{"as_of":"2026-08-05T04:52:00Z","caps":{"database_statements":6,"inbound":100,"outbound":100},"context_digest":"sha256:36715c72dab06a6c59a83c7f92ded8bf2f12b708ff251a2428d998a444b9cb96","coverage":[{"denominator":143,"lane":"reference_resolution","note":"Typed states for the displayed outbound observations.","records_observed":100,"source":"paper_references, paper_reference_links","source_observed_at":"2026-05-12T13:36:57.011451Z","state":"measured"},{"denominator":179,"lane":"standing_notices","note":"One-hop event checks from named stored sources.","records_observed":179,"source":"scholarly_work_events, retraction_status_cache","source_observed_at":"2026-08-04T06:34:03.388597+00:00","state":"measured"},{"denominator":79,"lane":"inbound_itemization","note":"Pith citing papers itemized under the disclosed page cap.","records_observed":79,"source":"paper_references, paper_reference_links","source_observed_at":"2026-08-04T13:00:07.559162Z","state":"measured"},{"denominator":1,"lane":"external_citation_measurements","note":"A source-named dated measurement, never combined with another source.","records_observed":1,"source":"pith","source_observed_at":"2026-08-05T02:28:24.338817Z","state":"measured"}],"external_citation_measurements":[{"count":6,"observed_at":"2026-08-05T02:28:24.338817Z","source":"pith"}],"inbound":[{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2507.21046","last_updated":"2026-01-16T20:59:08Z","snapshot_observed_at":"2026-08-01T06:32:44.461162Z","submitted_at":"2025-07-28T17:59:05Z","title":"A Survey of Self-Evolving Agents: What, When, How, and Where to Evolve on the Path to Artificial Super Intelligence","version":4},"reference_index":148,"source":"arxiv_source","source_observed_at":"2026-05-14T22:23:14.621091Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2507.21046"},"observation_digest":"sha256:8b4a2b6a9a1e38618086476d547f9d08e829ac70a7f4382e0ab8101c755028ad","observation_id":"603e05ed-08a7-43b6-8706-c1438a0a5bc4","resolution":{"observed_at":"2026-05-14T22:23:14.851605Z","resolver_source":"local_arxiv","status":"metadata_mismatch"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-04T13:00:07.559162Z","title":"Agent security bench (asb): Formalizing and benchmarking attacks and defenses in llm-based agents.arXiv preprint arXiv:2410.02644,","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2510.01359","last_updated":"2026-06-15T23:34:33Z","snapshot_observed_at":"2026-08-04T13:00:04.692528Z","submitted_at":"2025-10-01T18:38:20Z","title":"Breaking the Code: Security Assessment of AI Code Agents Through Systematic Jailbreaking Attacks","version":2},"reference_index":17,"source":"pdf_text","source_observed_at":"2026-08-04T13:00:07.559162Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2510.01359"},"observation_digest":"sha256:e3944d99e9960b7c44f21540e55f6e2bfba2179bcaaeddedf4ebe143d639e32b","observation_id":"d91f052f-3431-4065-99fd-1609a0f26500","resolution":{"observed_at":"2026-08-04T13:00:07.559162Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2510.23883","last_updated":"2026-04-03T16:27:34Z","snapshot_observed_at":"2026-08-02T13:42:34.526072Z","submitted_at":"2025-10-27T21:48:11Z","title":"Agentic AI Security: Threats, Defenses, Evaluation, and Open Challenges","version":3},"reference_index":241,"source":"pdf_text","source_observed_at":"2026-05-18T03:42:10.703369Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2510.23883"},"observation_digest":"sha256:18f5e309a687132447d113749540e3dc8a86037cc2ebec63e215a6dffa59f305","observation_id":"4b863666-0c3f-49c8-9e41-01d8a6bf099b","resolution":{"observed_at":"2026-05-18T03:42:21.957828Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-04T07:06:38.155316Z","title":"Agent security bench (asb): Formalizing and benchmarking attacks and defenses in llm-based agents.arXiv preprint arXiv:2410.02644, 2024","venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2510.27140","last_updated":"2026-07-07T02:18:26Z","snapshot_observed_at":"2026-08-04T07:06:36.142036Z","submitted_at":"2025-10-31T03:35:59Z","title":"Measuring the Security of Mobile LLM Agents under Adversarial Prompts from Untrusted Third-Party Channels","version":3},"reference_index":88,"source":"pdf_text","source_observed_at":"2026-08-04T07:06:38.155316Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2510.27140"},"observation_digest":"sha256:5002dac6adba5e1714847ed78233ce14774b8819138bcb15746e84811e2e13f0","observation_id":"a86d7c8c-49a7-4c9f-af6d-dbf61872b44a","resolution":{"observed_at":"2026-08-04T07:06:38.155316Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2602.16708","last_updated":"2026-05-08T15:45:27Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2026-02-18T18:57:12Z","title":"Formal Policy Enforcement for Real-World Agentic Systems","version":3},"reference_index":68,"source":"pdf_text","source_observed_at":"2026-05-15T21:08:06.259177Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2602.16708"},"observation_digest":"sha256:150eff2d7faeb07bf574253b78e43ec62fef979ea03e4cbe83685b0b28891e5b","observation_id":"80906609-7ff6-4c86-a749-eff58872a302","resolution":{"observed_at":"2026-05-15T21:10:18.616981Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2603.00991","last_updated":"2026-05-07T14:09:04Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2026-03-01T08:39:37Z","title":"Tracking Capabilities for Safer Agents","version":2},"reference_index":86,"source":"pdf_text","source_observed_at":"2026-05-15T18:31:34.181629Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2603.00991"},"observation_digest":"sha256:a6be245765529c6f1465876bafa7df4a4acd536daf0186267ba00f7570a4be18","observation_id":"aec9eeee-152b-4c8c-a487-aaf4d4ac4ea3","resolution":{"observed_at":"2026-05-15T18:36:29.214193Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2603.09002","last_updated":"2026-04-26T14:13:48Z","snapshot_observed_at":"2026-07-06T22:48:26.306802Z","submitted_at":"2026-03-09T22:46:27Z","title":"Security Considerations for Multi-agent