{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2019:XNB7AJKQSKVHDTG2QBM44IUNIY","short_pith_number":"pith:XNB7AJKQ","canonical_record":{"source":{"id":"1905.02675","kind":"arxiv","version":4},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"stat.ML","submitted_at":"2019-05-07T16:26:26Z","cross_cats_sorted":["cs.CV","cs.LG"],"title_canon_sha256":"97cdf8676fa5d6274afe59d49d50b40512d2503cac6498f60d8efbeb6c476326","abstract_canon_sha256":"0340389ab3c2cce22cee8f84252ecaa3b2c2e009d318a8d3f740dd72afa87a16"},"schema_version":"1.0"},"canonical_sha256":"bb43f0255092aa71ccda8059ce228d4634116d12100b18a9146fc7d3cdad6aaa","source":{"kind":"arxiv","id":"1905.02675","version":4},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1905.02675","created_at":"2026-05-17T23:43:49Z"},{"alias_kind":"arxiv_version","alias_value":"1905.02675v4","created_at":"2026-05-17T23:43:49Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1905.02675","created_at":"2026-05-17T23:43:49Z"},{"alias_kind":"pith_short_12","alias_value":"XNB7AJKQSKVH","created_at":"2026-05-18T12:33:33Z"},{"alias_kind":"pith_short_16","alias_value":"XNB7AJKQSKVHDTG2","created_at":"2026-05-18T12:33:33Z"},{"alias_kind":"pith_short_8","alias_value":"XNB7AJKQ","created_at":"2026-05-18T12:33:33Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2019:XNB7AJKQSKVHDTG2QBM44IUNIY","target":"record","payload":{"canonical_record":{"source":{"id":"1905.02675","kind":"arxiv","version":4},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"stat.ML","submitted_at":"2019-05-07T16:26:26Z","cross_cats_sorted":["cs.CV","cs.LG"],"title_canon_sha256":"97cdf8676fa5d6274afe59d49d50b40512d2503cac6498f60d8efbeb6c476326","abstract_canon_sha256":"0340389ab3c2cce22cee8f84252ecaa3b2c2e009d318a8d3f740dd72afa87a16"},"schema_version":"1.0"},"canonical_sha256":"bb43f0255092aa71ccda8059ce228d4634116d12100b18a9146fc7d3cdad6aaa","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:43:49.415845Z","signature_b64":"+O0Ab/h1UmzWzBrzjDFJ5IZn80rjCGIbTg7xtmwqN8BoptxIUnh2Oe7fA6uFu04xhKcZivw8Wqv7SO8vD61QDA==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"bb43f0255092aa71ccda8059ce228d4634116d12100b18a9146fc7d3cdad6aaa","last_reissued_at":"2026-05-17T23:43:49.415099Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:43:49.415099Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1905.02675","source_version":4,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:43:49Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"4NOdYi9bSOhINRBFQP6u0NBLwYYtaNsqmkjkOQIETF6arUFnNYI8I6q+UhcH2NhY+ABm117E2FRzdPXe0A3TAQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-05T20:14:33.256321Z"},"content_sha256":"2a5d4ee9a5d491ae73a2e1f1192d4b61d290fc13d9a5112478f4335a777a2bc0","schema_version":"1.0","event_id":"sha256:2a5d4ee9a5d491ae73a2e1f1192d4b61d290fc13d9a5112478f4335a777a2bc0"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2019:XNB7AJKQSKVHDTG2QBM44IUNIY","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"An Empirical Evaluation of Adversarial Robustness under Transfer Learning","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.CV","cs.LG"],"primary_cat":"stat.ML","authors_text":"Nick Antonopoulos, Stathi Fotiadis, Subramanian Ramamoorthy, Timos Korres, Todor Davchev","submitted_at":"2019-05-07T16:26:26Z","abstract_excerpt":"In this work, we evaluate adversarial robustness in the context of transfer learning from a source trained on CIFAR 100 to a target network trained on CIFAR 10. Specifically, we study the effects of using robust optimisation in the source and target networks. This allows us to identify transfer learning strategies under which adversarial defences are successfully retained, in addition to revealing potential vulnerabilities. We study the extent to which features learnt by a fast gradient sign method (FGSM) and its iterative alternative (PGD) can preserve their defence properties against black a"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1905.02675","kind":"arxiv","version":4},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:43:49Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"y+iFdf2gO+R+J+5lmBSBXycw0FXTIF3V+yXkNzGViX1sTmMcAC+5UHLgvKOmHkD1dVb0BHWGTAsmeNJJzrGfAQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-05T20:14:33.257076Z"},"content_sha256":"4c991473ea469459d9f1bb557a036c07480f66a46d2ec6292e1b8dcd24ae2798","schema_version":"1.0","event_id":"sha256:4c991473ea469459d9f1bb557a036c07480f66a46d2ec6292e1b8dcd24ae2798"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/XNB7AJKQSKVHDTG2QBM44IUNIY/bundle.json","state_url":"https://pith.science/pith/XNB7AJKQSKVHDTG2QBM44IUNIY/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/XNB7AJKQSKVHDTG2QBM44IUNIY/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-05T20:14:33Z","links":{"resolver":"https://pith.science/pith/XNB7AJKQSKVHDTG2QBM44IUNIY","bundle":"https://pith.science/pith/XNB7AJKQSKVHDTG2QBM44IUNIY/bundle.json","state":"https://pith.science/pith/XNB7AJKQSKVHDTG2QBM44IUNIY/state.json","well_known_bundle":"https://pith.science/.well-known/pith/XNB7AJKQSKVHDTG2QBM44IUNIY/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2019:XNB7AJKQSKVHDTG2QBM44IUNIY","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"0340389ab3c2cce22cee8f84252ecaa3b2c2e009d318a8d3f740dd72afa87a16","cross_cats_sorted":["cs.CV","cs.LG"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"stat.ML","submitted_at":"2019-05-07T16:26:26Z","title_canon_sha256":"97cdf8676fa5d6274afe59d49d50b40512d2503cac6498f60d8efbeb6c476326"},"schema_version":"1.0","source":{"id":"1905.02675","kind":"arxiv","version":4}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1905.02675","created_at":"2026-05-17T23:43:49Z"},{"alias_kind":"arxiv_version","alias_value":"1905.02675v4","created_at":"2026-05-17T23:43:49Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1905.02675","created_at":"2026-05-17T23:43:49Z"},{"alias_kind":"pith_short_12","alias_value":"XNB7AJKQSKVH","created_at":"2026-05-18T12:33:33Z"},{"alias_kind":"pith_short_16","alias_value":"XNB7AJKQSKVHDTG2","created_at":"2026-05-18T12:33:33Z"},{"alias_kind":"pith_short_8","alias_value":"XNB7AJKQ","created_at":"2026-05-18T12:33:33Z"}],"graph_snapshots":[{"event_id":"sha256:4c991473ea469459d9f1bb557a036c07480f66a46d2ec6292e1b8dcd24ae2798","target":"graph","created_at":"2026-05-17T23:43:49Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"In this work, we evaluate adversarial robustness in the context of transfer learning from a source trained on CIFAR 100 to a target network trained on CIFAR 10. Specifically, we study the effects of using robust optimisation in the source and target networks. This allows us to identify transfer learning strategies under which adversarial defences are successfully retained, in addition to revealing potential vulnerabilities. We study the extent to which features learnt by a fast gradient sign method (FGSM) and its iterative alternative (PGD) can preserve their defence properties against black a","authors_text":"Nick Antonopoulos, Stathi Fotiadis, Subramanian Ramamoorthy, Timos Korres, Todor Davchev","cross_cats":["cs.CV","cs.LG"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"stat.ML","submitted_at":"2019-05-07T16:26:26Z","title":"An Empirical Evaluation of Adversarial Robustness under Transfer Learning"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1905.02675","kind":"arxiv","version":4},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:2a5d4ee9a5d491ae73a2e1f1192d4b61d290fc13d9a5112478f4335a777a2bc0","target":"record","created_at":"2026-05-17T23:43:49Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"0340389ab3c2cce22cee8f84252ecaa3b2c2e009d318a8d3f740dd72afa87a16","cross_cats_sorted":["cs.CV","cs.LG"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"stat.ML","submitted_at":"2019-05-07T16:26:26Z","title_canon_sha256":"97cdf8676fa5d6274afe59d49d50b40512d2503cac6498f60d8efbeb6c476326"},"schema_version":"1.0","source":{"id":"1905.02675","kind":"arxiv","version":4}},"canonical_sha256":"bb43f0255092aa71ccda8059ce228d4634116d12100b18a9146fc7d3cdad6aaa","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"bb43f0255092aa71ccda8059ce228d4634116d12100b18a9146fc7d3cdad6aaa","first_computed_at":"2026-05-17T23:43:49.415099Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-17T23:43:49.415099Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"+O0Ab/h1UmzWzBrzjDFJ5IZn80rjCGIbTg7xtmwqN8BoptxIUnh2Oe7fA6uFu04xhKcZivw8Wqv7SO8vD61QDA==","signature_status":"signed_v1","signed_at":"2026-05-17T23:43:49.415845Z","signed_message":"canonical_sha256_bytes"},"source_id":"1905.02675","source_kind":"arxiv","source_version":4}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:2a5d4ee9a5d491ae73a2e1f1192d4b61d290fc13d9a5112478f4335a777a2bc0","sha256:4c991473ea469459d9f1bb557a036c07480f66a46d2ec6292e1b8dcd24ae2798"],"state_sha256":"d6cd2696fc114d8121adc81cd9c77e66bab5a5ffecfac22c6485e6de3466fc7c"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"yh/TU6lJ+9eysDSscyMNyfoP3XZ42ucICQ8zq+dbd9ptVh3WqDPBOYXaRXblQqUMChIkkK2J4W+OFeXShO7ZBg==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-05T20:14:33.263176Z","bundle_sha256":"e3eb008ffe2259421f411d36caff7f688d7cc56e30ac76fa75accfc1a670f815"}}