{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2026:6U6QPP7JKXHVVLS54T6CUWI2OF","short_pith_number":"pith:6U6QPP7J","canonical_record":{"source":{"id":"2606.08467","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2026-06-07T06:16:58Z","cross_cats_sorted":["cs.AI"],"title_canon_sha256":"1ea4a8475a88526cbd4dbd5a862e8b261bceb4b62c621607091b4b95216587c5","abstract_canon_sha256":"2340db6be3610cd63da5ec6b9d87145c30be35993b04a911e85e3075a95ba433"},"schema_version":"1.0"},"canonical_sha256":"f53d07bfe955cf5aae5de4fc2a591a7172fbcae73597f3460b117c1a6b8230a4","source":{"kind":"arxiv","id":"2606.08467","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2606.08467","created_at":"2026-06-09T01:05:37Z"},{"alias_kind":"arxiv_version","alias_value":"2606.08467v1","created_at":"2026-06-09T01:05:37Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2606.08467","created_at":"2026-06-09T01:05:37Z"},{"alias_kind":"pith_short_12","alias_value":"6U6QPP7JKXHV","created_at":"2026-06-09T01:05:37Z"},{"alias_kind":"pith_short_16","alias_value":"6U6QPP7JKXHVVLS5","created_at":"2026-06-09T01:05:37Z"},{"alias_kind":"pith_short_8","alias_value":"6U6QPP7J","created_at":"2026-06-09T01:05:37Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2026:6U6QPP7JKXHVVLS54T6CUWI2OF","target":"record","payload":{"canonical_record":{"source":{"id":"2606.08467","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2026-06-07T06:16:58Z","cross_cats_sorted":["cs.AI"],"title_canon_sha256":"1ea4a8475a88526cbd4dbd5a862e8b261bceb4b62c621607091b4b95216587c5","abstract_canon_sha256":"2340db6be3610cd63da5ec6b9d87145c30be35993b04a911e85e3075a95ba433"},"schema_version":"1.0"},"canonical_sha256":"f53d07bfe955cf5aae5de4fc2a591a7172fbcae73597f3460b117c1a6b8230a4","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-06-09T01:05:37.407033Z","signature_b64":"G5JkkXcho9yrUwuC46XiBgxYm/+hBaExlHuGCpibGRtddlQxVVbbuBR5ev49oqfQ24TUWRd4y/0PemXHGqlcAQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"f53d07bfe955cf5aae5de4fc2a591a7172fbcae73597f3460b117c1a6b8230a4","last_reissued_at":"2026-06-09T01:05:37.406539Z","signature_status":"signed_v1","first_computed_at":"2026-06-09T01:05:37.406539Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"2606.08467","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-06-09T01:05:37Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"24Wxzz3yYo7aBURjI+9I5JbhzxgEaRmpcRAkA6GACV8wM3+0PgkhCM8RZxNufRkVhVEjiCSGsD53lIRotBp0DQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-22T20:10:25.272309Z"},"content_sha256":"83317f689d317078309a76d474aae9e179e13eac4a70aaf575ec6495482cb58d","schema_version":"1.0","event_id":"sha256:83317f689d317078309a76d474aae9e179e13eac4a70aaf575ec6495482cb58d"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2026:6U6QPP7JKXHVVLS54T6CUWI2OF","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"The Confidence Trap: Calibration Attacks for Graph Neural Networks","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":["cs.AI"],"primary_cat":"cs.LG","authors_text":"Cuong Dang, Dung Le, Hieu Ta Quang, Jiahao Zhang, Lu Cheng, Suhang Wang","submitted_at":"2026-06-07T06:16:58Z","abstract_excerpt":"While confidence calibration is essential for trustworthy decision-making in safety-critical applications, the robustness of calibrated GNNs to adversarial structural perturbations remains largely unexplored. However, studying calibration attacks on graphs presents unique technical challenges: (1) the discrete nature of graph structures complicates gradient-based optimization, (2) existing underconfidence objectives fail to drive predictions toward uniform distributions, and (3) GNNs are highly sensitive to edge perturbations, often causing unintended label changes that violate attack constrai"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2606.08467","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2606.08467/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-06-09T01:05:37Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"mCkYpX3pprXIdyCD74hJW1erF+VJOkN7b+bmvZ6YSPJ2xZSFw+1bbvsNh7ZgeygbLP5lINocJ1AP6W7d4HUFCw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-22T20:10:25.272744Z"},"content_sha256":"2de2703418c2e2ccfa4af957a8e4b3fd723bae0709ddac8326fe67779b300248","schema_version":"1.0","event_id":"sha256:2de2703418c2e2ccfa4af957a8e4b3fd723bae0709ddac8326fe67779b300248"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/6U6QPP7JKXHVVLS54T6CUWI2OF/bundle.json","state_url":"https://pith.science/pith/6U6