{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2018:ZABNKEYMNGF43XF2IKCC3LSXXK","short_pith_number":"pith:ZABNKEYM","canonical_record":{"source":{"id":"1806.04265","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2018-06-11T23:24:11Z","cross_cats_sorted":["cs.AI","cs.CR"],"title_canon_sha256":"9bc3ea95f9c56aeb5a401cedbbca4a0aa41d69d7ab48a60214303278b02340ae","abstract_canon_sha256":"dae74e1f49ee47a604d1a904d11f250f724d29375104e83c05ffc561d47af34b"},"schema_version":"1.0"},"canonical_sha256":"c802d5130c698bcddcba42842dae57baa3efc6396aa58a26a841fb0c2d326b43","source":{"kind":"arxiv","id":"1806.04265","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1806.04265","created_at":"2026-05-18T00:13:36Z"},{"alias_kind":"arxiv_version","alias_value":"1806.04265v1","created_at":"2026-05-18T00:13:36Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1806.04265","created_at":"2026-05-18T00:13:36Z"},{"alias_kind":"pith_short_12","alias_value":"ZABNKEYMNGF4","created_at":"2026-05-18T12:33:04Z"},{"alias_kind":"pith_short_16","alias_value":"ZABNKEYMNGF43XF2","created_at":"2026-05-18T12:33:04Z"},{"alias_kind":"pith_short_8","alias_value":"ZABNKEYM","created_at":"2026-05-18T12:33:04Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2018:ZABNKEYMNGF43XF2IKCC3LSXXK","target":"record","payload":{"canonical_record":{"source":{"id":"1806.04265","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2018-06-11T23:24:11Z","cross_cats_sorted":["cs.AI","cs.CR"],"title_canon_sha256":"9bc3ea95f9c56aeb5a401cedbbca4a0aa41d69d7ab48a60214303278b02340ae","abstract_canon_sha256":"dae74e1f49ee47a604d1a904d11f250f724d29375104e83c05ffc561d47af34b"},"schema_version":"1.0"},"canonical_sha256":"c802d5130c698bcddcba42842dae57baa3efc6396aa58a26a841fb0c2d326b43","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-18T00:13:36.032747Z","signature_b64":"ibWF4q7pYZO3ZXwsn0WG5nOmzjp6SAeAgftxhVquW9Tv2JHKz7nWmWq+tudjHT75TETb4LT9Wkq1mhbXKuO5Ag==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"c802d5130c698bcddcba42842dae57baa3efc6396aa58a26a841fb0c2d326b43","last_reissued_at":"2026-05-18T00:13:36.032146Z","signature_status":"signed_v1","first_computed_at":"2026-05-18T00:13:36.032146Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1806.04265","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:13:36Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"9u7P7YW0/Hpl5YtVMEkVavihRhsrUsyGIQ3BIqmgkICyh6jA7aJh3HO40lfO6m7eN8vN9DF8KtD7ufOqNiQHDQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-27T00:51:40.695446Z"},"content_sha256":"b0741b32cdb460d292e48a22749a50e911f643174cc22f1b2d43191cc337ad3e","schema_version":"1.0","event_id":"sha256:b0741b32cdb460d292e48a22749a50e911f643174cc22f1b2d43191cc337ad3e"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2018:ZABNKEYMNGF43XF2IKCC3LSXXK","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Accurate and Robust Neural Networks for Security Related Applications Exampled by Face Morphing Attacks","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.AI","cs.CR"],"primary_cat":"cs.CV","authors_text":"Anna Hilsmann, Clemens Seibold, Peter Eisert, Wojciech Samek","submitted_at":"2018-06-11T23:24:11Z","abstract_excerpt":"Artificial neural networks tend to learn only what they need for a task. A manipulation of the training data can counter this phenomenon. In this paper, we study the effect of different alterations of the training data, which limit the amount and position of information that is available for the decision making. We analyze the accuracy and robustness against semantic and black box attacks on the networks that were trained on different training data modifications for the particular example of morphing attacks. A morphing attack is an attack on a biometric facial recognition system where the