{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2018:XLUJYKJD7MD5Q3OSFFSKPUZJMP","short_pith_number":"pith:XLUJYKJD","canonical_record":{"source":{"id":"1801.02774","kind":"arxiv","version":3},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2018-01-09T03:24:53Z","cross_cats_sorted":[],"title_canon_sha256":"69668495c2e22a84d83d2d0f2d84337c2761d014e49e8cf5ee499eae57c505d5","abstract_canon_sha256":"a41b96c1c04ea9c6e5250d4b8f514eafec259ff48368ef0bc3f4319f84d8cc1c"},"schema_version":"1.0"},"canonical_sha256":"bae89c2923fb07d86dd22964a7d32963da8b8f6b768ca30957e51aa86a19e1a9","source":{"kind":"arxiv","id":"1801.02774","version":3},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1801.02774","created_at":"2026-05-18T00:06:11Z"},{"alias_kind":"arxiv_version","alias_value":"1801.02774v3","created_at":"2026-05-18T00:06:11Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1801.02774","created_at":"2026-05-18T00:06:11Z"},{"alias_kind":"pith_short_12","alias_value":"XLUJYKJD7MD5","created_at":"2026-05-18T12:33:01Z"},{"alias_kind":"pith_short_16","alias_value":"XLUJYKJD7MD5Q3OS","created_at":"2026-05-18T12:33:01Z"},{"alias_kind":"pith_short_8","alias_value":"XLUJYKJD","created_at":"2026-05-18T12:33:01Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2018:XLUJYKJD7MD5Q3OSFFSKPUZJMP","target":"record","payload":{"canonical_record":{"source":{"id":"1801.02774","kind":"arxiv","version":3},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2018-01-09T03:24:53Z","cross_cats_sorted":[],"title_canon_sha256":"69668495c2e22a84d83d2d0f2d84337c2761d014e49e8cf5ee499eae57c505d5","abstract_canon_sha256":"a41b96c1c04ea9c6e5250d4b8f514eafec259ff48368ef0bc3f4319f84d8cc1c"},"schema_version":"1.0"},"canonical_sha256":"bae89c2923fb07d86dd22964a7d32963da8b8f6b768ca30957e51aa86a19e1a9","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-18T00:06:11.910553Z","signature_b64":"dsXTUWG53Jw3tv1gYXvDhZwBOqqExjawQVhzhk5BkYsKNubhQ21WCMfkYjU0iDBlGbNhJ5hjgaBOVw8m2rH+Bw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"bae89c2923fb07d86dd22964a7d32963da8b8f6b768ca30957e51aa86a19e1a9","last_reissued_at":"2026-05-18T00:06:11.909973Z","signature_status":"signed_v1","first_computed_at":"2026-05-18T00:06:11.909973Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1801.02774","source_version":3,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:06:11Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"wQsOUIDevVAWhb+wbfeMcxCZFfjvRjX4NdQ73Ku3quJUiayISQwwKo64G9BfmLTi4KhWYQYYIuoKe9hmnXqwDA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-26T17:03:02.796654Z"},"content_sha256":"60151cbd3cccc6abe5d0dfdcc55d766698fb204cd3998e0e4adbdedc89073a8e","schema_version":"1.0","event_id":"sha256:60151cbd3cccc6abe5d0dfdcc55d766698fb204cd3998e0e4adbdedc89073a8e"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2018:XLUJYKJD7MD5Q3OSFFSKPUZJMP","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Adversarial Spheres","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.CV","authors_text":"Fartash Faghri, Ian Goodfellow, Justin Gilmer, Luke Metz, Maithra Raghu, Martin Wattenberg, Samuel S. Schoenholz","submitted_at":"2018-01-09T03:24:53Z","abstract_excerpt":"State of the art computer vision models have been shown to be vulnerable to small adversarial perturbations of the input. In other words, most images in the data distribution are both correctly classified by the model and are very close to a visually similar misclassified image. Despite substantial research interest, the cause of the phenomenon is still poorly understood and remains unsolved. We hypothesize that this counter intuitive behavior is a naturally occurring result of the high dimensional geometry of the data manifold. As a first step towards exploring this hypothesis, we study a sim"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1801.02774","kind":"arxiv","version":3},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:06:11Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"TBT+goWP7UZsv95J8usCB2g6BiaLvhV7NjbXt6qGERrR497L+uFWKqXZTI+eTjYrlm05RX5sC6nRnKyLuf9PCQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-26T17:03:02.797066Z"},"content_sha256":"c137c2d9f9106936f1445afafb0aadae3d134c7e2537daa026883f79a3e8ea6b","schema_version":"1.0","event_id":"sha256:c137c2d9f9106936f1445afafb0aadae3d134c7e2537daa026883f79a3e8ea6b"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/XLUJYKJD7MD5Q3OSFFSKPUZJMP/bundle.json","state_url":"https://