{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2018:E7PJUHTWPI6QCDBKCC22QN76NO","short_pith_number":"pith:E7PJUHTW","canonical_record":{"source":{"id":"1809.05686","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-09-15T09:46:36Z","cross_cats_sorted":[],"title_canon_sha256":"52ae09883f75317b6a1e23041023f0cb777585d1b2b6e7f9ad9e7afc979a61ab","abstract_canon_sha256":"b1d4d6ebab191698e0f2cd4de036a5640a7be75fffc5ddd3eabac7556572ec96"},"schema_version":"1.0"},"canonical_sha256":"27de9a1e767a3d010c2a10b5a837fe6b91e460421bfe16f0e00f03fd1a1755b0","source":{"kind":"arxiv","id":"1809.05686","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1809.05686","created_at":"2026-05-18T00:05:40Z"},{"alias_kind":"arxiv_version","alias_value":"1809.05686v1","created_at":"2026-05-18T00:05:40Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1809.05686","created_at":"2026-05-18T00:05:40Z"},{"alias_kind":"pith_short_12","alias_value":"E7PJUHTWPI6Q","created_at":"2026-05-18T12:32:22Z"},{"alias_kind":"pith_short_16","alias_value":"E7PJUHTWPI6QCDBK","created_at":"2026-05-18T12:32:22Z"},{"alias_kind":"pith_short_8","alias_value":"E7PJUHTW","created_at":"2026-05-18T12:32:22Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2018:E7PJUHTWPI6QCDBKCC22QN76NO","target":"record","payload":{"canonical_record":{"source":{"id":"1809.05686","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-09-15T09:46:36Z","cross_cats_sorted":[],"title_canon_sha256":"52ae09883f75317b6a1e23041023f0cb777585d1b2b6e7f9ad9e7afc979a61ab","abstract_canon_sha256":"b1d4d6ebab191698e0f2cd4de036a5640a7be75fffc5ddd3eabac7556572ec96"},"schema_version":"1.0"},"canonical_sha256":"27de9a1e767a3d010c2a10b5a837fe6b91e460421bfe16f0e00f03fd1a1755b0","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-18T00:05:40.267644Z","signature_b64":"vKJPKL4lvCUTZnfmekhPkWFsmq6mSPN97FY4yKth6wTOGHFCRDgegu+Gtr0vfPQwyXy+eibURgW2OXj1k2LSCg==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"27de9a1e767a3d010c2a10b5a837fe6b91e460421bfe16f0e00f03fd1a1755b0","last_reissued_at":"2026-05-18T00:05:40.267104Z","signature_status":"signed_v1","first_computed_at":"2026-05-18T00:05:40.267104Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1809.05686","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:05:40Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"YzG8UZ8MvUF5HfNrNFJa2sGZ1j4zkFP0CLWsxHcjyfGP4l1VvPjIbAyCPiqUdj5FdUzdpyaIT2TStAKR9OQHBA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-22T21:52:53.574931Z"},"content_sha256":"4de9ab7d147142729d906a1edaf7d0e4bb40ef25dac624bede771e709006fad1","schema_version":"1.0","event_id":"sha256:4de9ab7d147142729d906a1edaf7d0e4bb40ef25dac624bede771e709006fad1"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2018:E7PJUHTWPI6QCDBKCC22QN76NO","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"On the Feasibility of Fine-Grained TLS Security Configurations in Web Browsers Based on the Requested Domain Name","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.CR","authors_text":"Eman Salem Alashwali, Kasper Rasmussen","submitted_at":"2018-09-15T09:46:36Z","abstract_excerpt":"Most modern web browsers today sacrifice optimal TLS security for backward compatibility. They apply coarse-grained TLS configurations that support (by default) legacy versions of the protocol that have known design weaknesses, and weak ciphersuites that provide fewer security guarantees (e.g. non Forward Secrecy), and silently fall back to them if the server selects to. This introduces various risks including downgrade attacks such as the POODLE attack [15] that exploits the browsers silent fallback mechanism to downgrade the protocol version in order to exploit the legacy version flaws. To