{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2024:WGKBKIUBNCCVMLQY7PL4F6NKZO","short_pith_number":"pith:WGKBKIUB","schema_version":"1.0","canonical_sha256":"b1941522816885562e18fbd7c2f9aacb89064f776d63f14ce08638a6cc6b2a21","source":{"kind":"arxiv","id":"2409.15968","version":1},"attestation_state":"computed","paper":{"title":"Adversarial Backdoor Defense in CLIP","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.CV","authors_text":"Jiawei Liang, Junhao Kuang, Kuanrong Liu, Siyuan Liang, Xiaochun Cao","submitted_at":"2024-09-24T10:56:18Z","abstract_excerpt":"Multimodal contrastive pretraining, exemplified by models like CLIP, has been found to be vulnerable to backdoor attacks. While current backdoor defense methods primarily employ conventional data augmentation to create augmented samples aimed at feature alignment, these methods fail to capture the distinct features of backdoor samples, resulting in suboptimal defense performance. Observations reveal that adversarial examples and backdoor samples exhibit similarities in the feature space within the compromised models. Building on this insight, we propose Adversarial Backdoor Defense (ABD), a no"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2409.15968","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2024-09-24T10:56:18Z","cross_cats_sorted":[],"title_canon_sha256":"1306ace372ee4d7111fb3815dde898e0fbb04fd6c6f4b8aa917d185ce3d58bea","abstract_canon_sha256":"b7ca97c1302dab00e8c1c6e786c3e1c9ef6f03589b35772e76ef84c007ceaad6"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T09:11:03.018155Z","signature_b64":"MXrHIYmLPoriOtXXfAFwBqTlVmEMyj2Yav6sv+7q8hj9AZ7xmXUKyrQ/12Tty4Q43DHx6xv525zwpYEEcl9JAg==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"b1941522816885562e18fbd7c2f9aacb89064f776d63f14ce08638a6cc6b2a21","last_reissued_at":"2026-07-05T09:11:03.017660Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T09:11:03.017660Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"Adversarial Backdoor Defense in CLIP","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.CV","authors_text":"Jiawei Liang, Junhao Kuang, Kuanrong Liu, Siyuan Liang, Xiaochun Cao","submitted_at":"2024-09-24T10:56:18Z","abstract_excerpt":"Multimodal contrastive pretraining, exemplified by models like CLIP, has been found to be vulnerable to backdoor attacks. While current backdoor defense methods primarily employ conventional data augmentation to create augmented samples aimed at feature alignment, these methods fail to capture the distinct features of backdoor samples, resulting in suboptimal defense performance. Observations reveal that adversarial examples and backdoor samples exhibit similarities in the feature space within the compromised models. Building on this insight, we propose Adversarial Backdoor Defense (ABD), a no"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2409.15968","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2409.15968/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2409.15968","created_at":"2026-07-05T09:11:03.017726+00:00"},{"alias_kind":"arxiv_version","alias_value":"2409.15968v1","created_at":"2026-07-05T09:11:03.017726+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2409.15968","created_at":"2026-07-05T09:11:03.017726+00:00"},{"alias_kind":"pith_short_12","alias_value":"WGKBKIUBNCCV","created_at":"2026-07-05T09:11:03.017726+00:00"},{"alias_kind":"pith_short_16","alias_value":"WGKBKIUBNCCVMLQY","created_at":"2026-07-05T09:11:03.017726+00:00"},{"alias_kind":"pith_short_8","alias_value":"WGKBKIUB","created_at":"2026-07-05T09:11:03.017726+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":3,"internal_anchor_count":0,"sample":[{"citing_arxiv_id":"2412.00727","citing_title":"Perturb and Recover: Fine-tuning for Effective Backdoor Removal from CLIP","ref_index":25,"is_internal_anchor":false},{"citing_arxiv_id":"2605.22365","citing_title":"TimeGuard: Channel-wise Pool Training for Backdoor Defense in Time Series Forecasting","ref_index":120,"is_internal_anchor":false},{"citing_arxiv_id":"2604.04488","citing_title":"A Patch-based Cross-view Regularized Framework for Backdoor Defense in Multimodal Large Language Models","ref_index":48,"is_internal_anchor":false}]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/WGKBKIUBNCCVMLQY7PL4F6NKZO","json":"https://pith.science/pith/WGKBKIUBNCCVMLQY7PL4F6NKZO.json","graph_json":"https://pith.science/api/pith-number/WGKBKIUBNCCVMLQY7PL4F6NKZO/graph.json","events_json":"https://pith.science/api/pith-number/WGKBKIUBNCCVMLQY7PL4F6NKZO/events.json","paper":"https://pith.science/paper/WGKBKIUB"},"agent_actions":{"view_html":"https://pith.science/pith/WGKBKIUBNCCVMLQY7PL4F6NKZO","download_json":"https://pith.science/pith/WGKBKIUBNCCVMLQY7PL4F6NKZO.json","view_paper":"https://pith.science/paper/WGKBKIUB","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2409.15968&json=true","fetch_graph":"https://pith.science/api/pith-number/WGKBKIUBNCCVMLQY7PL4F6NKZO/graph.json","fetch_events":"https://pith.science/api/pith-number/WGKBKIUBNCCVMLQY7PL4F6NKZO/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/WGKBKIUBNCCVMLQY7PL4F6NKZO/action/timestamp_anchor","attest_storage":"https://pith.science/pith/WGKBKIUBNCCVMLQY7PL4F6NKZO/action/storage_attestation","attest_author":"https://pith.science/pith/WGKBKIUBNCCVMLQY7PL4F6NKZO/action/author_attestation","sign_citation":"https://pith.science/pith/WGKBKIUBNCCVMLQY7PL4F6NKZO/action/citation_signature","submit_replication":"https://pith.science/pith/WGKBKIUBNCCVMLQY7PL4F6NKZO/action/replication_record"}},"created_at":"2026-07-05T09:11:03.017726+00:00","updated_at":"2026-07-05T09:11:03.017726+00:00"}