Systems","version":2},"reference_index":160,"source":"pdf_text","source_observed_at":"2026-05-15T14:12:14.160789Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2603.09002"},"observation_digest":"sha256:71948d1640c00ec81a8e7e1e09967f972867b930e6950d7ef79b54e029338a31","observation_id":"383ed561-f98d-44d8-8afe-f452e8fc9064","resolution":{"observed_at":"2026-05-15T14:15:55.241630Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-07-15T13:17:48.274611Z","title":"Agent security bench (ASB): Formalizing and benchmarking attacks and defenses in LLM-based agents","venue":null,"work_id":null,"year":2025},"citing_paper":{"arxiv_id":"2603.10044","last_updated":"2026-06-03T17:59:34Z","snapshot_observed_at":"2026-08-01T15:08:27.655089Z","submitted_at":"2026-03-08T01:37:45Z","title":"Safety Under Scaffolding: How Evaluation Conditions Shape Measured Safety","version":2},"reference_index":71,"source":"pdf_text","source_observed_at":"2026-07-15T13:17:48.274611Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2603.10044"},"observation_digest":"sha256:fcda7851e42258490c5fd80dca241340dff912ab78a6630c7fc3d689f37eda19","observation_id":"d5cdd15b-74a5-47f8-8389-8f3eaed0b352","resolution":{"observed_at":"2026-07-15T13:17:48.274611Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2604.02947","last_updated":"2026-04-03T10:29:31Z","snapshot_observed_at":"2026-07-29T16:09:43.498926Z","submitted_at":"2026-04-03T10:29:31Z","title":"AgentHazard: A Benchmark for Evaluating Harmful Behavior in Computer-Use Agents","version":1},"reference_index":32,"source":"pdf_text","source_observed_at":"2026-05-13T19:42:53.778980Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2604.02947"},"observation_digest":"sha256:956354c64313819dc5a30dc0b72bad398281423bfb2ef7f66f5cfebd82a05451","observation_id":"02aa3dc2-b50c-4160-a76a-cc3cad55bcbd","resolution":{"observed_at":"2026-05-13T19:43:11.211245Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2604.03242","last_updated":"2026-02-11T07:45:14Z","snapshot_observed_at":"2026-08-02T06:44:37.373057Z","submitted_at":"2026-02-11T07:45:14Z","title":"DRAFT: Task Decoupled Latent Reasoning for Agent Safety","version":1},"reference_index":24,"source":"pdf_text","source_observed_at":"2026-05-16T02:23:32.266509Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2604.03242"},"observation_digest":"sha256:3f8477f59aa9082de9c953a5beeb5a593dc967e154f5ddc9596214ac9c32d46f","observation_id":"df85d7a4-f558-4be6-b7e9-f0ae57939c78","resolution":{"observed_at":"2026-05-16T02:27:09.827837Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2604.04759","last_updated":"2026-04-06T15:27:05Z","snapshot_observed_at":"2026-07-06T22:53:37.357996Z","submitted_at":"2026-04-06T15:27:05Z","title":"Your Agent, Their Asset: A Real-World Safety Analysis of OpenClaw","version":1},"reference_index":21,"source":"pdf_text","source_observed_at":"2026-05-10T19:20:52.845052Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2604.04759"},"observation_digest":"sha256:c42b5223a6ab0db9cec5c2607a301e86051ca30974b35eb991d087c7f49dfb60","observation_id":"8ce834dd-2314-4dcf-9bef-42884f498a57","resolution":{"observed_at":"2026-05-12T13:36:57.477107Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2604.06436","last_updated":"2026-04-11T02:30:02Z","snapshot_observed_at":"2026-08-03T00:47:39.197155Z","submitted_at":"2026-04-07T20:20:18Z","title":"The Defense Trilemma: Why Prompt Injection Defense Wrappers Fail?","version":3},"reference_index":29,"source":"pdf_text","source_observed_at":"2026-05-10T18:33:22.085406Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2604.06436"},"observation_digest":"sha256:298b68b0333cf674897f36b44f4bf977c92e9fd5f5820544e9cad86d6185c6a3","observation_id":"d2d7af40-0f65-4ce1-8efa-7d98ee9266a0","resolution":{"observed_at":"2026-05-12T13:36:57.477107Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2604.06811","last_updated":"2026-05-28T07:57:37Z","snapshot_observed_at":"2026-07-13T08:51:18.197463Z","submitted_at":"2026-04-08T08:24:48Z","title":"SkillTrojan: Backdoor Attacks on Skill-Based Agent Systems","version":1},"reference_index":17,"source":"pdf_text","source_observed_at":"2026-05-10T17:36:19.694339Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2604.06811"},"observation_digest":"sha256:29c4a2ef16751af81ab03b7b558e22207be46914fb4372142e97363bf3b879c6","observation_id":"5a89ba85-c69e-494e-babe-c6ce8fe8cc3d","resolution":{"observed_at":"2026-05-12T13:36:57.477107Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2604.15367","last_updated":"2026-05-01T15:12:59Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2026-04-15T01:55:40Z","title":"SoK: Security of Autonomous LLM Agents in Agentic Commerce","version":2},"reference_index":136,"source":"pdf_text","source_observed_at":"2026-05-10T13:55:48.290563Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2604.15367"},"observation_digest":"sha256:b475fb8e700bd40e6002d266923d2d1e76e849102029190b7ec3834fae73e84d","observation_id":"97fbf649-0757-4a00-8f62-fcc7ba4c200f","resolution":{"observed_at":"2026-05-12T13:36:57.477107Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2604.17562","last_updated":"2026-04-19T18:02:21Z","snapshot_observed_at":"2026-07-06T23:04:37.370465Z","submitted_at":"2026-04-19T18:02:21Z","title":"SafeAgent: A Runtime Protection Architecture for Agentic Systems","version":1},"reference_index":19,"source":"pdf_text","source_observed_at":"2026-05-10T06:06:49.717091Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2604.17562"},"observation_digest":"sha256:dc8fc3e3f310db701c2900aba0cb82a27c524b6e0e96351d2c7b3a8555c9a7f2","observation_id":"5b50b6df-5254-4025-a524-0b2a1668e4a9","resolution":{"observed_at":"2026-05-12T13:36:57.477107Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2604.18248","last_updated":"2026-07-30T16:35:11Z","snapshot_observed_at":"2026-08-02T23:57:45.082199Z","submitted_at":"2026-04-20T13:27:05Z","title":"Beyond Pattern Matching: Seven Cross-Domain Techniques for Prompt Injection