a"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1809.05686","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:05:40Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"UW9nlYcYYvXA+k9s/u5NQZpP0ApD+8EaQVnDyA7V6MgcTXBa89Wc8wSEnNMACCTbzgZosvcA45ct24Yy+QmWDw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-22T21:52:53.575283Z"},"content_sha256":"faea150292ca0c039689046288608e690c789558b12ee1f40481ff2fa950bfe2","schema_version":"1.0","event_id":"sha256:faea150292ca0c039689046288608e690c789558b12ee1f40481ff2fa950bfe2"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/E7PJUHTWPI6QCDBKCC22QN76NO/bundle.json","state_url":"https://pith.science/pith/E7PJUHTWPI6QCDBKCC22QN76NO/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/E7PJUHTWPI6QCDBKCC22QN76NO/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-22T21:52:53Z","links":{"resolver":"https://pith.science/pith/E7PJUHTWPI6QCDBKCC22QN76NO","bundle":"https://pith.science/pith/E7PJUHTWPI6QCDBKCC22QN76NO/bundle.json","state":"https://pith.science/pith/E7PJUHTWPI6QCDBKCC22QN76NO/state.json","well_known_bundle":"https://pith.science/.well-known/pith/E7PJUHTWPI6QCDBKCC22QN76NO/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2018:E7PJUHTWPI6QCDBKCC22QN76NO","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"b1d4d6ebab191698e0f2cd4de036a5640a7be75fffc5ddd3eabac7556572ec96","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-09-15T09:46:36Z","title_canon_sha256":"52ae09883f75317b6a1e23041023f0cb777585d1b2b6e7f9ad9e7afc979a61ab"},"schema_version":"1.0","source":{"id":"1809.05686","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1809.05686","created_at":"2026-05-18T00:05:40Z"},{"alias_kind":"arxiv_version","alias_value":"1809.05686v1","created_at":"2026-05-18T00:05:40Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1809.05686","created_at":"2026-05-18T00:05:40Z"},{"alias_kind":"pith_short_12","alias_value":"E7PJUHTWPI6Q","created_at":"2026-05-18T12:32:22Z"},{"alias_kind":"pith_short_16","alias_value":"E7PJUHTWPI6QCDBK","created_at":"2026-05-18T12:32:22Z"},{"alias_kind":"pith_short_8","alias_value":"E7PJUHTW","created_at":"2026-05-18T12:32:22Z"}],"graph_snapshots":[{"event_id":"sha256:faea150292ca0c039689046288608e690c789558b12ee1f40481ff2fa950bfe2","target":"graph","created_at":"2026-05-18T00:05:40Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Most modern web browsers today sacrifice optimal TLS security for backward compatibility. They apply coarse-grained TLS configurations that support (by default) legacy versions of the protocol that have known design weaknesses, and weak ciphersuites that provide fewer security guarantees (e.g. non Forward Secrecy), and silently fall back to them if the server selects to. This introduces various risks including downgrade attacks such as the POODLE attack [15] that exploits the browsers silent fallback mechanism to downgrade the protocol version in order to exploit the legacy version flaws. To a","authors_text":"Eman Salem Alashwali, Kasper Rasmussen","cross_cats":[],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-09-15T09:46:36Z","title":"On the Feasibility of Fine-Grained TLS Security Configurations in Web Browsers Based on the Requested Domain Name"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1809.05686","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:4de9ab7d147142729d906a1edaf7d0e4bb40ef25dac624bede771e709006fad1","target":"record","created_at":"2026-05-18T00:05:40Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"b1d4d6ebab191698e0f2cd4de036a5640a7be75fffc5ddd3eabac7556572ec96","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-09-15T09:46:36Z","title_canon_sha256":"52ae09883f75317b6a1e23041023f0cb777585d1b2b6e7f9ad9e7afc979a61ab"},"schema_version":"1.0","source":{"id":"1809.05686","kind":"arxiv","version":1}},"canonical_sha256":"27de9a1e767a3d010c2a10b5a837fe6b91e460421bfe16f0e00f03fd1a1755b0","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"27de9a1e767a3d010c2a10b5a837fe6b91e460421bfe16f0e00f03fd1a1755b0","first_computed_at":"2026-05-18T00:05:40.267104Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-18T00:05:40.267104Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"vKJPKL4lvCUTZnfmekhPkWFsmq6mSPN97FY4yKth6wTOGHFCRDgegu+Gtr0vfPQwyXy+eibURgW2OXj1k2LSCg==","signature_status":"signed_v1","signed_at":"2026-05-18T00:05:40.267644Z","signed_message":"canonical_sha256_bytes"},"source_id":"1809.05686","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:4de9ab7d147142729d906a1edaf7d0e4bb40ef25dac624bede771e709006fad1","sha256:faea150292ca0c039689046288608e690c789558b12ee1f40481ff2fa950bfe2"],"state_sha256":"76dd7b4ef5f7b82c850b51176e2bbe09b8696844b3e75c03ea8f36fc1d6bd141"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"SZOrrWoiwGo1SfQ0luQp8WZaQAU7CllGlU+8iGiHFdaKoSuMdRQXvI+uQqBDQJOsN+O1l2k7Q2/vWgR9rzE5Bw==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-22T21:52:53.577211Z","bundle_sha256":"d2a392bfd34dbed4c149ac281e21b2975b063ba5b66fd277ae60296c67a043cb"}}