{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2019:UHLWA4275PEP4LCB5GAFGTDTOS","short_pith_number":"pith:UHLWA427","schema_version":"1.0","canonical_sha256":"a1d760735febc8fe2c41e980534c7374819ed35208952bebd3442f6443674589","source":{"kind":"arxiv","id":"1905.12797","version":1},"attestation_state":"computed","paper":{"title":"Bandlimiting Neural Networks Against Adversarial Attacks","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.CR","cs.CV","cs.NE","stat.ML"],"primary_cat":"cs.LG","authors_text":"Hui Jiang, Kasra Ahmadi K. A., Yuping Lin","submitted_at":"2019-05-30T00:34:50Z","abstract_excerpt":"In this paper, we study the adversarial attack and defence problem in deep learning from the perspective of Fourier analysis. We first explicitly compute the Fourier transform of deep ReLU neural networks and show that there exist decaying but non-zero high frequency components in the Fourier spectrum of neural networks. We demonstrate that the vulnerability of neural networks towards adversarial samples can be attributed to these insignificant but non-zero high frequency components. Based on this analysis, we propose to use a simple post-averaging technique to smooth out these high frequency "},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"1905.12797","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2019-05-30T00:34:50Z","cross_cats_sorted":["cs.CR","cs.CV","cs.NE","stat.ML"],"title_canon_sha256":"2b65678da489da35d5e627e51e1177255dbdfd7c1cf1405291e55816a63faf9e","abstract_canon_sha256":"e9d541e0dc00eff045773d96d1b46bd013a1c7a758b7a6f40b5a91548fe9f489"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:44:39.641092Z","signature_b64":"xoWmjC0wOwV+JgqKPbKjtti6XYc+2vOrSkWTtfK3H7nMlH1vcID5vwqtTOpMraQMci6JnGGl8OSRXyZHZQLCAA==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"a1d760735febc8fe2c41e980534c7374819ed35208952bebd3442f6443674589","last_reissued_at":"2026-05-17T23:44:39.640591Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:44:39.640591Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"Bandlimiting Neural Networks Against Adversarial Attacks","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.CR","cs.CV","cs.NE","stat.ML"],"primary_cat":"cs.LG","authors_text":"Hui Jiang, Kasra Ahmadi K. A., Yuping Lin","submitted_at":"2019-05-30T00:34:50Z","abstract_excerpt":"In this paper, we study the adversarial attack and defence problem in deep learning from the perspective of Fourier analysis. We first explicitly compute the Fourier transform of deep ReLU neural networks and show that there exist decaying but non-zero high frequency components in the Fourier spectrum of neural networks. We demonstrate that the vulnerability of neural networks towards adversarial samples can be attributed to these insignificant but non-zero high frequency components. Based on this analysis, we propose to use a simple post-averaging technique to smooth out these high frequency "},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1905.12797","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"1905.12797","created_at":"2026-05-17T23:44:39.640675+00:00"},{"alias_kind":"arxiv_version","alias_value":"1905.12797v1","created_at":"2026-05-17T23:44:39.640675+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1905.12797","created_at":"2026-05-17T23:44:39.640675+00:00"},{"alias_kind":"pith_short_12","alias_value":"UHLWA4275PEP","created_at":"2026-05-18T12:33:30.264802+00:00"},{"alias_kind":"pith_short_16","alias_value":"UHLWA4275PEP4LCB","created_at":"2026-05-18T12:33:30.264802+00:00"},{"alias_kind":"pith_short_8","alias_value":"UHLWA427","created_at":"2026-05-18T12:33:30.264802+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":0,"internal_anchor_count":0,"sample":[]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/UHLWA4275PEP4LCB5GAFGTDTOS","json":"https://pith.science/pith/UHLWA4275PEP4LCB5GAFGTDTOS.json","graph_json":"https://pith.science/api/pith-number/UHLWA4275PEP4LCB5GAFGTDTOS/graph.json","events_json":"https://pith.science/api/pith-number/UHLWA4275PEP4LCB5GAFGTDTOS/events.json","paper":"https://pith.science/paper/UHLWA427"},"agent_actions":{"view_html":"https://pith.science/pith/UHLWA4275PEP4LCB5GAFGTDTOS","download_json":"https://pith.science/pith/UHLWA4275PEP4LCB5GAFGTDTOS.json","view_paper":"https://pith.science/paper/UHLWA427","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=1905.12797&json=true","fetch_graph":"https://pith.science/api/pith-number/UHLWA4275PEP4LCB5GAFGTDTOS/graph.json","fetch_events":"https://pith.science/api/pith-number/UHLWA4275PEP4LCB5GAFGTDTOS/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/UHLWA4275PEP4LCB5GAFGTDTOS/action/timestamp_anchor","attest_storage":"https://pith.science/pith/UHLWA4275PEP4LCB5GAFGTDTOS/action/storage_attestation","attest_author":"https://pith.science/pith/UHLWA4275PEP4LCB5GAFGTDTOS/action/author_attestation","sign_citation":"https://pith.science/pith/UHLWA4275PEP4LCB5GAFGTDTOS/action/citation_signature","submit_replication":"https://pith.science/pith/UHLWA4275PEP4LCB5GAFGTDTOS/action/replication_record"}},"created_at":"2026-05-17T23:44:39.640675+00:00","updated_at":"2026-05-17T23:44:39.640675+00:00"}