{"as_of":"2026-08-16T13:53:00Z","caps":{"database_statements":6,"inbound":100,"outbound":100},"context_digest":"sha256:14453690ea8b4ddad1e3599fba8ee46513f31b87cc130e588b5a758044b49317","coverage":[{"denominator":13,"lane":"reference_resolution","note":"Typed states for the displayed outbound observations.","records_observed":13,"source":"paper_references, paper_reference_links","source_observed_at":"2026-08-11T15:01:54.407974Z","state":"measured"},{"denominator":13,"lane":"standing_notices","note":"One-hop event checks from named stored sources.","records_observed":13,"source":"scholarly_work_events, retraction_status_cache","source_observed_at":"2026-08-16T06:30:59.297886+00:00","state":"measured"},{"denominator":0,"lane":"inbound_itemization","note":"Pith citing papers itemized under the disclosed page cap.","records_observed":0,"source":"paper_references, paper_reference_links","source_observed_at":null,"state":"measured"},{"denominator":1,"lane":"external_citation_measurements","note":"A source-named dated measurement, never combined with another source.","records_observed":0,"source":"cited_works","source_observed_at":null,"state":"measured"}],"external_citation_measurements":[],"inbound":[],"links":{"evidence":"/evidence","html":"/paper/2412.11384/citation-record","integrity":"/paper/2412.11384/integrity","json":"/paper/2412.11384/citation-record.json","paper":"/paper/2412.11384"},"outbound":[{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-11T15:01:54.596498Z","title":"Adversarial Robustness Toolbox (ART),","venue":null,"work_id":"927a0f6b-64b4-4770-b46d-81cb06ab8d1d","year":null},"citing_paper":{"arxiv_id":"2412.11384","last_updated":"2024-12-16T02:27:54Z","snapshot_observed_at":"2026-08-16T08:31:45.137828Z","submitted_at":"2024-12-16T02:27:54Z","title":"A Comprehensive Review of Adversarial Attacks on Machine Learning","version":1},"reference_index":1,"source":"pdf_text","source_observed_at":"2026-08-11T15:01:54.354166Z"},"links":{"citing_paper":"/paper/2412.11384"},"observation_digest":"sha256:dd0be4e96839ea53783d77911ec0d8ac9a9fc05d7562160afff91354641082a3","observation_id":"1a64b2f5-ee0f-4b36-bdce-85665cb1874e","resolution":{"observed_at":"2026-08-11T15:01:54.600828Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-16T06:30:59.297886+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-16T06:30:59.297886+00:00","source":"crossref"},{"observed_at":"2026-08-16T06:30:54.164669+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"1312.6199","last_updated":"2014-02-19T16:33:14Z","snapshot_observed_at":"2026-08-15T16:41:15.505782Z","submitted_at":"2013-12-21T03:36:08Z","title":"Intriguing properties of neural networks","version":4},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"1312.6199","snapshot_observed_at":"2026-08-11T15:01:54.359060Z","title":"Intriguing properties of neural networks,","venue":null,"work_id":null,"year":2014},"citing_paper":{"arxiv_id":"2412.11384","last_updated":"2024-12-16T02:27:54Z","snapshot_observed_at":"2026-08-16T08:31:45.137828Z","submitted_at":"2024-12-16T02:27:54Z","title":"A Comprehensive Review of Adversarial Attacks on Machine Learning","version":1},"reference_index":2,"source":"pdf_text","source_observed_at":"2026-08-11T15:01:54.359060Z"},"links":{"cited_paper":"/paper/1312.6199","citing_paper":"/paper/2412.11384"},"observation_digest":"sha256:d87be6f6e18121747fa40314ad10dc2784551a1579232fc4d3e267ee04b140ac","observation_id":"2fa611b3-dcf6-40dc-b0d8-b957c25cd489","resolution":{"observed_at":"2026-08-11T15:01:54.359060Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"1412.6572","last_updated":"2015-03-20T20:19:16Z","snapshot_observed_at":"2026-08-12T17:13:46.394331Z","submitted_at":"2014-12-20T01:17:12Z","title":"Explaining