{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2026:KTALFBEB7JMMLMG6IV3GNAD6AI","short_pith_number":"pith:KTALFBEB","canonical_record":{"source":{"id":"2605.29450","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2026-05-28T06:44:46Z","cross_cats_sorted":[],"title_canon_sha256":"ddba7d48c445824b80725a855adb43969fbfdcbf249664362a949354374d084c","abstract_canon_sha256":"99eb67027a8545eac9795ca8780a961abedcbfdc78b3fcd47a82299e643f4ea3"},"schema_version":"1.0"},"canonical_sha256":"54c0b28481fa58c5b0de457666807e023c352c5fb9329befccf3409538e6bcf5","source":{"kind":"arxiv","id":"2605.29450","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2605.29450","created_at":"2026-05-29T01:05:39Z"},{"alias_kind":"arxiv_version","alias_value":"2605.29450v1","created_at":"2026-05-29T01:05:39Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2605.29450","created_at":"2026-05-29T01:05:39Z"},{"alias_kind":"pith_short_12","alias_value":"KTALFBEB7JMM","created_at":"2026-05-29T01:05:39Z"},{"alias_kind":"pith_short_16","alias_value":"KTALFBEB7JMMLMG6","created_at":"2026-05-29T01:05:39Z"},{"alias_kind":"pith_short_8","alias_value":"KTALFBEB","created_at":"2026-05-29T01:05:39Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2026:KTALFBEB7JMMLMG6IV3GNAD6AI","target":"record","payload":{"canonical_record":{"source":{"id":"2605.29450","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2026-05-28T06:44:46Z","cross_cats_sorted":[],"title_canon_sha256":"ddba7d48c445824b80725a855adb43969fbfdcbf249664362a949354374d084c","abstract_canon_sha256":"99eb67027a8545eac9795ca8780a961abedcbfdc78b3fcd47a82299e643f4ea3"},"schema_version":"1.0"},"canonical_sha256":"54c0b28481fa58c5b0de457666807e023c352c5fb9329befccf3409538e6bcf5","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-29T01:05:39.951083Z","signature_b64":"kKng9NUe4QVi6MXBaNQ0HDTWJVNzTlrT2JGkV/fXDc2bRilXeiHo9BBL278tY8IQJITvnscmy4LwZLOuBRG0Cw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"54c0b28481fa58c5b0de457666807e023c352c5fb9329befccf3409538e6bcf5","last_reissued_at":"2026-05-29T01:05:39.950204Z","signature_status":"signed_v1","first_computed_at":"2026-05-29T01:05:39.950204Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"2605.29450","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-29T01:05:39Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"C6hr+ZRoO6mTNWS45tl5Z/6YcrxFBz9OKYMZ3amZeKvcCXKA/kvEd8HJUqcWeT1Y1TYOgXWMnbBoE4pbjJ3ECw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-29T23:09:42.697229Z"},"content_sha256":"baae43f357ced860ae938531240b3677bce9a415f120e5f1fdaab751c0c696a4","schema_version":"1.0","event_id":"sha256:baae43f357ced860ae938531240b3677bce9a415f120e5f1fdaab751c0c696a4"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2026:KTALFBEB7JMMLMG6IV3GNAD6AI","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Protecting On-Device AI Inference: A Systematic Review of Attacks and Defence Mechanisms","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":[],"primary_cat":"cs.CR","authors_text":"Alexandros Fakis, Georgios Karopoulos, Marios Anagnostopoulos, Vasileios Kouliaridis, Zisis Tsiatsikas","submitted_at":"2026-05-28T06:44:46Z","abstract_excerpt":"The need for secure and private Artificial Intelligence (AI) and Machine Learning (ML) on edge and mobile devices has increased the necessity of protecting the architecture of these systems from threats to both security and privacy. With an ever-increasing number of pre-trained AI models being used on mobile platforms for client-side inference, there are rising concerns about the risks associated with the theft/extraction of AI models, adversarial attacks on AI models, and data breaches. As a result of this trend, a variety of defence mechanisms have been proposed to protect against these thre"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2605.29450","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2605.29450/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-29T01:05:39Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"6V1C9eyvO8QZunRzKekZqgSUYbT8GtVb3Ynb1QiolcgNXG6Fs2Va2TNKek+02vYVYTKWWWaGj5L+u+pJjIFbAQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-29T23:09:42.697618Z"},"content_sha256":"8f31942bb72055658040c6cad44e82e2f0b370df08c89798caaec9ceb0214d8b","schema_version":"1.0","event_id":"sha256:8f31942bb72055658040c6cad44e82e2f0b370df08c89798caaec9ceb0214d8b"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/KTALFBEB7JMMLMG6IV3GNAD6AI/bundle.json","state_url":"https://pith.science/pith/KTALFBEB7JMMLMG6IV3GNAD6AI/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/KTALFBEB7JMMLMG6IV3GNAD6AI/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-29T23:09:42Z","links":{"resolver":"https://pith.science/pith/KTALFBEB7JMMLMG6IV3GNAD6AI","bundle":"https://pith.science/pith/KTALFBEB7JMMLMG6IV3GNAD6AI/bundle.json","state":"https://pith.science/pith/KTALFBEB7JMMLMG6IV3GNAD6AI/state.json","well_known_bundle":"https://pith.science/.well-known/pith/KTALFBEB7JMMLMG6IV3GNAD6AI/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2026:KTALFBEB7JMMLMG6IV3GNAD6AI","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"99eb67027a8545eac9795ca8780a961abedcbfdc78b3fcd47a82299e643f4ea3","cross_cats_sorted":[],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2026-05-28T06:44:46Z","title_canon_sha256":"ddba7d48c445824b80725a855adb43969fbfdcbf249664362a949354374d084c"},"schema_version":"1.0","source":{"id":"2605.29450","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2605.29450","created_at":"2026-05-29T01:05:39Z"},{"alias_kind":"arxiv_version","alias_value":"2605.29450v1","created_at":"2026-05-29T01:05:39Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2605.29450","created_at":"2026-05-29T01:05:39Z"},{"alias_kind":"pith_short_12","alias_value":"KTALFBEB7JMM","created_at":"2026-05-29T01:05:39Z"},{"alias_kind":"pith_short_16","alias_value":"KTALFBEB7JMMLMG6","created_at":"2026-05-29T01:05:39Z"},{"alias_kind":"pith_short_8","alias_value":"KTALFBEB","created_at":"2026-05-29T01:05:39Z"}],"graph_snapshots":[{"event_id":"sha256:8f31942bb72055658040c6cad44e82e2f0b370df08c89798caaec9ceb0214d8b","target":"graph","created_at":"2026-05-29T01:05:39Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/2605.29450/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"The need for secure and private Artificial Intelligence (AI) and Machine Learning (ML) on edge and mobile devices has increased the necessity of protecting the architecture of these systems from threats to both security and privacy. With an ever-increasing number of pre-trained AI models being used on mobile platforms for client-side inference, there are rising concerns about the risks associated with the theft/extraction of AI models, adversarial attacks on AI models, and data breaches. As a result of this trend, a variety of defence mechanisms have been proposed to protect against these thre","authors_text":"Alexandros Fakis, Georgios Karopoulos, Marios Anagnostopoulos, Vasileios Kouliaridis, Zisis Tsiatsikas","cross_cats":[],"headline":"","license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2026-05-28T06:44:46Z","title":"Protecting On-Device AI Inference: A Systematic Review of Attacks and Defence Mechanisms"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2605.29450","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:baae43f357ced860ae938531240b3677bce9a415f120e5f1fdaab751c0c696a4","target":"record","created_at":"2026-05-29T01:05:39Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"99eb67027a8545eac9795ca8780a961abedcbfdc78b3fcd47a82299e643f4ea3","cross_cats_sorted":[],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2026-05-28T06:44:46Z","title_canon_sha256":"ddba7d48c445824b80725a855adb43969fbfdcbf249664362a949354374d084c"},"schema_version":"1.0","source":{"id":"2605.29450","kind":"arxiv","version":1}},"canonical_sha256":"54c0b28481fa58c5b0de457666807e023c352c5fb9329befccf3409538e6bcf5","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"54c0b28481fa58c5b0de457666807e023c352c5fb9329befccf3409538e6bcf5","first_computed_at":"2026-05-29T01:05:39.950204Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-29T01:05:39.950204Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"kKng9NUe4QVi6MXBaNQ0HDTWJVNzTlrT2JGkV/fXDc2bRilXeiHo9BBL278tY8IQJITvnscmy4LwZLOuBRG0Cw==","signature_status":"signed_v1","signed_at":"2026-05-29T01:05:39.951083Z","signed_message":"canonical_sha256_bytes"},"source_id":"2605.29450","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:baae43f357ced860ae938531240b3677bce9a415f120e5f1fdaab751c0c696a4","sha256:8f31942bb72055658040c6cad44e82e2f0b370df08c89798caaec9ceb0214d8b"],"state_sha256":"6f5eda2a23e2c2136c8b739e5cd922f14684e4c91cb31a2027f13c1f6e9d1274"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"cb3In95VVMqa39sVDAcZz38Zyd0taFKtYYZwmx+S8Y5BqnlmuTn58PW7Ug94/J6jOeXmhRgxoul4jHXHLPN8Ag==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-29T23:09:42.699715Z","bundle_sha256":"e2158f8446352e8d369f23cf19e3e39567954423bd4d076a069a8ad8ba728c94"}}