{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2019:2RMSAYRPGMBNQ6OQHW2QV2TSB3","short_pith_number":"pith:2RMSAYRP","canonical_record":{"source":{"id":"1905.12386","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-05-29T12:51:31Z","cross_cats_sorted":["cs.CR","stat.ML"],"title_canon_sha256":"e01cd25b97baf2fe3dfec19832e39cd7725e54750951ebaa9f8140f5d8a1b2f3","abstract_canon_sha256":"2ce3f1234236d6b97c0a9ce3f4375bbc9acfdc9788f0dabcaaee88c83e4b83b5"},"schema_version":"1.0"},"canonical_sha256":"d45920622f3302d879d03db50aea720ed28845a9626086e114d6152f9d646031","source":{"kind":"arxiv","id":"1905.12386","version":2},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1905.12386","created_at":"2026-05-17T23:44:37Z"},{"alias_kind":"arxiv_version","alias_value":"1905.12386v2","created_at":"2026-05-17T23:44:37Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1905.12386","created_at":"2026-05-17T23:44:37Z"},{"alias_kind":"pith_short_12","alias_value":"2RMSAYRPGMBN","created_at":"2026-05-18T12:33:07Z"},{"alias_kind":"pith_short_16","alias_value":"2RMSAYRPGMBNQ6OQ","created_at":"2026-05-18T12:33:07Z"},{"alias_kind":"pith_short_8","alias_value":"2RMSAYRP","created_at":"2026-05-18T12:33:07Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2019:2RMSAYRPGMBNQ6OQHW2QV2TSB3","target":"record","payload":{"canonical_record":{"source":{"id":"1905.12386","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-05-29T12:51:31Z","cross_cats_sorted":["cs.CR","stat.ML"],"title_canon_sha256":"e01cd25b97baf2fe3dfec19832e39cd7725e54750951ebaa9f8140f5d8a1b2f3","abstract_canon_sha256":"2ce3f1234236d6b97c0a9ce3f4375bbc9acfdc9788f0dabcaaee88c83e4b83b5"},"schema_version":"1.0"},"canonical_sha256":"d45920622f3302d879d03db50aea720ed28845a9626086e114d6152f9d646031","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:44:37.351129Z","signature_b64":"ull0+S1cITVJVQDJwkry2NZ9YTNl/IKUMAb9UqrAalr0WjhMnhgmiN5jOT/FsZ1LK2+HmExGAalu53XUoJ+BCg==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"d45920622f3302d879d03db50aea720ed28845a9626086e114d6152f9d646031","last_reissued_at":"2026-05-17T23:44:37.350440Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:44:37.350440Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1905.12386","source_version":2,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:44:37Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"iuJH3+2kH11lcp6m7yxfrXFj9JERsjb4VU1uwWLNlBpHZNHiquQYwIPXnr1QkuXTHYbK8lGIo4gB7rZFQ9HMBA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-02T02:33:19.338476Z"},"content_sha256":"64bce666ba030d894592f160e2cff1c551420b7ef30d271cb8e0e672262f8919","schema_version":"1.0","event_id":"sha256:64bce666ba030d894592f160e2cff1c551420b7ef30d271cb8e0e672262f8919"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2019:2RMSAYRPGMBNQ6OQHW2QV2TSB3","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Misleading Authorship Attribution of Source Code using Adversarial Learning","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.CR","stat.ML"],"primary_cat":"cs.LG","authors_text":"Alwin Maier, Erwin Quiring, Konrad Rieck","submitted_at":"2019-05-29T12:51:31Z","abstract_excerpt":"In this paper, we present a novel attack against authorship attribution of source code. We exploit that recent attribution methods rest on machine learning and thus can be deceived by adversarial examples of source code. Our attack performs a series of semantics-preserving code transformations that mislead learning-based attribution but appear plausible to a developer. The attack is guided by Monte-Carlo tree search that enables us to operate in the discrete domain of source code. In an empirical evaluation with source code from 204 programmers, we demonstrate that our attack has a substantial"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1905.12386","kind":"arxiv","version":2},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:44:37Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"VfhfE7a0juYlrvEVr96lpHV0DfmPaNzZ1Z/aLGoaJz2ysGLZpW7HjcVQGUuZZY7VgNr+HnnhrBmvHWxNJteEBg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-02T02:33:19.338827Z"},"content_sha256":"2a5548946a9d7c4bc804aafb670707f250e631f6ab7c2db4a7e7757e0946ad11","schema_version":"1.0","event_id":"sha256:2a5548946a9d7c4bc804aafb670707f250e631f6ab7c2db4a7e7757e0946ad11"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/2RMSAYRPGMBNQ6OQHW2QV2TSB3/bundle.json","state_url":"https://pith.science/pith/2RMSAYRPGMBNQ6OQHW2QV2TSB3/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/2RMSAYRPGMBNQ6OQHW2QV2TSB3/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-02T02:33:19Z","links":{"resolver":"https://pith.science/pith/2RMSAYRPGMBNQ6OQHW2QV2TSB3","bundle":"https://pith.science/pith/2RMSAYRPGMBNQ6OQHW2QV2TSB3/bundle.json","state":"https://pith.science/pith/2RMSAYRPGMBNQ6OQHW2QV2TSB3/state.json","well_known_bundle":"https://pith.science/.well-known/pith/2RMSAYRPGMBNQ6OQHW2QV2TSB3/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2019:2RMSAYRPGMBNQ6OQHW2QV2TSB3","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"2ce3f1234236d6b97c0a9ce3f4375bbc9acfdc9788f0dabcaaee88c83e4b83b5","cross_cats_sorted":["cs.CR","stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-05-29T12:51:31Z","title_canon_sha256":"e01cd25b97baf2fe3dfec19832e39cd7725e54750951ebaa9f8140f5d8a1b2f3"},"schema_version":"1.0","source":{"id":"1905.12386","kind":"arxiv","version":2}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1905.12386","created_at":"2026-05-17T23:44:37Z"},{"alias_kind":"arxiv_version","alias_value":"1905.12386v2","created_at":"2026-05-17T23:44:37Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1905.12386","created_at":"2026-05-17T23:44:37Z"},{"alias_kind":"pith_short_12","alias_value":"2RMSAYRPGMBN","created_at":"2026-05-18T12:33:07Z"},{"alias_kind":"pith_short_16","alias_value":"2RMSAYRPGMBNQ6OQ","created_at":"2026-05-18T12:33:07Z"},{"alias_kind":"pith_short_8","alias_value":"2RMSAYRP","created_at":"2026-05-18T12:33:07Z"}],"graph_snapshots":[{"event_id":"sha256:2a5548946a9d7c4bc804aafb670707f250e631f6ab7c2db4a7e7757e0946ad11","target":"graph","created_at":"2026-05-17T23:44:37Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"In this paper, we present a novel attack against authorship attribution of source code. We exploit that recent attribution methods rest on machine learning and thus can be deceived by adversarial examples of source code. Our attack performs a series of semantics-preserving code transformations that mislead learning-based attribution but appear plausible to a developer. The attack is guided by Monte-Carlo tree search that enables us to operate in the discrete domain of source code. In an empirical evaluation with source code from 204 programmers, we demonstrate that our attack has a substantial","authors_text":"Alwin Maier, Erwin Quiring, Konrad Rieck","cross_cats":["cs.CR","stat.ML"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-05-29T12:51:31Z","title":"Misleading Authorship Attribution of Source Code using Adversarial Learning"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1905.12386","kind":"arxiv","version":2},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:64bce666ba030d894592f160e2cff1c551420b7ef30d271cb8e0e672262f8919","target":"record","created_at":"2026-05-17T23:44:37Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"2ce3f1234236d6b97c0a9ce3f4375bbc9acfdc9788f0dabcaaee88c83e4b83b5","cross_cats_sorted":["cs.CR","stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-05-29T12:51:31Z","title_canon_sha256":"e01cd25b97baf2fe3dfec19832e39cd7725e54750951ebaa9f8140f5d8a1b2f3"},"schema_version":"1.0","source":{"id":"1905.12386","kind":"arxiv","version":2}},"canonical_sha256":"d45920622f3302d879d03db50aea720ed28845a9626086e114d6152f9d646031","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"d45920622f3302d879d03db50aea720ed28845a9626086e114d6152f9d646031","first_computed_at":"2026-05-17T23:44:37.350440Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-17T23:44:37.350440Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"ull0+S1cITVJVQDJwkry2NZ9YTNl/IKUMAb9UqrAalr0WjhMnhgmiN5jOT/FsZ1LK2+HmExGAalu53XUoJ+BCg==","signature_status":"signed_v1","signed_at":"2026-05-17T23:44:37.351129Z","signed_message":"canonical_sha256_bytes"},"source_id":"1905.12386","source_kind":"arxiv","source_version":2}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:64bce666ba030d894592f160e2cff1c551420b7ef30d271cb8e0e672262f8919","sha256:2a5548946a9d7c4bc804aafb670707f250e631f6ab7c2db4a7e7757e0946ad11"],"state_sha256":"7e433563345942655f9a03b4b55e5b687066ea87093c142450db62bfd33edb5b"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"Nn2BMMGTmi0Risyv9lSavpy1ibLlVz8AWXB6x0CE9cU7jHSsvMzD3RjknbgfFMyf41GfR8ZWMCQD0ZSGtOyhBQ==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-02T02:33:19.340878Z","bundle_sha256":"0da355242538063581e548050e5db798324b4a5a5eb6a1474694000a3c20939d"}}