{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2018:YWYL5HASS6KPOZ76GOTZN6PIE3","short_pith_number":"pith:YWYL5HAS","canonical_record":{"source":{"id":"1812.02575","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"stat.ML","submitted_at":"2018-12-06T14:59:29Z","cross_cats_sorted":["cs.CR","cs.LG"],"title_canon_sha256":"3f89946272c70459281b01f11a71bee83dc64c1ffbfcbc55fdba9581b6473f7e","abstract_canon_sha256":"9413939d073652e25f4c620870a8422cc6dcb5ec62be9b3cfbfdbe8d3193f61b"},"schema_version":"1.0"},"canonical_sha256":"c5b0be9c129794f767fe33a796f9e826cf6531d572e9a05b8a42901f4fe6cdc6","source":{"kind":"arxiv","id":"1812.02575","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1812.02575","created_at":"2026-05-17T23:58:55Z"},{"alias_kind":"arxiv_version","alias_value":"1812.02575v1","created_at":"2026-05-17T23:58:55Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1812.02575","created_at":"2026-05-17T23:58:55Z"},{"alias_kind":"pith_short_12","alias_value":"YWYL5HASS6KP","created_at":"2026-05-18T12:33:04Z"},{"alias_kind":"pith_short_16","alias_value":"YWYL5HASS6KPOZ76","created_at":"2026-05-18T12:33:04Z"},{"alias_kind":"pith_short_8","alias_value":"YWYL5HAS","created_at":"2026-05-18T12:33:04Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2018:YWYL5HASS6KPOZ76GOTZN6PIE3","target":"record","payload":{"canonical_record":{"source":{"id":"1812.02575","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"stat.ML","submitted_at":"2018-12-06T14:59:29Z","cross_cats_sorted":["cs.CR","cs.LG"],"title_canon_sha256":"3f89946272c70459281b01f11a71bee83dc64c1ffbfcbc55fdba9581b6473f7e","abstract_canon_sha256":"9413939d073652e25f4c620870a8422cc6dcb5ec62be9b3cfbfdbe8d3193f61b"},"schema_version":"1.0"},"canonical_sha256":"c5b0be9c129794f767fe33a796f9e826cf6531d572e9a05b8a42901f4fe6cdc6","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:58:55.070937Z","signature_b64":"+0uwp5GEhUvKYxhOOwpvDFRwHJs47My9fwdRlF0s1GylmNR3aF+KbAfDVhoM2diLUneYN/dbWAuO27mBOD4cCA==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"c5b0be9c129794f767fe33a796f9e826cf6531d572e9a05b8a42901f4fe6cdc6","last_reissued_at":"2026-05-17T23:58:55.070500Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:58:55.070500Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1812.02575","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:58:55Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"SJkKxcL86iPbHQU3zRqYSom0TgXA5DeYKtD60vdbrHatCX6ZqUjhd+A3fTeDIut3ARNlnCQGo5zRhrJVNAmlBQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-05T04:54:07.895148Z"},"content_sha256":"42e7c1520202da566aaa5b7a6bb04156ebcf841927ab47d57f56649ec2bda467","schema_version":"1.0","event_id":"sha256:42e7c1520202da566aaa5b7a6bb04156ebcf841927ab47d57f56649ec2bda467"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2018:YWYL5HASS6KPOZ76GOTZN6PIE3","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Prior Networks for Detection of Adversarial Attacks","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.CR","cs.LG"],"primary_cat":"stat.ML","authors_text":"Andrey Malinin, Mark Gales","submitted_at":"2018-12-06T14:59:29Z","abstract_excerpt":"Adversarial examples are considered a serious issue for safety critical applications of AI, such as finance, autonomous vehicle control and medicinal applications. Though significant work has resulted in increased robustness of systems to these attacks, systems are still vulnerable to well-crafted attacks. To address this problem, several adversarial attack detection methods have been proposed. However, a system can still be vulnerable to adversarial samples that are designed to specifically evade these detection methods. One recent detection scheme that has shown good performance is based on "},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1812.02575","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:58:55Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"uhkeOJJ2inKB4CR0aZwZSLAN6c4s1LIv2eR+WUOZWOJlnInWlDgg3p88Cfb0SN80e9pFL6UCF8e1LhBxYiugDw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-05T04:54:07.895604Z"},"content_sha256":"5b489a00fd1e2029ce6ef4d1f404f1cea8e442c319101758335580088fb2a980","schema_version":"1.0","event_id":"sha256:5b489a00fd1e2029ce6ef4d1f404f1cea8e442c319101758335580088fb2a980"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/YWYL5HASS6KPOZ76GOTZN6PIE3/bundle.json","state_url":"https://pith.science/pith/YWYL5HASS6KPOZ76GOTZN