and Harnessing Adversarial Examples","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"1412.6572","snapshot_observed_at":"2026-08-11T15:01:54.363871Z","title":"Explaining and Harnessing Adversarial Examples,","venue":null,"work_id":null,"year":2015},"citing_paper":{"arxiv_id":"2412.11384","last_updated":"2024-12-16T02:27:54Z","snapshot_observed_at":"2026-08-16T08:31:45.137828Z","submitted_at":"2024-12-16T02:27:54Z","title":"A Comprehensive Review of Adversarial Attacks on Machine Learning","version":1},"reference_index":3,"source":"pdf_text","source_observed_at":"2026-08-11T15:01:54.363871Z"},"links":{"cited_paper":"/paper/1412.6572","citing_paper":"/paper/2412.11384"},"observation_digest":"sha256:3b04a21281f9cd5a8171b709ffc2190dfb69525c71243360067dbb506a3a7af2","observation_id":"c2435796-664b-443f-a545-99f80d236109","resolution":{"observed_at":"2026-08-11T15:01:54.363871Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"1608.04644","last_updated":"2017-03-22T17:46:16Z","snapshot_observed_at":"2026-08-15T15:16:56.180227Z","submitted_at":"2016-08-16T15:59:35Z","title":"Towards Evaluating the Robustness of Neural Networks","version":2},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"1608.04644","snapshot_observed_at":"2026-08-11T15:01:54.368896Z","title":"Towards Evaluating the Robustness of Neural Networks,","venue":null,"work_id":null,"year":2017},"citing_paper":{"arxiv_id":"2412.11384","last_updated":"2024-12-16T02:27:54Z","snapshot_observed_at":"2026-08-16T08:31:45.137828Z","submitted_at":"2024-12-16T02:27:54Z","title":"A Comprehensive Review of Adversarial Attacks on Machine Learning","version":1},"reference_index":4,"source":"pdf_text","source_observed_at":"2026-08-11T15:01:54.368896Z"},"links":{"cited_paper":"/paper/1608.04644","citing_paper":"/paper/2412.11384"},"observation_digest":"sha256:7457df2e76efb9a03748fb59dea5af4a1ccd6bf2f712571a4eb211efbcb9076d","observation_id":"1f28775a-c5a0-4938-a24a-2383d56d6e0b","resolution":{"observed_at":"2026-08-11T15:01:54.368896Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"1611.02770","last_updated":"2017-02-07T14:24:44Z","snapshot_observed_at":"2026-08-14T21:31:19.477872Z","submitted_at":"2016-11-08T23:25:00Z","title":"Delving into Transferable Adversarial Examples and Black-box Attacks","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"1611.02770","snapshot_observed_at":"2026-08-11T15:01:54.377961Z","title":"Making an Invisibility Cloak: Real World,","venue":null,"work_id":null,"year":2020},"citing_paper":{"arxiv_id":"2412.11384","last_updated":"2024-12-16T02:27:54Z","snapshot_observed_at":"2026-08-16T08:31:45.137828Z","submitted_at":"2024-12-16T02:27:54Z","title":"A Comprehensive Review of Adversarial Attacks on Machine Learning","version":1},"reference_index":6,"source":"pdf_text","source_observed_at":"2026-08-11T15:01:54.377961Z"},"links":{"cited_paper":"/paper/1611.02770","citing_paper":"/paper/2412.11384"},"observation_digest":"sha256:092307f34c794f176280e20c81a6cf42cef76400e363b49143ceaa89480dcaf8","observation_id":"1bbb54b9-045b-4f22-a28b-58df6ccc60e5","resolution":{"observed_at":"2026-08-11T15:01:54.377961Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2101.02899","last_updated":"2021-01-08T08:16:41Z","snapshot_observed_at":"2026-08-16T12:38:52.158021Z","submitted_at":"2021-01-08T08:16:41Z","title":"Adversarial