{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2023:YHLVHD6U4BCMLT2LKBNH4FWHTX","short_pith_number":"pith:YHLVHD6U","schema_version":"1.0","canonical_sha256":"c1d7538fd4e044c5cf4b505a7e16c79dcd50bf7ee10e0f062cc3a87fb25c9e04","source":{"kind":"arxiv","id":"2309.16878","version":1},"attestation_state":"computed","paper":{"title":"Investigating Human-Identifiable Features Hidden in Adversarial Perturbations","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.AI","cs.CV"],"primary_cat":"cs.LG","authors_text":"Dennis Y. Menn, Hung-yi Lee, Sriram Vishwanath, Tzu-hsun Feng","submitted_at":"2023-09-28T22:31:29Z","abstract_excerpt":"Neural networks perform exceedingly well across various machine learning tasks but are not immune to adversarial perturbations. This vulnerability has implications for real-world applications. While much research has been conducted, the underlying reasons why neural networks fall prey to adversarial attacks are not yet fully understood. Central to our study, which explores up to five attack algorithms across three datasets, is the identification of human-identifiable features in adversarial perturbations. Additionally, we uncover two distinct effects manifesting within human-identifiable featu"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2309.16878","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2023-09-28T22:31:29Z","cross_cats_sorted":["cs.AI","cs.CV"],"title_canon_sha256":"32b64d959a99268666e8af3a42882ca7303306e6d5203b4a766fc77e49149223","abstract_canon_sha256":"e37c3d6eb78f7e25a5e1229c224da5f49068bc54ddd72e4dc62171e0e879b031"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T06:55:28.858764Z","signature_b64":"S/fOcEiRv1D5106ANFIQQfGTNW+hZF+cHvWR1Gj1K+R++MHp9KWstqOl1rvgKgmzrAFU2tuKPvkcq4Pde0z2AA==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"c1d7538fd4e044c5cf4b505a7e16c79dcd50bf7ee10e0f062cc3a87fb25c9e04","last_reissued_at":"2026-07-05T06:55:28.858254Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T06:55:28.858254Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"Investigating Human-Identifiable Features Hidden in Adversarial Perturbations","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.AI","cs.CV"],"primary_cat":"cs.LG","authors_text":"Dennis Y. Menn, Hung-yi Lee, Sriram Vishwanath, Tzu-hsun Feng","submitted_at":"2023-09-28T22:31:29Z","abstract_excerpt":"Neural networks perform exceedingly well across various machine learning tasks but are not immune to adversarial perturbations. This vulnerability has implications for real-world applications. While much research has been conducted, the underlying reasons why neural networks fall prey to adversarial attacks are not yet fully understood. Central to our study, which explores up to five attack algorithms across three datasets, is the identification of human-identifiable features in adversarial perturbations. Additionally, we uncover two distinct effects manifesting within human-identifiable featu"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2309.16878","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2309.16878/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2309.16878","created_at":"2026-07-05T06:55:28.858308+00:00"},{"alias_kind":"arxiv_version","alias_value":"2309.16878v1","created_at":"2026-07-05T06:55:28.858308+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2309.16878","created_at":"2026-07-05T06:55:28.858308+00:00"},{"alias_kind":"pith_short_12","alias_value":"YHLVHD6U4BCM","created_at":"2026-07-05T06:55:28.858308+00:00"},{"alias_kind":"pith_short_16","alias_value":"YHLVHD6U4BCMLT2L","created_at":"2026-07-05T06:55:28.858308+00:00"},{"alias_kind":"pith_short_8","alias_value":"YHLVHD6U","created_at":"2026-07-05T06:55:28.858308+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":0,"internal_anchor_count":0,"sample":[]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/YHLVHD6U4BCMLT2LKBNH4FWHTX","json":"https://pith.science/pith/YHLVHD6U4BCMLT2LKBNH4FWHTX.json","graph_json":"https://pith.science/api/pith-number/YHLVHD6U4BCMLT2LKBNH4FWHTX/graph.json","events_json":"https://pith.science/api/pith-number/YHLVHD6U4BCMLT2LKBNH4FWHTX/events.json","paper":"https://pith.science/paper/YHLVHD6U"},"agent_actions":{"view_html":"https://pith.science/pith/YHLVHD6U4BCMLT2LKBNH4FWHTX","download_json":"https://pith.science/pith/YHLVHD6U4BCMLT2LKBNH4FWHTX.json","view_paper":"https://pith.science/paper/YHLVHD6U","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2309.16878&json=true","fetch_graph":"https://pith.science/api/pith-number/YHLVHD6U4BCMLT2LKBNH4FWHTX/graph.json","fetch_events":"https://pith.science/api/pith-number/YHLVHD6U4BCMLT2LKBNH4FWHTX/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/YHLVHD6U4BCMLT2LKBNH4FWHTX/action/timestamp_anchor","attest_storage":"https://pith.science/pith/YHLVHD6U4BCMLT2LKBNH4FWHTX/action/storage_attestation","attest_author":"https://pith.science/pith/YHLVHD6U4BCMLT2LKBNH4FWHTX/action/author_attestation","sign_citation":"https://pith.science/pith/YHLVHD6U4BCMLT2LKBNH4FWHTX/action/citation_signature","submit_replication":"https://pith.science/pith/YHLVHD6U4BCMLT2LKBNH4FWHTX/action/replication_record"}},"created_at":"2026-07-05T06:55:28.858308+00:00","updated_at":"2026-07-05T06:55:28.858308+00:00"}