{"as_of":"2026-08-08T02:28:00Z","caps":{"database_statements":6,"inbound":100,"outbound":100},"context_digest":"sha256:93b5a68134add888a9fe041b53239a900a959a7ee76c7cff9ca1055d014af7b1","coverage":[{"denominator":0,"lane":"reference_resolution","note":"Typed states for the displayed outbound observations.","records_observed":0,"source":"paper_references, paper_reference_links","source_observed_at":null,"state":"measured"},{"denominator":8,"lane":"standing_notices","note":"One-hop event checks from named stored sources.","records_observed":8,"source":"scholarly_work_events, retraction_status_cache","source_observed_at":"2026-08-07T06:34:17.273281+00:00","state":"measured"},{"denominator":8,"lane":"inbound_itemization","note":"Pith citing papers itemized under the disclosed page cap.","records_observed":8,"source":"paper_references, paper_reference_links","source_observed_at":"2026-08-07T15:41:13.951926Z","state":"measured"},{"denominator":1,"lane":"external_citation_measurements","note":"A source-named dated measurement, never combined with another source.","records_observed":1,"source":"arxiv_reference","source_observed_at":"2026-08-05T02:28:24.338817Z","state":"measured"}],"external_citation_measurements":[{"count":9,"observed_at":"2026-08-05T02:28:24.338817Z","source":"arxiv_reference"}],"inbound":[{"citation":{"cited_paper":{"arxiv_id":"2403.17336","last_updated":"2024-09-30T21:25:23Z","snapshot_observed_at":"2026-08-05T17:39:59.419266Z","submitted_at":"2024-03-26T02:47:42Z","title":"Don't Listen To Me: Understanding and Exploring Jailbreak Prompts of Large Language Models","version":2},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2403.17336","snapshot_observed_at":"2026-08-07T15:41:13.951926Z","title":null,"venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2505.14316","last_updated":"2025-05-20T13:03:15Z","snapshot_observed_at":"2026-08-08T01:19:21.267226Z","submitted_at":"2025-05-20T13:03:15Z","title":"Exploring Jailbreak Attacks on LLMs through Intent Concealment and Diversion","version":1},"reference_index":38,"source":"arxiv_source","source_observed_at":"2026-08-07T15:41:13.951926Z"},"links":{"cited_paper":"/paper/2403.17336","citing_paper":"/paper/2505.14316"},"observation_digest":"sha256:f5aa65b8b569b3ca2199605b86d676f65ee928af955a83007369135f6068c71b","observation_id":"dd31bf90-2ece-4b14-b6bb-cf33b411627b","resolution":{"observed_at":"2026-08-07T15:41:13.951926Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2403.17336","last_updated":"2024-09-30T21:25:23Z","snapshot_observed_at":"2026-08-05T17:39:59.419266Z","submitted_at":"2024-03-26T02:47:42Z","title":"Don't Listen To Me: Understanding and Exploring Jailbreak Prompts of Large Language Models","version":2},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2403.17336","snapshot_observed_at":"2026-08-07T10:54:53.691095Z","title":"Don’t listen to me: Understanding and exploring jailbreak prompts of large language models","venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2506.04036","last_updated":"2025-06-04T14:58:29Z","snapshot_observed_at":"2026-08-07T22:01:39.666653Z","submitted_at":"2025-06-04T14:58:29Z","title":"Privacy and Security Threat for OpenAI GPTs","version":1},"reference_index":23,"source":"pdf_text","source_observed_at":"2026-08-07T10:54:53.691095Z"},"links":{"cited_paper":"/paper/2403.17336","citing_paper":"/paper/2506.04036"},"observation_digest":"sha256:f9e5cef70392a66967e29bc4d9898621de1ccf428523d888e3133e6b39986cbc","observation_id":"1d91adde-3ac8-4cea-9a5b-0dd0e7258cba","resolution":{"observed_at":"2026-08-07T10:54:53.691095Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2403.17336","last_updated":"2024-09-30T21:25:23Z","snapshot_observed_at":"2026-08-05T17:39:59.419266Z","submitted_at":"2024-03-26T02:47:42Z","title":"Don't Listen To Me: Understanding and Exploring Jailbreak Prompts of Large Language Models","version":2},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2403.17336","snapshot_observed_at":"2026-08-06T21:34:39.370338Z","title":"Don’t listen to me: Understanding and exploring jailbreak prompts of large language models,","venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2506.23930","last_updated":"2025-06-30T14:59:25Z","snapshot_observed_at":"2026-08-08T01:18:18.154813Z","submitted_at":"2025-06-30T14:59:25Z","title":"Leveraging the Potential of Prompt Engineering for Hate Speech Detection in Low-Resource Languages","version":1},"reference_index":34,"source":"pdf_text","source_observed_at":"2026-08-06T21:34:39.370338Z"},"links":{"cited_paper":"/paper/2403.17336","citing_paper":"/paper/2506.23930"},"observation_digest":"sha256:cf1dd0b06277a77f54dc6a2fda47bca9a5af751397fa214b4103c2e2b4c8dad3","observation_id":"b14625b6-8bce-4ea8-a972-2cfa29434d39","resolution":{"observed_at":"2026-08-06T21:34:39.370338Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2403.17336","last_updated":"2024-09-30T21:25:23Z","snapshot_observed_at":"2026-08-05T17:39:59.419266Z","submitted_at":"2024-03-26T02:47:42Z","title":"Don't Listen To Me: Understanding and Exploring Jailbreak Prompts of Large Language Models","version":2},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2403.17336","snapshot_observed_at":"2026-08-06T20:03:52.621598Z","title":null,"venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2507.05288","last_updated":"2025-07-05T09:52:21Z","snapshot_observed_at":"2026-08-08T00:47:40.160909Z","submitted_at":"2025-07-05T09:52:21Z","title":"A Survey on Proactive Defense Strategies Against Misinformation in Large Language Models","version":1},"reference_index":69,"source":"arxiv_source","source_observed_at":"2026-08-06T20:03:52.621598Z"},"links":{"cited_paper":"/paper/2403.17336","citing_paper":"/paper/2507.05288"},"observation_digest":"sha256:328b93cb01ea087b8ea838fea9a714f33a28de02fae4eb2eb887728eddcde4b1","observation_id":"f9221f2d-a6ed-466d-b91c-99086eca6f70","resolution":{"observed_at":"2026-08-06T20:03:52.621598Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2403.17336","last_updated":"2024-09-30T21:25:23Z","snapshot_observed_at":"2026-08-05T17:39:59.419266Z","submitted_at":"2024-03-26T02:47:42Z","title":"Don't Listen To Me: Understanding and Exploring Jailbreak Prompts of Large Language Models","version":2},"cited_work":{"arxiv_id":"2403.17336","doi":"10.48550/arxiv.2403.17336","metadata_source":"arxiv_reference","pith_arxiv_id":"2403.17336","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"ArXiv abs/2403.17336(2024)","venue":"arXiv (Cornell University)","work_id":"75a2e458-803b-4d83-9e5e-2fad5ddeca4a","year":2024},"citing_paper":{"arxiv_id":"2604.07727","last_updated":"2026-04-09T02:22:44Z","snapshot_observed_at":"2026-07-06T22:57:00.904627Z","submitted_at":"2026-04-09T02:22:44Z","title":"TrajGuard: Streaming Hidden-state Trajectory Detection for Decoding-time Jailbreak Defense","version":1},"reference_index":43,"source":"arxiv_source","source_observed_at":"2026-05-10T18:26:19.922383Z"},"links":{"cited_paper":"/paper/2403.17336","citing_paper":"/paper/2604.07727"},"observation_digest":"sha256:d9352d6048e983c7b35984a830bb47ed74b52d105fb268e5edd4895c7ce9819e","observation_id":"45c8d090-ad95-4678-bd09-ac656e721543","resolution":{"observed_at":"2026-05-11T00:35:50.870841Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-07T06:34:17.273281+00:00","source":"crossref"},{"observed_at":"2026-08-07T06:34:11.927384+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2403.17336","last_updated":"2024-09-30T21:25:23Z","snapshot_observed_at":"2026-08-05T17:39:59.419266Z","submitted_at":"2024-03-26T02:47:42Z","title":"Don't Listen To Me: Understanding and Exploring Jailbreak Prompts of Large Language Models","version":2},"cited_work":{"arxiv_id":"2403.17336","doi":"10.48550/arxiv.2403.17336","metadata_source":"arxiv_reference","pith_arxiv_id":"2403.17336","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"ArXiv abs/2403.17336(2024)","venue":"arXiv (Cornell University)","work_id":"75a2e458-803b-4d83-9e5e-2fad5ddeca4a","year":2024},"citing_paper":{"arxiv_id":"2604.28053","last_updated":"2026-04-30T16:00:52Z","snapshot_observed_at":"2026-07-06T23:13:24.960159Z","submitted_at":"2026-04-30T16:00:52Z","title":"To Build or Not to Build? Factors that Lead to Non-Development or Abandonment of AI