{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2019:YIJONCWZGYZA52UYE44T7XKCY5","short_pith_number":"pith:YIJONCWZ","canonical_record":{"source":{"id":"1902.02826","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2019-02-07T20:11:03Z","cross_cats_sorted":[],"title_canon_sha256":"a2951d15d91aeee2d8a1dfe580f7a98b91bb785015ea788da2f9b27f45015442","abstract_canon_sha256":"9fd1f61c0422415afaec1837822b1bfae1e4686a826c9e1f734447d221ec3457"},"schema_version":"1.0"},"canonical_sha256":"c212e68ad936320eea9827393fdd42c76f79ebd5d27fb52ac9c810091c24f6eb","source":{"kind":"arxiv","id":"1902.02826","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1902.02826","created_at":"2026-05-17T23:54:29Z"},{"alias_kind":"arxiv_version","alias_value":"1902.02826v1","created_at":"2026-05-17T23:54:29Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1902.02826","created_at":"2026-05-17T23:54:29Z"},{"alias_kind":"pith_short_12","alias_value":"YIJONCWZGYZA","created_at":"2026-05-18T12:33:33Z"},{"alias_kind":"pith_short_16","alias_value":"YIJONCWZGYZA52UY","created_at":"2026-05-18T12:33:33Z"},{"alias_kind":"pith_short_8","alias_value":"YIJONCWZ","created_at":"2026-05-18T12:33:33Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2019:YIJONCWZGYZA52UYE44T7XKCY5","target":"record","payload":{"canonical_record":{"source":{"id":"1902.02826","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2019-02-07T20:11:03Z","cross_cats_sorted":[],"title_canon_sha256":"a2951d15d91aeee2d8a1dfe580f7a98b91bb785015ea788da2f9b27f45015442","abstract_canon_sha256":"9fd1f61c0422415afaec1837822b1bfae1e4686a826c9e1f734447d221ec3457"},"schema_version":"1.0"},"canonical_sha256":"c212e68ad936320eea9827393fdd42c76f79ebd5d27fb52ac9c810091c24f6eb","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:54:29.140196Z","signature_b64":"Dw2elHuahD7R+9g3vzkZjY24giVDkcMxuSggl777qT9d1683sBFlvt1YMqT0kIuzflECmr7Il/kMeNqxSDc7CA==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"c212e68ad936320eea9827393fdd42c76f79ebd5d27fb52ac9c810091c24f6eb","last_reissued_at":"2026-05-17T23:54:29.139498Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:54:29.139498Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1902.02826","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:54:29Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"7oTwNM2LSkbPvVmcd+hkWYjt0XzLorS+AQt1rjOVX9LUbdNKf9NYhwcpiGIIiVRyfMxV3GCLf1rYdX/X1BTBCw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-11T11:09:38.477518Z"},"content_sha256":"c5c24d66ab88799243cd0490ed4d79535161fd52f4fde6e99477297a3e31e118","schema_version":"1.0","event_id":"sha256:c5c24d66ab88799243cd0490ed4d79535161fd52f4fde6e99477297a3e31e118"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2019:YIJONCWZGYZA52UYE44T7XKCY5","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Robustness Of Saak Transform Against Adversarial Attacks","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.CV","authors_text":"Abinaya Manimaran, C-C Jay Kuo, Suya You, Thiyagarajan Ramanathan","submitted_at":"2019-02-07T20:11:03Z","abstract_excerpt":"Image classification is vulnerable to adversarial attacks. This work investigates the robustness of Saak transform against adversarial attacks towards high performance image classification. We develop a complete image classification system based on multi-stage Saak transform. In the Saak transform domain, clean and adversarial images demonstrate different distributions at different spectral dimensions. Selection of the spectral dimensions at every stage can be viewed as an automatic denoising process. Motivated by this observation, we carefully design strategies of feature extraction, represen"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1902.02826","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:54:29Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"B06wXIqhDbzsp4Tpm8lmwSUy73Iyu1mHDovLTIdcsYv8dE04OKlif90MkhjaFkUmu6CgNvPp/cKhK1smhREICg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-11T11:09:38.477864Z"},"content_sha256":"57822d7e9d4d84498d4696f5a7d4b1bd9d57c7e733f0b8b59b54be164e5340f4","schema_version":"1.0","event_id":"sha256:57822d7e9d4d84498d4696f5a7d4b1bd9d57c7e733f0b8b59b54be164e5340f4"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/YIJONCWZGYZA52UYE44T7XKCY5/bundle.json","state_url":"https://pith.science/pith