{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2022:B4HBTQ7VOGA2IIKHMZ2GDF7V5T","short_pith_number":"pith:B4HBTQ7V","schema_version":"1.0","canonical_sha256":"0f0e19c3f57181a4214766746197f5ecf4b0e94009834c404569f6ad18011e24","source":{"kind":"arxiv","id":"2204.09975","version":2},"attestation_state":"computed","paper":{"title":"Eliminating Backdoor Triggers for Deep Neural Networks Using Attention Relation Graph Distillation","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.LG","authors_text":"Jiepin Ding, Jun Xia, Mingsong Chen, Ting Wang, Xian Wei","submitted_at":"2022-04-21T09:01:22Z","abstract_excerpt":"Due to the prosperity of Artificial Intelligence (AI) techniques, more and more backdoors are designed by adversaries to attack Deep Neural Networks (DNNs).Although the state-of-the-art method Neural Attention Distillation (NAD) can effectively erase backdoor triggers from DNNs, it still suffers from non-negligible Attack Success Rate (ASR) together with lowered classification ACCuracy (ACC), since NAD focuses on backdoor defense using attention features (i.e., attention maps) of the same order. In this paper, we introduce a novel backdoor defense framework named Attention Relation Graph Disti"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2204.09975","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2022-04-21T09:01:22Z","cross_cats_sorted":[],"title_canon_sha256":"7bbe0e8dd5cd1d3185a54510c40ea9e606236ef1bfb54b2bddfcc5d8ad63f2d7","abstract_canon_sha256":"920a72eed6d7c4e5a1fe152556e06277e6dde84302fd1be1a6ef75a430649b49"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T04:17:22.856629Z","signature_b64":"XFMHTcFpwfTIJrRWy+wuViaQfsdJKr/If27z7jQKqRG7P60cF+qrXWb+Hml+39KUzrpnnmwf1BXwJHqWTzkAAQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"0f0e19c3f57181a4214766746197f5ecf4b0e94009834c404569f6ad18011e24","last_reissued_at":"2026-07-05T04:17:22.856124Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T04:17:22.856124Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"Eliminating Backdoor Triggers for Deep Neural Networks Using Attention Relation Graph Distillation","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.LG","authors_text":"Jiepin Ding, Jun Xia, Mingsong Chen, Ting Wang, Xian Wei","submitted_at":"2022-04-21T09:01:22Z","abstract_excerpt":"Due to the prosperity of Artificial Intelligence (AI) techniques, more and more backdoors are designed by adversaries to attack Deep Neural Networks (DNNs).Although the state-of-the-art method Neural Attention Distillation (NAD) can effectively erase backdoor triggers from DNNs, it still suffers from non-negligible Attack Success Rate (ASR) together with lowered classification ACCuracy (ACC), since NAD focuses on backdoor defense using attention features (i.e., attention maps) of the same order. In this paper, we introduce a novel backdoor defense framework named Attention Relation Graph Disti"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2204.09975","kind":"arxiv","version":2},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2204.09975/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2204.09975","created_at":"2026-07-05T04:17:22.856184+00:00"},{"alias_kind":"arxiv_version","alias_value":"2204.09975v2","created_at":"2026-07-05T04:17:22.856184+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2204.09975","created_at":"2026-07-05T04:17:22.856184+00:00"},{"alias_kind":"pith_short_12","alias_value":"B4HBTQ7VOGA2","created_at":"2026-07-05T04:17:22.856184+00:00"},{"alias_kind":"pith_short_16","alias_value":"B4HBTQ7VOGA2IIKH","created_at":"2026-07-05T04:17:22.856184+00:00"},{"alias_kind":"pith_short_8","alias_value":"B4HBTQ7V","created_at":"2026-07-05T04:17:22.856184+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":1,"internal_anchor_count":1,"sample":[{"citing_arxiv_id":"2411.17283","citing_title":"BadScan: An Architectural Backdoor Attack on Visual State Space Models","ref_index":35,"is_internal_anchor":true}]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/B4HBTQ7VOGA2IIKHMZ2GDF7V5T","json":"https://pith.science/pith/B4HBTQ7VOGA2IIKHMZ2GDF7V5T.json","graph_json":"https://pith.science/api/pith-number/B4HBTQ7VOGA2IIKHMZ2GDF7V5T/graph.json","events_json":"https://pith.science/api/pith-number/B4HBTQ7VOGA2IIKHMZ2GDF7V5T/events.json","paper":"https://pith.science/paper/B4HBTQ7V"},"agent_actions":{"view_html":"https://pith.science/pith/B4HBTQ7VOGA2IIKHMZ2GDF7V5T","download_json":"https://pith.science/pith/B4HBTQ7VOGA2IIKHMZ2GDF7V5T.json","view_paper":"https://pith.science/paper/B4HBTQ7V","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2204.09975&json=true","fetch_graph":"https://pith.science/api/pith-number/B4HBTQ7VOGA2IIKHMZ2GDF7V5T/graph.json","fetch_events":"https://pith.science/api/pith-number/B4HBTQ7VOGA2IIKHMZ2GDF7V5T/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/B4HBTQ7VOGA2IIKHMZ2GDF7V5T/action/timestamp_anchor","attest_storage":"https://pith.science/pith/B4HBTQ7VOGA2IIKHMZ2GDF7V5T/action/storage_attestation","attest_author":"https://pith.science/pith/B4HBTQ7VOGA2IIKHMZ2GDF7V5T/action/author_attestation","sign_citation":"https://pith.science/pith/B4HBTQ7VOGA2IIKHMZ2GDF7V5T/action/citation_signature","submit_replication":"https://pith.science/pith/B4HBTQ7VOGA2IIKHMZ2GDF7V5T/action/replication_record"}},"created_at":"2026-07-05T04:17:22.856184+00:00","updated_at":"2026-07-05T04:17:22.856184+00:00"}