Detection","version":1},"reference_index":25,"source":"pdf_text","source_observed_at":"2026-05-10T04:42:33.450658Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2604.18248"},"observation_digest":"sha256:68036ac69427448083d2aea94d527c5584c19e883cd6244748f920ef4379c438","observation_id":"0ddaf1e2-81bf-426e-86b4-49b045d148a0","resolution":{"observed_at":"2026-05-12T13:36:57.477107Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2604.18248","last_updated":"2026-07-30T16:35:11Z","snapshot_observed_at":"2026-08-02T23:57:45.082199Z","submitted_at":"2026-04-20T13:27:05Z","title":"Beyond Pattern Matching: Seven Cross-Domain Techniques for Prompt Injection Detection","version":2},"reference_index":25,"source":"pdf_text","source_observed_at":"2026-05-21T00:51:22.907932Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2604.18248"},"observation_digest":"sha256:b31aaef1a0b81742d9b9aa76807db4fcc104ac31614ef104ed3566d2b952dfc3","observation_id":"ef20789c-070a-4fdd-a413-b2c8ed6a5a15","resolution":{"observed_at":"2026-05-21T00:53:53.100451Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-02T15:56:49.042516Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":null,"work_id":null,"year":2025},"citing_paper":{"arxiv_id":"2604.18248","last_updated":"2026-07-30T16:35:11Z","snapshot_observed_at":"2026-08-02T23:57:45.082199Z","submitted_at":"2026-04-20T13:27:05Z","title":"Beyond Pattern Matching: Seven Cross-Domain Techniques for Prompt Injection Detection","version":4},"reference_index":28,"source":"pdf_text","source_observed_at":"2026-08-02T15:56:49.042516Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2604.18248"},"observation_digest":"sha256:f9e628e8f23213d5eecf146f4467d4aa75e174a5d3fb1ef7600a3fd4eed8b8f2","observation_id":"4a890388-5b46-4deb-9658-29857e30f8c7","resolution":{"observed_at":"2026-08-02T15:56:49.042516Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2604.20133","last_updated":"2026-06-24T04:04:11Z","snapshot_observed_at":"2026-07-06T23:06:40.154278Z","submitted_at":"2026-04-22T03:00:28Z","title":"EvoAgent: An Evolvable Agent Framework with Skill Learning and Multi-Agent Delegation","version":2},"reference_index":3,"source":"pdf_text","source_observed_at":"2026-05-10T00:55:56.759901Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2604.20133"},"observation_digest":"sha256:2a37c1333bc12bd7ae24cfb00b00dcbf35394171bbdcfb97a58a6c0b0aa0f4be","observation_id":"c9a4de58-d68a-4012-99e7-25c776c3f130","resolution":{"observed_at":"2026-05-12T13:36:57.477107Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2604.23338","last_updated":"2026-05-06T17:17:02Z","snapshot_observed_at":"2026-07-06T23:09:34.300163Z","submitted_at":"2026-04-25T14:57:15Z","title":"A Systematic Survey of Security Threats and Defenses in LLM-Based AI Agents: A Layered Attack Surface Framework","version":2},"reference_index":94,"source":"pdf_text","source_observed_at":"2026-05-08T07:53:13.746141Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2604.23338"},"observation_digest":"sha256:5ebc0135a265b00e48ca020f1fb3156a452e337bcffa77541b6ffe7a102b29b0","observation_id":"f5d4db5e-bc0a-45ed-88ce-0f33252a5f36","resolution":{"observed_at":"2026-05-12T13:36:57.477107Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2604.24920","last_updated":"2026-05-22T15:58:46Z","snapshot_observed_at":"2026-07-06T23:10:52.763251Z","submitted_at":"2026-04-27T19:02:08Z","title":"SUDP: Secret-Use Delegation Protocol for Agentic Systems","version":2},"reference_index":4,"source":"pdf_text","source_observed_at":"2026-05-08T02:38:57.415593Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2604.24920"},"observation_digest":"sha256:1975b22897350ca67b7b03aa3666d0498dded8940474f98068339932f2b5b563","observation_id":"2c46d0cc-30d8-4c7f-b727-9c697c765251","resolution":{"observed_at":"2026-05-12T13:36:57.477107Z","resolver_source":"arxiv_id","status":"metadata_mismatch"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2604.24920","last_updated":"2026-05-22T15:58:46Z","snapshot_observed_at":"2026-07-06T23:10:52.763251Z","submitted_at":"2026-04-27T19:02:08Z","title":"SUDP: Secret-Use Delegation Protocol for Agentic Systems","version":3},"reference_index":4,"source":"pdf_text","source_observed_at":"2026-05-25T06:41:38.102770Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2604.24920"},"observation_digest":"sha256:123ae5540425f352ad655d996ec8de5eac996b0ae6743f2e60b21cacca7a8cd2","observation_id":"d09f1eb8-0714-48c7-be3e-c0b36e656745","resolution":{"observed_at":"2026-05-25T06:45:26.023203Z","resolver_source":"local_arxiv","status":"metadata_mismatch"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2604.26274","last_updated":"2026-04-29T04:02:59Z","snapshot_observed_at":"2026-07-06T23:11:57.238808Z","submitted_at":"2026-04-29T04:02:59Z","title":"Enforcing Benign Trajectories: A Behavioral Firewall for Structured-Workflow AI Agents","version":1},"reference_index":21,"source":"pdf_text","source_observed_at":"2026-05-07T13:18:45.792348Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2604.26274"},"observation_digest":"sha256:69de7f95ef1f94b72a94895ee434ae4c1d253d44c50c468dfcc1af330be1201b","observation_id":"54aaa9b7-e127-40d9-ab72-3a80321fd970","resolution":{"observed_at":"2026-05-12T13:36:57.477107Z","resolver_source":"arxiv_id","status":"metadata_mismatch"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2605.00314","last_updated":"2026-05-01T00:48:47Z","snapshot_observed_at":"2026-07-06T23:13:47.082550Z","submitted_at":"2026-05-01T00:48:47Z","title":"Semia: Auditing Agent Skills via Constraint-Guided Representation Synthesis","version":1},"reference_index":49,"source":"pdf_text","source_observed_at":"2026-05-09T19:58:28.584941Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2605.00314"},"observation_digest":"sha256:25d893916ce6c5fb9d5d57ecc4945b4972e0aeb06f5a24869782e3058b36cfb0","observation_id":"29d7e2a3-0c59-402d-8a22-bf7f0d12dfd3","resolution":{"observed_at":"2026-05-12T13:36:57.477107Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2605.01644","last_updated":"2026-05-02T23:34:32Z","snapshot_observed_at":"2026-07-06T23:14:47.444386Z","submitted_at":"2026-05-02T23:34:32Z","title":"Toward a Principled Framework for Agent Safety