pith:WS6MQUM7
Backbone is All You Need: Assessing Vulnerabilities of Frozen Foundation Models in Synthetic Image Forensics
Knowledge of only the Vision Transformer backbone in frozen deepfake detectors enables gray-box adversarial attacks that reach near white-box success rates.
arxiv:2605.13381 v1 · 2026-05-13 · cs.CV · cs.MM
Add to your LaTeX paper
\usepackage{pith}
\pithnumber{WS6MQUM7IE45BN44KX2ODCOVK5}
Prints a linked badge after your title and injects PDF metadata. Compiles on arXiv. Learn more · Embed verified badge
Record completeness
Claims
backbone knowledge alone is sufficient to undermine detector reliability, highlighting the urgent need for more resilient defenses in adversarial multimedia forensics.
That an attacker with only backbone knowledge can reliably access and manipulate the target detector's internal feature space to generate effective adversarial examples.
Knowledge of the ViT backbone alone enables highly effective gray-box adversarial attacks on synthetic image detectors, often nearing white-box performance.
References
Receipt and verification
| First computed | 2026-05-18T02:44:47.830854Z |
|---|---|
| Builder | pith-number-builder-2026-05-17-v1 |
| Signature | Pith Ed25519
(pith-v1-2026-05) · public key |
| Schema | pith-number/v1.0 |
Canonical hash
b4bcc8519f4139d0b79c55f4e189d5577259163aeecac2f2530644011f6b61e6
Aliases
· · · · ·Agent API
Verify this Pith Number yourself
curl -sH 'Accept: application/ld+json' https://pith.science/pith/WS6MQUM7IE45BN44KX2ODCOVK5 \
| jq -c '.canonical_record' \
| python3 -c "import sys,json,hashlib; b=json.dumps(json.loads(sys.stdin.read()), sort_keys=True, separators=(',',':'), ensure_ascii=False).encode(); print(hashlib.sha256(b).hexdigest())"
# expect: b4bcc8519f4139d0b79c55f4e189d5577259163aeecac2f2530644011f6b61e6
Canonical record JSON
{
"metadata": {
"abstract_canon_sha256": "92a579dd74c247ef2829e09f2fc1d9c867c39b671759bfec53785c62dd9851ea",
"cross_cats_sorted": [
"cs.MM"
],
"license": "http://creativecommons.org/licenses/by/4.0/",
"primary_cat": "cs.CV",
"submitted_at": "2026-05-13T11:35:56Z",
"title_canon_sha256": "10bb2b93d2dd8b8a0cba9008d24d534f9369cbbdf0e41ec211996932cd604552"
},
"schema_version": "1.0",
"source": {
"id": "2605.13381",
"kind": "arxiv",
"version": 1
}
}