{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2026:EUWNUNFI67AU4NZMM65OQJ4KXK","short_pith_number":"pith:EUWNUNFI","canonical_record":{"source":{"id":"2606.12251","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2026-06-10T15:53:36Z","cross_cats_sorted":["cs.AI","cs.CR"],"title_canon_sha256":"dec28d57fe403ed14427f6f58d2a08b170886f45e356dd72620969045caa19d8","abstract_canon_sha256":"2b638138e232ea7dd4057d07c0fe9e29fff34c71d6f2db4674930c53443512e4"},"schema_version":"1.0"},"canonical_sha256":"252cda34a8f7c14e372c67bae8278aba94fd63fab654b1e580a0e57ef3163341","source":{"kind":"arxiv","id":"2606.12251","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2606.12251","created_at":"2026-06-11T01:10:56Z"},{"alias_kind":"arxiv_version","alias_value":"2606.12251v1","created_at":"2026-06-11T01:10:56Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2606.12251","created_at":"2026-06-11T01:10:56Z"},{"alias_kind":"pith_short_12","alias_value":"EUWNUNFI67AU","created_at":"2026-06-11T01:10:56Z"},{"alias_kind":"pith_short_16","alias_value":"EUWNUNFI67AU4NZM","created_at":"2026-06-11T01:10:56Z"},{"alias_kind":"pith_short_8","alias_value":"EUWNUNFI","created_at":"2026-06-11T01:10:56Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2026:EUWNUNFI67AU4NZMM65OQJ4KXK","target":"record","payload":{"canonical_record":{"source":{"id":"2606.12251","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2026-06-10T15:53:36Z","cross_cats_sorted":["cs.AI","cs.CR"],"title_canon_sha256":"dec28d57fe403ed14427f6f58d2a08b170886f45e356dd72620969045caa19d8","abstract_canon_sha256":"2b638138e232ea7dd4057d07c0fe9e29fff34c71d6f2db4674930c53443512e4"},"schema_version":"1.0"},"canonical_sha256":"252cda34a8f7c14e372c67bae8278aba94fd63fab654b1e580a0e57ef3163341","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-06-11T01:10:56.953839Z","signature_b64":"Fjl45SfzmCiqiA2iORf2Gwdet0paiFvo4Ig7gVQ+NPos/OUqVfU8eiTbR47cKhjl2SxkRhjys/yEb4a31wM2CA==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"252cda34a8f7c14e372c67bae8278aba94fd63fab654b1e580a0e57ef3163341","last_reissued_at":"2026-06-11T01:10:56.952931Z","signature_status":"signed_v1","first_computed_at":"2026-06-11T01:10:56.952931Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"2606.12251","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-06-11T01:10:56Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"/cTSk4GIOt/pK1Av/2+SAKdt6MeJZgt4QXHgh+W1+HPmxuuM1+evaTmSUPhRN5cMtY9jhniLl9a21/w3EEC9Dw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-07-04T15:13:36.235168Z"},"content_sha256":"660b4206394fdb81e9b23eab7acf2fc5c755153f33ed4cd51c569bc873ed5a2f","schema_version":"1.0","event_id":"sha256:660b4206394fdb81e9b23eab7acf2fc5c755153f33ed4cd51c569bc873ed5a2f"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2026:EUWNUNFI67AU4NZMM65OQJ4KXK","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Reinforcement Learning Disrupts Gradient-Based Adversarial Optimization","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.AI","cs.CR"],"primary_cat":"cs.LG","authors_text":"Alireza Aghabagherloo, Bart Preneel, Chang Zhao, Dave Singel\\'ee, Robin Degraeve, Xinhai Zou","submitted_at":"2026-06-10T15:53:36Z","abstract_excerpt":"Gradient-based adversarial attacks remain a dominant threat to deep neural networks (DNNs), as they exploit gradient information to efficiently optimize adversarial perturbations. To address this, we investigate whether reinforcement learning (RL) training can disrupt the gradient structure used by attackers by training image classifiers with policy-gradient objectives and epsilon-greedy exploration. Through systematic experiments across CIFAR-10, CIFAR-100, and ImageNet-100 with multiple architectures, we find that RL-trained classifiers significantly disrupt gradient-based adversarial optimi"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2606.12251","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2606.12251/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-06-11T01:10:56Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"TNOUZjP/zvfZ49zDkyPTUasAecB3S+3KeP8kmh8f9r+yxLNzV+IKMlMmkGL63XVsE7cUxZoftAvWE9cXxbDnDA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-07-04T15:13:36.235551Z"},"content_sha256":"5b2b8af9bce5b994fc214d833328c361d4f4b167f2b2586879953e9ca2929522","schema_version":"1.0","event_id":"sha256:5b2b8af9bce5b994fc214d833328c361d4f4b167f2b2586879953e9ca2929522"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/EUWNUNFI67AU4NZMM65OQJ4KXK/bundle.json","state_url":"https://pith.science