{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2022:ASJSVRZSAYVUDCEZHOBY6ZXW4Q","short_pith_number":"pith:ASJSVRZS","schema_version":"1.0","canonical_sha256":"04932ac732062b4188993b838f66f6e418463f1b67f6d5ca30c05667efc61915","source":{"kind":"arxiv","id":"2209.05980","version":2},"attestation_state":"computed","paper":{"title":"Certified Defences Against Adversarial Patch Attacks on Semantic Segmentation","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.AI","cs.CR","cs.LG"],"primary_cat":"cs.CV","authors_text":"Jan Hendrik Metzen, Kaspar Sakmann, Maksym Yatsura, Matthias Hein, N. Grace Hua","submitted_at":"2022-09-13T13:24:22Z","abstract_excerpt":"Adversarial patch attacks are an emerging security threat for real world deep learning applications. We present Demasked Smoothing, the first approach (up to our knowledge) to certify the robustness of semantic segmentation models against this threat model. Previous work on certifiably defending against patch attacks has mostly focused on image classification task and often required changes in the model architecture and additional training which is undesirable and computationally expensive. In Demasked Smoothing, any segmentation model can be applied without particular training, fine-tuning, o"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2209.05980","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2022-09-13T13:24:22Z","cross_cats_sorted":["cs.AI","cs.CR","cs.LG"],"title_canon_sha256":"c1f0640acbf947b4e4897fb97d460770e4e486b78bbe3fa34efcd13004b6aa23","abstract_canon_sha256":"a1add78806cab3f06f00a6583dab7e0dc7316fcb763c522d1f403f9ad7df72c2"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T05:43:55.246638Z","signature_b64":"OUhZcfXvCym4KuP0e5/DOPr1My22wIQZMWW5tf4VN16lMLLNyV2lldweLOzeWY2GZYaJ8gKa86wQn7kenj95CQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"04932ac732062b4188993b838f66f6e418463f1b67f6d5ca30c05667efc61915","last_reissued_at":"2026-07-05T05:43:55.246099Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T05:43:55.246099Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"Certified Defences Against Adversarial Patch Attacks on Semantic Segmentation","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.AI","cs.CR","cs.LG"],"primary_cat":"cs.CV","authors_text":"Jan Hendrik Metzen, Kaspar Sakmann, Maksym Yatsura, Matthias Hein, N. Grace Hua","submitted_at":"2022-09-13T13:24:22Z","abstract_excerpt":"Adversarial patch attacks are an emerging security threat for real world deep learning applications. We present Demasked Smoothing, the first approach (up to our knowledge) to certify the robustness of semantic segmentation models against this threat model. Previous work on certifiably defending against patch attacks has mostly focused on image classification task and often required changes in the model architecture and additional training which is undesirable and computationally expensive. In Demasked Smoothing, any segmentation model can be applied without particular training, fine-tuning, o"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2209.05980","kind":"arxiv","version":2},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2209.05980/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2209.05980","created_at":"2026-07-05T05:43:55.246170+00:00"},{"alias_kind":"arxiv_version","alias_value":"2209.05980v2","created_at":"2026-07-05T05:43:55.246170+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2209.05980","created_at":"2026-07-05T05:43:55.246170+00:00"},{"alias_kind":"pith_short_12","alias_value":"ASJSVRZSAYVU","created_at":"2026-07-05T05:43:55.246170+00:00"},{"alias_kind":"pith_short_16","alias_value":"ASJSVRZSAYVUDCEZ","created_at":"2026-07-05T05:43:55.246170+00:00"},{"alias_kind":"pith_short_8","alias_value":"ASJSVRZS","created_at":"2026-07-05T05:43:55.246170+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":1,"internal_anchor_count":0,"sample":[{"citing_arxiv_id":"2310.03684","citing_title":"SmoothLLM: Defending Large Language Models Against Jailbreaking Attacks","ref_index":71,"is_internal_anchor":false}]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/ASJSVRZSAYVUDCEZHOBY6ZXW4Q","json":"https://pith.science/pith/ASJSVRZSAYVUDCEZHOBY6ZXW4Q.json","graph_json":"https://pith.science/api/pith-number/ASJSVRZSAYVUDCEZHOBY6ZXW4Q/graph.json","events_json":"https://pith.science/api/pith-number/ASJSVRZSAYVUDCEZHOBY6ZXW4Q/events.json","paper":"https://pith.science/paper/ASJSVRZS"},"agent_actions":{"view_html":"https://pith.science/pith/ASJSVRZSAYVUDCEZHOBY6ZXW4Q","download_json":"https://pith.science/pith/ASJSVRZSAYVUDCEZHOBY6ZXW4Q.json","view_paper":"https://pith.science/paper/ASJSVRZS","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2209.05980&json=true","fetch_graph":"https://pith.science/api/pith-number/ASJSVRZSAYVUDCEZHOBY6ZXW4Q/graph.json","fetch_events":"https://pith.science/api/pith-number/ASJSVRZSAYVUDCEZHOBY6ZXW4Q/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/ASJSVRZSAYVUDCEZHOBY6ZXW4Q/action/timestamp_anchor","attest_storage":"https://pith.science/pith/ASJSVRZSAYVUDCEZHOBY6ZXW4Q/action/storage_attestation","attest_author":"https://pith.science/pith/ASJSVRZSAYVUDCEZHOBY6ZXW4Q/action/author_attestation","sign_citation":"https://pith.science/pith/ASJSVRZSAYVUDCEZHOBY6ZXW4Q/action/citation_signature","submit_replication":"https://pith.science/pith/ASJSVRZSAYVUDCEZHOBY6ZXW4Q/action/replication_record"}},"created_at":"2026-07-05T05:43:55.246170+00:00","updated_at":"2026-07-05T05:43:55.246170+00:00"}