Pith. sign in

Paper Citation Record · LEDGER

Poisoning Retrieval Corpora by Injecting Adversarial Passages

As of 10 August 2026, this Paper Citation Record lists 0 of 0 outbound references and 22 inbound Pith citation observations for arXiv:2310.19156.

A citation records a reference. It does not transfer a finding from one paper to another.

pith.paper-citation-record.v1
2310.19156 v1

Coverage vector

measured 0 of 0 reference resolution

Typed states for the displayed outbound observations.

Source: paper_references, paper_reference_links

measured 22 of 22 standing notices

One-hop event checks from named stored sources.

Source: scholarly_work_events, retraction_status_cache, observed 2026-08-09T06:31:02.800959+00:00

measured 22 of 22 inbound itemization

Pith citing papers itemized under the disclosed page cap.

Source: paper_references, paper_reference_links, observed 2026-08-08T19:15:25.782530Z

measured 0 of 1 external citation measurements

A source-named dated measurement, never combined with another source.

Source: arxiv_reference, observed 2026-07-03T20:48:55.403948Z

Reference resolution

0 of 0 outbound references displayed

  • verified exact0
  • verified fuzzy0
  • unresolved0
  • parse uncertain0
  • malformed identifier0
  • metadata mismatch0

External citation measurements

No source-named external measurement is stored.

Outbound references

No outbound reference observations are available for this paper version.

Pith citing papers

Observation 6cdd55d8-30db-4c96-854b-93292eea7f95 · inbound

Towards Trustworthy Retrieval Augmented Generation for Large Language Models: A Survey cites this paper.

Towards Trustworthy Retrieval Augmented Generation for Large Language Models: A Survey Poisoning Retrieval Corpora by Injecting Adversarial Passages

Reference 229

Resolution
unresolved
no resolver link, observed 2026-08-08T19:15:25.782530Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-08T19:15:25.782530Z digest=sha256:f67736bf9d12d3f775623db12ba2e222f0bb6c2dd03dcc9b936e9a8d1c412ed5

Observation dee30cea-29b1-40b1-b489-8b9ad2672dad · inbound

Scalable Defense against In-the-wild Jailbreaking Attacks with Safety Context Retrieval cites this paper.

Scalable Defense against In-the-wild Jailbreaking Attacks with Safety Context Retrieval Poisoning Retrieval Corpora by Injecting Adversarial Passages

Reference 54

Resolution
unresolved
no resolver link, observed 2026-08-07T15:15:48.802863Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-07T15:15:48.802863Z digest=sha256:c08a55819410c2462edb6792768a69b08414d96e690a83e0e60d963737593a90

Observation 98309379-6233-4c3a-a018-9a47b5a839bd · inbound

Benchmarking Poisoning Attacks against Retrieval-Augmented Generation cites this paper.

Benchmarking Poisoning Attacks against Retrieval-Augmented Generation Poisoning Retrieval Corpora by Injecting Adversarial Passages

Reference 92

Resolution
unresolved
no resolver link, observed 2026-08-07T14:33:00.710112Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-07T14:33:00.710112Z digest=sha256:2fab436e3e85a2309daa7c45c0565f39814c71d95b8c29bab656de132286f279

Observation ab2d30a3-cda8-4b78-9131-51617e5d1c12 · inbound

CPA-RAG:Covert Poisoning Attacks on Retrieval-Augmented Generation in Large Language Models cites this paper.

CPA-RAG:Covert Poisoning Attacks on Retrieval-Augmented Generation in Large Language Models Poisoning Retrieval Corpora by Injecting Adversarial Passages

Reference 39

Resolution
unresolved
no resolver link, observed 2026-08-07T14:10:29.785258Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-07T14:10:29.785258Z digest=sha256:ff45ea0de43d92807f4fcac0a2170b8ae43d49a952b778281a9e3f11a9c3221e

Observation 1352cddc-bea4-444d-a0c2-ac35e9a1594a · inbound

Spa-VLM: Stealthy Poisoning Attacks on RAG-based VLM cites this paper.

Spa-VLM: Stealthy Poisoning Attacks on RAG-based VLM Poisoning Retrieval Corpora by Injecting Adversarial Passages

Reference 12

Resolution
unresolved
no resolver link, observed 2026-08-07T13:21:40.196536Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-07T13:21:40.196536Z digest=sha256:504e51aee9d31990c713b076997a81d552a811fa01a513a6d714d5dd97ada20c

Observation 227adf8d-6938-4757-9eed-a3deb23d1055 · inbound

Through the Stealth Lens: Attention-Aware Defenses Against Poisoning in RAG cites this paper.

Through the Stealth Lens: Attention-Aware Defenses Against Poisoning in RAG Poisoning Retrieval Corpora by Injecting Adversarial Passages

Reference 31

Resolution
verified exact
arxiv_id, observed 2026-05-25T08:15:34.194437Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.

source=pdf_text observed=2026-05-25T08:10:31.473565Z digest=sha256:b8271daac7de439afc8c54e5a60df977b9748c66c06c30c6aae0fb8f78d46594

Observation 187d8aaa-509a-4ab2-a7de-a92141cd0eb0 · inbound

Bias Amplification in RAG: Poisoning Knowledge Retrieval to Steer LLMs cites this paper.