Attack Attribution: Discovering Attributable Signals in Adversarial ML Attacks","version":1},"cited_work":{"arxiv_id":"2101.02899","doi":null,"metadata_source":"pith","pith_arxiv_id":"2101.02899","snapshot_observed_at":"2026-08-11T15:01:54.499044Z","title":"Adversarial Attack Attribution: Discovering Attributable Signals in Adversarial ML Attacks","venue":"cs.LG","work_id":"2678d8d2-5165-4a95-9c07-99cf23c08287","year":2021},"citing_paper":{"arxiv_id":"2412.11384","last_updated":"2024-12-16T02:27:54Z","snapshot_observed_at":"2026-08-16T08:31:45.137828Z","submitted_at":"2024-12-16T02:27:54Z","title":"A Comprehensive Review of Adversarial Attacks on Machine Learning","version":1},"reference_index":7,"source":"pdf_text","source_observed_at":"2026-08-11T15:01:54.381952Z"},"links":{"cited_paper":"/paper/2101.02899","citing_paper":"/paper/2412.11384"},"observation_digest":"sha256:4286815c6c8981c167607a669111095781ffcc99bc7aa02879ca1d511445bbef","observation_id":"d556637b-c8fa-4cd7-9736-4ae8dea53109","resolution":{"observed_at":"2026-08-11T15:01:54.503609Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-16T06:30:59.297886+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-16T06:30:59.297886+00:00","source":"crossref"},{"observed_at":"2026-08-16T06:30:54.164669+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"1706.06083","last_updated":"2019-09-04T18:53:10Z","snapshot_observed_at":"2026-08-07T14:27:46.872660Z","submitted_at":"2017-06-19T17:53:11Z","title":"Towards Deep Learning Models Resistant to Adversarial Attacks","version":4},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"1706.06083","snapshot_observed_at":"2026-08-11T15:01:54.386349Z","title":"Towards Deep Learning Models Resistant to Adversarial Attacks,","venue":null,"work_id":null,"year":2019},"citing_paper":{"arxiv_id":"2412.11384","last_updated":"2024-12-16T02:27:54Z","snapshot_observed_at":"2026-08-16T08:31:45.137828Z","submitted_at":"2024-12-16T02:27:54Z","title":"A Comprehensive Review of Adversarial Attacks on Machine Learning","version":1},"reference_index":8,"source":"pdf_text","source_observed_at":"2026-08-11T15:01:54.386349Z"},"links":{"cited_paper":"/paper/1706.06083","citing_paper":"/paper/2412.11384"},"observation_digest":"sha256:76e9e8630229f002f1b4f5b96ebd26930a3881f3d0484aec3c163160f636ccb4","observation_id":"5d8aac70-e62c-4680-aab5-afe8832786d7","resolution":{"observed_at":"2026-08-11T15:01:54.386349Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"1809.00076","last_updated":"2018-09-24T20:25:03Z","snapshot_observed_at":"2026-08-15T10:26:33.115511Z","submitted_at":"2018-08-31T22:42:12Z","title":"3D Segmentation with Exponential Logarithmic Loss for Highly Unbalanced Object Sizes","version":2},"cited_work":{"arxiv_id":"1809.00076","doi":null,"metadata_source":"pith","pith_arxiv_id":"1809.00076","snapshot_observed_at":"2026-08-11T15:01:54.466872Z","title":"3D Segmentation with Exponential Logarithmic Loss for Highly Unbalanced Object Sizes","venue":"cs.CV","work_id":"301221ac-74ea-47b4-afb3-106d6b195690","year":2018},"citing_paper":{"arxiv_id":"2412.11384","last_updated":"2024-12-16T02:27:54Z","snapshot_observed_at":"2026-08-16T08:31:45.137828Z","submitted_at":"2024-12-16T02:27:54Z","title":"A Comprehensive Review of Adversarial Attacks on Machine