{"as_of":"2026-08-09T23:09:00Z","caps":{"database_statements":6,"inbound":100,"outbound":100},"context_digest":"sha256:9676b3695b1ee82dfe395cd6f61eb6a0ae4edec0d1278e1f1775ba366b06c85e","coverage":[{"denominator":0,"lane":"reference_resolution","note":"Typed states for the displayed outbound observations.","records_observed":0,"source":"paper_references, paper_reference_links","source_observed_at":null,"state":"measured"},{"denominator":6,"lane":"standing_notices","note":"One-hop event checks from named stored sources.","records_observed":6,"source":"scholarly_work_events, retraction_status_cache","source_observed_at":"2026-08-09T06:31:02.800959+00:00","state":"measured"},{"denominator":6,"lane":"inbound_itemization","note":"Pith citing papers itemized under the disclosed page cap.","records_observed":6,"source":"paper_references, paper_reference_links","source_observed_at":"2026-08-09T00:50:00.249934Z","state":"measured"},{"denominator":1,"lane":"external_citation_measurements","note":"A source-named dated measurement, never combined with another source.","records_observed":0,"source":"arxiv_reference","source_observed_at":"2026-05-22T12:51:33.417577Z","state":"measured"}],"external_citation_measurements":[],"inbound":[{"citation":{"cited_paper":{"arxiv_id":"2312.00374","last_updated":"2024-09-11T12:48:42Z","snapshot_observed_at":"2026-07-06T16:55:29.501535Z","submitted_at":"2023-12-01T06:36:17Z","title":"The Philosopher's Stone: Trojaning Plugins of Large Language Models","version":3},"cited_work":{"arxiv_id":"2312.00374","doi":null,"metadata_source":"arxiv_reference","pith_arxiv_id":"2312.00374","snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"The philosopher’s stone: Trojaning plugins of large language models","venue":null,"work_id":"fecf0018-556c-44c0-91c7-f3d566887ec5","year":2023},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":94,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"cited_paper":"/paper/2312.00374","citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:0ae775e54ac799268c6c2b8bd98294b22eb0e4709efa38d890b4f6d730f4da34","observation_id":"418ce3f1-111c-4220-9881-b5fd75246a8f","resolution":{"observed_at":"2026-05-12T13:36:57.113393Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-09T06:31:02.800959+00:00","source":"crossref"},{"observed_at":"2026-08-09T06:30:57.326959+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2312.00374","last_updated":"2024-09-11T12:48:42Z","snapshot_observed_at":"2026-07-06T16:55:29.501535Z","submitted_at":"2023-12-01T06:36:17Z","title":"The Philosopher's Stone: Trojaning Plugins of Large Language Models","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2312.00374","snapshot_observed_at":"2026-08-09T00:50:00.249934Z","title":"The philosopher’s stone: Trojaning plugins of large language models,","venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2502.05224","last_updated":"2025-02-06T04:43:05Z","snapshot_observed_at":"2026-08-09T05:58:57.244749Z","submitted_at":"2025-02-06T04:43:05Z","title":"A Survey on Backdoor Threats in Large Language Models (LLMs): Attacks, Defenses, and Evaluations","version":1},"reference_index":64,"source":"pdf_text","source_observed_at":"2026-08-09T00:50:00.249934Z"},"links":{"cited_paper":"/paper/2312.00374","citing_paper":"/paper/2502.05224"},"observation_digest":"sha256:7fcc07eb0f519d9c3ad4a04f35a9dfccaad825cee6e693ce4a283a87dc7e5115","observation_id":"1164764b-0ad3-4638-94a9-c0237ce8837c","resolution":{"observed_at":"2026-08-09T00:50:00.249934Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2312.00374","last_updated":"2024-09-11T12:48:42Z","snapshot_observed_at":"2026-07-06T16:55:29.501535Z","submitted_at":"2023-12-01T06:36:17Z","title":"The Philosopher's Stone: Trojaning Plugins of Large Language Models","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2312.00374","snapshot_observed_at":"2026-08-07T14:27:03.455337Z","title":"The philosopher’s stone: Trojaning plugins of large language models","venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2505.18889","last_updated":"2025-08-24T03:15:13Z","snapshot_observed_at":"2026-08-08T20:47:09.765405Z","submitted_at":"2025-05-24T22:22:43Z","title":"Security Concerns for Large Language Models: A Survey","version":5},"reference_index":18,"source":"pdf_text","source_observed_at":"2026-08-07T14:27:03.455337Z"},"links":{"cited_paper":"/paper/2312.00374","citing_paper":"/paper/2505.18889"},"observation_digest":"sha256:c716077d4caf3dde5ab495e28f97e0d0b941787899b2db22b415bcd699903437","observation_id":"1a31531c-5d8d-4bc5-8768-c8c5491ee37c","resolution":{"observed_at":"2026-08-07T14:27:03.455337Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2312.00374","last_updated":"2024-09-11T12:48:42Z","snapshot_observed_at":"2026-07-06T16:55:29.501535Z","submitted_at":"2023-12-01T06:36:17Z","title":"The Philosopher's Stone: Trojaning Plugins of Large Language