{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2018:XFUQNIUMTOH66ZDCKEFPVFVOMA","short_pith_number":"pith:XFUQNIUM","canonical_record":{"source":{"id":"1801.07175","kind":"arxiv","version":2},"metadata":{"license":"http://creativecommons.org/licenses/by-nc-sa/4.0/","primary_cat":"cs.CL","submitted_at":"2018-01-22T16:19:52Z","cross_cats_sorted":["cs.CR","cs.LG"],"title_canon_sha256":"827e4e9120809efe5e4dbef4cf23be1312da037b207dbd6638e3f766dfc5d2d0","abstract_canon_sha256":"720de3b9f3a492266422756299561d2e16e95a26956191ac61f68f187bf4c385"},"schema_version":"1.0"},"canonical_sha256":"b96906a28c9b8fef6462510afa96ae60327ca8a643224b98835f40a5cdacf1f1","source":{"kind":"arxiv","id":"1801.07175","version":2},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1801.07175","created_at":"2026-05-18T00:25:07Z"},{"alias_kind":"arxiv_version","alias_value":"1801.07175v2","created_at":"2026-05-18T00:25:07Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1801.07175","created_at":"2026-05-18T00:25:07Z"},{"alias_kind":"pith_short_12","alias_value":"XFUQNIUMTOH6","created_at":"2026-05-18T12:33:01Z"},{"alias_kind":"pith_short_16","alias_value":"XFUQNIUMTOH66ZDC","created_at":"2026-05-18T12:33:01Z"},{"alias_kind":"pith_short_8","alias_value":"XFUQNIUM","created_at":"2026-05-18T12:33:01Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2018:XFUQNIUMTOH66ZDCKEFPVFVOMA","target":"record","payload":{"canonical_record":{"source":{"id":"1801.07175","kind":"arxiv","version":2},"metadata":{"license":"http://creativecommons.org/licenses/by-nc-sa/4.0/","primary_cat":"cs.CL","submitted_at":"2018-01-22T16:19:52Z","cross_cats_sorted":["cs.CR","cs.LG"],"title_canon_sha256":"827e4e9120809efe5e4dbef4cf23be1312da037b207dbd6638e3f766dfc5d2d0","abstract_canon_sha256":"720de3b9f3a492266422756299561d2e16e95a26956191ac61f68f187bf4c385"},"schema_version":"1.0"},"canonical_sha256":"b96906a28c9b8fef6462510afa96ae60327ca8a643224b98835f40a5cdacf1f1","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-18T00:25:07.098193Z","signature_b64":"tY5UHLrqJPIGm6H9LnBFRQ6FDSPTjHwS8nqRbJ+n7JdzIrRPbN9lLqk7HDO8r4Q8g1xhcS4BpzUlJInKIKjbBw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"b96906a28c9b8fef6462510afa96ae60327ca8a643224b98835f40a5cdacf1f1","last_reissued_at":"2026-05-18T00:25:07.097606Z","signature_status":"signed_v1","first_computed_at":"2026-05-18T00:25:07.097606Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1801.07175","source_version":2,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:25:07Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"vaV73BAa9rIOFEVC1rVx8Evjh3/y4lSVUkm425KbnIie5+nEI54h8bTMaKBqASPWJYoLAnMxBdrKGTa6R9jhDA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-25T22:53:36.149045Z"},"content_sha256":"3ef5169424600b052b37c747451e7f746ce6316fe8c01815a130d9c28df18067","schema_version":"1.0","event_id":"sha256:3ef5169424600b052b37c747451e7f746ce6316fe8c01815a130d9c28df18067"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2018:XFUQNIUMTOH66ZDCKEFPVFVOMA","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Adversarial Texts with Gradient Methods","license":"http://creativecommons.org/licenses/by-nc-sa/4.0/","headline":"","cross_cats":["cs.CR","cs.LG"],"primary_cat":"cs.CL","authors_text":"Bo Li, Dawn Song, Wei-shinn Ku, Wenlu Wang, Zhitao Gong","submitted_at":"2018-01-22T16:19:52Z","abstract_excerpt":"Adversarial samples for images have been extensively studied in the literature. Among many of the attacking methods, gradient-based methods are both effective and easy to compute. In this work, we propose a framework to adapt the gradient attacking methods on images to text domain. The main difficulties for generating adversarial texts with gradient methods are i) the input space is discrete, which makes it difficult to accumulate small noise directly in the inputs, and ii) the measurement of the quality of the adversarial texts is difficult. We tackle the first problem by searching for