Learning","version":1},"reference_index":9,"source":"pdf_text","source_observed_at":"2026-08-11T15:01:54.390092Z"},"links":{"cited_paper":"/paper/1809.00076","citing_paper":"/paper/2412.11384"},"observation_digest":"sha256:8b9967b58d98c5f42fef188ac62eff59d1f7f97bf77c2f15cade1fa199c317e2","observation_id":"fae178cf-3fa1-4070-bc41-4b9be2ac037f","resolution":{"observed_at":"2026-08-11T15:01:54.473211Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-16T06:30:59.297886+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-16T06:30:59.297886+00:00","source":"crossref"},{"observed_at":"2026-08-16T06:30:54.164669+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"1812.11118","last_updated":"2019-09-10T19:51:04Z","snapshot_observed_at":"2026-08-15T10:26:08.905543Z","submitted_at":"2018-12-28T17:15:38Z","title":"Reconciling modern machine learning practice and the bias-variance trade-off","version":2},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"1812.11118","snapshot_observed_at":"2026-08-11T15:01:54.393563Z","title":"Reconciling modern machine learning practice and the bias-variance trade-off,","venue":null,"work_id":null,"year":2019},"citing_paper":{"arxiv_id":"2412.11384","last_updated":"2024-12-16T02:27:54Z","snapshot_observed_at":"2026-08-16T08:31:45.137828Z","submitted_at":"2024-12-16T02:27:54Z","title":"A Comprehensive Review of Adversarial Attacks on Machine Learning","version":1},"reference_index":10,"source":"pdf_text","source_observed_at":"2026-08-11T15:01:54.393563Z"},"links":{"cited_paper":"/paper/1812.11118","citing_paper":"/paper/2412.11384"},"observation_digest":"sha256:2b7090d11d60f9b2dd50de20ad2d8498e5c899d7b57ca496a54b3ac70516f356","observation_id":"96440fc7-b3d5-4e70-a75b-56942e9f659b","resolution":{"observed_at":"2026-08-11T15:01:54.393563Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-11T15:01:54.584143Z","title":"Available: https://huggingface.co/facebook/detr-resnet-50","venue":null,"work_id":"0d8230b3-5040-425d-b011-38c9d3541630","year":null},"citing_paper":{"arxiv_id":"2412.11384","last_updated":"2024-12-16T02:27:54Z","snapshot_observed_at":"2026-08-16T08:31:45.137828Z","submitted_at":"2024-12-16T02:27:54Z","title":"A Comprehensive Review of Adversarial Attacks on Machine Learning","version":1},"reference_index":11,"source":"pdf_text","source_observed_at":"2026-08-11T15:01:54.396929Z"},"links":{"citing_paper":"/paper/2412.11384"},"observation_digest":"sha256:751f8902345ce1fc3618c8d719fb0848fe55632d79335000ae2c3602f29651ea","observation_id":"bf58bd93-4872-4391-b2d9-57266e61e9e0","resolution":{"observed_at":"2026-08-11T15:01:54.587952Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-16T06:30:59.297886+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-16T06:30:59.297886+00:00","source":"crossref"},{"observed_at":"2026-08-16T06:30:54.164669+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-11T15:01:54.572168Z","title":"Available: https://www.kaggle.com/datasets/alincijov/self-driving-cars","venue":null,"work_id":"17fc5f40-d1f8-4bc4-9688-d99f8385787c","year":null},"citing_paper":{"arxiv_id":"2412.11384","last_updated":"2024-12-16T02:27:54Z","snapshot_observed_at":"2026-08-16T08:31:45.137828Z","submitted_at":"2024-12-16T02:27:54Z","title":"A Comprehensive Review of Adversarial Attacks on Machine