/YIJONCWZGYZA52UYE44T7XKCY5/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/YIJONCWZGYZA52UYE44T7XKCY5/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-11T11:09:38Z","links":{"resolver":"https://pith.science/pith/YIJONCWZGYZA52UYE44T7XKCY5","bundle":"https://pith.science/pith/YIJONCWZGYZA52UYE44T7XKCY5/bundle.json","state":"https://pith.science/pith/YIJONCWZGYZA52UYE44T7XKCY5/state.json","well_known_bundle":"https://pith.science/.well-known/pith/YIJONCWZGYZA52UYE44T7XKCY5/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2019:YIJONCWZGYZA52UYE44T7XKCY5","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"9fd1f61c0422415afaec1837822b1bfae1e4686a826c9e1f734447d221ec3457","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2019-02-07T20:11:03Z","title_canon_sha256":"a2951d15d91aeee2d8a1dfe580f7a98b91bb785015ea788da2f9b27f45015442"},"schema_version":"1.0","source":{"id":"1902.02826","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1902.02826","created_at":"2026-05-17T23:54:29Z"},{"alias_kind":"arxiv_version","alias_value":"1902.02826v1","created_at":"2026-05-17T23:54:29Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1902.02826","created_at":"2026-05-17T23:54:29Z"},{"alias_kind":"pith_short_12","alias_value":"YIJONCWZGYZA","created_at":"2026-05-18T12:33:33Z"},{"alias_kind":"pith_short_16","alias_value":"YIJONCWZGYZA52UY","created_at":"2026-05-18T12:33:33Z"},{"alias_kind":"pith_short_8","alias_value":"YIJONCWZ","created_at":"2026-05-18T12:33:33Z"}],"graph_snapshots":[{"event_id":"sha256:57822d7e9d4d84498d4696f5a7d4b1bd9d57c7e733f0b8b59b54be164e5340f4","target":"graph","created_at":"2026-05-17T23:54:29Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Image classification is vulnerable to adversarial attacks. This work investigates the robustness of Saak transform against adversarial attacks towards high performance image classification. We develop a complete image classification system based on multi-stage Saak transform. In the Saak transform domain, clean and adversarial images demonstrate different distributions at different spectral dimensions. Selection of the spectral dimensions at every stage can be viewed as an automatic denoising process. Motivated by this observation, we carefully design strategies of feature extraction, represen","authors_text":"Abinaya Manimaran, C-C Jay Kuo, Suya You, Thiyagarajan Ramanathan","cross_cats":[],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2019-02-07T20:11:03Z","title":"Robustness Of Saak Transform Against Adversarial Attacks"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1902.02826","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:c5c24d66ab88799243cd0490ed4d79535161fd52f4fde6e99477297a3e31e118","target":"record","created_at":"2026-05-17T23:54:29Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"9fd1f61c0422415afaec1837822b1bfae1e4686a826c9e1f734447d221ec3457","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2019-02-07T20:11:03Z","title_canon_sha256":"a2951d15d91aeee2d8a1dfe580f7a98b91bb785015ea788da2f9b27f45015442"},"schema_version":"1.0","source":{"id":"1902.02826","kind":"arxiv","version":1}},"canonical_sha256":"c212e68ad936320eea9827393fdd42c76f79ebd5d27fb52ac9c810091c24f6eb","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"c212e68ad936320eea9827393fdd42c76f79ebd5d27fb52ac9c810091c24f6eb","first_computed_at":"2026-05-17T23:54:29.139498Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-17T23:54:29.139498Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"Dw2elHuahD7R+9g3vzkZjY24giVDkcMxuSggl777qT9d1683sBFlvt1YMqT0kIuzflECmr7Il/kMeNqxSDc7CA==","signature_status":"signed_v1","signed_at":"2026-05-17T23:54:29.140196Z","signed_message":"canonical_sha256_bytes"},"source_id":"1902.02826","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:c5c24d66ab88799243cd0490ed4d79535161fd52f4fde6e99477297a3e31e118","sha256:57822d7e9d4d84498d4696f5a7d4b1bd9d57c7e733f0b8b59b54be164e5340f4"],"state_sha256":"b740197ce30ef1861cda9caff3393d2682ff3257692cc83b04c24c36e47b5e4f"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"vnY4Q+Ns3rIbgnc1iKNEu8W69h2DNwTOqC2ok9L7bPEruMPnAe1QFcl+PZsoK4F3NRjeejmDo/e1WumSgkdbDQ==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-11T11:09:38.479830Z","bundle_sha256":"50762e26d99ddfbb3448b5af9f9daee4adfe3c0755e461a7faaae6db31c39806"}}