Measurement","version":1},"reference_index":22,"source":"pdf_text","source_observed_at":"2026-05-09T13:59:04.866706Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2605.01644"},"observation_digest":"sha256:e4254f1f76b2915d9b24749fc7f94347745344b9713a645020e42f694321f67d","observation_id":"de3d01fa-3d46-4d4a-88e4-9be6363380a1","resolution":{"observed_at":"2026-05-12T13:36:57.477107Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2605.01970","last_updated":"2026-05-15T06:42:15Z","snapshot_observed_at":"2026-07-06T23:15:07.159340Z","submitted_at":"2026-05-03T17:07:20Z","title":"Trojan Hippo: Weaponizing Agent Memory for Data Exfiltration","version":2},"reference_index":94,"source":"pdf_text","source_observed_at":"2026-05-09T17:13:47.722098Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2605.01970"},"observation_digest":"sha256:6464c732f39683defe5561463b34728cd592b22d1dd49c258265afbd2766c82d","observation_id":"c0053466-8274-4ab9-abdb-657c0a7bda7f","resolution":{"observed_at":"2026-05-12T13:36:57.477107Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2605.01970","last_updated":"2026-05-15T06:42:15Z","snapshot_observed_at":"2026-07-06T23:15:07.159340Z","submitted_at":"2026-05-03T17:07:20Z","title":"Trojan Hippo: Weaponizing Agent Memory for Data Exfiltration","version":3},"reference_index":92,"source":"pdf_text","source_observed_at":"2026-05-19T17:30:22.481943Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2605.01970"},"observation_digest":"sha256:deb5f533fa815ebeda38389a7c3cad3691f2d7c7edd3906646560b3b72b29ede","observation_id":"b5810d7c-686b-4ece-abfb-02148e484e0d","resolution":{"observed_at":"2026-05-19T17:32:41.616870Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2605.03378","last_updated":"2026-07-08T15:04:28Z","snapshot_observed_at":"2026-08-02T02:34:38.609069Z","submitted_at":"2026-05-05T05:37:00Z","title":"ARGUS: Defending LLM Agents Against Context-Aware Prompt Injection","version":1},"reference_index":10,"source":"arxiv_source","source_observed_at":"2026-05-07T15:59:49.513500Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2605.03378"},"observation_digest":"sha256:77a4005332af408357ab01dedcb2893c7d2f2f2e9bb4d1046d0398e4966023ec","observation_id":"852de75c-593c-432b-ac3e-39367ae2c975","resolution":{"observed_at":"2026-05-12T13:36:57.477107Z","resolver_source":"arxiv_id","status":"metadata_mismatch"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2605.03482","last_updated":"2026-05-07T11:41:14Z","snapshot_observed_at":"2026-07-30T12:28:00.209964Z","submitted_at":"2026-05-05T08:15:41Z","title":"MEMSAD: Gradient-Coupled Anomaly Detection for Memory Poisoning in Retrieval-Augmented Agents","version":1},"reference_index":15,"source":"pdf_text","source_observed_at":"2026-05-07T15:57:39.809778Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2605.03482"},"observation_digest":"sha256:e6b40c2596e4cd157f87b7e38a5bf13c1353b9356a85e4dc1d20bc45521e5420","observation_id":"a01be466-91d5-4509-9d5e-3ad5b58754b0","resolution":{"observed_at":"2026-05-12T13:36:57.477107Z","resolver_source":"arxiv_id","status":"metadata_mismatch"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2605.03482","last_updated":"2026-05-07T11:41:14Z","snapshot_observed_at":"2026-07-30T12:28:00.209964Z","submitted_at":"2026-05-05T08:15:41Z","title":"MEMSAD: Gradient-Coupled Anomaly Detection for Memory Poisoning in Retrieval-Augmented Agents","version":2},"reference_index":15,"source":"pdf_text","source_observed_at":"2026-05-08T18:50:41.401393Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2605.03482"},"observation_digest":"sha256:753800a11565571f8c7796e305c7fe87428ef38757d9290b7c82e5c63e2b591f","observation_id":"eb61d9f9-966d-41ea-8b27-ded3e3d28a66","resolution":{"observed_at":"2026-05-12T13:36:57.477107Z","resolver_source":"arxiv_id","status":"metadata_mismatch"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2605.05868","last_updated":"2026-05-07T08:34:14Z","snapshot_observed_at":"2026-07-06T23:18:26.864785Z","submitted_at":"2026-05-07T08:34:14Z","title":"SkillScope: Toward Fine-Grained Least-Privilege Enforcement for Agent Skills","version":1},"reference_index":61,"source":"pdf_text","source_observed_at":"2026-05-08T09:33:30.464441Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2605.05868"},"observation_digest":"sha256:3aaca703177c10faf1005ed9022f4cb8e57ad4058763c4beb5015e9837027bae","observation_id":"bfeb2fe0-18cf-4594-aa68-3f509e5bae6e","resolution":{"observed_at":"2026-05-12T13:36:57.477107Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2605.06393","last_updated":"2026-05-07T15:08:40Z","snapshot_observed_at":"2026-07-06T23:18:51.157048Z","submitted_at":"2026-05-07T15:08:40Z","title":"Constraining Host-Level Abuse in Self-Hosted Computer-Use Agents via TEE-Backed Isolation","version":1},"reference_index":24,"source":"pdf_text","source_observed_at":"2026-05-08T09:08:30.102711Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2605.06393"},"observation_digest":"sha256:a33c3e0518e170043d63a4cce70257913c8b242805f542f5a3583cc0383cb3d7","observation_id":"60c9c6e5-77ac-428d-90fa-e0414e5d0b22","resolution":{"observed_at":"2026-05-12T13:36:57.477107Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2605.07110","last_updated":"2026-05-08T01:38:46Z","snapshot_observed_at":"2026-07-06T23:19:30.387067Z","submitted_at":"2026-05-08T01:38:46Z","title":"Securing Computer-Use Agents: A Unified Architecture-Lifecycle Framework for Deployment-Grounded Reliability","version":1},"reference_index":154,"source":"pdf_text","source_observed_at":"2026-05-11T01:15:19.239355Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2605.07110"},"observation_digest":"sha256:28a9bfe625f701db87380417b1b7bca070b06abab0263da09dc94dea872a34b3","observation_id":"b66ae53d-4030-416d-86b1-a123a83af239","resolution":{"observed_at":"2026-05-12T13:36:57.477107Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2605.07135","last_updated":"2026-05-08T02:13:04Z","snapshot_observed_at":"2026-07-06T23:19:30.387067Z","submitted_at":"2026-05-08T02:13:04Z","title":"Demystifying and Detecting Agentic Workflow Injection Vulnerabilities in GitHub