{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2017:XYO3G3A7QBH6E7P43FXIMYFH35","short_pith_number":"pith:XYO3G3A7","canonical_record":{"source":{"id":"1703.04318","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2017-03-13T10:28:24Z","cross_cats_sorted":[],"title_canon_sha256":"6732193447f6f74f4b6c8d9be5094b6ee677192af39e44d0662afc997170965f","abstract_canon_sha256":"866dc9b7c21d52bc482d2c6c2e64005e31a881f53d32bff206bf9392cce5e9a3"},"schema_version":"1.0"},"canonical_sha256":"be1db36c1f804fe27dfcd96e8660a7df4f4b6ff2b398569ea66e4f7f4e1e01ba","source":{"kind":"arxiv","id":"1703.04318","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1703.04318","created_at":"2026-05-18T00:48:49Z"},{"alias_kind":"arxiv_version","alias_value":"1703.04318v1","created_at":"2026-05-18T00:48:49Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1703.04318","created_at":"2026-05-18T00:48:49Z"},{"alias_kind":"pith_short_12","alias_value":"XYO3G3A7QBH6","created_at":"2026-05-18T12:31:56Z"},{"alias_kind":"pith_short_16","alias_value":"XYO3G3A7QBH6E7P4","created_at":"2026-05-18T12:31:56Z"},{"alias_kind":"pith_short_8","alias_value":"XYO3G3A7","created_at":"2026-05-18T12:31:56Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2017:XYO3G3A7QBH6E7P43FXIMYFH35","target":"record","payload":{"canonical_record":{"source":{"id":"1703.04318","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2017-03-13T10:28:24Z","cross_cats_sorted":[],"title_canon_sha256":"6732193447f6f74f4b6c8d9be5094b6ee677192af39e44d0662afc997170965f","abstract_canon_sha256":"866dc9b7c21d52bc482d2c6c2e64005e31a881f53d32bff206bf9392cce5e9a3"},"schema_version":"1.0"},"canonical_sha256":"be1db36c1f804fe27dfcd96e8660a7df4f4b6ff2b398569ea66e4f7f4e1e01ba","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-18T00:48:49.106840Z","signature_b64":"Lk3Z4JnQmgMQHJge1I2gL3tQE+MMM25fsJwOzAxXcnUJZT19qR4FsnWMFNPHzxJW+wwj+QK2eAk9oFwa6OLrCQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"be1db36c1f804fe27dfcd96e8660a7df4f4b6ff2b398569ea66e4f7f4e1e01ba","last_reissued_at":"2026-05-18T00:48:49.105964Z","signature_status":"signed_v1","first_computed_at":"2026-05-18T00:48:49.105964Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1703.04318","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:48:49Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"O4kuKtdRIrIP97cYN0GG2nSZHJi+U3JrHhKjxI+lYMg5JdOtO6phicCXeW/SX7NyabmearA0udNu426CsqUWBA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-30T11:17:39.926643Z"},"content_sha256":"8d9509e381eef0fd3f19cb6fc9617f3f914a8ae6217f3cb04153d956e5e62bdc","schema_version":"1.0","event_id":"sha256:8d9509e381eef0fd3f19cb6fc9617f3f914a8ae6217f3cb04153d956e5e62bdc"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2017:XYO3G3A7QBH6E7P43FXIMYFH35","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Blocking Transferability of Adversarial Examples in Black-Box Learning Systems","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.LG","authors_text":"Baosen Zhang, Hossein Hosseini, Radha Poovendran, Sreeram Kannan, Yize Chen","submitted_at":"2017-03-13T10:28:24Z","abstract_excerpt":"Advances in Machine Learning (ML) have led to its adoption as an integral component in many applications, including banking, medical diagnosis, and driverless cars. To further broaden the use of ML models, cloud-based services offered by Microsoft, Amazon, Google, and others have developed ML-as-a-service tools as black-box systems. However, ML classifiers are vulnerable to adversarial examples: inputs that are maliciously modified can cause the classifier to provide adversary-desired outputs. Moreover, it is known that adversarial examples generated on one classifier are likely to cause anoth"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1703.04318","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:48:49Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"wfJXBU5yXYALPyF7CIZtDA6/zsvEU+QNUAKvSxmkaDVxeN+Fb2LOq4x2eYJb7bKM7R+I8tGUbd1DhvLTm9ceAw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-30T11:17:39.927030Z"},"content_sha256":"8db1886fc7e35d41ab261ab5e58f18190a2a9a54a559216e45cad96c502730a6","schema_version":"1.0","event_id":"sha256:8db1886fc7e35d41ab261ab5e58f18190a2a9a54a559216e45cad96c502730a6"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/XYO3G3A7QBH6E7P43FXIMYFH35/bundle.json","state_url":"https://pith.science