Typed states for the displayed outbound observations.
Source: paper_references, paper_reference_links
Paper Citation Record · LEDGER
As of 9 August 2026, this Paper Citation Record lists 0 of 0 outbound references and 46 inbound Pith citation observations for arXiv:2403.04957.
A citation records a reference. It does not transfer a finding from one paper to another.
Typed states for the displayed outbound observations.
Source: paper_references, paper_reference_links
One-hop event checks from named stored sources.
Source: scholarly_work_events, retraction_status_cache, observed 2026-08-09T06:31:02.800959+00:00
Pith citing papers itemized under the disclosed page cap.
Source: paper_references, paper_reference_links, observed 2026-08-08T20:57:43.488821Z
A source-named dated measurement, never combined with another source.
Source: arxiv_reference, observed 2026-07-04T14:09:53.868428Z
0 of 0 outbound references displayed
External citation measurements
No source-named external measurement is stored.
No outbound reference observations are available for this paper version.
Observation 00382ccd-a8c3-4c0f-9d44-dbd2cd791271 · inbound
Prompt Infection: LLM-to-LLM Prompt Injection within Multi-Agent Systems Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 70
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.
Observation 4e27f4c2-676e-4012-9ade-1c690c0c6c55 · inbound
Unsafe LLM-Based Search: Quantitative Analysis and Mitigation of Safety Risks in AI Web Search Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 45
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation f1eee7c9-bfff-4c8d-884b-262fe08e5200 · inbound
Safety at Scale: A Comprehensive Survey of Large Model and Agent Safety Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 131
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.
Observation 3b999406-817e-4c83-9279-6493d7118cf9 · inbound
Progent: Securing AI Agents with Privilege Control Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 42
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.
Observation a1da7caf-84ea-4269-be80-b8d459938655 · inbound
Robustness via Referencing: Defending against Prompt Injection Attacks by Referencing the Executed Instruction Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 24
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.
Observation ba6ff266-a26c-450f-bec2-51e9c3c922a4 · inbound
A Critical Evaluation of Defenses against Prompt Injection Attacks Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 18
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 4ba3acef-79e5-48ee-86b5-c7196eac569b · inbound
LLM Agents Should Employ Security Principles Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 35
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 7342b699-7560-41fa-89d7-808daffcbee5 · inbound
A Red Teaming Roadmap Towards System-Level Safety Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 49
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 3afdebdd-3f5e-4b72-9cbc-eccb2bbb06a5 · inbound
JavelinGuard: Low-Cost Transformer Architectures for LLM Security Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 33
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 3b5a2a5e-fb16-4246-99ba-a541103270ef · inbound
Optimus: A Robust Defense Framework for Mitigating Toxicity while Fine-Tuning Conversational AI Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 49
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.
Observation 4941f215-fcae-4a57-a01e-eb1d0761141e · inbound
Bridging AI and Software Security: A Comparative Vulnerability Assessment of LLM Agent Deployment Paradigms Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 12
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 98b6a98b-c918-43b7-83b6-5e56d436e594 · inbound
Defending Against Prompt Injection With a Few DefensiveTokens Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 18
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 513e5f8c-0e6b-4d1c-aa3d-8110b7bcb807 · inbound
Prompt Injection 2.0: Hybrid AI Threats Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 4
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation e7e68571-f96e-4f65-ada3-7426759e29b2 · inbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 20
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation f957c792-a18c-485a-860c-8f06ffec6b56 · inbound
Multi-Stage Prompt Inference Attacks on Enterprise LLM Systems Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 17
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 45f7d85a-76f8-497c-aeac-667ff1e2f1cb · inbound
Understanding the Supply Chain and Risks of Large Language Model Applications Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 11
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 1c9450e4-55e6-4820-8f2f-2751a9d8581c · inbound
MedMKEB: A Comprehensive Knowledge Editing Benchmark for Medical Multimodal Large Language Models Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 23
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation d38b6893-beb6-47fd-90cc-11869f761d5d · inbound
Can You Trick the Grader? Adversarial Persuasion of LLM Judges Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 24
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation eb2ddbd0-6ab7-48b3-8a03-042e64e1955d · inbound
Layer-Wise Perturbations via Sparse Autoencoders for Adversarial Text Generation Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 31
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation d7ec56af-1696-4abd-a490-5b82e13facb2 · inbound
Lexical Hints of Accuracy in LLM Reasoning Chains Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 9
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation ded80d7c-1156-4ac7-8bdd-2c9422582adc · inbound
UniC-RAG: Universal Knowledge Corruption Attacks to Retrieval-Augmented Generation Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 39
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 4b2a9e2e-c0a5-44ec-8b75-efc62a07db9b · inbound
Prompt-in-Content Attacks: Exploiting Uploaded Inputs to Hijack LLM Behavior Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 13
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation d85bae77-58fc-4950-ab87-e716d349490f · inbound
ImportSnare: Directed "Code Manual" Hijacking in Retrieval-Augmented Code Generation Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 22
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 103324b5-ece7-446e-8f47-f3e500560bf1 · inbound
Commenotes: Synthesizing Organic Comments to Support Community-Based Fact-Checking Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 36
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 14425be5-c3c8-4b12-acd4-9417b8db1c98 · inbound
Controlling the Risk of Corrupted Contexts for Language Models via Early-Exiting Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 34
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 12515d4d-d0d6-45fc-9506-a68163e66f91 · inbound
Are LLMs Reliable Rankers? Rank Manipulation via Two-Stage Token Optimization Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 12
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 35f62a36-f6d6-4b33-99c6-d55049917d54 · inbound
MetaBreak: Jailbreaking Online LLM Services via Special Token Manipulation Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 22
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation ee967f60-f099-41ee-b92f-17942d1548d6 · inbound
Agentic AI Security: Threats, Defenses, Evaluation, and Open Challenges Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 65
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.