Models","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2312.00374","snapshot_observed_at":"2026-08-07T05:59:31.982339Z","title":"Peiran Dong, Song Guo, and Junxiao Wang","venue":null,"work_id":null,"year":2022},"citing_paper":{"arxiv_id":"2506.06518","last_updated":"2025-06-06T20:32:43Z","snapshot_observed_at":"2026-08-09T03:46:19.090129Z","submitted_at":"2025-06-06T20:32:43Z","title":"A Systematic Review of Poisoning Attacks Against Large Language Models","version":1},"reference_index":2022,"source":"pdf_text","source_observed_at":"2026-08-07T05:59:31.982339Z"},"links":{"cited_paper":"/paper/2312.00374","citing_paper":"/paper/2506.06518"},"observation_digest":"sha256:2bd019cd73efdc8bbc6b96f31429a62099e49b929e831f63ee13cfc520871856","observation_id":"44799b92-407a-4d5b-b65b-676128cf83e3","resolution":{"observed_at":"2026-08-07T05:59:31.982339Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2312.00374","last_updated":"2024-09-11T12:48:42Z","snapshot_observed_at":"2026-07-06T16:55:29.501535Z","submitted_at":"2023-12-01T06:36:17Z","title":"The Philosopher's Stone: Trojaning Plugins of Large Language Models","version":3},"cited_work":{"arxiv_id":"2312.00374","doi":null,"metadata_source":"arxiv_reference","pith_arxiv_id":"2312.00374","snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"The philosopher’s stone: Trojaning plugins of large language models","venue":null,"work_id":"fecf0018-556c-44c0-91c7-f3d566887ec5","year":2023},"citing_paper":{"arxiv_id":"2512.06556","last_updated":"2026-05-21T13:44:50Z","snapshot_observed_at":"2026-07-06T22:37:59.340166Z","submitted_at":"2025-12-06T20:07:58Z","title":"Semantic Attacks on Tool-Augmented LLMs: Securing the Model Context Protocol Against Descriptor-Level Manipulation","version":2},"reference_index":10,"source":"pdf_text","source_observed_at":"2026-05-22T12:46:44.819224Z"},"links":{"cited_paper":"/paper/2312.00374","citing_paper":"/paper/2512.06556"},"observation_digest":"sha256:60150d0f0e4e7e476d2284a70df6771ab5aea6f5f7c23200a4757aa36f89bc37","observation_id":"de6b6471-58cf-470b-9e19-609a5919ac48","resolution":{"observed_at":"2026-05-22T12:51:33.421091Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-09T06:31:02.800959+00:00","source":"crossref"},{"observed_at":"2026-08-09T06:30:57.326959+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2312.00374","last_updated":"2024-09-11T12:48:42Z","snapshot_observed_at":"2026-07-06T16:55:29.501535Z","submitted_at":"2023-12-01T06:36:17Z","title":"The Philosopher's Stone: Trojaning Plugins of Large Language Models","version":3},"cited_work":{"arxiv_id":"2312.00374","doi":null,"metadata_source":"arxiv_reference","pith_arxiv_id":"2312.00374","snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"The philosopher’s stone: Trojaning plugins of large language models","venue":null,"work_id":"fecf0018-556c-44c0-91c7-f3d566887ec5","year":2023},"citing_paper":{"arxiv_id":"2605.05868","last_updated":"2026-05-07T08:34:14Z","snapshot_observed_at":"2026-07-06T23:18:26.864785Z","submitted_at":"2026-05-07T08:34:14Z","title":"SkillScope: Toward Fine-Grained Least-Privilege Enforcement for Agent Skills","version":1},"reference_index":12,"source":"pdf_text","source_observed_at":"2026-05-08T09:33:30.464441Z"},"links":{"cited_paper":"/paper/2312.00374","citing_paper":"/paper/2605.05868"},"observation_digest":"sha256:d89f02290d37f34740b3f4cfeb5ffbbba38f473dab81381bc3a91310a0a39ae1","observation_id":"e050296e-58f5-413c-be3a-4d1e223e2cee","resolution":{"observed_at":"2026-05-11T20:21:08.939009Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-09T06:31:02.800959+00:00","source":"crossref"},{"observed_at":"2026-08-09T06:30:57.326959+00:00","source":"retraction_watch"}],"state":"measured"}}],"links":{"evidence":"/evidence","html":"/paper/2312.00374/citation-record","integrity":"/paper/2312.00374/integrity","json":"/paper/2312.00374/citation-record.json","paper":"/paper/2312.00374"},"outbound":[],"paper":{"arxiv_id":"2312.00374","last_updated":"2024-09-11T12:48:42Z","latest_version":3,"primary_category":"cs.CR","snapshot_observed_at":"2026-07-06T16:55:29.501535Z","submitted_at":"2023-12-01T06:36:17Z","title":"The Philosopher's Stone: Trojaning Plugins of Large Language Models"},"reference_resolution":{"displayed":0,"state_counts":{"malformed_identifier":0,"metadata_mismatch":0,"parse_uncertain":0,"unresolved":0,"verified_exact":0,"verified_fuzzy":0},"total_outbound_references":0},"refusal":"A citation records a reference. It does not transfer a finding from one paper to another.","schema":"pith.paper-citation-record.v1","standing_sources":[{"observed_at":"2026-08-09T06:31:02.800959+00:00","source":"crossref"},{"observed_at":"2026-08-09T06:30:57.326959+00:00","source":"retraction_watch"}],"thesis":"As of 9 August 2026, this Paper Citation Record lists 0 of 0 outbound references and 6 inbound Pith citation observations for arXiv:2312.00374."}