/pith/XYO3G3A7QBH6E7P43FXIMYFH35/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/XYO3G3A7QBH6E7P43FXIMYFH35/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-30T11:17:39Z","links":{"resolver":"https://pith.science/pith/XYO3G3A7QBH6E7P43FXIMYFH35","bundle":"https://pith.science/pith/XYO3G3A7QBH6E7P43FXIMYFH35/bundle.json","state":"https://pith.science/pith/XYO3G3A7QBH6E7P43FXIMYFH35/state.json","well_known_bundle":"https://pith.science/.well-known/pith/XYO3G3A7QBH6E7P43FXIMYFH35/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2017:XYO3G3A7QBH6E7P43FXIMYFH35","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"866dc9b7c21d52bc482d2c6c2e64005e31a881f53d32bff206bf9392cce5e9a3","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2017-03-13T10:28:24Z","title_canon_sha256":"6732193447f6f74f4b6c8d9be5094b6ee677192af39e44d0662afc997170965f"},"schema_version":"1.0","source":{"id":"1703.04318","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1703.04318","created_at":"2026-05-18T00:48:49Z"},{"alias_kind":"arxiv_version","alias_value":"1703.04318v1","created_at":"2026-05-18T00:48:49Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1703.04318","created_at":"2026-05-18T00:48:49Z"},{"alias_kind":"pith_short_12","alias_value":"XYO3G3A7QBH6","created_at":"2026-05-18T12:31:56Z"},{"alias_kind":"pith_short_16","alias_value":"XYO3G3A7QBH6E7P4","created_at":"2026-05-18T12:31:56Z"},{"alias_kind":"pith_short_8","alias_value":"XYO3G3A7","created_at":"2026-05-18T12:31:56Z"}],"graph_snapshots":[{"event_id":"sha256:8db1886fc7e35d41ab261ab5e58f18190a2a9a54a559216e45cad96c502730a6","target":"graph","created_at":"2026-05-18T00:48:49Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Advances in Machine Learning (ML) have led to its adoption as an integral component in many applications, including banking, medical diagnosis, and driverless cars. To further broaden the use of ML models, cloud-based services offered by Microsoft, Amazon, Google, and others have developed ML-as-a-service tools as black-box systems. However, ML classifiers are vulnerable to adversarial examples: inputs that are maliciously modified can cause the classifier to provide adversary-desired outputs. Moreover, it is known that adversarial examples generated on one classifier are likely to cause anoth","authors_text":"Baosen Zhang, Hossein Hosseini, Radha Poovendran, Sreeram Kannan, Yize Chen","cross_cats":[],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2017-03-13T10:28:24Z","title":"Blocking Transferability of Adversarial Examples in Black-Box Learning Systems"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1703.04318","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:8d9509e381eef0fd3f19cb6fc9617f3f914a8ae6217f3cb04153d956e5e62bdc","target":"record","created_at":"2026-05-18T00:48:49Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"866dc9b7c21d52bc482d2c6c2e64005e31a881f53d32bff206bf9392cce5e9a3","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2017-03-13T10:28:24Z","title_canon_sha256":"6732193447f6f74f4b6c8d9be5094b6ee677192af39e44d0662afc997170965f"},"schema_version":"1.0","source":{"id":"1703.04318","kind":"arxiv","version":1}},"canonical_sha256":"be1db36c1f804fe27dfcd96e8660a7df4f4b6ff2b398569ea66e4f7f4e1e01ba","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"be1db36c1f804fe27dfcd96e8660a7df4f4b6ff2b398569ea66e4f7f4e1e01ba","first_computed_at":"2026-05-18T00:48:49.105964Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-18T00:48:49.105964Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"Lk3Z4JnQmgMQHJge1I2gL3tQE+MMM25fsJwOzAxXcnUJZT19qR4FsnWMFNPHzxJW+wwj+QK2eAk9oFwa6OLrCQ==","signature_status":"signed_v1","signed_at":"2026-05-18T00:48:49.106840Z","signed_message":"canonical_sha256_bytes"},"source_id":"1703.04318","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:8d9509e381eef0fd3f19cb6fc9617f3f914a8ae6217f3cb04153d956e5e62bdc","sha256:8db1886fc7e35d41ab261ab5e58f18190a2a9a54a559216e45cad96c502730a6"],"state_sha256":"22325fcb28cb56cef13fdeb44174a56dfc6a4e2fe04edd30a983fa4f352f24c1"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"URHf29Ff1JyzoJk+6Ymtjz2DpoW9tq36dXX0IoT36/Rii3Yqtm+8Lp01q6cQxDOespmJPcA/JDUTRwHdrp6uCA==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-30T11:17:39.929335Z","bundle_sha256":"c7db8798fe01c03d41436f9dfe9c3773154df6497718eb049ff521f2d3678b07"}}