Pith. sign in

Paper Citation Record · LEDGER

TrojanRAG: Retrieval-Augmented Generation Can Be Backdoor Driver in Large Language Models

As of 9 August 2026, this Paper Citation Record lists 0 of 0 outbound references and 28 inbound Pith citation observations for arXiv:2405.13401.

A citation records a reference. It does not transfer a finding from one paper to another.

pith.paper-citation-record.v1
2405.13401 v4

Coverage vector

measured 0 of 0 reference resolution

Typed states for the displayed outbound observations.

Source: paper_references, paper_reference_links

measured 28 of 28 standing notices

One-hop event checks from named stored sources.

Source: scholarly_work_events, retraction_status_cache, observed 2026-08-09T06:31:02.800959+00:00

measured 28 of 28 inbound itemization

Pith citing papers itemized under the disclosed page cap.

Source: paper_references, paper_reference_links, observed 2026-08-09T00:50:00.466530Z

measured 1 of 1 external citation measurements

A source-named dated measurement, never combined with another source.

Source: arxiv_reference, observed 2026-08-05T02:28:24.338817Z

Reference resolution

0 of 0 outbound references displayed

  • verified exact0
  • verified fuzzy0
  • unresolved0
  • parse uncertain0
  • malformed identifier0
  • metadata mismatch0

External citation measurements

5
arxiv_reference, observed 2026-08-05T02:28:24.338817Z

Outbound references

No outbound reference observations are available for this paper version.

Pith citing papers

Observation 514df2ea-4f52-4159-bfc8-f3d9a260311b · inbound

Trustworthiness in Retrieval-Augmented Generation Systems: A Survey cites this paper.

Trustworthiness in Retrieval-Augmented Generation Systems: A Survey TrojanRAG: Retrieval-Augmented Generation Can Be Backdoor Driver in Large Language Models

Reference 82

Resolution
verified exact
arxiv_id, observed 2026-05-23T21:08:25.744645Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.

source=pdf_text observed=2026-05-23T21:08:11.787013Z digest=sha256:a4502a61b2a870cb8dff77789cc7cc5cb89b5f2bf356ee5e63e9fc9c44988f0e

Observation a0ddddb0-8f99-4396-8ca8-00418049887f · inbound

Retrievals Can Be Detrimental: Unveiling the Backdoor Vulnerability of Retrieval-Augmented Diffusion Models cites this paper.

Retrievals Can Be Detrimental: Unveiling the Backdoor Vulnerability of Retrieval-Augmented Diffusion Models TrojanRAG: Retrieval-Augmented Generation Can Be Backdoor Driver in Large Language Models

Reference 10

Resolution
verified exact
arxiv_id, observed 2026-05-23T05:12:34.851769Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.

source=pdf_text observed=2026-05-23T05:11:40.893864Z digest=sha256:8b6cf3a22b3afaf9d022e0f32c11ee685786393821edd6c8052e8f2e63cf5bdb

Observation 5ac5dd6b-8dd1-4f83-bbd8-90ec25ef1c92 · inbound

Unsafe LLM-Based Search: Quantitative Analysis and Mitigation of Safety Risks in AI Web Search cites this paper.

Unsafe LLM-Based Search: Quantitative Analysis and Mitigation of Safety Risks in AI Web Search TrojanRAG: Retrieval-Augmented Generation Can Be Backdoor Driver in Large Language Models

Reference 28

Resolution
unresolved
no resolver link, observed 2026-08-08T20:57:43.419115Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-08T20:57:43.419115Z digest=sha256:86b958ace4bc5c9a1fe33b0a500ce48bd1fb9e412d2b5f9e918eaf6a666822e0

Observation 9150a116-41f8-472c-9876-272acad189e7 · inbound

A Survey on Backdoor Threats in Large Language Models (LLMs): Attacks, Defenses, and Evaluations cites this paper.

