{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2022:WKJBMHO7RQLLX7NVPR4D5P3N42","short_pith_number":"pith:WKJBMHO7","canonical_record":{"source":{"id":"2206.01367","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2022-06-03T02:26:24Z","cross_cats_sorted":["cs.CR"],"title_canon_sha256":"c2e0b731f20b2bbb69a11bca8ea569ab4d3d7aee3d8bc249439977f4640a3d26","abstract_canon_sha256":"436c88971e54be5ed3e9760957f810b31bb6acc6341dae5b92f42e9b4cebb157"},"schema_version":"1.0"},"canonical_sha256":"b292161ddf8c16bbfdb57c783ebf6de6b96b105467b76f481300ed245d84a95f","source":{"kind":"arxiv","id":"2206.01367","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2206.01367","created_at":"2026-07-05T04:28:46Z"},{"alias_kind":"arxiv_version","alias_value":"2206.01367v1","created_at":"2026-07-05T04:28:46Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2206.01367","created_at":"2026-07-05T04:28:46Z"},{"alias_kind":"pith_short_12","alias_value":"WKJBMHO7RQLL","created_at":"2026-07-05T04:28:46Z"},{"alias_kind":"pith_short_16","alias_value":"WKJBMHO7RQLLX7NV","created_at":"2026-07-05T04:28:46Z"},{"alias_kind":"pith_short_8","alias_value":"WKJBMHO7","created_at":"2026-07-05T04:28:46Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2022:WKJBMHO7RQLLX7NVPR4D5P3N42","target":"record","payload":{"canonical_record":{"source":{"id":"2206.01367","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2022-06-03T02:26:24Z","cross_cats_sorted":["cs.CR"],"title_canon_sha256":"c2e0b731f20b2bbb69a11bca8ea569ab4d3d7aee3d8bc249439977f4640a3d26","abstract_canon_sha256":"436c88971e54be5ed3e9760957f810b31bb6acc6341dae5b92f42e9b4cebb157"},"schema_version":"1.0"},"canonical_sha256":"b292161ddf8c16bbfdb57c783ebf6de6b96b105467b76f481300ed245d84a95f","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T04:28:46.907920Z","signature_b64":"RRtErAbR9OeC24fgrlZ86T3lHf6p2P7mjevSp78SJGMjQFE2NzQ7iBtZBNNt1q01+mkE74BOpCX9EJppJnXEAw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"b292161ddf8c16bbfdb57c783ebf6de6b96b105467b76f481300ed245d84a95f","last_reissued_at":"2026-07-05T04:28:46.907414Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T04:28:46.907414Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"2206.01367","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-07-05T04:28:46Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"7tx67/or3Fa20oLSt5atg9xp3xBQVnAz773ZuCL1m4g09szG090SKRNlU3IQl3Y4559XwXnjspoEyeJrrzvEDg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-08-01T08:28:21.092110Z"},"content_sha256":"e70285c0cd8bbd74788c2e103004812c049d01bd961ca03692008046b3d7d432","schema_version":"1.0","event_id":"sha256:e70285c0cd8bbd74788c2e103004812c049d01bd961ca03692008046b3d7d432"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2022:WKJBMHO7RQLLX7NVPR4D5P3N42","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Adversarial Unlearning: Reducing Confidence Along Adversarial Directions","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":["cs.CR"],"primary_cat":"cs.LG","authors_text":"Amrith Setlur, Benjamin Eysenbach, Sergey Levine, Virginia Smith","submitted_at":"2022-06-03T02:26:24Z","abstract_excerpt":"Supervised learning methods trained with maximum likelihood objectives often overfit on training data. Most regularizers that prevent overfitting look to increase confidence on additional examples (e.g., data augmentation, adversarial training), or reduce it on training data (e.g., label smoothing). In this work we propose a complementary regularization strategy that reduces confidence on self-generated examples. The method, which we call RCAD (Reducing Confidence along Adversarial Directions), aims to reduce confidence on out-of-distribution examples lying along directions adversarially chose"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2206.01367","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2206.01367/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-07-05T04:28:46Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"zB9QhRKkeJnlm0HVCPcSjOtAn05eakMFQOVDlwdkYo1yr6Di33/bA6mxRag8sBTi2ow1T1TrGGyBvq1brdSFAQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-08-01T08:28:21.094070Z"},"content_sha256":"d74a1c7a975f5785795067a60817069c89fcbdcad78e862c34d1384e67dd68a6","schema_version":"1.0","event_id":"sha256:d74a1c7a975f5785795067a60817069c89fcbdcad78e862c34d1384e67dd68a6"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/WKJBMHO7RQLLX7NVPR4D5P3N42/bundle.json","state_url":"https://pith.science/pith/WKJBMHO7RQLLX7NVPR4D5P3N42/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/WKJBMHO7RQLLX7NVPR4D5P3N42/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-08-01T08:28:21Z","links":{"resolver":"https://pith.science/pith/WKJBMHO7RQLLX7NVPR4D5P3N42","bundle":"https://pith.science/pith/WKJBMHO7RQLLX7NVPR4D5P3N42/bundle.json","state":"https://pith.science/pith/WKJBMHO7RQLLX7NVPR4D5P3N42/state.json","well_known_bundle":"https://pith.science/.well-known/pith/WKJBMHO7RQLLX7NVPR4D5P3N42/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2022:WKJBMHO7RQLLX7NVPR4D5P3N42","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"436c88971e54be5ed3e9760957f810b31bb6acc6341dae5b92f42e9b4cebb157","cross_cats_sorted":["cs.CR"],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2022-06-03T02:26:24Z","title_canon_sha256":"c2e0b731f20b2bbb69a11bca8ea569ab4d3d7aee3d8bc249439977f4640a3d26"},"schema_version":"1.0","source":{"id":"2206.01367","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2206.01367","created_at":"2026-07-05T04:28:46Z"},{"alias_kind":"arxiv_version","alias_value":"2206.01367v1","created_at":"2026-07-05T04:28:46Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2206.01367","created_at":"2026-07-05T04:28:46Z"},{"alias_kind":"pith_short_12","alias_value":"WKJBMHO7RQLL","created_at":"2026-07-05T04:28:46Z"},{"alias_kind":"pith_short_16","alias_value":"WKJBMHO7RQLLX7NV","created_at":"2026-07-05T04:28:46Z"},{"alias_kind":"pith_short_8","alias_value":"WKJBMHO7","created_at":"2026-07-05T04:28:46Z"}],"graph_snapshots":[{"event_id":"sha256:d74a1c7a975f5785795067a60817069c89fcbdcad78e862c34d1384e67dd68a6","target":"graph","created_at":"2026-07-05T04:28:46Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/2206.01367/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"Supervised learning methods trained with maximum likelihood objectives often overfit on training data. Most regularizers that prevent overfitting look to increase confidence on additional examples (e.g., data augmentation, adversarial training), or reduce it on training data (e.g., label smoothing). In this work we propose a complementary regularization strategy that reduces confidence on self-generated examples. The method, which we call RCAD (Reducing Confidence along Adversarial Directions), aims to reduce confidence on out-of-distribution examples lying along directions adversarially chose","authors_text":"Amrith Setlur, Benjamin Eysenbach, Sergey Levine, Virginia Smith","cross_cats":["cs.CR"],"headline":"","license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2022-06-03T02:26:24Z","title":"Adversarial Unlearning: Reducing Confidence Along Adversarial Directions"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2206.01367","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:e70285c0cd8bbd74788c2e103004812c049d01bd961ca03692008046b3d7d432","target":"record","created_at":"2026-07-05T04:28:46Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"436c88971e54be5ed3e9760957f810b31bb6acc6341dae5b92f42e9b4cebb157","cross_cats_sorted":["cs.CR"],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2022-06-03T02:26:24Z","title_canon_sha256":"c2e0b731f20b2bbb69a11bca8ea569ab4d3d7aee3d8bc249439977f4640a3d26"},"schema_version":"1.0","source":{"id":"2206.01367","kind":"arxiv","version":1}},"canonical_sha256":"b292161ddf8c16bbfdb57c783ebf6de6b96b105467b76f481300ed245d84a95f","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"b292161ddf8c16bbfdb57c783ebf6de6b96b105467b76f481300ed245d84a95f","first_computed_at":"2026-07-05T04:28:46.907414Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-07-05T04:28:46.907414Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"RRtErAbR9OeC24fgrlZ86T3lHf6p2P7mjevSp78SJGMjQFE2NzQ7iBtZBNNt1q01+mkE74BOpCX9EJppJnXEAw==","signature_status":"signed_v1","signed_at":"2026-07-05T04:28:46.907920Z","signed_message":"canonical_sha256_bytes"},"source_id":"2206.01367","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:e70285c0cd8bbd74788c2e103004812c049d01bd961ca03692008046b3d7d432","sha256:d74a1c7a975f5785795067a60817069c89fcbdcad78e862c34d1384e67dd68a6"],"state_sha256":"ed1c89b222d4906ac6dde09e5de11e003eba2b98656e63a776e06ff857628998"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"EHkP5ZLf95QFIN9hmnLxffDdB6ugGw13SmVrEMwX+TrZtEtQFjrnIvRq2M5kCyrA6H/JFAgbt3pl6L8ls6x6Cg==","signed_message":"bundle_sha256_bytes","signed_at":"2026-08-01T08:28:21.099796Z","bundle_sha256":"0aaa5475ed07053debabaf32fcce3f2d78dcbb998cf8c44546268d8c9a05cc6a"}}