{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2025:TWYNWEAK25Q6WC7VNGPEEJBEJE","short_pith_number":"pith:TWYNWEAK","canonical_record":{"source":{"id":"2502.06567","kind":"arxiv","version":2},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"stat.ML","submitted_at":"2025-02-10T15:34:42Z","cross_cats_sorted":["cs.LG"],"title_canon_sha256":"c1636b35711e162cf0ec8b7b3a8d8a346200aaef45f1157127c026447bbc4f5b","abstract_canon_sha256":"0db954c72fc5a585d9eda80505b8a21c947326767843544b25fe7e2ed15721f4"},"schema_version":"1.0"},"canonical_sha256":"9db0db100ad761eb0bf5699e422424492b587af075d93f08746e45ec6dbb2ffa","source":{"kind":"arxiv","id":"2502.06567","version":2},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2502.06567","created_at":"2026-05-27T01:05:33Z"},{"alias_kind":"arxiv_version","alias_value":"2502.06567v2","created_at":"2026-05-27T01:05:33Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2502.06567","created_at":"2026-05-27T01:05:33Z"},{"alias_kind":"pith_short_12","alias_value":"TWYNWEAK25Q6","created_at":"2026-05-27T01:05:33Z"},{"alias_kind":"pith_short_16","alias_value":"TWYNWEAK25Q6WC7V","created_at":"2026-05-27T01:05:33Z"},{"alias_kind":"pith_short_8","alias_value":"TWYNWEAK","created_at":"2026-05-27T01:05:33Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2025:TWYNWEAK25Q6WC7VNGPEEJBEJE","target":"record","payload":{"canonical_record":{"source":{"id":"2502.06567","kind":"arxiv","version":2},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"stat.ML","submitted_at":"2025-02-10T15:34:42Z","cross_cats_sorted":["cs.LG"],"title_canon_sha256":"c1636b35711e162cf0ec8b7b3a8d8a346200aaef45f1157127c026447bbc4f5b","abstract_canon_sha256":"0db954c72fc5a585d9eda80505b8a21c947326767843544b25fe7e2ed15721f4"},"schema_version":"1.0"},"canonical_sha256":"9db0db100ad761eb0bf5699e422424492b587af075d93f08746e45ec6dbb2ffa","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-27T01:05:33.360159Z","signature_b64":"aphlRGK3DeTZnxsSZV/BMi3HEGMM+CC+TU6sIN2CMEgHtKbopufEJlGeTK6ABhb1iV/1cRpm8Cf9BJnsy+J1Ag==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"9db0db100ad761eb0bf5699e422424492b587af075d93f08746e45ec6dbb2ffa","last_reissued_at":"2026-05-27T01:05:33.359521Z","signature_status":"signed_v1","first_computed_at":"2026-05-27T01:05:33.359521Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"2502.06567","source_version":2,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-27T01:05:33Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"kQR4C2lYnCuegQlbGWjLSYqicOuvAEKBAaiu9eVuj72CdHhN5tI8Ybfyn3bRFT8P/0ZPl5+d55CPiwJhaxKcBQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-24T14:52:48.981323Z"},"content_sha256":"77d2486155123fb66a39b08957cefca80171f106a4d30fb783890db28bcc5abf","schema_version":"1.0","event_id":"sha256:77d2486155123fb66a39b08957cefca80171f106a4d30fb783890db28bcc5abf"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2025:TWYNWEAK25Q6WC7VNGPEEJBEJE","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Membership Inference Risks in Quantized Models: A Theoretical and Empirical Study","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":["cs.LG"],"primary_cat":"stat.ML","authors_text":"Elisabeth Gassiat, Eric Aubinais, Pablo Piantanida, Philippe Formont","submitted_at":"2025-02-10T15:34:42Z","abstract_excerpt":"Quantizing machine learning models has demonstrated its effectiveness in lowering memory and inference costs while maintaining performance levels comparable to those of the original models. In this work, we investigate the impact of quantization procedures on privacy in data-driven models, focusing on their vulnerability to membership inference attacks. Membership Inference Security (MIS) has recently been proposed to characterize the privacy of machine learning models against the most powerful (and possibly unknown) attacks. However, quantifying MIS appears to be computationally very difficul"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2502.06567","kind":"arxiv","version":2},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2502.06567/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-27T01:05:33Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"uv9I+A1Kyxow9qKoawJgAa/t93ntiwbA//Fb/CrcadL4vHnqRrIvcDuGGvCB7yrhHpfGxKqPcpDvduPIGJymAA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-24T14:52:48.981709Z"},"content_sha256":"9b5b9de1bad763674a2ae996ec743f1c1ebfa019c26cdac7a4cd5ad952bfad81","schema_version":"1.0","event_id":"sha256:9b5b9de1bad763674a2ae996ec743f1c1ebfa019c26cdac7a4cd5ad952bfad81"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/TWYNWEAK25Q6WC7VNGPEEJBEJE/bundle.json","state_url":"https://pith.science/pith/TWYNWEAK