Pith. sign in

cs.CR

Cryptography and Security

Covers all areas of cryptography and security including authentication, public key cryptosytems, proof-carrying code, etc. Roughly includes material in ACM Subject Classes D.4.6 and E.3.

Papers reviewed in the last 7 days lead, then the papers readers actually read. Ranking is not a quality score.

sort pith recommended most recent

Multi-agent LLM reaches 79% on penetration testing benchmarks

Fine-tuned model drives agents through reconnaissance, scanning, and exploitation without human input on standard tests

· “xOffense: An Autonomous Multi-Agent Framework for Penetration Testing with Domain-Adapted Large Language Models”

open re-runnable review →
Figure from the paper

RogueMerge formulates model-merging attacks as a stochastic min-max problem solved with…

RogueMerge jointly optimizes for post-merge success and uses a Taylor approximation to handle unknown weights and new prompts.

· “RogueMerge: Robust and Unified Attacks against LLM Model Merging”

open re-runnable review →
Figure from the paper

LLMs generate bypass rules that succeed on 79% of malware samples

Execution trace analysis lets models create YARA rules that reveal hidden behaviors and classify 47% more families than standard platforms.

· “A Large Language Model Approach to Generating Bypass Rules for Malware Evasion in Analysis Sandbox”

open re-runnable review →
Figure from the paper

ShadowMerge poisons graph memory via shared relation channels

Conflicting relations merge into the same anchor as benign data, letting attackers steer agent answers on targeted tasks at 93.8 percent avg

· “ShadowMerge: A Novel Poisoning Attack on Graph-Based Agent Memory via Relation-Channel Conflicts”

open re-runnable review →
Figure from the paper

Verifier removes 466 non-compliant actions from LLM security plans

Fixed rules and deterministic checker keep baseline recall stable across 200 incidents and three reruns in a financial SOC case study.

· “SOCpilot: Verifying Policy Compliance for LLM-Assisted Incident Response”

open re-runnable review →
Figure from the paper

Gradient coupling certifies detection radius for memory poisoning

Any continuous evasion attempt must degrade retrieval performance, supplying guarantees independent of attacker strategy

· “MEMSAD: Gradient-Coupled Anomaly Detection for Memory Poisoning in Retrieval-Augmented Agents”

open re-runnable review →
Figure from the paper

Reverse engineering finds six flaws in AirDrop and Quick Share

Protocols on over five billion devices accept complex untrusted data without pairing, exposing reachable denial-of-service and bypass paths.

· “Protocol Prying: Systematic Vulnerability Research in the Apple AirDrop and Android Quick Share Proximity Transfer Protocols”

open re-runnable review →
Figure from the paper

Diffusion models uncover semantic attacks on vehicle maps

Attacks using shadows or wet roads suppress 57% of detections and inject false boundaries where pixel methods fail entirely.

· “Systematic Discovery of Semantic Attacks in Online Map Construction through Conditional Diffusion”

open re-runnable review →
Figure from the paper

AgentFlow is a policy layer for AI agents that tracks where sensitive or untrusted data…

AgentFlow enforces flow and path policies over labeled data edges in LLM agent systems, reporting 0% confirmed compromise on AgentDojo and…

· “AgentFlow: A Flow-Centric Policy Language and Framework for Securing LLM Agent Systems”

open re-runnable review →
Figure from the paper

browse all of cs.CR → full archive · search · sub-categories