advers"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1801.07175","kind":"arxiv","version":2},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:25:07Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"y3Vm8QKYqM6zD7ZpMHqSbWXjjWgZv7FpzbX3BV/qsBU/Pl56gjOCiON0N5jL0aFcGPWehr2GtLaBbkFbntRkAg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-25T22:53:36.149931Z"},"content_sha256":"707d6bb10d3674aac9bcc8deb9d3e30c424e84b0cb28841f65bc544d1e2763f9","schema_version":"1.0","event_id":"sha256:707d6bb10d3674aac9bcc8deb9d3e30c424e84b0cb28841f65bc544d1e2763f9"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/XFUQNIUMTOH66ZDCKEFPVFVOMA/bundle.json","state_url":"https://pith.science/pith/XFUQNIUMTOH66ZDCKEFPVFVOMA/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/XFUQNIUMTOH66ZDCKEFPVFVOMA/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-25T22:53:36Z","links":{"resolver":"https://pith.science/pith/XFUQNIUMTOH66ZDCKEFPVFVOMA","bundle":"https://pith.science/pith/XFUQNIUMTOH66ZDCKEFPVFVOMA/bundle.json","state":"https://pith.science/pith/XFUQNIUMTOH66ZDCKEFPVFVOMA/state.json","well_known_bundle":"https://pith.science/.well-known/pith/XFUQNIUMTOH66ZDCKEFPVFVOMA/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2018:XFUQNIUMTOH66ZDCKEFPVFVOMA","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"720de3b9f3a492266422756299561d2e16e95a26956191ac61f68f187bf4c385","cross_cats_sorted":["cs.CR","cs.LG"],"license":"http://creativecommons.org/licenses/by-nc-sa/4.0/","primary_cat":"cs.CL","submitted_at":"2018-01-22T16:19:52Z","title_canon_sha256":"827e4e9120809efe5e4dbef4cf23be1312da037b207dbd6638e3f766dfc5d2d0"},"schema_version":"1.0","source":{"id":"1801.07175","kind":"arxiv","version":2}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1801.07175","created_at":"2026-05-18T00:25:07Z"},{"alias_kind":"arxiv_version","alias_value":"1801.07175v2","created_at":"2026-05-18T00:25:07Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1801.07175","created_at":"2026-05-18T00:25:07Z"},{"alias_kind":"pith_short_12","alias_value":"XFUQNIUMTOH6","created_at":"2026-05-18T12:33:01Z"},{"alias_kind":"pith_short_16","alias_value":"XFUQNIUMTOH66ZDC","created_at":"2026-05-18T12:33:01Z"},{"alias_kind":"pith_short_8","alias_value":"XFUQNIUM","created_at":"2026-05-18T12:33:01Z"}],"graph_snapshots":[{"event_id":"sha256:707d6bb10d3674aac9bcc8deb9d3e30c424e84b0cb28841f65bc544d1e2763f9","target":"graph","created_at":"2026-05-18T00:25:07Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Adversarial samples for images have been extensively studied in the literature. Among many of the attacking methods, gradient-based methods are both effective and easy to compute. In this work, we propose a framework to adapt the gradient attacking methods on images to text domain. The main difficulties for generating adversarial texts with gradient methods are i) the input space is discrete, which makes it difficult to accumulate small noise directly in the inputs, and ii) the measurement of the quality of the adversarial texts is difficult. We tackle the first problem by searching for advers","authors_text":"Bo Li, Dawn Song, Wei-shinn Ku, Wenlu Wang, Zhitao Gong","cross_cats":["cs.CR","cs.LG"],"headline":"","license":"http://creativecommons.org/licenses/by-nc-sa/4.0/","primary_cat":"cs.CL","submitted_at":"2018-01-22T16:19:52Z","title":"Adversarial Texts with Gradient Methods"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1801.07175","kind":"arxiv","version":2},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:3ef5169424600b052b37c747451e7f746ce6316fe8c01815a130d9c28df18067","target":"record","created_at":"2026-05-18T00:25:07Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"720de3b9f3a492266422756299561d2e16e95a26956191ac61f68f187bf4c385","cross_cats_sorted":["cs.CR","cs.LG"],"license":"http://creativecommons.org/licenses/by-nc-sa/4.0/","primary_cat":"cs.CL","submitted_at":"2018-01-22T16:19:52Z","title_canon_sha256":"827e4e9120809efe5e4dbef4cf23be1312da037b207dbd6638e3f766dfc5d2d0"},"schema_version":"1.0","source":{"id":"1801.07175","kind":"arxiv","version":2}},"canonical_sha256":"b96906a28c9b8fef6462510afa96ae60327ca8a643224b98835f40a5cdacf1f1","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"b96906a28c9b8fef6462510afa96ae60327ca8a643224b98835f40a5cdacf1f1","first_computed_at":"2026-05-18T00:25:07.097606Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-18T00:25:07.097606Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"tY5UHLrqJPIGm6H9LnBFRQ6FDSPTjHwS8nqRbJ+n7JdzIrRPbN9lLqk7HDO8r4Q8g1xhcS4BpzUlJInKIKjbBw==","signature_status":"signed_v1","signed_at":"2026-05-18T00:25:07.098193Z","signed_message":"canonical_sha256_bytes"},"source_id":"1801.07175","source_kind":"arxiv","source_version":2}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:3ef5169424600b052b37c747451e7f746ce6316fe8c01815a130d9c28df18067","sha256:707d6bb10d3674aac9bcc8deb9d3e30c424e84b0cb28841f65bc544d1e2763f9"],"state_sha256":"32b0ad74655ad485fc81df8afe6476d0a195f2fbcdf6018a6833f2ad17b9e08b"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"BTBFH3dXB1QCqdqMmtJF5NQkTmMMbmBvkBMWoX7uEXg3fPXE2ad/OXOctJQRmzstDwyMOSby33JGZ7UJRaKYBw==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-25T22:53:36.153806Z","bundle_sha256":"2f1532bafc96e2785cf0e936d09a7f37c3d0a7105aee01e3574dda117e181714"}}