/pith/EUWNUNFI67AU4NZMM65OQJ4KXK/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/EUWNUNFI67AU4NZMM65OQJ4KXK/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-07-04T15:13:36Z","links":{"resolver":"https://pith.science/pith/EUWNUNFI67AU4NZMM65OQJ4KXK","bundle":"https://pith.science/pith/EUWNUNFI67AU4NZMM65OQJ4KXK/bundle.json","state":"https://pith.science/pith/EUWNUNFI67AU4NZMM65OQJ4KXK/state.json","well_known_bundle":"https://pith.science/.well-known/pith/EUWNUNFI67AU4NZMM65OQJ4KXK/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2026:EUWNUNFI67AU4NZMM65OQJ4KXK","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"2b638138e232ea7dd4057d07c0fe9e29fff34c71d6f2db4674930c53443512e4","cross_cats_sorted":["cs.AI","cs.CR"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2026-06-10T15:53:36Z","title_canon_sha256":"dec28d57fe403ed14427f6f58d2a08b170886f45e356dd72620969045caa19d8"},"schema_version":"1.0","source":{"id":"2606.12251","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2606.12251","created_at":"2026-06-11T01:10:56Z"},{"alias_kind":"arxiv_version","alias_value":"2606.12251v1","created_at":"2026-06-11T01:10:56Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2606.12251","created_at":"2026-06-11T01:10:56Z"},{"alias_kind":"pith_short_12","alias_value":"EUWNUNFI67AU","created_at":"2026-06-11T01:10:56Z"},{"alias_kind":"pith_short_16","alias_value":"EUWNUNFI67AU4NZM","created_at":"2026-06-11T01:10:56Z"},{"alias_kind":"pith_short_8","alias_value":"EUWNUNFI","created_at":"2026-06-11T01:10:56Z"}],"graph_snapshots":[{"event_id":"sha256:5b2b8af9bce5b994fc214d833328c361d4f4b167f2b2586879953e9ca2929522","target":"graph","created_at":"2026-06-11T01:10:56Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/2606.12251/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"Gradient-based adversarial attacks remain a dominant threat to deep neural networks (DNNs), as they exploit gradient information to efficiently optimize adversarial perturbations. To address this, we investigate whether reinforcement learning (RL) training can disrupt the gradient structure used by attackers by training image classifiers with policy-gradient objectives and epsilon-greedy exploration. Through systematic experiments across CIFAR-10, CIFAR-100, and ImageNet-100 with multiple architectures, we find that RL-trained classifiers significantly disrupt gradient-based adversarial optimi","authors_text":"Alireza Aghabagherloo, Bart Preneel, Chang Zhao, Dave Singel\\'ee, Robin Degraeve, Xinhai Zou","cross_cats":["cs.AI","cs.CR"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2026-06-10T15:53:36Z","title":"Reinforcement Learning Disrupts Gradient-Based Adversarial Optimization"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2606.12251","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:660b4206394fdb81e9b23eab7acf2fc5c755153f33ed4cd51c569bc873ed5a2f","target":"record","created_at":"2026-06-11T01:10:56Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"2b638138e232ea7dd4057d07c0fe9e29fff34c71d6f2db4674930c53443512e4","cross_cats_sorted":["cs.AI","cs.CR"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2026-06-10T15:53:36Z","title_canon_sha256":"dec28d57fe403ed14427f6f58d2a08b170886f45e356dd72620969045caa19d8"},"schema_version":"1.0","source":{"id":"2606.12251","kind":"arxiv","version":1}},"canonical_sha256":"252cda34a8f7c14e372c67bae8278aba94fd63fab654b1e580a0e57ef3163341","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"252cda34a8f7c14e372c67bae8278aba94fd63fab654b1e580a0e57ef3163341","first_computed_at":"2026-06-11T01:10:56.952931Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-06-11T01:10:56.952931Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"Fjl45SfzmCiqiA2iORf2Gwdet0paiFvo4Ig7gVQ+NPos/OUqVfU8eiTbR47cKhjl2SxkRhjys/yEb4a31wM2CA==","signature_status":"signed_v1","signed_at":"2026-06-11T01:10:56.953839Z","signed_message":"canonical_sha256_bytes"},"source_id":"2606.12251","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:660b4206394fdb81e9b23eab7acf2fc5c755153f33ed4cd51c569bc873ed5a2f","sha256:5b2b8af9bce5b994fc214d833328c361d4f4b167f2b2586879953e9ca2929522"],"state_sha256":"4727cb6c27ab23c8151b2a9ef2aa15e9955c08b9ddd51dd64aeb70ae8233db19"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"IV9h6LATC++NspgOzUSo6z1rpdOXIlj03cATdSUvC0wtkTSRbPhxesMFtz1qAfbkXxjHALUsUOtxB3YnpCz+BA==","signed_message":"bundle_sha256_bytes","signed_at":"2026-07-04T15:13:36.237554Z","bundle_sha256":"607ce6cc910e65aeca0259ff6eac208ec537ac0ab0dc60275faf4d1ac54661c0"}}