Observation 408154a8-f508-4367-afa4-048f18760781 · inbound
From Rookie to Expert: Manipulating LLMs for Automated Vulnerability Exploitation in Enterprise Software Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 17
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.
Observation 4526d02f-6b83-42d5-ab40-bc7dd1bbb73d · inbound
SoK: Security of Autonomous LLM Agents in Agentic Commerce Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 101
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.
Observation 0758cb4a-9c1a-4ce4-84da-61f3390ff217 · inbound
AgentVisor: Defending LLM Agents Against Prompt Injection via Semantic Virtualization Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 7
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.
Observation ba91c73c-6ae4-49b0-a59a-86a788265c5b · inbound
FlashRT: Towards Computationally and Memory Efficient Red-Teaming for Prompt Injection and Knowledge Corruption Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 6
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.
Observation fc59cb35-51f7-43e1-b7e6-15f75d0971a1 · inbound
LoopTrap: Termination Poisoning Attacks on LLM Agents Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 26
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.
Observation 74ef6be6-1a74-4257-a403-458a4761f635 · inbound
FlowSteer: Prompt-Only Workflow Steering Exposes Planning-Time Vulnerabilities in Multi-Agent LLM Systems Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 36
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.
Observation 53a783df-662d-4544-bc55-0476f227bbd4 · inbound
A Cross-Modal Prompt Injection Attack against Large Vision-Language Models with Image-Only Perturbation Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 26
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.
Observation 9ac646db-f3bd-4e33-9b9d-5b0397533efe · inbound
Aligning Provenance with Authorization: A Dual-Graph Defense for LLM Agents Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 15
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.
Observation 8fbe5b62-e271-4ffb-ac7d-91a3974b8609 · inbound
Measuring Real-World Prompt Injection Attacks in LLM-based Resume Screening Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 23
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.
Observation dd1de3f3-e303-4ea7-a748-b0fb390096e8 · inbound
PI-Hunter: Automated Red-Teaming for Exposing and Localizing Prompt Injections Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 32
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.
Observation a0547398-f7d4-412f-b5f7-ad90e615975f · inbound
AutoDojo: Adaptive Black-Box Attacks Reveal the Limits of IPI Defenses and Task-Specification Effects in LLM Agents Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 40
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.
Observation 113ff2ba-f2ac-41fe-be99-ea424581b7b6 · inbound
Prompt Injection in Automated R\'esum\'e Screening with Large Language Models: Single and Multi-Injection Settings Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 12
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.
Observation 032d25df-0e38-490a-aeff-8a46e75190c9 · inbound
Devil in the Lens: Analyzing and Defending Physical Prompt Injection Against Vision-Language Models on Wearable Devices Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 16
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 9916d3ed-d2d1-4b3a-9855-7df8b8338b03 · inbound
From Neural Intent to Cryptographic Authorization: Securing AI-Driven Enterprise Workflows Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 19
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation e01e3bc2-893a-4045-b634-0ad6af8f1353 · inbound
The safety failures we are not instrumenting: a perspective on hidden safety-critical challenges in modern AI systems Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 42
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation e8fef1f8-3d84-47fb-ad9c-b4e362f19cb2 · inbound
When Prompts Control Robots: Prompt Injection Attacks in Multi-Agent Robotic Systems Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 27
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 7b3561d9-29b1-40cc-91cb-e557b307c12c · inbound
When Prompts Control Robots: Prompt Injection Attacks in Multi-Agent Robotic Systems Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 27
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 68e00c90-cd07-4567-a3dc-f7ffb980e559 · inbound
Robust Context-Aware Detection of Malicious Instructions in Text Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 20
Source-reported events for the cited work
Unavailable: canonical work link unavailable.