{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2019:Z366PVCDHL4VZ4OTD254QQ6O5N","short_pith_number":"pith:Z366PVCD","canonical_record":{"source":{"id":"1901.03597","kind":"arxiv","version":3},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2019-01-11T14:41:31Z","cross_cats_sorted":["cs.CV","cs.LG"],"title_canon_sha256":"95630fb94e38ec202e459a5f892291aa08959a7d353f27aa13554403e7cb6cfd","abstract_canon_sha256":"f32cd3df5d50184185cc907a6896499f0d9f57d07f6174ed25f8c60d6d82bf67"},"schema_version":"1.0"},"canonical_sha256":"cefde7d4433af95cf1d31ebbc843ceeb40d4a3cdfab1b153735598a9397b11e8","source":{"kind":"arxiv","id":"1901.03597","version":3},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1901.03597","created_at":"2026-05-17T23:44:02Z"},{"alias_kind":"arxiv_version","alias_value":"1901.03597v3","created_at":"2026-05-17T23:44:02Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1901.03597","created_at":"2026-05-17T23:44:02Z"},{"alias_kind":"pith_short_12","alias_value":"Z366PVCDHL4V","created_at":"2026-05-18T12:33:33Z"},{"alias_kind":"pith_short_16","alias_value":"Z366PVCDHL4VZ4OT","created_at":"2026-05-18T12:33:33Z"},{"alias_kind":"pith_short_8","alias_value":"Z366PVCD","created_at":"2026-05-18T12:33:33Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2019:Z366PVCDHL4VZ4OTD254QQ6O5N","target":"record","payload":{"canonical_record":{"source":{"id":"1901.03597","kind":"arxiv","version":3},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2019-01-11T14:41:31Z","cross_cats_sorted":["cs.CV","cs.LG"],"title_canon_sha256":"95630fb94e38ec202e459a5f892291aa08959a7d353f27aa13554403e7cb6cfd","abstract_canon_sha256":"f32cd3df5d50184185cc907a6896499f0d9f57d07f6174ed25f8c60d6d82bf67"},"schema_version":"1.0"},"canonical_sha256":"cefde7d4433af95cf1d31ebbc843ceeb40d4a3cdfab1b153735598a9397b11e8","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:44:02.541425Z","signature_b64":"CiWy3Ytf7iAuN9vT9vrCv/PmAVnioeKuqgGmnvFRrVW8T3fJjCGgOJKrHE4vfswOWWkQJRQUyyvbw9e8XGd3Dw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"cefde7d4433af95cf1d31ebbc843ceeb40d4a3cdfab1b153735598a9397b11e8","last_reissued_at":"2026-05-17T23:44:02.541027Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:44:02.541027Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1901.03597","source_version":3,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:44:02Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"S0hfM0QsSGefX7HKcM/vH87woEwnubszQgc0Ki/qRKGxW2yWJfs3xrU2dV2ZWzLY+J9PlUKu042/GRWuyOZ1DA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-31T19:06:36.392984Z"},"content_sha256":"3aa95eae06c8666caeed7a6ba613eebb82fc0b54278da247628ebc155a46c063","schema_version":"1.0","event_id":"sha256:3aa95eae06c8666caeed7a6ba613eebb82fc0b54278da247628ebc155a46c063"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2019:Z366PVCDHL4VZ4OTD254QQ6O5N","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"CT-GAN: Malicious Tampering of 3D Medical Imagery using Deep Learning","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.CV","cs.LG"],"primary_cat":"cs.CR","authors_text":"Ilan Shelef, Tom Mahler, Yisroel Mirsky, Yuval Elovici","submitted_at":"2019-01-11T14:41:31Z","abstract_excerpt":"In 2018, clinics and hospitals were hit with numerous attacks leading to significant data breaches and interruptions in medical services. An attacker with access to medical records can do much more than hold the data for ransom or sell it on the black market.\n  In this paper, we show how an attacker can use deep-learning to add or remove evidence of medical conditions from volumetric (3D) medical scans. An attacker may perform this act in order to stop a political candidate, sabotage research, commit insurance fraud, perform an act of terrorism, or even commit murder. We implement the attack u"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1901.03597","kind":"arxiv","version":3},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:44:02Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"4weNjRhrQuDGIp8c/PcMH2hbpOVr0VeiOanYJYi6uNePwYvytmfILBhDRVU/rZqfrqCGCMqYkcfngElTi5c0Ag==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-31T19:06:36.393632Z"},"content_sha256":"febc9587513d0ae543f011116eac67350d756230e6fc920412d2515feb76053e","schema_version":"1.0","event_id":"sha256:febc9587513d0ae543f011116eac67350d756230e6fc920412d2515feb76053e"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/Z366PVCDHL4VZ4OTD254QQ6O5N/bundle.json","state_url":"https://pith.science/pith/Z