Actions","version":1},"reference_index":50,"source":"pdf_text","source_observed_at":"2026-05-11T02:04:58.145865Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2605.07135"},"observation_digest":"sha256:0009a6f2126aca6e259cd51a616d3dd63b485e0939c50e94fbf01258262509ab","observation_id":"66d6c21d-242a-41ad-b550-54312eee829f","resolution":{"observed_at":"2026-05-12T13:36:57.477107Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2605.07135","last_updated":"2026-05-08T02:13:04Z","snapshot_observed_at":"2026-07-06T23:19:30.387067Z","submitted_at":"2026-05-08T02:13:04Z","title":"Demystifying and Detecting Agentic Workflow Injection Vulnerabilities in GitHub Actions","version":1},"reference_index":51,"source":"pdf_text","source_observed_at":"2026-05-11T02:04:58.145865Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2605.07135"},"observation_digest":"sha256:3599c133a2ac5d7177c329f5dda0c3ae7c28439f021ae937b3320bd0a61a2d2c","observation_id":"ae411fa1-30d3-4b0d-8228-3d205ef23c2a","resolution":{"observed_at":"2026-05-12T13:36:57.477107Z","resolver_source":"arxiv_id","status":"metadata_mismatch"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2605.07836","last_updated":"2026-05-08T15:03:51Z","snapshot_observed_at":"2026-07-31T10:42:12.328845Z","submitted_at":"2026-05-08T15:03:51Z","title":"Unsafe by Flow: Uncovering Bidirectional Data-Flow Risks in MCP Ecosystem","version":1},"reference_index":65,"source":"pdf_text","source_observed_at":"2026-05-11T02:19:52.113212Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2605.07836"},"observation_digest":"sha256:2a930b9c48eecfadb76478ffb7691ab8c83783e59fd05f3f07d3c012f75f70fc","observation_id":"382ed6b3-1542-4d6f-afaf-849e4b57a387","resolution":{"observed_at":"2026-05-12T13:36:57.477107Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2605.08316","last_updated":"2026-05-08T14:58:52Z","snapshot_observed_at":"2026-08-04T08:55:54.382325Z","submitted_at":"2026-05-08T14:58:52Z","title":"AI-Driven Security Alert Screening and Alert Fatigue Mitigation in Security Operations Centers: A Comprehensive Survey","version":1},"reference_index":167,"source":"pdf_text","source_observed_at":"2026-05-12T00:50:39.655353Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2605.08316"},"observation_digest":"sha256:6a51d3ce1e07a06129a8708b93129b1d5f8f30962a625b66183a483c73b59e48","observation_id":"61bb0ed7-b66b-49c4-b302-03bfd9929683","resolution":{"observed_at":"2026-05-12T13:36:57.477107Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2605.08460","last_updated":"2026-05-08T20:27:23Z","snapshot_observed_at":"2026-07-06T23:20:43.010758Z","submitted_at":"2026-05-08T20:27:23Z","title":"When Child Inherits: Modeling and Exploiting Subagent Spawn in Multi-Agent Networks","version":1},"reference_index":57,"source":"pdf_text","source_observed_at":"2026-05-12T01:20:55.221345Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2605.08460"},"observation_digest":"sha256:6593463b871917a9dfb29c7d08dc883ab6fa33e437a997bd5d0528d8af8bb0d9","observation_id":"0a0a65c4-dbb7-4b25-a040-9266f4c41a94","resolution":{"observed_at":"2026-05-12T13:36:57.477107Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2605.08828","last_updated":"2026-05-12T08:22:21Z","snapshot_observed_at":"2026-07-06T23:21:02.177557Z","submitted_at":"2026-05-09T09:32:27Z","title":"When Agents Overtrust Environmental Evidence: An Extensible Agentic Framework for Benchmarking Evidence-Grounding Defects in LLM Agents","version":1},"reference_index":28,"source":"pdf_text","source_observed_at":"2026-05-12T03:01:31.525289Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2605.08828"},"observation_digest":"sha256:9290319876e1da39fbe22c6c10ae9b9bf698eb93875a96b4aed9f5927446f23a","observation_id":"b2f730d1-d62b-45b5-954f-adba4da6f05e","resolution":{"observed_at":"2026-05-12T13:36:57.477107Z","resolver_source":"arxiv_id","status":"malformed_identifier"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2605.08828","last_updated":"2026-05-12T08:22:21Z","snapshot_observed_at":"2026-07-06T23:21:02.177557Z","submitted_at":"2026-05-09T09:32:27Z","title":"When Agents Overtrust Environmental Evidence: An Extensible Agentic Framework for Benchmarking Evidence-Grounding Defects in LLM Agents","version":2},"reference_index":28,"source":"pdf_text","source_observed_at":"2026-05-13T07:01:06.401736Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2605.08828"},"observation_digest":"sha256:79165412b74b3351d86e846b92ce969d1c242da2bd418a44a00ebdb5d0d3cd82","observation_id":"4d6708fe-e7c5-4501-b309-490527c55fd7","resolution":{"observed_at":"2026-05-13T07:02:27.486532Z","resolver_source":"local_arxiv","status":"malformed_identifier"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2605.09278","last_updated":"2026-05-10T03:04:12Z","snapshot_observed_at":"2026-07-06T23:21:26.017420Z","submitted_at":"2026-05-10T03:04:12Z","title":"EquiMem: Calibrating Shared Memory in Multi-Agent Debate via Game-Theoretic Equilibrium","version":1},"reference_index":90,"source":"pdf_text","source_observed_at":"2026-05-12T04:47:29.903343Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2605.09278"},"observation_digest":"sha256:73e7efc2dbefe8efe7e7dc5965764080f1c310c08cd61d2c7c8b1406f2110c74","observation_id":"1cd6a57a-8fc5-47c7-81e6-1da15b053b25","resolution":{"observed_at":"2026-05-12T13:36:57.477107Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2605.10912","last_updated":"2026-05-11T17:49:43Z","snapshot_observed_at":"2026-08-03T00:15:01.823825Z","submitted_at":"2026-05-11T17:49:43Z","title":"WildClawBench: A Benchmark for Real-World, Long-Horizon Agent Evaluation","version":1},"reference_index":54,"source":"pdf_text","source_observed_at":"2026-05-12T03:40:00.725327Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2605.10912"},"observation_digest":"sha256:157a071d425d2b151dbaa7f12739df9dfc0962eca955b43fe49f00000a65b3b3","observation_id":"de632d70-5855-402d-989b-87f693080b84","resolution":{"observed_at":"2026-05-12T13:36:57.477107Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-07-12T17:06:32.429160Z","title":"Agent security bench (asb): For- malizing