{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2018:G5T5EJ3SKQ5VDDCVJG7TEVJRJO","short_pith_number":"pith:G5T5EJ3S","canonical_record":{"source":{"id":"1806.04773","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-06-12T21:35:56Z","cross_cats_sorted":["cs.LG","stat.ML"],"title_canon_sha256":"bcdd4aa08f1bd10b045a04a305c41df18ae593c744a53372b6ba3180d9531da4","abstract_canon_sha256":"6aa2802cb88d69b18dfff2cbcf0db4265bbe86701d3130b1c30527ffe8d794ef"},"schema_version":"1.0"},"canonical_sha256":"3767d22772543b518c5549bf3255314b8e1d6fe9ebde7215c816f12f39062f79","source":{"kind":"arxiv","id":"1806.04773","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1806.04773","created_at":"2026-05-18T00:13:20Z"},{"alias_kind":"arxiv_version","alias_value":"1806.04773v1","created_at":"2026-05-18T00:13:20Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1806.04773","created_at":"2026-05-18T00:13:20Z"},{"alias_kind":"pith_short_12","alias_value":"G5T5EJ3SKQ5V","created_at":"2026-05-18T12:32:25Z"},{"alias_kind":"pith_short_16","alias_value":"G5T5EJ3SKQ5VDDCV","created_at":"2026-05-18T12:32:25Z"},{"alias_kind":"pith_short_8","alias_value":"G5T5EJ3S","created_at":"2026-05-18T12:32:25Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2018:G5T5EJ3SKQ5VDDCVJG7TEVJRJO","target":"record","payload":{"canonical_record":{"source":{"id":"1806.04773","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-06-12T21:35:56Z","cross_cats_sorted":["cs.LG","stat.ML"],"title_canon_sha256":"bcdd4aa08f1bd10b045a04a305c41df18ae593c744a53372b6ba3180d9531da4","abstract_canon_sha256":"6aa2802cb88d69b18dfff2cbcf0db4265bbe86701d3130b1c30527ffe8d794ef"},"schema_version":"1.0"},"canonical_sha256":"3767d22772543b518c5549bf3255314b8e1d6fe9ebde7215c816f12f39062f79","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-18T00:13:20.921686Z","signature_b64":"UJxvbx+BgzpzDAmuL1xTS7ww8WpOmZpEI7bHALbtB13JL71Qya25xXm3H7X9TL82igDJEK5ORFbJ/nWYJad1Ag==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"3767d22772543b518c5549bf3255314b8e1d6fe9ebde7215c816f12f39062f79","last_reissued_at":"2026-05-18T00:13:20.921137Z","signature_status":"signed_v1","first_computed_at":"2026-05-18T00:13:20.921137Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1806.04773","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:13:20Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"h8SO35Il/jNSeNRkPjlbphMrFIvH2A43WC1nIdl32lLDab6SFU8dMcLDzjS0g4nHQAwy3hs27ZtGt7oOCfH2Cw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-29T17:41:28.906449Z"},"content_sha256":"e1e60d936530b3f26e5cf81b77c4726a03f384b3e709abb41b8df3fa0cb88bbd","schema_version":"1.0","event_id":"sha256:e1e60d936530b3f26e5cf81b77c4726a03f384b3e709abb41b8df3fa0cb88bbd"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2018:G5T5EJ3SKQ5VDDCVJG7TEVJRJO","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Static Malware Detection & Subterfuge: Quantifying the Robustness of Machine Learning and Current Anti-Virus","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.LG","stat.ML"],"primary_cat":"cs.CR","authors_text":"Charles Nicholas, Edward Raff, Mark McLean, Richard Zak, William Fleshman","submitted_at":"2018-06-12T21:35:56Z","abstract_excerpt":"As machine-learning (ML) based systems for malware detection become more prevalent, it becomes necessary to quantify the benefits compared to the more traditional anti-virus (AV) systems widely used today. It is not practical to build an agreed upon test set to benchmark malware detection systems on pure classification performance. Instead we tackle the problem by creating a new testing methodology, where we evaluate the change in performance on a set of known benign & malicious files as adversarial modifications are performed. The change in performance combined with the evasion techniques