QPP7JKXHVVLS54T6CUWI2OF/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/6U6QPP7JKXHVVLS54T6CUWI2OF/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-22T20:10:25Z","links":{"resolver":"https://pith.science/pith/6U6QPP7JKXHVVLS54T6CUWI2OF","bundle":"https://pith.science/pith/6U6QPP7JKXHVVLS54T6CUWI2OF/bundle.json","state":"https://pith.science/pith/6U6QPP7JKXHVVLS54T6CUWI2OF/state.json","well_known_bundle":"https://pith.science/.well-known/pith/6U6QPP7JKXHVVLS54T6CUWI2OF/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2026:6U6QPP7JKXHVVLS54T6CUWI2OF","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"2340db6be3610cd63da5ec6b9d87145c30be35993b04a911e85e3075a95ba433","cross_cats_sorted":["cs.AI"],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2026-06-07T06:16:58Z","title_canon_sha256":"1ea4a8475a88526cbd4dbd5a862e8b261bceb4b62c621607091b4b95216587c5"},"schema_version":"1.0","source":{"id":"2606.08467","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2606.08467","created_at":"2026-06-09T01:05:37Z"},{"alias_kind":"arxiv_version","alias_value":"2606.08467v1","created_at":"2026-06-09T01:05:37Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2606.08467","created_at":"2026-06-09T01:05:37Z"},{"alias_kind":"pith_short_12","alias_value":"6U6QPP7JKXHV","created_at":"2026-06-09T01:05:37Z"},{"alias_kind":"pith_short_16","alias_value":"6U6QPP7JKXHVVLS5","created_at":"2026-06-09T01:05:37Z"},{"alias_kind":"pith_short_8","alias_value":"6U6QPP7J","created_at":"2026-06-09T01:05:37Z"}],"graph_snapshots":[{"event_id":"sha256:2de2703418c2e2ccfa4af957a8e4b3fd723bae0709ddac8326fe67779b300248","target":"graph","created_at":"2026-06-09T01:05:37Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/2606.08467/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"While confidence calibration is essential for trustworthy decision-making in safety-critical applications, the robustness of calibrated GNNs to adversarial structural perturbations remains largely unexplored. However, studying calibration attacks on graphs presents unique technical challenges: (1) the discrete nature of graph structures complicates gradient-based optimization, (2) existing underconfidence objectives fail to drive predictions toward uniform distributions, and (3) GNNs are highly sensitive to edge perturbations, often causing unintended label changes that violate attack constrai","authors_text":"Cuong Dang, Dung Le, Hieu Ta Quang, Jiahao Zhang, Lu Cheng, Suhang Wang","cross_cats":["cs.AI"],"headline":"","license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2026-06-07T06:16:58Z","title":"The Confidence Trap: Calibration Attacks for Graph Neural Networks"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2606.08467","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:83317f689d317078309a76d474aae9e179e13eac4a70aaf575ec6495482cb58d","target":"record","created_at":"2026-06-09T01:05:37Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"2340db6be3610cd63da5ec6b9d87145c30be35993b04a911e85e3075a95ba433","cross_cats_sorted":["cs.AI"],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2026-06-07T06:16:58Z","title_canon_sha256":"1ea4a8475a88526cbd4dbd5a862e8b261bceb4b62c621607091b4b95216587c5"},"schema_version":"1.0","source":{"id":"2606.08467","kind":"arxiv","version":1}},"canonical_sha256":"f53d07bfe955cf5aae5de4fc2a591a7172fbcae73597f3460b117c1a6b8230a4","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"f53d07bfe955cf5aae5de4fc2a591a7172fbcae73597f3460b117c1a6b8230a4","first_computed_at":"2026-06-09T01:05:37.406539Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-06-09T01:05:37.406539Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"G5JkkXcho9yrUwuC46XiBgxYm/+hBaExlHuGCpibGRtddlQxVVbbuBR5ev49oqfQ24TUWRd4y/0PemXHGqlcAQ==","signature_status":"signed_v1","signed_at":"2026-06-09T01:05:37.407033Z","signed_message":"canonical_sha256_bytes"},"source_id":"2606.08467","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:83317f689d317078309a76d474aae9e179e13eac4a70aaf575ec6495482cb58d","sha256:2de2703418c2e2ccfa4af957a8e4b3fd723bae0709ddac8326fe67779b300248"],"state_sha256":"cb622e7ed197a95d460a9284113b39947d86eea33382e6f5e97bc3cd501929d8"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"gCtLRGKzRIKuMDZpry2l+3+arHOjUoqsVXvNqDJCfaOl6TnBPXKlqHyDquyIkH+tOIqHArQ8xr/ci56GQbz1Cg==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-22T20:10:25.274727Z","bundle_sha256":"d76626e2d7d8fa8b73ed5128bbe113fcf40697617bdc1b09d6fdd29807190f9d"}}