A Survey on Backdoor Threats in Large Language Models (LLMs): Attacks, Defenses, and Evaluations TrojanRAG: Retrieval-Augmented Generation Can Be Backdoor Driver in Large Language Models

Reference 109

Resolution
unresolved
no resolver link, observed 2026-08-09T00:50:00.466530Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-09T00:50:00.466530Z digest=sha256:b17d6b360537bff4d1455f026222dffb9665a95808950e261b4fa2cfd8d81cbd

Observation e6c6f53b-4988-4542-83d8-7f733db50460 · inbound

Towards Copyright Protection for Knowledge Bases of Retrieval-augmented Language Models via Reasoning cites this paper.

Towards Copyright Protection for Knowledge Bases of Retrieval-augmented Language Models via Reasoning TrojanRAG: Retrieval-Augmented Generation Can Be Backdoor Driver in Large Language Models

Reference 5

Resolution
unresolved
no resolver link, observed 2026-08-08T16:16:48.185602Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-08T16:16:48.185602Z digest=sha256:00ca4d1eff9cf470159ea5fc0bb6e7056167c0bd72826c73fa8545f8fc6f5004

Observation a1f203df-f4ad-43ae-9ad1-8c54591dac1f · inbound

A Survey of Scaling in Large Language Model Reasoning cites this paper.

A Survey of Scaling in Large Language Model Reasoning TrojanRAG: Retrieval-Augmented Generation Can Be Backdoor Driver in Large Language Models

Reference 28

Resolution
verified exact
arxiv_id, observed 2026-05-22T21:22:08.830637Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.

source=pdf_text observed=2026-05-22T21:20:07.238992Z digest=sha256:a58e1710c02fecd9f4f9ee56b79a132cfe8f4006846aea51ff035f8370f66260

Observation c6a40ba3-7413-49b3-ba06-8121ceb5ab82 · inbound

Benchmarking Poisoning Attacks against Retrieval-Augmented Generation cites this paper.

Benchmarking Poisoning Attacks against Retrieval-Augmented Generation TrojanRAG: Retrieval-Augmented Generation Can Be Backdoor Driver in Large Language Models

Reference 21

Resolution
unresolved
no resolver link, observed 2026-08-07T14:32:55.989945Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-07T14:32:55.989945Z digest=sha256:36138974545207ce091bcafeaebfec445943626e90711930c3933247b62e96d9

Observation 573329f7-b5db-4245-84ef-0fa19187c5be · inbound

Bias Amplification in RAG: Poisoning Knowledge Retrieval to Steer LLMs cites this paper.

Bias Amplification in RAG: Poisoning Knowledge Retrieval to Steer LLMs TrojanRAG: Retrieval-Augmented Generation Can Be Backdoor Driver in Large Language Models

Reference 29

Resolution
unresolved
no resolver link, observed 2026-08-07T04:15:38.715186Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-07T04:15:38.715186Z digest=sha256:70af07bc4ab8121e5f43acd14621c39273b76b91ff9e7a0560308e45a83d96e7

Observation a7e2b917-b872-4255-a38a-bd6775584e96 · inbound

AttnTrace: Contextual Attribution of Prompt Injection and Knowledge Corruption cites this paper.

AttnTrace: Contextual Attribution of Prompt Injection and Knowledge Corruption TrojanRAG: Retrieval-Augmented Generation Can Be Backdoor Driver in Large Language Models

Reference 13

Resolution
verified exact
arxiv_id, observed 2026-05-19T00:36:56.349836Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.

source=pdf_text observed=2026-05-19T00:33:53.280563Z digest=sha256:b0e0e0964dffb9b87264bdaac47615ba9bebaf539bb7145fb99899c509601b43

Observation 9afb61da-6c6e-4e21-9c9e-2fb3924da373 · inbound

Lexical Hints of Accuracy in LLM Reasoning Chains cites this paper.

Lexical Hints of Accuracy in LLM Reasoning Chains TrojanRAG: Retrieval-Augmented Generation Can Be Backdoor Driver in Large Language Models

Reference 19

Resolution
unresolved
no resolver link, observed 2026-08-05T18:48:53.336959Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T18:48:53.336959Z digest=sha256:132072521ccb0109f096460b12b02ba361ea9e267694e4875bb59485b3fad86b

Observation 580c21fc-3a13-4587-a63b-4e0d02514d3f · inbound

Evaluating the Robustness of Retrieval-Augmented Generation to Adversarial Evidence in the Health Domain cites this paper.