Learning","version":1},"reference_index":12,"source":"pdf_text","source_observed_at":"2026-08-11T15:01:54.400755Z"},"links":{"citing_paper":"/paper/2412.11384"},"observation_digest":"sha256:91c256871504d2a6fa12fa2a1892cae7749bf61db0e977db2c562f72f8f33ae5","observation_id":"066b75e1-e92e-4d0f-bef0-1db2aae2463c","resolution":{"observed_at":"2026-08-11T15:01:54.576470Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-16T06:30:59.297886+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-16T06:30:59.297886+00:00","source":"crossref"},{"observed_at":"2026-08-16T06:30:54.164669+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-11T15:01:54.559870Z","title":"Adversarial Robustness Toolbox v1.0.0,","venue":null,"work_id":"d4e2bbaa-a776-40fa-9b66-db53668bf760","year":2019},"citing_paper":{"arxiv_id":"2412.11384","last_updated":"2024-12-16T02:27:54Z","snapshot_observed_at":"2026-08-16T08:31:45.137828Z","submitted_at":"2024-12-16T02:27:54Z","title":"A Comprehensive Review of Adversarial Attacks on Machine Learning","version":1},"reference_index":13,"source":"pdf_text","source_observed_at":"2026-08-11T15:01:54.404219Z"},"links":{"citing_paper":"/paper/2412.11384"},"observation_digest":"sha256:3c9e46e06984a02c4e11653770e14f39b9f9a274643af5b785aea7a42127fe64","observation_id":"5579a181-63cd-4ef0-92ec-b4b6c28cf36c","resolution":{"observed_at":"2026-08-11T15:01:54.564051Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-16T06:30:59.297886+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-16T06:30:59.297886+00:00","source":"crossref"},{"observed_at":"2026-08-16T06:30:54.164669+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"1910.14667","last_updated":"2020-07-22T17:59:49Z","snapshot_observed_at":"2026-08-15T10:26:18.898023Z","submitted_at":"2019-10-31T17:56:29Z","title":"Making an Invisibility Cloak: Real World Adversarial Attacks on Object Detectors","version":2},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"1910.14667","snapshot_observed_at":"2026-08-11T15:01:54.407974Z","title":"Making an Invisibility Cloak: Real World,","venue":null,"work_id":null,"year":1910},"citing_paper":{"arxiv_id":"2412.11384","last_updated":"2024-12-16T02:27:54Z","snapshot_observed_at":"2026-08-16T08:31:45.137828Z","submitted_at":"2024-12-16T02:27:54Z","title":"A Comprehensive Review of Adversarial Attacks on Machine Learning","version":1},"reference_index":14,"source":"pdf_text","source_observed_at":"2026-08-11T15:01:54.407974Z"},"links":{"cited_paper":"/paper/1910.14667","citing_paper":"/paper/2412.11384"},"observation_digest":"sha256:4be182124a4fe21f358b790d49ceca407c6ff5cea24c6dc60074845541ff3184","observation_id":"6faaa9f3-5779-437b-be98-ca0c5c20864a","resolution":{"observed_at":"2026-08-11T15:01:54.407974Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}}],"paper":{"arxiv_id":"2412.11384","last_updated":"2024-12-16T02:27:54Z","latest_version":1,"primary_category":"cs.CR","snapshot_observed_at":"2026-08-16T08:31:45.137828Z","submitted_at":"2024-12-16T02:27:54Z","title":"A Comprehensive Review of Adversarial Attacks on Machine Learning"},"reference_resolution":{"displayed":13,"state_counts":{"malformed_identifier":0,"metadata_mismatch":0,"parse_uncertain":0,"unresolved":7,"verified_exact":2,"verified_fuzzy":4},"total_outbound_references":13},"refusal":"A citation records a reference. It does not transfer a finding from one paper to another.","schema":"pith.paper-citation-record.v1","standing_sources":[{"observed_at":"2026-08-16T06:30:59.297886+00:00","source":"crossref"},{"observed_at":"2026-08-16T06:30:54.164669+00:00","source":"retraction_watch"}],"thesis":"As of 16 August 2026, this Paper Citation Record lists 13 of 13 outbound references and 0 inbound Pith citation observations for arXiv:2412.11384."}