{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2018:GZPF5765VBLEVJWEOMEVLRUQQB","short_pith_number":"pith:GZPF5765","canonical_record":{"source":{"id":"1810.01185","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2018-10-02T11:54:51Z","cross_cats_sorted":["cs.CR","cs.LG","cs.NE"],"title_canon_sha256":"90ffe3cf4aa0c42b8612c76a85f6a413b835d3411f32508f5ea19c42244e0085","abstract_canon_sha256":"e041e587b21081b6ac224db0e9448f4cca7c0f037cd4802af030242012bab0dc"},"schema_version":"1.0"},"canonical_sha256":"365e5effdda8564aa6c4730955c6908040e92390e080a4ed0b3f614179643149","source":{"kind":"arxiv","id":"1810.01185","version":2},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1810.01185","created_at":"2026-05-17T23:53:50Z"},{"alias_kind":"arxiv_version","alias_value":"1810.01185v2","created_at":"2026-05-17T23:53:50Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1810.01185","created_at":"2026-05-17T23:53:50Z"},{"alias_kind":"pith_short_12","alias_value":"GZPF5765VBLE","created_at":"2026-05-18T12:32:25Z"},{"alias_kind":"pith_short_16","alias_value":"GZPF5765VBLEVJWE","created_at":"2026-05-18T12:32:25Z"},{"alias_kind":"pith_short_8","alias_value":"GZPF5765","created_at":"2026-05-18T12:32:25Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2018:GZPF5765VBLEVJWEOMEVLRUQQB","target":"record","payload":{"canonical_record":{"source":{"id":"1810.01185","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2018-10-02T11:54:51Z","cross_cats_sorted":["cs.CR","cs.LG","cs.NE"],"title_canon_sha256":"90ffe3cf4aa0c42b8612c76a85f6a413b835d3411f32508f5ea19c42244e0085","abstract_canon_sha256":"e041e587b21081b6ac224db0e9448f4cca7c0f037cd4802af030242012bab0dc"},"schema_version":"1.0"},"canonical_sha256":"365e5effdda8564aa6c4730955c6908040e92390e080a4ed0b3f614179643149","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:53:50.629339Z","signature_b64":"J9Gf/fl0qmtfTGiamLXd7IzEhGajqWlaq7Y23UZa8899aeENZMYtadlNUfwtFfiJ1EILgyHedM9VTRjaQALWDw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"365e5effdda8564aa6c4730955c6908040e92390e080a4ed0b3f614179643149","last_reissued_at":"2026-05-17T23:53:50.628936Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:53:50.628936Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1810.01185","source_version":2,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:53:50Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"E1o9806T5Jf9S3VqgFUM+aPz4JZnr/QyCjaVLgh0tfo0oSPE2JZYXaS8Ko7gdpcF0RBIXScIwppUlr1wmrDQAg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-30T10:05:57.098284Z"},"content_sha256":"942723cc8a759137be3b6dd9c0d70a5e535c60ca4ec1de5de602051783869f6a","schema_version":"1.0","event_id":"sha256:942723cc8a759137be3b6dd9c0d70a5e535c60ca4ec1de5de602051783869f6a"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2018:GZPF5765VBLEVJWEOMEVLRUQQB","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Adversarial Examples - A Complete Characterisation of the Phenomenon","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.CR","cs.LG","cs.NE"],"primary_cat":"cs.CV","authors_text":"Alexandru Constantin Serban, Erik Poll, Joost Visser","submitted_at":"2018-10-02T11:54:51Z","abstract_excerpt":"We provide a complete characterisation of the phenomenon of adversarial examples - inputs intentionally crafted to fool machine learning models. We aim to cover all the important concerns in this field of study: (1) the conjectures on the existence of adversarial examples, (2) the security, safety and robustness implications, (3) the methods used to generate and (4) protect against adversarial examples and (5) the ability of adversarial examples to transfer between different machine learning models. We provide ample background information in an effort to make this document self-contained. Ther"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1810.01185","kind":"arxiv","version":2},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:53:50Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"R38fHtkrQfbMP1bDTUGwqiIKPX/qw79EF6r7LE+PO5P++qw5qZ/pZlxrVrfmdVfN4iRPqtTqOtRplbPqEutOBA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-30T10:05:57.098944Z"},"content_sha256":"40c1c58d3b7d301bbf3566e95aa1d75c68db832b718e29f3c3797bc1b2ccb3a2","schema_version":"1.0","event_id":"sha256:40c1c58d3b7d301bbf3566e95aa1d75c68db832b718e29f3c3797bc1b2ccb3a2"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/GZPF5765VBLEVJWEOMEVLRUQQB/bundle.json","state_url":"https://pith.science/pith/GZPF5765VBLEVJWEOMEVLRUQQB/