{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2018:XL6LYMWGKCY3SDTB7YTTIG2EYK","short_pith_number":"pith:XL6LYMWG","canonical_record":{"source":{"id":"1805.05098","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-05-14T10:15:29Z","cross_cats_sorted":["cs.CV"],"title_canon_sha256":"aae4873169e93cf782001e82346d0f40442ae83756ae364edf346906cc28e252","abstract_canon_sha256":"276f931df4f039ad4d184a8da8266b1928c8a5fb296b8352ed7fce4f53422642"},"schema_version":"1.0"},"canonical_sha256":"bafcbc32c650b1b90e61fe27341b44c28cf32fe989ebee5a2aae39ee9a81dab6","source":{"kind":"arxiv","id":"1805.05098","version":2},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1805.05098","created_at":"2026-05-17T23:58:30Z"},{"alias_kind":"arxiv_version","alias_value":"1805.05098v2","created_at":"2026-05-17T23:58:30Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1805.05098","created_at":"2026-05-17T23:58:30Z"},{"alias_kind":"pith_short_12","alias_value":"XL6LYMWGKCY3","created_at":"2026-05-18T12:33:01Z"},{"alias_kind":"pith_short_16","alias_value":"XL6LYMWGKCY3SDTB","created_at":"2026-05-18T12:33:01Z"},{"alias_kind":"pith_short_8","alias_value":"XL6LYMWG","created_at":"2026-05-18T12:33:01Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2018:XL6LYMWGKCY3SDTB7YTTIG2EYK","target":"record","payload":{"canonical_record":{"source":{"id":"1805.05098","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-05-14T10:15:29Z","cross_cats_sorted":["cs.CV"],"title_canon_sha256":"aae4873169e93cf782001e82346d0f40442ae83756ae364edf346906cc28e252","abstract_canon_sha256":"276f931df4f039ad4d184a8da8266b1928c8a5fb296b8352ed7fce4f53422642"},"schema_version":"1.0"},"canonical_sha256":"bafcbc32c650b1b90e61fe27341b44c28cf32fe989ebee5a2aae39ee9a81dab6","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:58:30.834181Z","signature_b64":"Wg0o4l4c6UaXy5A7OnqorLz/9Htsrt8zqZmYSUVAKLNcyRGrsaS/YPApmQTPCvGIrCCPucMOmixDAlh9GrsnDQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"bafcbc32c650b1b90e61fe27341b44c28cf32fe989ebee5a2aae39ee9a81dab6","last_reissued_at":"2026-05-17T23:58:30.833671Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:58:30.833671Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1805.05098","source_version":2,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:58:30Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"TjeYRWTvaG1b9OM0Fxkz9K+E2Hy0plbFQuztZJ7h8UsmURYq+5WHPprIBfIuJjjyaN2BVYcbMnChg6OfARLODw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-27T17:09:58.188199Z"},"content_sha256":"fc0134a0ed11ec1f804f85713e1483ff03451ff7546b1ee626089c5a416179bc","schema_version":"1.0","event_id":"sha256:fc0134a0ed11ec1f804f85713e1483ff03451ff7546b1ee626089c5a416179bc"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2018:XL6LYMWGKCY3SDTB7YTTIG2EYK","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Hu-Fu: Hardware and Software Collaborative Attack Framework against Neural Networks","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.CV"],"primary_cat":"cs.CR","authors_text":"Huazhong Yang, Jincheng Yu, Pengjun Wang, Qi Wei, Wenshuo Li, Xuefei Ning, Yu Wang","submitted_at":"2018-05-14T10:15:29Z","abstract_excerpt":"Recently, Deep Learning (DL), especially Convolutional Neural Network (CNN), develops rapidly and is applied to many tasks, such as image classification, face recognition, image segmentation, and human detection. Due to its superior performance, DL-based models have a wide range of application in many areas, some of which are extremely safety-critical, e.g. intelligent surveillance and autonomous driving. Due to the latency and privacy problem of cloud computing, embedded accelerators are popular in these safety-critical areas. However, the robustness of the embedded DL system might be harmed "},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1805.05098","kind":"arxiv","version":2},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:58:30Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"Ane9LckUZYAFV8jQX9WnaViQi8DKUoLGJxp0YLlQunmq+3+Zg3iRFrrc17ggcN8OKVc8jrTycCFl+FdLCxTYCg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-27T17:09:58.188566Z"},"content_sha256":"4690f91c581682b2a352f709baa2b3ec0959025ab031e7a53fa675ef1037bee5","schema_version":"1.0","event_id":"sha256:4690f91c581682b2a352f709baa2b3ec0959025ab031e7a53fa675ef1037bee5"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/XL6LYMWGKCY3SDTB7YTTIG2EYK/bundle.json","state_url":"https://pith.science/pith/XL6LYMWGKCY3SDTB7YTTIG2EYK/