25Q6WC7VNGPEEJBEJE/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/TWYNWEAK25Q6WC7VNGPEEJBEJE/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-24T14:52:48Z","links":{"resolver":"https://pith.science/pith/TWYNWEAK25Q6WC7VNGPEEJBEJE","bundle":"https://pith.science/pith/TWYNWEAK25Q6WC7VNGPEEJBEJE/bundle.json","state":"https://pith.science/pith/TWYNWEAK25Q6WC7VNGPEEJBEJE/state.json","well_known_bundle":"https://pith.science/.well-known/pith/TWYNWEAK25Q6WC7VNGPEEJBEJE/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2025:TWYNWEAK25Q6WC7VNGPEEJBEJE","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"0db954c72fc5a585d9eda80505b8a21c947326767843544b25fe7e2ed15721f4","cross_cats_sorted":["cs.LG"],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"stat.ML","submitted_at":"2025-02-10T15:34:42Z","title_canon_sha256":"c1636b35711e162cf0ec8b7b3a8d8a346200aaef45f1157127c026447bbc4f5b"},"schema_version":"1.0","source":{"id":"2502.06567","kind":"arxiv","version":2}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2502.06567","created_at":"2026-05-27T01:05:33Z"},{"alias_kind":"arxiv_version","alias_value":"2502.06567v2","created_at":"2026-05-27T01:05:33Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2502.06567","created_at":"2026-05-27T01:05:33Z"},{"alias_kind":"pith_short_12","alias_value":"TWYNWEAK25Q6","created_at":"2026-05-27T01:05:33Z"},{"alias_kind":"pith_short_16","alias_value":"TWYNWEAK25Q6WC7V","created_at":"2026-05-27T01:05:33Z"},{"alias_kind":"pith_short_8","alias_value":"TWYNWEAK","created_at":"2026-05-27T01:05:33Z"}],"graph_snapshots":[{"event_id":"sha256:9b5b9de1bad763674a2ae996ec743f1c1ebfa019c26cdac7a4cd5ad952bfad81","target":"graph","created_at":"2026-05-27T01:05:33Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/2502.06567/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"Quantizing machine learning models has demonstrated its effectiveness in lowering memory and inference costs while maintaining performance levels comparable to those of the original models. In this work, we investigate the impact of quantization procedures on privacy in data-driven models, focusing on their vulnerability to membership inference attacks. Membership Inference Security (MIS) has recently been proposed to characterize the privacy of machine learning models against the most powerful (and possibly unknown) attacks. However, quantifying MIS appears to be computationally very difficul","authors_text":"Elisabeth Gassiat, Eric Aubinais, Pablo Piantanida, Philippe Formont","cross_cats":["cs.LG"],"headline":"","license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"stat.ML","submitted_at":"2025-02-10T15:34:42Z","title":"Membership Inference Risks in Quantized Models: A Theoretical and Empirical Study"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2502.06567","kind":"arxiv","version":2},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:77d2486155123fb66a39b08957cefca80171f106a4d30fb783890db28bcc5abf","target":"record","created_at":"2026-05-27T01:05:33Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"0db954c72fc5a585d9eda80505b8a21c947326767843544b25fe7e2ed15721f4","cross_cats_sorted":["cs.LG"],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"stat.ML","submitted_at":"2025-02-10T15:34:42Z","title_canon_sha256":"c1636b35711e162cf0ec8b7b3a8d8a346200aaef45f1157127c026447bbc4f5b"},"schema_version":"1.0","source":{"id":"2502.06567","kind":"arxiv","version":2}},"canonical_sha256":"9db0db100ad761eb0bf5699e422424492b587af075d93f08746e45ec6dbb2ffa","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"9db0db100ad761eb0bf5699e422424492b587af075d93f08746e45ec6dbb2ffa","first_computed_at":"2026-05-27T01:05:33.359521Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-27T01:05:33.359521Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"aphlRGK3DeTZnxsSZV/BMi3HEGMM+CC+TU6sIN2CMEgHtKbopufEJlGeTK6ABhb1iV/1cRpm8Cf9BJnsy+J1Ag==","signature_status":"signed_v1","signed_at":"2026-05-27T01:05:33.360159Z","signed_message":"canonical_sha256_bytes"},"source_id":"2502.06567","source_kind":"arxiv","source_version":2}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:77d2486155123fb66a39b08957cefca80171f106a4d30fb783890db28bcc5abf","sha256:9b5b9de1bad763674a2ae996ec743f1c1ebfa019c26cdac7a4cd5ad952bfad81"],"state_sha256":"e3fd2ad132fcd0761cc26c627672369be1e92b8bdb08808c01cfe0fc105fc8a6"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"pOqVGgLG1rMFNdUmgCxA5t/fkQ7fSrqA+qs7LVPZZUZYMeWiumt/eBYXLeuPasFRBki923FxmnjGxbM9ngmLCA==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-24T14:52:48.983895Z","bundle_sha256":"c353c5448e40f497ae67aafaeb2decf60c97a4ac18cf0fd13707fa1ed83c2ed1"}}