Bias Amplification in RAG: Poisoning Knowledge Retrieval to Steer LLMs Poisoning Retrieval Corpora by Injecting Adversarial Passages

Reference 7

Resolution
unresolved
no resolver link, observed 2026-08-07T04:15:36.006831Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-07T04:15:36.006831Z digest=sha256:e2f1a0e8bd459be8ec719a82d26a75d1e4c18a8fb829c390a1592d0a9eadfaf6

Observation ac521aa4-d960-4a5f-9b62-bcb9a8d4712f · inbound

We Should Identify and Mitigate Third-Party Safety Risks in MCP-Powered Agent Systems cites this paper.

We Should Identify and Mitigate Third-Party Safety Risks in MCP-Powered Agent Systems Poisoning Retrieval Corpora by Injecting Adversarial Passages

Reference 104

Resolution
unresolved
no resolver link, observed 2026-08-07T00:32:36.766672Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-07T00:32:36.766672Z digest=sha256:cc861e2cfb6773ffda3822203fcff4886ae2acad2f21289fdcd077194ec70655

Observation 695659b7-2f50-4bd9-b1d9-39a6c49741b1 · inbound

AttnTrace: Contextual Attribution of Prompt Injection and Knowledge Corruption cites this paper.

AttnTrace: Contextual Attribution of Prompt Injection and Knowledge Corruption Poisoning Retrieval Corpora by Injecting Adversarial Passages

Reference 73

Resolution
verified exact
arxiv_id, observed 2026-05-19T00:36:56.372080Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.

source=pdf_text observed=2026-05-19T00:33:53.280563Z digest=sha256:1b65a79a134a6f46c9f4a3808b7e75b7d32f7b8f4c805ecb540e1fb217330163

Observation f2b911c7-cfd5-487d-abc9-14a1fca88c14 · inbound

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) cites this paper.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Poisoning Retrieval Corpora by Injecting Adversarial Passages

Reference 83

Resolution
unresolved
no resolver link, observed 2026-08-05T15:18:37.129287Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T15:18:37.129287Z digest=sha256:bfdd4db6dead7ff08a78381e41529b0a958b85b1e3c23bca3046d931d49a3797

Observation 35b64f81-59e0-486d-aa8e-70fea927b5ae · inbound

ImportSnare: Directed "Code Manual" Hijacking in Retrieval-Augmented Code Generation cites this paper.

ImportSnare: Directed "Code Manual" Hijacking in Retrieval-Augmented Code Generation Poisoning Retrieval Corpora by Injecting Adversarial Passages

Reference 55

Resolution
unresolved
no resolver link, observed 2026-08-04T21:34:00.476143Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-04T21:34:00.476143Z digest=sha256:00d90c4cc20d05b1d60907c3ca100bbd88a6b213e915ad19c6b77176ad4e5e0d

Observation c246311c-67fd-417a-980c-a33ef9bd42e4 · inbound

Agentic AI Security: Threats, Defenses, Evaluation, and Open Challenges cites this paper.

Agentic AI Security: Threats, Defenses, Evaluation, and Open Challenges Poisoning Retrieval Corpora by Injecting Adversarial Passages

Reference 68

Resolution
verified exact
arxiv_id, observed 2026-05-18T03:42:22.418270Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.

source=pdf_text observed=2026-05-18T03:42:10.703369Z digest=sha256:ca6d27ecbfed3b2d49c5dba9446a5f6a322816d911981a4ece11c06032b41f7f

Observation 67470691-85b9-48fe-9b34-06971ecda5e1 · inbound

Led to Mislead: Adversarial Content Injection for Attacks on Neural Ranking Models cites this paper.

Led to Mislead: Adversarial Content Injection for Attacks on Neural Ranking Models Poisoning Retrieval Corpora by Injecting Adversarial Passages

Reference 60

Resolution
verified exact
arxiv_id, observed 2026-05-11T16:21:06.618031Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.

source=pdf_text observed=2026-05-09T17:37:56.757376Z digest=sha256:39bae866f364830a818301fda27b4c4d5d7b727c2c267f222796679df1f0ca26

Observation 27827127-08a7-4472-9350-f53c41f2a442 · inbound

Needle-in-RAG: Prompt-Conditioned Character-Level Traceback of Poisoned Spans in Retrieved Evidence cites this paper.

Needle-in-RAG: Prompt-Conditioned Character-Level Traceback of Poisoned Spans in Retrieved Evidence Poisoning Retrieval Corpora by Injecting Adversarial Passages

Reference 66

Resolution
metadata mismatch
arxiv_id, observed 2026-05-11T11:31:00.613037Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.

source=pdf_text observed=2026-05-10T14:52:32.202125Z digest=sha256:44984cb169f5a40edb334cf677a2661257179bdfb65b39172efc95194375234d

Observation 54fe4814-5bc3-4cf2-9cd7-81677cd8f0ab · inbound

Detecting Is Not Resolving: The Monitoring Control Gap in Retrieval Augmented LLMs cites this paper.

