aceb6e23fecc15d47d44d0dd462db749291143c99b9f32d28b5c1b63a1b79"},"schema_version":"1.0","source":{"id":"1612.07767","kind":"arxiv","version":2}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1612.07767","created_at":"2026-05-18T00:31:56Z"},{"alias_kind":"arxiv_version","alias_value":"1612.07767v2","created_at":"2026-05-18T00:31:56Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1612.07767","created_at":"2026-05-18T00:31:56Z"},{"alias_kind":"pith_short_12","alias_value":"WDJ6L3MQFQGG","created_at":"2026-05-18T12:30:48Z"},{"alias_kind":"pith_short_16","alias_value":"WDJ6L3MQFQGGLSLN","created_at":"2026-05-18T12:30:48Z"},{"alias_kind":"pith_short_8","alias_value":"WDJ6L3MQ","created_at":"2026-05-18T12:30:48Z"}],"graph_snapshots":[{"event_id":"sha256:cc964754ee902263feaad278d936ac8c790b8a0585a2b9b0e33b96ada04d0195","target":"graph","created_at":"2026-05-18T00:31:56Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Deep learning has greatly improved visual recognition in recent years. However, recent research has shown that there exist many adversarial examples that can negatively impact the performance of such an architecture. This paper focuses on detecting those adversarial examples by analyzing whether they come from the same distribution as the normal examples. Instead of directly training a deep neural network to detect adversarials, a much simpler approach was proposed based on statistics on outputs from convolutional layers. A cascade classifier was designed to efficiently detect adversarials. Fu","authors_text":"Fuxin Li, Xin Li","cross_cats":[],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2016-12-22T19:45:31Z","title":"Adversarial Examples Detection in Deep Networks with Convolutional Filter Statistics"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1612.07767","kind":"arxiv","version":2},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:68f02dbd7e28f72b61735ea8320655a57b97cf3951babd4bb78343961bdd9a0c","target":"record","created_at":"2026-05-18T00:31:56Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"88ba216178fb4e90107250836820bffb6ba702690521000070c697577939a068","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2016-12-22T19:45:31Z","title_canon_sha256":"ab9aceb6e23fecc15d47d44d0dd462db749291143c99b9f32d28b5c1b63a1b79"},"schema_version":"1.0","source":{"id":"1612.07767","kind":"arxiv","version":2}},"canonical_sha256":"b0d3e5ed902c0c65c96d75a7fe0f28a3887c40a0e2ab1593283c09b915e03de9","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"b0d3e5ed902c0c65c96d75a7fe0f28a3887c40a0e2ab1593283c09b915e03de9","first_computed_at":"2026-05-18T00:31:56.035656Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-18T00:31:56.035656Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"NLGp5RKupjMUSEsbE1uZsfHlzXiri1lc3crxgVPOuW3DE18PAqzIJeu8wyiCwGJQ8F0nVhh3veCCx+wM2B9rBw==","signature_status":"signed_v1","signed_at":"2026-05-18T00:31:56.036041Z","signed_message":"canonical_sha256_bytes"},"source_id":"1612.07767","source_kind":"arxiv","source_version":2}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:68f02dbd7e28f72b61735ea8320655a57b97cf3951babd4bb78343961bdd9a0c","sha256:cc964754ee902263feaad278d936ac8c790b8a0585a2b9b0e33b96ada04d0195"],"state_sha256":"ab2ec7bb83b28590d81c9a6e949914c4cdfd2a2f36e18965e8060abd2e778953"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"dCGq4W25/cj32Cqwl5lRkrChHadMnXRO+2ct4XcRBM3qTFMtOv3rAAk5wkRHkClWt3+/eUIotk/zMaF0ZZr2AQ==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-09T09:26:28.659362Z","bundle_sha256":"1c165000bdfda3fa04ded87603ca2386f78ec2745318bfc590e23c8b38201e09"}}