the"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1806.04773","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:13:20Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"FlBCknQPU1AWXLJRnctMGbIoW/9d/k8TUD5OKR/sH/wNbJXTyWuj64PIHk++YXhg+QZ8U4eZFrC58mizNCRADA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-29T17:41:28.906821Z"},"content_sha256":"fbf4d91a000da4f6a4453b8629c5b5688cd50f00a81d8ef1883417bb2dfde7a8","schema_version":"1.0","event_id":"sha256:fbf4d91a000da4f6a4453b8629c5b5688cd50f00a81d8ef1883417bb2dfde7a8"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/G5T5EJ3SKQ5VDDCVJG7TEVJRJO/bundle.json","state_url":"https://pith.science/pith/G5T5EJ3SKQ5VDDCVJG7TEVJRJO/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/G5T5EJ3SKQ5VDDCVJG7TEVJRJO/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-29T17:41:28Z","links":{"resolver":"https://pith.science/pith/G5T5EJ3SKQ5VDDCVJG7TEVJRJO","bundle":"https://pith.science/pith/G5T5EJ3SKQ5VDDCVJG7TEVJRJO/bundle.json","state":"https://pith.science/pith/G5T5EJ3SKQ5VDDCVJG7TEVJRJO/state.json","well_known_bundle":"https://pith.science/.well-known/pith/G5T5EJ3SKQ5VDDCVJG7TEVJRJO/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2018:G5T5EJ3SKQ5VDDCVJG7TEVJRJO","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"6aa2802cb88d69b18dfff2cbcf0db4265bbe86701d3130b1c30527ffe8d794ef","cross_cats_sorted":["cs.LG","stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-06-12T21:35:56Z","title_canon_sha256":"bcdd4aa08f1bd10b045a04a305c41df18ae593c744a53372b6ba3180d9531da4"},"schema_version":"1.0","source":{"id":"1806.04773","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1806.04773","created_at":"2026-05-18T00:13:20Z"},{"alias_kind":"arxiv_version","alias_value":"1806.04773v1","created_at":"2026-05-18T00:13:20Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1806.04773","created_at":"2026-05-18T00:13:20Z"},{"alias_kind":"pith_short_12","alias_value":"G5T5EJ3SKQ5V","created_at":"2026-05-18T12:32:25Z"},{"alias_kind":"pith_short_16","alias_value":"G5T5EJ3SKQ5VDDCV","created_at":"2026-05-18T12:32:25Z"},{"alias_kind":"pith_short_8","alias_value":"G5T5EJ3S","created_at":"2026-05-18T12:32:25Z"}],"graph_snapshots":[{"event_id":"sha256:fbf4d91a000da4f6a4453b8629c5b5688cd50f00a81d8ef1883417bb2dfde7a8","target":"graph","created_at":"2026-05-18T00:13:20Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"As machine-learning (ML) based systems for malware detection become more prevalent, it becomes necessary to quantify the benefits compared to the more traditional anti-virus (AV) systems widely used today. It is not practical to build an agreed upon test set to benchmark malware detection systems on pure classification performance. Instead we tackle the problem by creating a new testing methodology, where we evaluate the change in performance on a set of known benign & malicious files as adversarial modifications are performed. The change in performance combined with the evasion techniques the","authors_text":"Charles Nicholas, Edward Raff, Mark McLean, Richard Zak, William Fleshman","cross_cats":["cs.LG","stat.ML"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-06-12T21:35:56Z","title":"Static Malware Detection & Subterfuge: Quantifying the Robustness of Machine Learning and Current Anti-Virus"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1806.04773","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:e1e60d936530b3f26e5cf81b77c4726a03f384b3e709abb41b8df3fa0cb88bbd","target":"record","created_at":"2026-05-18T00:13:20Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"6aa2802cb88d69b18dfff2cbcf0db4265bbe86701d3130b1c30527ffe8d794ef","cross_cats_sorted":["cs.LG","stat.ML"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-06-12T21:35:56Z","title_canon_sha256":"bcdd4aa08f1bd10b045a04a305c41df18ae593c744a53372b6ba3180d9531da4"},"schema_version":"1.0","source":{"id":"1806.04773","kind":"arxiv","version":1}},"canonical_sha256":"3767d22772543b518c5549bf3255314b8e1d6fe9ebde7215c816f12f39062f79","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"3767d22772543b518c5549bf3255314b8e1d6fe9ebde7215c816f12f39062f79","first_computed_at":"2026-05-18T00:13:20.921137Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-18T00:13:20.921137Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"UJxvbx+BgzpzDAmuL1xTS7ww8WpOmZpEI7bHALbtB13JL71Qya25xXm3H7X9TL82igDJEK5ORFbJ/nWYJad1Ag==","signature_status":"signed_v1","signed_at":"2026-05-18T00:13:20.921686Z","signed_message":"canonical_sha256_bytes"},"source_id":"1806.04773","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:e1e60d936530b3f26e5cf81b77c4726a03f384b3e709abb41b8df3fa0cb88bbd","sha256:fbf4d91a000da4f6a4453b8629c5b5688cd50f00a81d8ef1883417bb2dfde7a8"],"state_sha256":"dbf706ee9691d3381d3f9fe8b0b905de01e93a233fdd245540962344e0e53bca"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"+ub0f4uAC6LwKdPnEgw/ycIHXneXBP4z6B5EXUcB5/+OR121vW/kJzTaMTNL47Ir7cXVHQ1C+aQgi787UHrGBw==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-29T17:41:28.908871Z","bundle_sha256":"2b50875a80b53c8812751443c42a38c06f6d5f56b282182ec2a37aac5620860b"}}