{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2018:WWMIHTBKZQNWHPUHNXYDZHMKK7","short_pith_number":"pith:WWMIHTBK","schema_version":"1.0","canonical_sha256":"b59883cc2acc1b63be876df03c9d8a57f2648c30415b49b0ad438e627a1db679","source":{"kind":"arxiv","id":"1812.03411","version":2},"attestation_state":"computed","paper":{"title":"Feature Denoising for Improving Adversarial Robustness","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.CV","authors_text":"Alan Yuille, Cihang Xie, Kaiming He, Laurens van der Maaten, Yuxin Wu","submitted_at":"2018-12-09T01:55:31Z","abstract_excerpt":"Adversarial attacks to image classification systems present challenges to convolutional networks and opportunities for understanding them. This study suggests that adversarial perturbations on images lead to noise in the features constructed by these networks. Motivated by this observation, we develop new network architectures that increase adversarial robustness by performing feature denoising. Specifically, our networks contain blocks that denoise the features using non-local means or other filters; the entire networks are trained end-to-end. When combined with adversarial training, our feat"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"1812.03411","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2018-12-09T01:55:31Z","cross_cats_sorted":[],"title_canon_sha256":"4bccb9fe30eb2d6b63e4356dc62cf5e0742886ffbc23d656750c6def5fcb1e44","abstract_canon_sha256":"a7febab243d6160cd54ba71ff387fd5f29e17a0b8a42d516239b7217b21c3011"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:50:33.496650Z","signature_b64":"Co3Ed383mqWnoheeeQJ6l14eXad+BRFvviV8WhEtZXZ35Cnu8QUi/j7mZZm8kYYWCJgrH5jb/HraIHO3ZgS6Bg==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"b59883cc2acc1b63be876df03c9d8a57f2648c30415b49b0ad438e627a1db679","last_reissued_at":"2026-05-17T23:50:33.495914Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:50:33.495914Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"Feature Denoising for Improving Adversarial Robustness","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.CV","authors_text":"Alan Yuille, Cihang Xie, Kaiming He, Laurens van der Maaten, Yuxin Wu","submitted_at":"2018-12-09T01:55:31Z","abstract_excerpt":"Adversarial attacks to image classification systems present challenges to convolutional networks and opportunities for understanding them. This study suggests that adversarial perturbations on images lead to noise in the features constructed by these networks. Motivated by this observation, we develop new network architectures that increase adversarial robustness by performing feature denoising. Specifically, our networks contain blocks that denoise the features using non-local means or other filters; the entire networks are trained end-to-end. When combined with adversarial training, our feat"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1812.03411","kind":"arxiv","version":2},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"1812.03411","created_at":"2026-05-17T23:50:33.496041+00:00"},{"alias_kind":"arxiv_version","alias_value":"1812.03411v2","created_at":"2026-05-17T23:50:33.496041+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1812.03411","created_at":"2026-05-17T23:50:33.496041+00:00"},{"alias_kind":"pith_short_12","alias_value":"WWMIHTBKZQNW","created_at":"2026-05-18T12:33:01.666342+00:00"},{"alias_kind":"pith_short_16","alias_value":"WWMIHTBKZQNWHPUH","created_at":"2026-05-18T12:33:01.666342+00:00"},{"alias_kind":"pith_short_8","alias_value":"WWMIHTBK","created_at":"2026-05-18T12:33:01.666342+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":1,"internal_anchor_count":1,"sample":[{"citing_arxiv_id":"1906.10973","citing_title":"Defending Adversarial Attacks by Correcting logits","ref_index":36,"is_internal_anchor":true}]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/WWMIHTBKZQNWHPUHNXYDZHMKK7","json":"https://pith.science/pith/WWMIHTBKZQNWHPUHNXYDZHMKK7.json","graph_json":"https://pith.science/api/pith-number/WWMIHTBKZQNWHPUHNXYDZHMKK7/graph.json","events_json":"https://pith.science/api/pith-number/WWMIHTBKZQNWHPUHNXYDZHMKK7/events.json","paper":"https://pith.science/paper/WWMIHTBK"},"agent_actions":{"view_html":"https://pith.science/pith/WWMIHTBKZQNWHPUHNXYDZHMKK7","download_json":"https://pith.science/pith/WWMIHTBKZQNWHPUHNXYDZHMKK7.json","view_paper":"https://pith.science/paper/WWMIHTBK","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=1812.03411&json=true","fetch_graph":"https://pith.science/api/pith-number/WWMIHTBKZQNWHPUHNXYDZHMKK7/graph.json","fetch_events":"https://pith.science/api/pith-number/WWMIHTBKZQNWHPUHNXYDZHMKK7/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/WWMIHTBKZQNWHPUHNXYDZHMKK7/action/timestamp_anchor","attest_storage":"https://pith.science/pith/WWMIHTBKZQNWHPUHNXYDZHMKK7/action/storage_attestation","attest_author":"https://pith.science/pith/WWMIHTBKZQNWHPUHNXYDZHMKK7/action/author_attestation","sign_citation":"https://pith.science/pith/WWMIHTBKZQNWHPUHNXYDZHMKK7/action/citation_signature","submit_replication":"https://pith.science/pith/WWMIHTBKZQNWHPUHNXYDZHMKK7/action/replication_record"}},"created_at":"2026-05-17T23:50:33.496041+00:00","updated_at":"2026-05-17T23:50:33.496041+00:00"}