{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2018:PJDJOHLVUMTRGMGHNADZ3Z6NYV","short_pith_number":"pith:PJDJOHLV","canonical_record":{"source":{"id":"1809.05681","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-09-15T09:22:50Z","cross_cats_sorted":[],"title_canon_sha256":"0fb2dfa8ed67cdd67e13084d2f1fd86de5ea6c87dc22c91f4a9b4c1961077804","abstract_canon_sha256":"f2a5ecdb34e3fe402c3b5606749b0b591de40d481c20f3be6cfb2cba6c889232"},"schema_version":"1.0"},"canonical_sha256":"7a46971d75a3271330c768079de7cdc566c1d34288b687acabef5b9790e3443f","source":{"kind":"arxiv","id":"1809.05681","version":2},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1809.05681","created_at":"2026-05-17T23:55:28Z"},{"alias_kind":"arxiv_version","alias_value":"1809.05681v2","created_at":"2026-05-17T23:55:28Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1809.05681","created_at":"2026-05-17T23:55:28Z"},{"alias_kind":"pith_short_12","alias_value":"PJDJOHLVUMTR","created_at":"2026-05-18T12:32:43Z"},{"alias_kind":"pith_short_16","alias_value":"PJDJOHLVUMTRGMGH","created_at":"2026-05-18T12:32:43Z"},{"alias_kind":"pith_short_8","alias_value":"PJDJOHLV","created_at":"2026-05-18T12:32:43Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2018:PJDJOHLVUMTRGMGHNADZ3Z6NYV","target":"record","payload":{"canonical_record":{"source":{"id":"1809.05681","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-09-15T09:22:50Z","cross_cats_sorted":[],"title_canon_sha256":"0fb2dfa8ed67cdd67e13084d2f1fd86de5ea6c87dc22c91f4a9b4c1961077804","abstract_canon_sha256":"f2a5ecdb34e3fe402c3b5606749b0b591de40d481c20f3be6cfb2cba6c889232"},"schema_version":"1.0"},"canonical_sha256":"7a46971d75a3271330c768079de7cdc566c1d34288b687acabef5b9790e3443f","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:55:28.952832Z","signature_b64":"LFcqk24FDRkvZYBRwM+WblKKjkKPG4656WedS72qwZTQYEzeSHdnIAqwJRI8x1MTXgP9OOOyjPCBEn/TyMfWDA==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"7a46971d75a3271330c768079de7cdc566c1d34288b687acabef5b9790e3443f","last_reissued_at":"2026-05-17T23:55:28.952251Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:55:28.952251Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1809.05681","source_version":2,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:55:28Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"Zs/4cXw8dfre5NQfwdxzKgR4B8HDBkXwY5LcuqkN7/YTbfkCZEHwXQsewz3iShx3LTGrsu2duJCr0YGCs3NNBQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-28T17:33:19.177133Z"},"content_sha256":"d01641ceae397275f344dfa26442a96531615a4162a96d812b2dd60af29c086b","schema_version":"1.0","event_id":"sha256:d01641ceae397275f344dfa26442a96531615a4162a96d812b2dd60af29c086b"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2018:PJDJOHLVUMTRGMGHNADZ3Z6NYV","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"What's in a Downgrade? A Taxonomy of Downgrade Attacks in the TLS Protocol and Application Protocols Using TLS","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.CR","authors_text":"Eman Salem Alashwali, Kasper Rasmussen","submitted_at":"2018-09-15T09:22:50Z","abstract_excerpt":"A number of important real-world protocols including the Transport Layer Security (TLS) protocol have the ability to negotiate various security-related choices such as the protocol version and the cryptographic algorithms to be used in a particular session. Furthermore, some insecure application-layer protocols such as the Simple Mail Transfer Protocol (SMTP) negotiate the use of TLS itself on top of the application protocol to secure the communication channel. These protocols are often vulnerable to a class of attacks known as downgrade attacks which targets this negotiation mechanism. In thi"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1809.05681","kind":"arxiv","version":2},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:55:28Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"79R9HPc+HrZTJ3hXmGtJcuAm147wePqF2R7OsZkV8/IP8voDJ9xYeK2awJJowoTP8XBHO+K6zWT89a3itWHXBA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-28T17:33:19.177493Z"},"content_sha256":"76573a8388ef9a1ac23c4fba2acae3febe461417a55eb9aacabe21a68570db16","schema_version":"1.0","event_id":"sha256:76573a8388ef9a1ac23c4fba2acae3febe461417a55eb9aacabe21a68570db16"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/PJDJOHLVUMTRGMGHNADZ3Z6NYV/bundle.json","state_url":"https://pith.science/pith/PJDJOHLVUMTRGMGHNADZ3Z6NYV/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/PJDJOHLVUMTRGMGHNADZ3Z6NYV/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-28T17:33:19Z","links":{"resolver":"https://pith.science/pith/PJDJOHLVUMTRGMGHNADZ3Z6NYV","bundle":"https://pith.science/pith/PJDJOHLVUMTRGMGHNADZ3Z6NYV/bundle.json","state":"https://pith.science/pith/PJDJOHLVUMTRGMGHNADZ3Z6NYV/state.json","well_known_bundle":"https://pith.science/.well-known/pith/PJDJOHLVUMTRGMGHNADZ3Z6NYV/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2018:PJDJOHLVUMTRGMGHNADZ3Z6NYV","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"f2a5ecdb34e3fe402c3b5606749b0b591de40d481c20f3be6cfb2cba6c889232","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-09-15T09:22:50Z","title_canon_sha256":"0fb2dfa8ed67cdd67e13084d2f1fd86de5ea6c87dc22c91f4a9b4c1961077804"},"schema_version":"1.0","source":{"id":"1809.05681","kind":"arxiv","version":2}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1809.05681","created_at":"2026-05-17T23:55:28Z"},{"alias_kind":"arxiv_version","alias_value":"1809.05681v2","created_at":"2026-05-17T23:55:28Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1809.05681","created_at":"2026-05-17T23:55:28Z"},{"alias_kind":"pith_short_12","alias_value":"PJDJOHLVUMTR","created_at":"2026-05-18T12:32:43Z"},{"alias_kind":"pith_short_16","alias_value":"PJDJOHLVUMTRGMGH","created_at":"2026-05-18T12:32:43Z"},{"alias_kind":"pith_short_8","alias_value":"PJDJOHLV","created_at":"2026-05-18T12:32:43Z"}],"graph_snapshots":[{"event_id":"sha256:76573a8388ef9a1ac23c4fba2acae3febe461417a55eb9aacabe21a68570db16","target":"graph","created_at":"2026-05-17T23:55:28Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"A number of important real-world protocols including the Transport Layer Security (TLS) protocol have the ability to negotiate various security-related choices such as the protocol version and the cryptographic algorithms to be used in a particular session. Furthermore, some insecure application-layer protocols such as the Simple Mail Transfer Protocol (SMTP) negotiate the use of TLS itself on top of the application protocol to secure the communication channel. These protocols are often vulnerable to a class of attacks known as downgrade attacks which targets this negotiation mechanism. In thi","authors_text":"Eman Salem Alashwali, Kasper Rasmussen","cross_cats":[],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-09-15T09:22:50Z","title":"What's in a Downgrade? A Taxonomy of Downgrade Attacks in the TLS Protocol and Application Protocols Using TLS"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1809.05681","kind":"arxiv","version":2},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:d01641ceae397275f344dfa26442a96531615a4162a96d812b2dd60af29c086b","target":"record","created_at":"2026-05-17T23:55:28Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"f2a5ecdb34e3fe402c3b5606749b0b591de40d481c20f3be6cfb2cba6c889232","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-09-15T09:22:50Z","title_canon_sha256":"0fb2dfa8ed67cdd67e13084d2f1fd86de5ea6c87dc22c91f4a9b4c1961077804"},"schema_version":"1.0","source":{"id":"1809.05681","kind":"arxiv","version":2}},"canonical_sha256":"7a46971d75a3271330c768079de7cdc566c1d34288b687acabef5b9790e3443f","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"7a46971d75a3271330c768079de7cdc566c1d34288b687acabef5b9790e3443f","first_computed_at":"2026-05-17T23:55:28.952251Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-17T23:55:28.952251Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"LFcqk24FDRkvZYBRwM+WblKKjkKPG4656WedS72qwZTQYEzeSHdnIAqwJRI8x1MTXgP9OOOyjPCBEn/TyMfWDA==","signature_status":"signed_v1","signed_at":"2026-05-17T23:55:28.952832Z","signed_message":"canonical_sha256_bytes"},"source_id":"1809.05681","source_kind":"arxiv","source_version":2}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:d01641ceae397275f344dfa26442a96531615a4162a96d812b2dd60af29c086b","sha256:76573a8388ef9a1ac23c4fba2acae3febe461417a55eb9aacabe21a68570db16"],"state_sha256":"78672176e6650a9b2ec460950e448c65d94c22b755310fca27bcb5097cb62587"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"cDBxEGFqzGOgdLSosO8WqoruVb6BFdvKNP7acTuCGuFf2fiCk2QB+nkCCVjK1lYrJYE0eDEV3Wtj94pDeXL5AA==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-28T17:33:19.179332Z","bundle_sha256":"1c8a006f382b84ce796562074968fa747ee684bcd74de61d485b7b4e07a1023d"}}