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/XL6LYMWGKCY3SDTB7YTTIG2EYK/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-27T17:09:58Z","links":{"resolver":"https://pith.science/pith/XL6LYMWGKCY3SDTB7YTTIG2EYK","bundle":"https://pith.science/pith/XL6LYMWGKCY3SDTB7YTTIG2EYK/bundle.json","state":"https://pith.science/pith/XL6LYMWGKCY3SDTB7YTTIG2EYK/state.json","well_known_bundle":"https://pith.science/.well-known/pith/XL6LYMWGKCY3SDTB7YTTIG2EYK/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2018:XL6LYMWGKCY3SDTB7YTTIG2EYK","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"276f931df4f039ad4d184a8da8266b1928c8a5fb296b8352ed7fce4f53422642","cross_cats_sorted":["cs.CV"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-05-14T10:15:29Z","title_canon_sha256":"aae4873169e93cf782001e82346d0f40442ae83756ae364edf346906cc28e252"},"schema_version":"1.0","source":{"id":"1805.05098","kind":"arxiv","version":2}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1805.05098","created_at":"2026-05-17T23:58:30Z"},{"alias_kind":"arxiv_version","alias_value":"1805.05098v2","created_at":"2026-05-17T23:58:30Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1805.05098","created_at":"2026-05-17T23:58:30Z"},{"alias_kind":"pith_short_12","alias_value":"XL6LYMWGKCY3","created_at":"2026-05-18T12:33:01Z"},{"alias_kind":"pith_short_16","alias_value":"XL6LYMWGKCY3SDTB","created_at":"2026-05-18T12:33:01Z"},{"alias_kind":"pith_short_8","alias_value":"XL6LYMWG","created_at":"2026-05-18T12:33:01Z"}],"graph_snapshots":[{"event_id":"sha256:4690f91c581682b2a352f709baa2b3ec0959025ab031e7a53fa675ef1037bee5","target":"graph","created_at":"2026-05-17T23:58:30Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Recently, Deep Learning (DL), especially Convolutional Neural Network (CNN), develops rapidly and is applied to many tasks, such as image classification, face recognition, image segmentation, and human detection. Due to its superior performance, DL-based models have a wide range of application in many areas, some of which are extremely safety-critical, e.g. intelligent surveillance and autonomous driving. Due to the latency and privacy problem of cloud computing, embedded accelerators are popular in these safety-critical areas. However, the robustness of the embedded DL system might be harmed ","authors_text":"Huazhong Yang, Jincheng Yu, Pengjun Wang, Qi Wei, Wenshuo Li, Xuefei Ning, Yu Wang","cross_cats":["cs.CV"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-05-14T10:15:29Z","title":"Hu-Fu: Hardware and Software Collaborative Attack Framework against Neural Networks"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1805.05098","kind":"arxiv","version":2},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:fc0134a0ed11ec1f804f85713e1483ff03451ff7546b1ee626089c5a416179bc","target":"record","created_at":"2026-05-17T23:58:30Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"276f931df4f039ad4d184a8da8266b1928c8a5fb296b8352ed7fce4f53422642","cross_cats_sorted":["cs.CV"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2018-05-14T10:15:29Z","title_canon_sha256":"aae4873169e93cf782001e82346d0f40442ae83756ae364edf346906cc28e252"},"schema_version":"1.0","source":{"id":"1805.05098","kind":"arxiv","version":2}},"canonical_sha256":"bafcbc32c650b1b90e61fe27341b44c28cf32fe989ebee5a2aae39ee9a81dab6","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"bafcbc32c650b1b90e61fe27341b44c28cf32fe989ebee5a2aae39ee9a81dab6","first_computed_at":"2026-05-17T23:58:30.833671Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-17T23:58:30.833671Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"Wg0o4l4c6UaXy5A7OnqorLz/9Htsrt8zqZmYSUVAKLNcyRGrsaS/YPApmQTPCvGIrCCPucMOmixDAlh9GrsnDQ==","signature_status":"signed_v1","signed_at":"2026-05-17T23:58:30.834181Z","signed_message":"canonical_sha256_bytes"},"source_id":"1805.05098","source_kind":"arxiv","source_version":2}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:fc0134a0ed11ec1f804f85713e1483ff03451ff7546b1ee626089c5a416179bc","sha256:4690f91c581682b2a352f709baa2b3ec0959025ab031e7a53fa675ef1037bee5"],"state_sha256":"f08ebd75a083b9b45b6c25272b16319f0b04ec6f3c35cb7756f000ab2eaa8d9c"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"EMyNF1hzbsGBuqC9qGKRiL4Vh6wSa/O2Fu4+z6ALbXAE/3O9gJE/6pCDMwUlGyraGIx1zjwgbJjVIITZOhMWDA==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-27T17:09:58.190507Z","bundle_sha256":"7200a1912fec8b4eca7994e517f372134bfea7b184290725fccabf0592cde583"}}