Evaluating the Robustness of Retrieval-Augmented Generation to Adversarial Evidence in the Health Domain TrojanRAG: Retrieval-Augmented Generation Can Be Backdoor Driver in Large Language Models

Reference 15

Resolution
unresolved
no resolver link, observed 2026-08-05T10:44:10.408846Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T10:44:10.408846Z digest=sha256:2b27ad3a3286e4422f55671817f5e9535d6e358b1adf243ab649e7e15afd9fb2

Observation 52f58e19-b598-4fc5-9b7f-c088ce4cde3c · inbound

ImportSnare: Directed "Code Manual" Hijacking in Retrieval-Augmented Code Generation cites this paper.

ImportSnare: Directed "Code Manual" Hijacking in Retrieval-Augmented Code Generation TrojanRAG: Retrieval-Augmented Generation Can Be Backdoor Driver in Large Language Models

Reference 6

Resolution
unresolved
no resolver link, observed 2026-08-04T21:33:57.184330Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-04T21:33:57.184330Z digest=sha256:528ff0b9abdb0b16e68d4684c06127c53257d0a1629d24fa711f06a6dbc6e884

Observation d50cc3e5-ea00-46f9-b825-62f7d219fcfd · inbound

LLM in the Middle: A Systematic Review of Threats and Mitigations to Real-World LLM-based Systems cites this paper.

LLM in the Middle: A Systematic Review of Threats and Mitigations to Real-World LLM-based Systems TrojanRAG: Retrieval-Augmented Generation Can Be Backdoor Driver in Large Language Models

Reference 52

Resolution
unresolved
no resolver link, observed 2026-08-04T17:46:15.176301Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-04T17:46:15.176301Z digest=sha256:7658b1791ed65cb7c919c4e6d439572e8c3399c3a6c29b2294f344c07d5aef6b

Observation 6461955c-14c8-4607-8e74-c3b0accdb8a1 · inbound

Position: LLM Watermarking Should Align Stakeholders' Incentives for Practical Adoption cites this paper.

Position: LLM Watermarking Should Align Stakeholders' Incentives for Practical Adoption TrojanRAG: Retrieval-Augmented Generation Can Be Backdoor Driver in Large Language Models

Reference 8

Resolution
verified exact
arxiv_id, observed 2026-05-18T05:25:54.399137Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.

source=pdf_text observed=2026-05-18T05:24:25.622071Z digest=sha256:f6fe573de9e3216cb6c266f0a1998fd3a8de045bd03f1e16cdbe087e635112fd

Observation c67070a3-5601-4bf4-b672-f3e44962cd36 · inbound

SkillTrojan: Backdoor Attacks on Skill-Based Agent Systems cites this paper.

SkillTrojan: Backdoor Attacks on Skill-Based Agent Systems TrojanRAG: Retrieval-Augmented Generation Can Be Backdoor Driver in Large Language Models

Reference 2

Resolution
verified exact
arxiv_id, observed 2026-05-11T06:31:02.104160Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.

source=pdf_text observed=2026-05-10T17:36:19.694339Z digest=sha256:2cda6917f255f02cc8f7cd6328b7eaee15926f0e365357e4a07bf5a700a13536

Observation 0adc65de-34c5-444f-b7e6-e5cfa54560dd · inbound

Agentic Adversarial Rewriting Exposes Architectural Vulnerabilities in Black-Box NLP Pipelines cites this paper.

Agentic Adversarial Rewriting Exposes Architectural Vulnerabilities in Black-Box NLP Pipelines TrojanRAG: Retrieval-Augmented Generation Can Be Backdoor Driver in Large Language Models

Reference 41

Resolution
verified exact
arxiv_id, observed 2026-05-11T21:11:19.748200Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.

source=pdf_text observed=2026-05-08T06:26:02.471197Z digest=sha256:811ed2d59059d4b5f4b63f92bf5c9aea5b69fe0df776e8a06f6aee1ca9a944f4

Observation e0e68cb9-b5de-4325-a135-b9dcd0d97ab7 · inbound

Green Shielding: A User-Centric Approach Towards Trustworthy AI cites this paper.

