{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2025:47CLSN7MHRSWTUVJQJFQABHZ2J","short_pith_number":"pith:47CLSN7M","canonical_record":{"source":{"id":"2510.11709","kind":"arxiv","version":2},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2025-10-13T17:59:02Z","cross_cats_sorted":["cs.AI","cs.CV"],"title_canon_sha256":"b6a1c28074448191ebaf25568f47214a82dce83bc6af3fad67a41b43da561a99","abstract_canon_sha256":"03f12e54aed8c09b01581faa1f6632fcf3cf9e447039250b4f15d84a0e7ca1c4"},"schema_version":"1.0"},"canonical_sha256":"e7c4b937ec3c6569d2a9824b0004f9d25b9e88952054acaa58839de2fc7dfcc4","source":{"kind":"arxiv","id":"2510.11709","version":2},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2510.11709","created_at":"2026-06-19T16:09:51Z"},{"alias_kind":"arxiv_version","alias_value":"2510.11709v2","created_at":"2026-06-19T16:09:51Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2510.11709","created_at":"2026-06-19T16:09:51Z"},{"alias_kind":"pith_short_12","alias_value":"47CLSN7MHRSW","created_at":"2026-06-19T16:09:51Z"},{"alias_kind":"pith_short_16","alias_value":"47CLSN7MHRSWTUVJ","created_at":"2026-06-19T16:09:51Z"},{"alias_kind":"pith_short_8","alias_value":"47CLSN7M","created_at":"2026-06-19T16:09:51Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2025:47CLSN7MHRSWTUVJQJFQABHZ2J","target":"record","payload":{"canonical_record":{"source":{"id":"2510.11709","kind":"arxiv","version":2},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2025-10-13T17:59:02Z","cross_cats_sorted":["cs.AI","cs.CV"],"title_canon_sha256":"b6a1c28074448191ebaf25568f47214a82dce83bc6af3fad67a41b43da561a99","abstract_canon_sha256":"03f12e54aed8c09b01581faa1f6632fcf3cf9e447039250b4f15d84a0e7ca1c4"},"schema_version":"1.0"},"canonical_sha256":"e7c4b937ec3c6569d2a9824b0004f9d25b9e88952054acaa58839de2fc7dfcc4","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-06-19T16:09:51.628783Z","signature_b64":"LQKk0BV2wlsmQu+ACAcY733YO+gw+aP9YwHdgZI85dKso8K4TQTWpDzAF6D+PXnsImEkidLU1EvMgFGuIgXEAw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"e7c4b937ec3c6569d2a9824b0004f9d25b9e88952054acaa58839de2fc7dfcc4","last_reissued_at":"2026-06-19T16:09:51.628357Z","signature_status":"signed_v1","first_computed_at":"2026-06-19T16:09:51.628357Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"2510.11709","source_version":2,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-06-19T16:09:51Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"shUS70KW3dejhDxAq6x8ltnUjDsnp97ZePzAXmxKYYAsAoarUqzEVVM7UIMGl8zx+sLVLKKFTsjZ0/KCQBQFBQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-07-04T12:08:37.751886Z"},"content_sha256":"f1813461f584282231c2e292631d3aa2f9466b5006152b23698d91d564894191","schema_version":"1.0","event_id":"sha256:f1813461f584282231c2e292631d3aa2f9466b5006152b23698d91d564894191"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2025:47CLSN7MHRSWTUVJQJFQABHZ2J","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Adversarial Attacks Leverage Interference Between Features in Superposition","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":["cs.AI","cs.CV"],"primary_cat":"cs.LG","authors_text":"Edward Stevinson, Lucas Prieto, Melih Barsbey, Tolga Birdal","submitted_at":"2025-10-13T17:59:02Z","abstract_excerpt":"Why do adversarial examples exist, and why do they transfer between models? Existing explanations appeal to high-dimensional geometry, non-robust patterns in the input, and decision boundary structure, but none provides a representation-level mechanism that explains why specific perturbations succeed and why attacks transfer between models. In this paper, we show that adversarial vulnerability can stem from efficient information encoding in neural networks. Specifically, vulnerability can arise from superposition - the phenomenon where networks represent more concepts than they have dimensions"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2510.11709","kind":"arxiv","version":2},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2510.11709/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-06-19T16:09:51Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"AJsw78VzLZMg4pNqYuhZ7NsNaHP5FwW17D5rGkKKu2zsSd1f+p81kwj1zj1S832TFYKLi84zomlS3yT10vgyAg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-07-04T12:08:37.752270Z"},"content_sha256":"1f3e3e6e4cf6ea85e0726bfbe58ac63ca90ad326f6cf1fcc40f6cc338c4c519a","schema_version":"1.0","event_id":"sha256:1f3e3e6e4cf6ea85e0726bfbe58ac63ca90ad326f6cf1fcc40f6cc338c4c519a"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/47CLSN7MHRSWTUVJQJFQABHZ2J/bundle.json","state_url":"https://pith.science/pith/47CLSN7MHRSWTUVJQJFQABHZ2J/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/47CLSN7MHRSWTUVJQJFQABHZ2J/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-07-04T12:08:37Z","links":{"resolver":"https://pith.science/pith/47CLSN7MHRSWTUVJQJFQABHZ2J","bundle":"https://pith.science/pith/47CLSN7MHRSWTUVJQJFQABHZ2J/bundle.json","state":"https://pith.science/pith/47CLSN7MHRSWTUVJQJFQABHZ2J/state.json","well_known_bundle":"https://pith.science/.well-known/pith/47CLSN7MHRSWTUVJQJFQABHZ2J/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2025:47CLSN7MHRSWTUVJQJFQABHZ2J","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"03f12e54aed8c09b01581faa1f6632fcf3cf9e447039250b4f15d84a0e7ca1c4","cross_cats_sorted":["cs.AI","cs.CV"],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2025-10-13T17:59:02Z","title_canon_sha256":"b6a1c28074448191ebaf25568f47214a82dce83bc6af3fad67a41b43da561a99"},"schema_version":"1.0","source":{"id":"2510.11709","kind":"arxiv","version":2}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2510.11709","created_at":"2026-06-19T16:09:51Z"},{"alias_kind":"arxiv_version","alias_value":"2510.11709v2","created_at":"2026-06-19T16:09:51Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2510.11709","created_at":"2026-06-19T16:09:51Z"},{"alias_kind":"pith_short_12","alias_value":"47CLSN7MHRSW","created_at":"2026-06-19T16:09:51Z"},{"alias_kind":"pith_short_16","alias_value":"47CLSN7MHRSWTUVJ","created_at":"2026-06-19T16:09:51Z"},{"alias_kind":"pith_short_8","alias_value":"47CLSN7M","created_at":"2026-06-19T16:09:51Z"}],"graph_snapshots":[{"event_id":"sha256:1f3e3e6e4cf6ea85e0726bfbe58ac63ca90ad326f6cf1fcc40f6cc338c4c519a","target":"graph","created_at":"2026-06-19T16:09:51Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/2510.11709/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"Why do adversarial examples exist, and why do they transfer between models? Existing explanations appeal to high-dimensional geometry, non-robust patterns in the input, and decision boundary structure, but none provides a representation-level mechanism that explains why specific perturbations succeed and why attacks transfer between models. In this paper, we show that adversarial vulnerability can stem from efficient information encoding in neural networks. Specifically, vulnerability can arise from superposition - the phenomenon where networks represent more concepts than they have dimensions","authors_text":"Edward Stevinson, Lucas Prieto, Melih Barsbey, Tolga Birdal","cross_cats":["cs.AI","cs.CV"],"headline":"","license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2025-10-13T17:59:02Z","title":"Adversarial Attacks Leverage Interference Between Features in Superposition"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2510.11709","kind":"arxiv","version":2},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:f1813461f584282231c2e292631d3aa2f9466b5006152b23698d91d564894191","target":"record","created_at":"2026-06-19T16:09:51Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"03f12e54aed8c09b01581faa1f6632fcf3cf9e447039250b4f15d84a0e7ca1c4","cross_cats_sorted":["cs.AI","cs.CV"],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2025-10-13T17:59:02Z","title_canon_sha256":"b6a1c28074448191ebaf25568f47214a82dce83bc6af3fad67a41b43da561a99"},"schema_version":"1.0","source":{"id":"2510.11709","kind":"arxiv","version":2}},"canonical_sha256":"e7c4b937ec3c6569d2a9824b0004f9d25b9e88952054acaa58839de2fc7dfcc4","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"e7c4b937ec3c6569d2a9824b0004f9d25b9e88952054acaa58839de2fc7dfcc4","first_computed_at":"2026-06-19T16:09:51.628357Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-06-19T16:09:51.628357Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"LQKk0BV2wlsmQu+ACAcY733YO+gw+aP9YwHdgZI85dKso8K4TQTWpDzAF6D+PXnsImEkidLU1EvMgFGuIgXEAw==","signature_status":"signed_v1","signed_at":"2026-06-19T16:09:51.628783Z","signed_message":"canonical_sha256_bytes"},"source_id":"2510.11709","source_kind":"arxiv","source_version":2}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:f1813461f584282231c2e292631d3aa2f9466b5006152b23698d91d564894191","sha256:1f3e3e6e4cf6ea85e0726bfbe58ac63ca90ad326f6cf1fcc40f6cc338c4c519a"],"state_sha256":"05e3c278532970f958d563a669f7379d2f80bd6c8b7b93bed5ddc6880dccce38"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"jlotFRFIQPV5oWkE0tDfujGLlH7gyoec/yu+Kjl+R4s24EIWmUBaSYDIWsLbASXZDGMO0cJnIXByy9ukCwgKCg==","signed_message":"bundle_sha256_bytes","signed_at":"2026-07-04T12:08:37.754264Z","bundle_sha256":"8a13571007b9085aeb6f37117cfae29db64d74f1be3bda6dd7529f3b81c0eba0"}}