6PIE3/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/YWYL5HASS6KPOZ76GOTZN6PIE3/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-05T04:54:07Z","links":{"resolver":"https://pith.science/pith/YWYL5HASS6KPOZ76GOTZN6PIE3","bundle":"https://pith.science/pith/YWYL5HASS6KPOZ76GOTZN6PIE3/bundle.json","state":"https://pith.science/pith/YWYL5HASS6KPOZ76GOTZN6PIE3/state.json","well_known_bundle":"https://pith.science/.well-known/pith/YWYL5HASS6KPOZ76GOTZN6PIE3/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2018:YWYL5HASS6KPOZ76GOTZN6PIE3","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"9413939d073652e25f4c620870a8422cc6dcb5ec62be9b3cfbfdbe8d3193f61b","cross_cats_sorted":["cs.CR","cs.LG"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"stat.ML","submitted_at":"2018-12-06T14:59:29Z","title_canon_sha256":"3f89946272c70459281b01f11a71bee83dc64c1ffbfcbc55fdba9581b6473f7e"},"schema_version":"1.0","source":{"id":"1812.02575","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1812.02575","created_at":"2026-05-17T23:58:55Z"},{"alias_kind":"arxiv_version","alias_value":"1812.02575v1","created_at":"2026-05-17T23:58:55Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1812.02575","created_at":"2026-05-17T23:58:55Z"},{"alias_kind":"pith_short_12","alias_value":"YWYL5HASS6KP","created_at":"2026-05-18T12:33:04Z"},{"alias_kind":"pith_short_16","alias_value":"YWYL5HASS6KPOZ76","created_at":"2026-05-18T12:33:04Z"},{"alias_kind":"pith_short_8","alias_value":"YWYL5HAS","created_at":"2026-05-18T12:33:04Z"}],"graph_snapshots":[{"event_id":"sha256:5b489a00fd1e2029ce6ef4d1f404f1cea8e442c319101758335580088fb2a980","target":"graph","created_at":"2026-05-17T23:58:55Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Adversarial examples are considered a serious issue for safety critical applications of AI, such as finance, autonomous vehicle control and medicinal applications. Though significant work has resulted in increased robustness of systems to these attacks, systems are still vulnerable to well-crafted attacks. To address this problem, several adversarial attack detection methods have been proposed. However, a system can still be vulnerable to adversarial samples that are designed to specifically evade these detection methods. One recent detection scheme that has shown good performance is based on ","authors_text":"Andrey Malinin, Mark Gales","cross_cats":["cs.CR","cs.LG"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"stat.ML","submitted_at":"2018-12-06T14:59:29Z","title":"Prior Networks for Detection of Adversarial Attacks"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1812.02575","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:42e7c1520202da566aaa5b7a6bb04156ebcf841927ab47d57f56649ec2bda467","target":"record","created_at":"2026-05-17T23:58:55Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"9413939d073652e25f4c620870a8422cc6dcb5ec62be9b3cfbfdbe8d3193f61b","cross_cats_sorted":["cs.CR","cs.LG"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"stat.ML","submitted_at":"2018-12-06T14:59:29Z","title_canon_sha256":"3f89946272c70459281b01f11a71bee83dc64c1ffbfcbc55fdba9581b6473f7e"},"schema_version":"1.0","source":{"id":"1812.02575","kind":"arxiv","version":1}},"canonical_sha256":"c5b0be9c129794f767fe33a796f9e826cf6531d572e9a05b8a42901f4fe6cdc6","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"c5b0be9c129794f767fe33a796f9e826cf6531d572e9a05b8a42901f4fe6cdc6","first_computed_at":"2026-05-17T23:58:55.070500Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-17T23:58:55.070500Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"+0uwp5GEhUvKYxhOOwpvDFRwHJs47My9fwdRlF0s1GylmNR3aF+KbAfDVhoM2diLUneYN/dbWAuO27mBOD4cCA==","signature_status":"signed_v1","signed_at":"2026-05-17T23:58:55.070937Z","signed_message":"canonical_sha256_bytes"},"source_id":"1812.02575","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:42e7c1520202da566aaa5b7a6bb04156ebcf841927ab47d57f56649ec2bda467","sha256:5b489a00fd1e2029ce6ef4d1f404f1cea8e442c319101758335580088fb2a980"],"state_sha256":"71a5d64f6723ec66532c6f8df40a7dcdc657c0294e5035fa9de2722ab5a5a15d"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"CYY3Qqj03VUo98r8WvIcIP+o98ORO8Qkr+kVPAjWxHzP3huNDlDTBxErP9ys0lvlUKIwgCeAAuEGONyYMpQVAw==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-05T04:54:07.899076Z","bundle_sha256":"ab8e4b52d39c8c71b272087f1e90c5286f20117c85cc52ce63685323e634da65"}}