Green Shielding: A User-Centric Approach Towards Trustworthy AI TrojanRAG: Retrieval-Augmented Generation Can Be Backdoor Driver in Large Language Models

Reference 34

Resolution
verified exact
arxiv_id, observed 2026-05-11T21:56:23.778336Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.

source=pdf_text observed=2026-05-08T03:43:54.896449Z digest=sha256:56e09514938e17eac05d4c1a4b3626fce31302686cd20438933ab70133e238ae

Observation 5ab8f3f8-477e-4aa3-aade-dfef19da42c1 · inbound

FlashRT: Towards Computationally and Memory Efficient Red-Teaming for Prompt Injection and Knowledge Corruption cites this paper.

FlashRT: Towards Computationally and Memory Efficient Red-Teaming for Prompt Injection and Knowledge Corruption TrojanRAG: Retrieval-Augmented Generation Can Be Backdoor Driver in Large Language Models

Reference 13

Resolution
verified exact
arxiv_id, observed 2026-05-12T10:16:28.289453Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.

source=pdf_text observed=2026-05-07T06:49:56.316472Z digest=sha256:fa487f5c7ddd2e680aff7427c291291bfc1d907ca7bf3c527124d6d592105831

Observation a9cf813f-7f88-450a-bbe4-87e50f770022 · inbound

Detecting Is Not Resolving: The Monitoring Control Gap in Retrieval Augmented LLMs cites this paper.

Detecting Is Not Resolving: The Monitoring Control Gap in Retrieval Augmented LLMs TrojanRAG: Retrieval-Augmented Generation Can Be Backdoor Driver in Large Language Models

Reference 26

Resolution
verified exact
arxiv_id, observed 2026-06-29T17:13:44.832483Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.

source=arxiv_source observed=2026-06-29T17:06:46.379906Z digest=sha256:c2fa15b9246e48348e23deb68e1acbf24519bbb4acacc72e0c47f104fe1b9dea

Observation 0bc9e2dd-4f50-443e-a123-3a3cb7bfc1cb · inbound

SilentRetrieval: Hijacking Retrieval-Augmented Generation via Semantically-Preserving Adversarial Data Poisoning cites this paper.

SilentRetrieval: Hijacking Retrieval-Augmented Generation via Semantically-Preserving Adversarial Data Poisoning TrojanRAG: Retrieval-Augmented Generation Can Be Backdoor Driver in Large Language Models

Reference 7

Resolution
verified exact
arxiv_id, observed 2026-06-29T11:53:23.270899Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.

source=pdf_text observed=2026-06-29T11:49:32.880569Z digest=sha256:34ba7c18053d2999966aed74a3b9e4f876ae6dfd3fd889103e5779185a0663d2

Observation af8dbe4a-179b-4305-b2be-7e0275532142 · inbound

BraveGuard: From Open-World Threats to Safer Computer-Use Agents cites this paper.

BraveGuard: From Open-World Threats to Safer Computer-Use Agents TrojanRAG: Retrieval-Augmented Generation Can Be Backdoor Driver in Large Language Models

Reference 5

Resolution
verified exact
arxiv_id, observed 2026-07-01T21:26:14.146280Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.

source=pdf_text observed=2026-06-28T17:04:46.912915Z digest=sha256:4aad491753e5a9bce68d852661ca8307b8eaeda907b4efd1a4455ab82beac570

Observation 641b8f36-8a6c-4748-9cee-9e5de5bb8fde · inbound

DiscourseFlip: An Oblique Discourse-Level Opinion Manipulation Attack against Black-box Retrieval-Augmented Generation cites this paper.

DiscourseFlip: An Oblique Discourse-Level Opinion Manipulation Attack against Black-box Retrieval-Augmented Generation TrojanRAG: Retrieval-Augmented Generation Can Be Backdoor Driver in Large Language Models

Reference 7

Resolution
verified exact
arxiv_id, observed 2026-07-01T20:46:13.957247Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.

source=pdf_text observed=2026-06-28T17:43:41.256808Z digest=sha256:5786ed3487285690aa9bf2c99d689da4ba4ee6a6972f91cd9bd6b1fb1d6d08f1

Observation 870bb34e-ce41-4dcc-b43a-b3f90ecabc0d · inbound

Conflict-Aware Retriever Editing for Knowledge Injection Attacks on LLM-Based RAG Systems cites this paper.