sys"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1806.04265","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:13:36Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"mvXxfyQDASXxNaGf5+ej6ym7tkP+t5JGpZfddHAwWuN7tk0CfXIG+1OuRG+3VdpDsp6KXnG//WLYHSvaF+6/Aw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-27T00:51:40.696112Z"},"content_sha256":"9590f773867f789ba0b845b2cdc6d9ad7268e91474d640e778aa017d561239fb","schema_version":"1.0","event_id":"sha256:9590f773867f789ba0b845b2cdc6d9ad7268e91474d640e778aa017d561239fb"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/ZABNKEYMNGF43XF2IKCC3LSXXK/bundle.json","state_url":"https://pith.science/pith/ZABNKEYMNGF43XF2IKCC3LSXXK/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/ZABNKEYMNGF43XF2IKCC3LSXXK/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-27T00:51:40Z","links":{"resolver":"https://pith.science/pith/ZABNKEYMNGF43XF2IKCC3LSXXK","bundle":"https://pith.science/pith/ZABNKEYMNGF43XF2IKCC3LSXXK/bundle.json","state":"https://pith.science/pith/ZABNKEYMNGF43XF2IKCC3LSXXK/state.json","well_known_bundle":"https://pith.science/.well-known/pith/ZABNKEYMNGF43XF2IKCC3LSXXK/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2018:ZABNKEYMNGF43XF2IKCC3LSXXK","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"dae74e1f49ee47a604d1a904d11f250f724d29375104e83c05ffc561d47af34b","cross_cats_sorted":["cs.AI","cs.CR"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2018-06-11T23:24:11Z","title_canon_sha256":"9bc3ea95f9c56aeb5a401cedbbca4a0aa41d69d7ab48a60214303278b02340ae"},"schema_version":"1.0","source":{"id":"1806.04265","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1806.04265","created_at":"2026-05-18T00:13:36Z"},{"alias_kind":"arxiv_version","alias_value":"1806.04265v1","created_at":"2026-05-18T00:13:36Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1806.04265","created_at":"2026-05-18T00:13:36Z"},{"alias_kind":"pith_short_12","alias_value":"ZABNKEYMNGF4","created_at":"2026-05-18T12:33:04Z"},{"alias_kind":"pith_short_16","alias_value":"ZABNKEYMNGF43XF2","created_at":"2026-05-18T12:33:04Z"},{"alias_kind":"pith_short_8","alias_value":"ZABNKEYM","created_at":"2026-05-18T12:33:04Z"}],"graph_snapshots":[{"event_id":"sha256:9590f773867f789ba0b845b2cdc6d9ad7268e91474d640e778aa017d561239fb","target":"graph","created_at":"2026-05-18T00:13:36Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Artificial neural networks tend to learn only what they need for a task. A manipulation of the training data can counter this phenomenon. In this paper, we study the effect of different alterations of the training data, which limit the amount and position of information that is available for the decision making. We analyze the accuracy and robustness against semantic and black box attacks on the networks that were trained on different training data modifications for the particular example of morphing attacks. A morphing attack is an attack on a biometric facial recognition system where the sys","authors_text":"Anna Hilsmann, Clemens Seibold, Peter Eisert, Wojciech Samek","cross_cats":["cs.AI","cs.CR"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2018-06-11T23:24:11Z","title":"Accurate and Robust Neural Networks for Security Related Applications Exampled by Face Morphing Attacks"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1806.04265","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:b0741b32cdb460d292e48a22749a50e911f643174cc22f1b2d43191cc337ad3e","target":"record","created_at":"2026-05-18T00:13:36Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"dae74e1f49ee47a604d1a904d11f250f724d29375104e83c05ffc561d47af34b","cross_cats_sorted":["cs.AI","cs.CR"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2018-06-11T23:24:11Z","title_canon_sha256":"9bc3ea95f9c56aeb5a401cedbbca4a0aa41d69d7ab48a60214303278b02340ae"},"schema_version":"1.0","source":{"id":"1806.04265","kind":"arxiv","version":1}},"canonical_sha256":"c802d5130c698bcddcba42842dae57baa3efc6396aa58a26a841fb0c2d326b43","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"c802d5130c698bcddcba42842dae57baa3efc6396aa58a26a841fb0c2d326b43","first_computed_at":"2026-05-18T00:13:36.032146Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-18T00:13:36.032146Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"ibWF4q7pYZO3ZXwsn0WG5nOmzjp6SAeAgftxhVquW9Tv2JHKz7nWmWq+tudjHT75TETb4LT9Wkq1mhbXKuO5Ag==","signature_status":"signed_v1","signed_at":"2026-05-18T00:13:36.032747Z","signed_message":"canonical_sha256_bytes"},"source_id":"1806.04265","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:b0741b32cdb460d292e48a22749a50e911f643174cc22f1b2d43191cc337ad3e","sha256:9590f773867f789ba0b845b2cdc6d9ad7268e91474d640e778aa017d561239fb"],"state_sha256":"242984cd0428fecc7072573caf99a331ec03b1cd8af5a3d3324f0c1cf752705f"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"m1hvLDYlJ3JXd/VieSrBzrTi/knfUkOjTMwJ0Cj1jhkbNBU7BJQ3A6Mkq/9COB8Xi3v01WsF+H0wGNwBUwgyBg==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-27T00:51:40.699094Z","bundle_sha256":"572398d0098e7988f2b68fe10cae87401d475617955acb9f249e4f1f1510ba1f"}}