and benchmarking attacks and defenses in llm- based agents.arXiv preprint arXiv:2410.02644,","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2605.11046","last_updated":"2026-07-06T14:50:31Z","snapshot_observed_at":"2026-07-12T17:06:30.437834Z","submitted_at":"2026-05-11T12:41:36Z","title":"On the dilaton gravity of analogue black holes","version":2},"reference_index":16,"source":"pdf_text","source_observed_at":"2026-07-12T17:06:32.429160Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2605.11046"},"observation_digest":"sha256:82a8beb98de31d30071db642ead36f3369d65937bc06620c0c2435393e9fd6d6","observation_id":"d17932e8-2a7f-4466-ae88-688e02e2d13a","resolution":{"observed_at":"2026-07-12T17:06:32.429160Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2605.11047","last_updated":"2026-05-11T13:20:02Z","snapshot_observed_at":"2026-07-06T23:22:57.012338Z","submitted_at":"2026-05-11T13:20:02Z","title":"Red-Teaming Agent Execution Contexts: Open-World Security Evaluation on OpenClaw","version":1},"reference_index":17,"source":"pdf_text","source_observed_at":"2026-05-13T00:53:56.517406Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2605.11047"},"observation_digest":"sha256:117a2df440a754f5c4f3638d3eb5589fb30e0747b9b37021c54deffb374c1890","observation_id":"ce90546b-7f3c-4f3d-b050-5ebed62c8b0f","resolution":{"observed_at":"2026-05-13T00:57:00.658454Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2605.12015","last_updated":"2026-05-27T06:26:15Z","snapshot_observed_at":"2026-07-06T23:23:44.276236Z","submitted_at":"2026-05-12T12:03:54Z","title":"SkillSafetyBench: Evaluating Agent Safety under Skill-Facing Attack Surfaces","version":1},"reference_index":92,"source":"arxiv_source","source_observed_at":"2026-05-13T05:10:04.763149Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2605.12015"},"observation_digest":"sha256:6c121cf9f9fc61de9e2798e142582a8b68bcddb80b4be4096fb3e8008e601483","observation_id":"f25138af-0b06-4b00-999e-b7bd72b716a9","resolution":{"observed_at":"2026-05-13T05:12:17.923596Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2605.13213","last_updated":"2026-05-13T09:06:21Z","snapshot_observed_at":"2026-07-06T23:24:47.309044Z","submitted_at":"2026-05-13T09:06:21Z","title":"Hierarchical Attacks for Multi-Modal Multi-Agent Reasoning","version":1},"reference_index":45,"source":"pdf_text","source_observed_at":"2026-05-14T20:16:30.070819Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2605.13213"},"observation_digest":"sha256:07d6f693821ca16698966232fe536db24800bf37a19ef3b5e61626e781e0a2ca","observation_id":"de946cb4-f319-40ef-b06a-9678e787f9a9","resolution":{"observed_at":"2026-05-14T20:19:27.914873Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2605.13471","last_updated":"2026-05-13T12:57:31Z","snapshot_observed_at":"2026-07-06T23:25:01.951546Z","submitted_at":"2026-05-13T12:57:31Z","title":"Sleeper Channels and Provenance Gates: Persistent Prompt Injection in Always-on Autonomous AI Agents","version":1},"reference_index":13,"source":"pdf_text","source_observed_at":"2026-05-14T18:21:06.872045Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2605.13471"},"observation_digest":"sha256:8d3c04b0d84dc1f577ac0b19b009e0a95d350bf5de4503058a3df4f47c919c91","observation_id":"082c934c-a85d-443c-a90d-18a8e8127465","resolution":{"observed_at":"2026-05-14T18:22:33.611327Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2605.14290","last_updated":"2026-05-14T02:48:57Z","snapshot_observed_at":"2026-08-03T04:50:16.568616Z","submitted_at":"2026-05-14T02:48:57Z","title":"Web Agents Should Adopt the Plan-Then-Execute Paradigm","version":1},"reference_index":37,"source":"pdf_text","source_observed_at":"2026-05-15T02:42:05.644536Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2605.14290"},"observation_digest":"sha256:96ba8789600955905228425820d36f449fc20ceef6cbfb09bb9039f4dbb3b72c","observation_id":"35fd11f3-8d94-423b-b379-07f2ba011b0a","resolution":{"observed_at":"2026-05-15T02:49:41.555150Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2605.16282","last_updated":"2026-04-11T04:25:19Z","snapshot_observed_at":"2026-07-06T23:27:29.931962Z","submitted_at":"2026-04-11T04:25:19Z","title":"Taxonomy and Consistency Analysis of Safety Benchmarks for AI Agents","version":1},"reference_index":65,"source":"arxiv_source","source_observed_at":"2026-05-21T01:42:55.693115Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2605.16282"},"observation_digest":"sha256:d34df7c3dcdb801dde26317ec2a5c073a8ac18a30ad9204252cc63e0260204e5","observation_id":"d6bdd1a1-6a24-4dad-b7be-123f13f5c09c","resolution":{"observed_at":"2026-05-21T01:43:57.025992Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2605.17380","last_updated":"2026-05-17T10:49:07Z","snapshot_observed_at":"2026-08-02T11:02:18.535581Z","submitted_at":"2026-05-17T10:49:07Z","title":"ADR: An Agentic Detection System for Enterprise Agentic AI Security","version":1},"reference_index":5,"source":"arxiv_source","source_observed_at":"2026-05-20T13:17:59.293695Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2605.17380"},"observation_digest":"sha256:ab8f2a3c4fcd442f80823e0162944d9b087397a197d20577a77f973c875d2c66","observation_id":"7dce6993-0dd2-4be1-bfe2-2222263e072b","resolution":{"observed_at":"2026-05-20T13:18:18.193908Z","resolver_source":"local_arxiv","status":"metadata_mismatch"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2605.17453","last_updated":"2026-05-17T13:51:34Z","snapshot_observed_at":"2026-08-02T00:37:59.573957Z","submitted_at":"2026-05-17T13:51:34Z","title":"Trust No Tool: Evaluating and Defending LLM Agents under Untrusted Tool Feedback","version":1},"reference_index":9,"source":"pdf_text","source_observed_at":"2026-05-19T23:26:15.658106Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2605.17453"},"observation_digest":"sha256:69fa44e41197e25c8c19f34ea0a86201b0e2ec21f8aa4e9d73c26e9215030b73","observation_id":"80704353-e5d1-47cb-8147-d0976cf8267d","resolution":{"observed_at":"2026-05-19T23:27:52.612366Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2605.17986","last_updated":"2026-06-17T05:08:04Z","snapshot_observed_at":"2026-08-02T20:25:13.664544Z","submitted_at":"2026-05-18T07:41:35Z","title":"LivePI: More Realistic Benchmarking of Agents Against Indirect Prompt Injection","version":1},"reference_index":5,"source":"pdf_text","source_observed_at":"2026-05-20T10:03:05.696380Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2605.17986"},"observation_digest":"sha256:31d53e0c0d7e1ed0f782715b4f6c0d07512e0f2d013afab018f5a4546f1ebe80","observation_id":"ad9e6848-9d7a-4502-90f6-7a721179e310","resolution":{"observed_at":"2026-05-20T10:03:14.272195Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2605.17986","last_updated":"2026-06-17T05:08:04Z","snapshot_observed_at":"2026-08-02T20:25:13.664544Z","submitted_at":"2026-05-18T07:41:35Z","title":"LivePI: More Realistic Benchmarking of Agents Against Indirect Prompt Injection","version":3},"reference_index":5,"source":"pdf_text","source_observed_at":"2026-06-30T18:48:32.929392Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2605.17986"},"observation_digest":"sha256:a7167509e58a0a513a0ff43db2f2db1eed7e7a2505f2622090eb71bb4539020d","observation_id":"3abaaa3f-07ea-4a7c-8149-47e9683f98a5","resolution":{"observed_at":"2026-06-30T18:55:00.640215Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2605.19147","last_updated":"2026-05-18T21:56:36Z","snapshot_observed_at":"2026-07-06T23:29:57.003383Z","submitted_at":"2026-05-18T21:56:36Z","title":"Be Kind, Rewrite: Benign Projections via Rewriting Defend Against LLM Data Poisoning Attacks","version":1},"reference_index":19,"source":"pdf_text","source_observed_at":"2026-05-20T08:53:52.698758Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2605.19147"},"observation_digest":"sha256:5868835a3feef915ad1c3ff71acd6cc5baa32d8863f68d9dde199c80ca1d27b8","observation_id":"cffb1fae-e727-45d1-b564-eb2038453ba2","resolution":{"observed_at":"2026-05-20T08:58:10.419292Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2605.26497","last_updated":"2026-05-26T03:20:23Z","snapshot_observed_at":"2026-07-06T23:36:20.072253Z","submitted_at":"2026-05-26T03:20:23Z","title":"Aligning Provenance with Authorization: A Dual-Graph Defense for LLM Agents","version":1},"reference_index":27,"source":"pdf_text","source_observed_at":"2026-06-29T17:36:40.290498Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2605.26497"},"observation_digest":"sha256:e3ea14a92ade4597117b45940c6d11910245340e4c5ab3ae250ff9b2441cc157","observation_id":"99bb09ca-6559-40ec-9e3f-ff3d851d9dad","resolution":{"observed_at":"2026-06-29T18:03:48.492926Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2605.28893","last_updated":"2026-07-03T07:41:40Z","snapshot_observed_at":"2026-08-02T07:12:40.296167Z","submitted_at":"2026-05-27T08:11:37Z","title":"Towards Demystifying and Repairing LLM-in-the-Loop Vulnerabilities","version":1},"reference_index":64,"source":"pdf_text","source_observed_at":"2026-06-29T11:21:33.012202Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2605.28893"},"observation_digest":"sha256:9a1dca5fad0db259ad2962977999e0a4c9613af7ab9ada8ace86428bd90b6455","observation_id":"cbc38eb6-123c-4ced-9849-cac69edd6ec2","resolution":{"observed_at":"2026-06-29T11:23:20.626000Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2606.09038","last_updated":"2026-06-08T05:10:05Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2026-06-08T05:10:05Z","title":"Personalization Meets Safety:Mechanisms,Risks,and Mitigations in Personalized LLMs","version":1},"reference_index":246,"source":"pdf_text","source_observed_at":"2026-06-27T16:49:14.243931Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2606.09038"},"observation_digest":"sha256:edc07bbb05c77dc6501de4284b365aede8bb937c65922f393517cb211b1c92c6","observation_id":"58f613b7-deaf-4efd-8e30-e52ea894b7c1","resolution":{"observed_at":"2026-07-03T01:07:30.248530Z","resolver_source":"local_arxiv","status":"metadata_mismatch"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2606.09315","last_updated":"2026-06-08T10:19:34Z","snapshot_observed_at":"2026-07-06T23:48:39.574979Z","submitted_at":"2026-06-08T10:19:34Z","title":"Brain-Prompt Injection: A Route-Safety Audit for BCI-LLM Agents","version":1},"reference_index":24,"source":"arxiv_source","source_observed_at":"2026-06-27T16:15:47.454172Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2606.09315"},"observation_digest":"sha256:9d36584708eca100ef0619140daea0021c3b85f87e9fa6c6812540552ad5a59b","observation_id":"09e1267f-661c-41b4-9892-b98d517b7455","resolution":{"observed_at":"2026-07-03T01:47:31.925589Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2606.12703","last_updated":"2026-06-10T21:45:52Z","snapshot_observed_at":"2026-08-01T08:09:07.073053Z","submitted_at":"2026-06-10T21:45:52Z","title":"SMSR: Certified Defence Against Runtime Memory Poisoning in Persistent LLM Agent Systems","version":1},"reference_index":12,"source":"pdf_text","source_observed_at":"2026-06-27T08:58:09.574794Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2606.12703"},"observation_digest":"sha256:c91b5ba69daaac83b40d17e5218dbabbe0f4c7605b54bf1c507f64f72fbd20de","observation_id":"b910bf93-5ad1-4264-943d-49f0d57d17fb","resolution":{"observed_at":"2026-07-03T12:28:07.770953Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2606.12923","last_updated":"2026-06-11T05:27:42Z","snapshot_observed_at":"2026-07-06T23:51:45.306189Z","submitted_at":"2026-06-11T05:27:42Z","title":"Order Is Not Control","version":1},"reference_index":40,"source":"pdf_text","source_observed_at":"2026-06-27T07:14:35.915650Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2606.12923"},"observation_digest":"sha256:c2e1dceb47bce8880123093f2b42d1cbb773316b2b7a0ad58b3aa4eef54633e5","observation_id":"6d6fe91d-88f5-42c3-beef-2a4420bf1e03","resolution":{"observed_at":"2026-07-03T14:08:21.838404Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2606.13385","last_updated":"2026-06-11T14:12:43Z","snapshot_observed_at":"2026-08-01T15:55:04.725190Z","submitted_at":"2026-06-11T14:12:43Z","title":"Who Pays the Price? Stakeholder-Centric Prompt Injection Benchmarking for