Conflict-Aware Retriever Editing for Knowledge Injection Attacks on LLM-Based RAG Systems TrojanRAG: Retrieval-Augmented Generation Can Be Backdoor Driver in Large Language Models

Reference 12

Resolution
verified exact
arxiv_id, observed 2026-07-03T21:28:59.075490Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.

source=pdf_text observed=2026-06-27T00:29:09.121399Z digest=sha256:f2a4edb4c063fd5f65281796e259d0fd8dca403ad5752882624a18749792bd1d

Observation a8184f7e-6bd3-4435-ad9e-3d4b8fecb102 · inbound

Poisoned Playbooks: Demystifying Knowledge Poisoning Effects on AI Security Agents cites this paper.

Poisoned Playbooks: Demystifying Knowledge Poisoning Effects on AI Security Agents TrojanRAG: Retrieval-Augmented Generation Can Be Backdoor Driver in Large Language Models

Reference 30

Resolution
metadata mismatch
arxiv_id, observed 2026-07-04T17:50:00.003684Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.

source=pdf_text observed=2026-06-25T23:27:14.610097Z digest=sha256:5cd54c3dd130fa10c3b6070caa349c9b292d3c07aadfa7fda15f8b23850562f8

Observation cca8d82b-e845-47f6-a914-abc17b1e63d5 · inbound

PRA-RAG: Provably Robust Aggregation in Retrieval-Augmented Generation against Retrieval Corruption cites this paper.

PRA-RAG: Provably Robust Aggregation in Retrieval-Augmented Generation against Retrieval Corruption TrojanRAG: Retrieval-Augmented Generation Can Be Backdoor Driver in Large Language Models

Reference 20

Resolution
metadata mismatch
arxiv_id, observed 2026-07-02T23:47:27.177409Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.

source=arxiv_source observed=2026-07-02T23:42:23.695930Z digest=sha256:c7c6b9bfcde174e877b7b8d8e2208277b957cd8ebd01b6cb5a0f4c3bb50e4dbf

Observation ecf70044-b349-49cf-ac13-259f53e41759 · inbound

Large Language Models in Misinformation Ecosystems: Misuse, Defense, and Vulnerability cites this paper.

Large Language Models in Misinformation Ecosystems: Misuse, Defense, and Vulnerability TrojanRAG: Retrieval-Augmented Generation Can Be Backdoor Driver in Large Language Models

Reference 34

Resolution
unresolved
no resolver link, observed 2026-07-14T12:01:22.824663Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-07-14T12:01:22.824663Z digest=sha256:a3a3191b1bf3f5a56e1c469d2905d6bf995cd244fdba4db3f9e5a720caa8b776

Observation a7d1a693-bdcf-4ade-90e2-7ff34090adad · inbound

Salience Induction against Multi-Hop RAG Agents: Threat and Defense cites this paper.

Salience Induction against Multi-Hop RAG Agents: Threat and Defense TrojanRAG: Retrieval-Augmented Generation Can Be Backdoor Driver in Large Language Models

Reference 5

Resolution
unresolved
no resolver link, observed 2026-08-01T17:47:09.423719Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-01T17:47:09.423719Z digest=sha256:b7aa9268d3074bd2ff522e884d72b17345d2aa293f570250cb431efa937b1517

Observation 9d6c2048-c230-4fe9-8743-ffbd40249bbb · inbound

Early Detection of Distributed Backdoors in Multi-Agent LLM Systems: A Characterization Study cites this paper.

Early Detection of Distributed Backdoors in Multi-Agent LLM Systems: A Characterization Study TrojanRAG: Retrieval-Augmented Generation Can Be Backdoor Driver in Large Language Models

Reference 3

Resolution
unresolved
no resolver link, observed 2026-07-31T12:10:46.258584Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-07-31T12:10:46.258584Z digest=sha256:384e68c01c8ba0913372865953657e710bc3554438a8da9eb2f4dbcc65498edd