pith.science/pith/XLUJYKJD7MD5Q3OSFFSKPUZJMP/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/XLUJYKJD7MD5Q3OSFFSKPUZJMP/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-26T17:03:02Z","links":{"resolver":"https://pith.science/pith/XLUJYKJD7MD5Q3OSFFSKPUZJMP","bundle":"https://pith.science/pith/XLUJYKJD7MD5Q3OSFFSKPUZJMP/bundle.json","state":"https://pith.science/pith/XLUJYKJD7MD5Q3OSFFSKPUZJMP/state.json","well_known_bundle":"https://pith.science/.well-known/pith/XLUJYKJD7MD5Q3OSFFSKPUZJMP/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2018:XLUJYKJD7MD5Q3OSFFSKPUZJMP","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"a41b96c1c04ea9c6e5250d4b8f514eafec259ff48368ef0bc3f4319f84d8cc1c","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2018-01-09T03:24:53Z","title_canon_sha256":"69668495c2e22a84d83d2d0f2d84337c2761d014e49e8cf5ee499eae57c505d5"},"schema_version":"1.0","source":{"id":"1801.02774","kind":"arxiv","version":3}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1801.02774","created_at":"2026-05-18T00:06:11Z"},{"alias_kind":"arxiv_version","alias_value":"1801.02774v3","created_at":"2026-05-18T00:06:11Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1801.02774","created_at":"2026-05-18T00:06:11Z"},{"alias_kind":"pith_short_12","alias_value":"XLUJYKJD7MD5","created_at":"2026-05-18T12:33:01Z"},{"alias_kind":"pith_short_16","alias_value":"XLUJYKJD7MD5Q3OS","created_at":"2026-05-18T12:33:01Z"},{"alias_kind":"pith_short_8","alias_value":"XLUJYKJD","created_at":"2026-05-18T12:33:01Z"}],"graph_snapshots":[{"event_id":"sha256:c137c2d9f9106936f1445afafb0aadae3d134c7e2537daa026883f79a3e8ea6b","target":"graph","created_at":"2026-05-18T00:06:11Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"State of the art computer vision models have been shown to be vulnerable to small adversarial perturbations of the input. In other words, most images in the data distribution are both correctly classified by the model and are very close to a visually similar misclassified image. Despite substantial research interest, the cause of the phenomenon is still poorly understood and remains unsolved. We hypothesize that this counter intuitive behavior is a naturally occurring result of the high dimensional geometry of the data manifold. As a first step towards exploring this hypothesis, we study a sim","authors_text":"Fartash Faghri, Ian Goodfellow, Justin Gilmer, Luke Metz, Maithra Raghu, Martin Wattenberg, Samuel S. Schoenholz","cross_cats":[],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2018-01-09T03:24:53Z","title":"Adversarial Spheres"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1801.02774","kind":"arxiv","version":3},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:60151cbd3cccc6abe5d0dfdcc55d766698fb204cd3998e0e4adbdedc89073a8e","target":"record","created_at":"2026-05-18T00:06:11Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"a41b96c1c04ea9c6e5250d4b8f514eafec259ff48368ef0bc3f4319f84d8cc1c","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2018-01-09T03:24:53Z","title_canon_sha256":"69668495c2e22a84d83d2d0f2d84337c2761d014e49e8cf5ee499eae57c505d5"},"schema_version":"1.0","source":{"id":"1801.02774","kind":"arxiv","version":3}},"canonical_sha256":"bae89c2923fb07d86dd22964a7d32963da8b8f6b768ca30957e51aa86a19e1a9","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"bae89c2923fb07d86dd22964a7d32963da8b8f6b768ca30957e51aa86a19e1a9","first_computed_at":"2026-05-18T00:06:11.909973Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-18T00:06:11.909973Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"dsXTUWG53Jw3tv1gYXvDhZwBOqqExjawQVhzhk5BkYsKNubhQ21WCMfkYjU0iDBlGbNhJ5hjgaBOVw8m2rH+Bw==","signature_status":"signed_v1","signed_at":"2026-05-18T00:06:11.910553Z","signed_message":"canonical_sha256_bytes"},"source_id":"1801.02774","source_kind":"arxiv","source_version":3}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:60151cbd3cccc6abe5d0dfdcc55d766698fb204cd3998e0e4adbdedc89073a8e","sha256:c137c2d9f9106936f1445afafb0aadae3d134c7e2537daa026883f79a3e8ea6b"],"state_sha256":"59718eb51fd19a57fb9c1cc61b0c49dd9e8a7e32e2ea5435e8b3f1177468f0ff"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"j7v/5fiy3G7VM4kvHjwo6z2R+XkW6bu++LNeYxUKxlSb3VhugK7/E9QzQCTJ+vY/e+d0Vc1a7PBr8oRJJTpZCw==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-26T17:03:02.799664Z","bundle_sha256":"22fb47560aa1e54d3abf0d7e99bd098f2ed99848048a9e7df407e0250ca838e4"}}