Detecting Is Not Resolving: The Monitoring Control Gap in Retrieval Augmented LLMs Poisoning Retrieval Corpora by Injecting Adversarial Passages

Reference 5

Resolution
verified exact
arxiv_id, observed 2026-06-29T17:13:44.834477Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.

source=arxiv_source observed=2026-06-29T17:06:46.379906Z digest=sha256:977dff0e8973d665e68487531571e9c3b7fbe5218482e908696848a9769869d5

Observation 6925d48b-eef5-498d-9b67-d49e48083da9 · inbound

Selection Integrity for LLM Graph Memory: An Accumulability Criterion for Information-Flow-Blind Retrieval cites this paper.

Selection Integrity for LLM Graph Memory: An Accumulability Criterion for Information-Flow-Blind Retrieval Poisoning Retrieval Corpora by Injecting Adversarial Passages

Reference 20

Resolution
verified exact
arxiv_id, observed 2026-07-03T11:58:06.295628Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.

source=pdf_text observed=2026-06-27T09:13:58.485088Z digest=sha256:57611ad2cf3d6e3f22a6f51b460e7fb98ff43c944c97d39bbfc1d60a01068c61

Observation 7ee4c39b-35b6-4a48-bc81-fc063e177287 · inbound

ToE: A Hierarchical and Explainable Claim Verification Framework with Dynamic Multi-source Evidence Retrieval and Aggregation cites this paper.

ToE: A Hierarchical and Explainable Claim Verification Framework with Dynamic Multi-source Evidence Retrieval and Aggregation Poisoning Retrieval Corpora by Injecting Adversarial Passages

Reference 5

Resolution
verified exact
arxiv_id, observed 2026-06-29T18:43:51.212151Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.

source=pdf_text observed=2026-06-29T05:03:26.118083Z digest=sha256:15592f7e07cc3fabdf481c414ca661ce1c16ae75fcd0610cd7de9aaefb625330

Observation 45eb349e-fb94-4e99-bd5c-3fe22ccdf53f · inbound

Embedding Inference Attack cites this paper.

Embedding Inference Attack Poisoning Retrieval Corpora by Injecting Adversarial Passages

Reference 40

Resolution
verified exact
arxiv_id, observed 2026-07-03T20:48:55.406514Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.

source=arxiv_source observed=2026-07-03T20:40:52.467421Z digest=sha256:37ddd69bd5533a970453dc7770be98deee1906d3530cedfc97e529bc6b44ab0c

Observation 32d7a8f9-a12f-459c-b003-fd50fa74ecc8 · inbound

Your Agent's Memories Are Not Its Own: Forged Reasoning Attacks on LLM Agent Memory and Defenses cites this paper.

Your Agent's Memories Are Not Its Own: Forged Reasoning Attacks on LLM Agent Memory and Defenses Poisoning Retrieval Corpora by Injecting Adversarial Passages

Reference 18

Resolution
unresolved
no resolver link, observed 2026-07-11T09:51:06.966438Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-07-11T09:51:06.966438Z digest=sha256:678abdbda1273d8e056244aba43b49afdefc075716ee5b3890fa4ba73a884982

Observation 9ed3f77b-6fc9-4574-bc8b-46317a26396a · inbound

Replicating Belief, Not Bits: Epistemic State Replication for Agentic Systems cites this paper.

Replicating Belief, Not Bits: Epistemic State Replication for Agentic Systems Poisoning Retrieval Corpora by Injecting Adversarial Passages

Reference 22

Resolution
unresolved
no resolver link, observed 2026-07-14T16:32:10.501693Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-07-14T16:32:10.501693Z digest=sha256:563b87085de901778fd1648e7ca71936782904d4c8a1e1facc1dd01ae4a09693

Observation bfa797df-0fbb-4917-9bf9-e4f623a4eafa · inbound

Agent Security Needs Redefinition through a Holistic Framework cites this paper.

Agent Security Needs Redefinition through a Holistic Framework Poisoning Retrieval Corpora by Injecting Adversarial Passages

Reference 281

Resolution
unresolved
no resolver link, observed 2026-08-01T06:04:46.664778Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=arxiv_source observed=2026-08-01T06:04:46.664778Z digest=sha256:9788ef149a56d3dd6c82c1a960fcce414d8110246d81099ebb599e93cbabf3c0

Observation 2765eacf-69e5-4cb9-8559-ba23ca6dadff · inbound

Combating Knowledge Corruption in Agent Systems: A Byzantine-Tolerant Secure Collaborative RAG Framework cites this paper.

Combating Knowledge Corruption in Agent Systems: A Byzantine-Tolerant Secure Collaborative RAG Framework Poisoning Retrieval Corpora by Injecting Adversarial Passages

Reference 7

Resolution
unresolved
no resolver link, observed 2026-08-08T18:59:12.533013Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-08T18:59:12.533013Z digest=sha256:5274a5fc40190ff14b0cb199276e7106e6a5c50c5552d173aec5fc7bb196097e