366PVCDHL4VZ4OTD254QQ6O5N/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/Z366PVCDHL4VZ4OTD254QQ6O5N/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-31T19:06:36Z","links":{"resolver":"https://pith.science/pith/Z366PVCDHL4VZ4OTD254QQ6O5N","bundle":"https://pith.science/pith/Z366PVCDHL4VZ4OTD254QQ6O5N/bundle.json","state":"https://pith.science/pith/Z366PVCDHL4VZ4OTD254QQ6O5N/state.json","well_known_bundle":"https://pith.science/.well-known/pith/Z366PVCDHL4VZ4OTD254QQ6O5N/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2019:Z366PVCDHL4VZ4OTD254QQ6O5N","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"f32cd3df5d50184185cc907a6896499f0d9f57d07f6174ed25f8c60d6d82bf67","cross_cats_sorted":["cs.CV","cs.LG"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2019-01-11T14:41:31Z","title_canon_sha256":"95630fb94e38ec202e459a5f892291aa08959a7d353f27aa13554403e7cb6cfd"},"schema_version":"1.0","source":{"id":"1901.03597","kind":"arxiv","version":3}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1901.03597","created_at":"2026-05-17T23:44:02Z"},{"alias_kind":"arxiv_version","alias_value":"1901.03597v3","created_at":"2026-05-17T23:44:02Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1901.03597","created_at":"2026-05-17T23:44:02Z"},{"alias_kind":"pith_short_12","alias_value":"Z366PVCDHL4V","created_at":"2026-05-18T12:33:33Z"},{"alias_kind":"pith_short_16","alias_value":"Z366PVCDHL4VZ4OT","created_at":"2026-05-18T12:33:33Z"},{"alias_kind":"pith_short_8","alias_value":"Z366PVCD","created_at":"2026-05-18T12:33:33Z"}],"graph_snapshots":[{"event_id":"sha256:febc9587513d0ae543f011116eac67350d756230e6fc920412d2515feb76053e","target":"graph","created_at":"2026-05-17T23:44:02Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"In 2018, clinics and hospitals were hit with numerous attacks leading to significant data breaches and interruptions in medical services. An attacker with access to medical records can do much more than hold the data for ransom or sell it on the black market.\n  In this paper, we show how an attacker can use deep-learning to add or remove evidence of medical conditions from volumetric (3D) medical scans. An attacker may perform this act in order to stop a political candidate, sabotage research, commit insurance fraud, perform an act of terrorism, or even commit murder. We implement the attack u","authors_text":"Ilan Shelef, Tom Mahler, Yisroel Mirsky, Yuval Elovici","cross_cats":["cs.CV","cs.LG"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2019-01-11T14:41:31Z","title":"CT-GAN: Malicious Tampering of 3D Medical Imagery using Deep Learning"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1901.03597","kind":"arxiv","version":3},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:3aa95eae06c8666caeed7a6ba613eebb82fc0b54278da247628ebc155a46c063","target":"record","created_at":"2026-05-17T23:44:02Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"f32cd3df5d50184185cc907a6896499f0d9f57d07f6174ed25f8c60d6d82bf67","cross_cats_sorted":["cs.CV","cs.LG"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2019-01-11T14:41:31Z","title_canon_sha256":"95630fb94e38ec202e459a5f892291aa08959a7d353f27aa13554403e7cb6cfd"},"schema_version":"1.0","source":{"id":"1901.03597","kind":"arxiv","version":3}},"canonical_sha256":"cefde7d4433af95cf1d31ebbc843ceeb40d4a3cdfab1b153735598a9397b11e8","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"cefde7d4433af95cf1d31ebbc843ceeb40d4a3cdfab1b153735598a9397b11e8","first_computed_at":"2026-05-17T23:44:02.541027Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-17T23:44:02.541027Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"CiWy3Ytf7iAuN9vT9vrCv/PmAVnioeKuqgGmnvFRrVW8T3fJjCGgOJKrHE4vfswOWWkQJRQUyyvbw9e8XGd3Dw==","signature_status":"signed_v1","signed_at":"2026-05-17T23:44:02.541425Z","signed_message":"canonical_sha256_bytes"},"source_id":"1901.03597","source_kind":"arxiv","source_version":3}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:3aa95eae06c8666caeed7a6ba613eebb82fc0b54278da247628ebc155a46c063","sha256:febc9587513d0ae543f011116eac67350d756230e6fc920412d2515feb76053e"],"state_sha256":"4dae9e49967cbd1ba55284688a3c039e3c770bb4b24e0626c1e6c92ebd39f84c"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"v5vI5tqO7hpfJWIfo++vBR2KF5HXKu9f2M/2hFWecgi5aVy2kFc78CGidQLf/6cJwzFPBTWXq34GCP/SmVLjCQ==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-31T19:06:36.397309Z","bundle_sha256":"6e376c5228286295ba328ed72c2eaa9b0b70188e109ccb83e960025730c11357"}}