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/GZPF5765VBLEVJWEOMEVLRUQQB/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-30T10:05:57Z","links":{"resolver":"https://pith.science/pith/GZPF5765VBLEVJWEOMEVLRUQQB","bundle":"https://pith.science/pith/GZPF5765VBLEVJWEOMEVLRUQQB/bundle.json","state":"https://pith.science/pith/GZPF5765VBLEVJWEOMEVLRUQQB/state.json","well_known_bundle":"https://pith.science/.well-known/pith/GZPF5765VBLEVJWEOMEVLRUQQB/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2018:GZPF5765VBLEVJWEOMEVLRUQQB","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"e041e587b21081b6ac224db0e9448f4cca7c0f037cd4802af030242012bab0dc","cross_cats_sorted":["cs.CR","cs.LG","cs.NE"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2018-10-02T11:54:51Z","title_canon_sha256":"90ffe3cf4aa0c42b8612c76a85f6a413b835d3411f32508f5ea19c42244e0085"},"schema_version":"1.0","source":{"id":"1810.01185","kind":"arxiv","version":2}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1810.01185","created_at":"2026-05-17T23:53:50Z"},{"alias_kind":"arxiv_version","alias_value":"1810.01185v2","created_at":"2026-05-17T23:53:50Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1810.01185","created_at":"2026-05-17T23:53:50Z"},{"alias_kind":"pith_short_12","alias_value":"GZPF5765VBLE","created_at":"2026-05-18T12:32:25Z"},{"alias_kind":"pith_short_16","alias_value":"GZPF5765VBLEVJWE","created_at":"2026-05-18T12:32:25Z"},{"alias_kind":"pith_short_8","alias_value":"GZPF5765","created_at":"2026-05-18T12:32:25Z"}],"graph_snapshots":[{"event_id":"sha256:40c1c58d3b7d301bbf3566e95aa1d75c68db832b718e29f3c3797bc1b2ccb3a2","target":"graph","created_at":"2026-05-17T23:53:50Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"We provide a complete characterisation of the phenomenon of adversarial examples - inputs intentionally crafted to fool machine learning models. We aim to cover all the important concerns in this field of study: (1) the conjectures on the existence of adversarial examples, (2) the security, safety and robustness implications, (3) the methods used to generate and (4) protect against adversarial examples and (5) the ability of adversarial examples to transfer between different machine learning models. We provide ample background information in an effort to make this document self-contained. Ther","authors_text":"Alexandru Constantin Serban, Erik Poll, Joost Visser","cross_cats":["cs.CR","cs.LG","cs.NE"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2018-10-02T11:54:51Z","title":"Adversarial Examples - A Complete Characterisation of the Phenomenon"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1810.01185","kind":"arxiv","version":2},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:942723cc8a759137be3b6dd9c0d70a5e535c60ca4ec1de5de602051783869f6a","target":"record","created_at":"2026-05-17T23:53:50Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"e041e587b21081b6ac224db0e9448f4cca7c0f037cd4802af030242012bab0dc","cross_cats_sorted":["cs.CR","cs.LG","cs.NE"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2018-10-02T11:54:51Z","title_canon_sha256":"90ffe3cf4aa0c42b8612c76a85f6a413b835d3411f32508f5ea19c42244e0085"},"schema_version":"1.0","source":{"id":"1810.01185","kind":"arxiv","version":2}},"canonical_sha256":"365e5effdda8564aa6c4730955c6908040e92390e080a4ed0b3f614179643149","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"365e5effdda8564aa6c4730955c6908040e92390e080a4ed0b3f614179643149","first_computed_at":"2026-05-17T23:53:50.628936Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-17T23:53:50.628936Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"J9Gf/fl0qmtfTGiamLXd7IzEhGajqWlaq7Y23UZa8899aeENZMYtadlNUfwtFfiJ1EILgyHedM9VTRjaQALWDw==","signature_status":"signed_v1","signed_at":"2026-05-17T23:53:50.629339Z","signed_message":"canonical_sha256_bytes"},"source_id":"1810.01185","source_kind":"arxiv","source_version":2}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:942723cc8a759137be3b6dd9c0d70a5e535c60ca4ec1de5de602051783869f6a","sha256:40c1c58d3b7d301bbf3566e95aa1d75c68db832b718e29f3c3797bc1b2ccb3a2"],"state_sha256":"1e020187622ee2ec5fe356d4e8e540617fa6917f83c506285657f239c47eb402"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"WgF7Sdd3ox0RkMY7Bj4UGK/ddhrGwLGIPEZUvv5OWQZEGweCN1i2qMq/mKq3dmYMpSsfCNZCtCa3RkJQOOWpBg==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-30T10:05:57.102549Z","bundle_sha256":"3a283bbbd23b40fc94ecebdbd0a4dfec9f2f16108d633657f698a43edf516543"}}