Systems","version":1},"reference_index":176,"source":"pdf_text","source_observed_at":"2026-05-07T06:44:14.093749Z"},"links":{"cited_paper":"/paper/2403.17336","citing_paper":"/paper/2604.28053"},"observation_digest":"sha256:8e3e26fbf323928b301bda59eb8b3aded15bac28a7d1b1a9ea57f453ca6357b5","observation_id":"7bdcea2c-a1c3-4427-b6cb-6721a40118b2","resolution":{"observed_at":"2026-05-09T04:55:11.193993Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-07T06:34:17.273281+00:00","source":"crossref"},{"observed_at":"2026-08-07T06:34:11.927384+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2403.17336","last_updated":"2024-09-30T21:25:23Z","snapshot_observed_at":"2026-08-05T17:39:59.419266Z","submitted_at":"2024-03-26T02:47:42Z","title":"Don't Listen To Me: Understanding and Exploring Jailbreak Prompts of Large Language Models","version":2},"cited_work":{"arxiv_id":"2403.17336","doi":"10.48550/arxiv.2403.17336","metadata_source":"arxiv_reference","pith_arxiv_id":"2403.17336","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"ArXiv abs/2403.17336(2024)","venue":"arXiv (Cornell University)","work_id":"75a2e458-803b-4d83-9e5e-2fad5ddeca4a","year":2024},"citing_paper":{"arxiv_id":"2605.11229","last_updated":"2026-05-11T20:45:31Z","snapshot_observed_at":"2026-07-06T23:23:06.755816Z","submitted_at":"2026-05-11T20:45:31Z","title":"Comment and Control: Hijacking Agentic Workflows via Context-Grounded Evolution","version":1},"reference_index":34,"source":"pdf_text","source_observed_at":"2026-05-13T01:54:22.921939Z"},"links":{"cited_paper":"/paper/2403.17336","citing_paper":"/paper/2605.11229"},"observation_digest":"sha256:3bd64f0e8a7ea62f6f29aea15bfae3125f5eb4aed6dac8320193c5b4482521b9","observation_id":"c26050cc-5ab3-446a-a03b-201ce0e19e9b","resolution":{"observed_at":"2026-05-13T01:57:05.432158Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-07T06:34:17.273281+00:00","source":"crossref"},{"observed_at":"2026-08-07T06:34:11.927384+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2403.17336","last_updated":"2024-09-30T21:25:23Z","snapshot_observed_at":"2026-08-05T17:39:59.419266Z","submitted_at":"2024-03-26T02:47:42Z","title":"Don't Listen To Me: Understanding and Exploring Jailbreak Prompts of Large Language Models","version":2},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2403.17336","snapshot_observed_at":"2026-08-01T15:40:11.063678Z","title":null,"venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2607.18232","last_updated":"2026-07-22T15:51:58Z","snapshot_observed_at":"2026-08-05T02:40:45.627223Z","submitted_at":"2026-07-20T17:58:31Z","title":"It's Not What You Say, It's How You Say It: Evaluating LLM Responses to Expressions of Belief","version":2},"reference_index":44,"source":"arxiv_source","source_observed_at":"2026-08-01T15:40:11.063678Z"},"links":{"cited_paper":"/paper/2403.17336","citing_paper":"/paper/2607.18232"},"observation_digest":"sha256:ef5634a4c6cc227752e9c2025f82e56dd16264d0110c1e7a4e9b4c0db96814d9","observation_id":"a20747fc-6c91-48a5-b3a1-1c2eff8f816e","resolution":{"observed_at":"2026-08-01T15:40:11.063678Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}}],"links":{"evidence":"/evidence","html":"/paper/2403.17336/citation-record","integrity":"/paper/2403.17336/integrity","json":"/paper/2403.17336/citation-record.json","paper":"/paper/2403.17336"},"outbound":[],"paper":{"arxiv_id":"2403.17336","last_updated":"2024-09-30T21:25:23Z","latest_version":2,"primary_category":"cs.CR","snapshot_observed_at":"2026-08-05T17:39:59.419266Z","submitted_at":"2024-03-26T02:47:42Z","title":"Don't Listen To Me: Understanding and Exploring Jailbreak Prompts of Large Language Models"},"reference_resolution":{"displayed":0,"state_counts":{"malformed_identifier":0,"metadata_mismatch":0,"parse_uncertain":0,"unresolved":0,"verified_exact":0,"verified_fuzzy":0},"total_outbound_references":0},"refusal":"A citation records a reference. It does not transfer a finding from one paper to another.","schema":"pith.paper-citation-record.v1","standing_sources":[{"observed_at":"2026-08-07T06:34:17.273281+00:00","source":"crossref"},{"observed_at":"2026-08-07T06:34:11.927384+00:00","source":"retraction_watch"}],"thesis":"As of 8 August 2026, this Paper Citation Record lists 0 of 0 outbound references and 8 inbound Pith citation observations for arXiv:2403.17336."}