Real-world Web Agents","version":1},"reference_index":16,"source":"pdf_text","source_observed_at":"2026-06-27T06:20:04.789341Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2606.13385"},"observation_digest":"sha256:0ece1e2a10cda9b8b63735bbf32463c9e15db740271b6cc16d87a5893f07532d","observation_id":"6ac1b8d2-3149-4362-adf8-b998fb7df876","resolution":{"observed_at":"2026-07-03T15:48:35.862017Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2606.14517","last_updated":"2026-06-16T09:28:39Z","snapshot_observed_at":"2026-07-06T23:52:28.557859Z","submitted_at":"2026-06-12T14:49:00Z","title":"From Shield to Target: Denial-of-Service Attacks on LLM-Based Agent Guardrails","version":2},"reference_index":24,"source":"pdf_text","source_observed_at":"2026-06-27T04:42:05.886984Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2606.14517"},"observation_digest":"sha256:d97becf13f23b1213024ad19ed11ce517d317f0396230a8aa632f6e374bac320","observation_id":"e52ed15b-c60a-434c-88e1-4a67a4e0b550","resolution":{"observed_at":"2026-07-03T16:58:43.519152Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2606.15057","last_updated":"2026-06-19T04:47:48Z","snapshot_observed_at":"2026-07-06T23:52:28.557859Z","submitted_at":"2026-06-13T02:09:08Z","title":"AutoDojo: Adaptive Black-Box Attacks Reveal the Limits of IPI Defenses and Task-Specification Effects in LLM Agents","version":2},"reference_index":21,"source":"pdf_text","source_observed_at":"2026-06-27T04:57:54.827932Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2606.15057"},"observation_digest":"sha256:e36ca9dc80886c15650f9bd475221836570dea7abadb7373e396d1b993133992","observation_id":"12b64d33-8fad-4c59-8946-f757bd2760ff","resolution":{"observed_at":"2026-07-03T16:48:40.465201Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2606.20922","last_updated":"2026-06-18T20:31:08Z","snapshot_observed_at":"2026-08-03T14:06:23.532934Z","submitted_at":"2026-06-18T20:31:08Z","title":"Think Twice Before You Act: Protecting LLM Agents Against Tool Description Poisoning via Isolated Planning","version":1},"reference_index":25,"source":"arxiv_source","source_observed_at":"2026-06-26T16:32:09.625729Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2606.20922"},"observation_digest":"sha256:916a2c1c3e57a596d8c99ea7fe6726e41b1c3c8a8315fecdb0fb11df44e2a2e7","observation_id":"f1ba769d-caec-44da-8f08-5d421976b0d7","resolution":{"observed_at":"2026-07-04T04:59:36.383138Z","resolver_source":"local_arxiv","status":"metadata_mismatch"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2606.23927","last_updated":"2026-06-22T20:46:56Z","snapshot_observed_at":"2026-07-06T23:58:35.398963Z","submitted_at":"2026-06-22T20:46:56Z","title":"RIFT-Bench: Dynamic Red-teaming For Agentic AI Systems","version":1},"reference_index":8,"source":"pdf_text","source_observed_at":"2026-06-26T08:02:57.880579Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2606.23927"},"observation_digest":"sha256:2a7b8f9abb5536d0c346058b7b39488aecd5af2832002d0649c46dc2897ee5ae","observation_id":"96506f03-a1e9-4bf4-bd5f-b681860313f0","resolution":{"observed_at":"2026-07-04T11:19:50.263486Z","resolver_source":"local_arxiv","status":"metadata_mismatch"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2606.26627","last_updated":"2026-06-25T05:44:18Z","snapshot_observed_at":"2026-08-02T09:36:56.612724Z","submitted_at":"2026-06-25T05:44:18Z","title":"Agents That Know Too Much: A Data-Centric Survey of Privacy in LLM Agents","version":1},"reference_index":129,"source":"pdf_text","source_observed_at":"2026-06-26T04:29:16.386339Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2606.26627"},"observation_digest":"sha256:f3dbc73d8c16fb7a424589fed21a7f0ac74b31aab874264be82b573fccd8c124","observation_id":"cde73945-4960-405f-8903-f51910e0c308","resolution":{"observed_at":"2026-07-04T14:09:53.034398Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":"2410.02644","doi":"10.48550/arxiv.2410.02644","metadata_source":"pith","pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","venue":"cs.CR","work_id":"15ab4a69-85ab-4295-839d-080a2cd3e7aa","year":2024},"citing_paper":{"arxiv_id":"2606.30755","last_updated":"2026-06-29T18:00:45Z","snapshot_observed_at":"2026-07-07T00:04:34.491408Z","submitted_at":"2026-06-29T18:00:45Z","title":"Understanding and Evaluating Claw-like Agent Security Through a Computer-Systems Lens","version":1},"reference_index":39,"source":"pdf_text","source_observed_at":"2026-07-01T01:55:40.954429Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2606.30755"},"observation_digest":"sha256:6e59b270a33fe229bc8cc16de7736fd87856a5f1dfec6226275ddc9185f5d5ef","observation_id":"52618e1e-d08c-4721-9348-cff9c83832eb","resolution":{"observed_at":"2026-07-01T12:35:44.115038Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-02T07:06:19.120982Z","title":"Agent security bench (ASB): Formalizing and bench- marking attacks and defenses in LLM-based agents, 2025","venue":null,"work_id":null,"year":2025},"citing_paper":{"arxiv_id":"2607.13078","last_updated":"2026-07-12T22:34:02Z","snapshot_observed_at":"2026-08-04T13:49:44.835190Z","submitted_at":"2026-07-12T22:34:02Z","title":"Operational Evidence Gaps for LLMs in Fraud Detection and Trust-and-Safety Workflows","version":1},"reference_index":12,"source":"pdf_text","source_observed_at":"2026-08-02T07:06:19.120982Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2607.13078"},"observation_digest":"sha256:022e2877fc416f725285648998b991a9ff22376fd519ea266dc81e0b9c50f03c","observation_id":"8ecaf8ac-cb16-46f9-b9d3-1c1419778c20","resolution":{"observed_at":"2026-08-02T07:06:19.120982Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-02T01:34:16.008911Z","title":"Agent security bench (asb): Formalizing and benchmarking attacks and defenses in llm-based agents.arXiv preprint arXiv:2410.02644, 2024","venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2607.14651","last_updated":"2026-07-16T07:19:33Z","snapshot_observed_at":"2026-08-05T01:38:53.036940Z","submitted_at":"2026-07-16T07:19:33Z","title":"MemPoison: Uncovering Persistent Memory Threats and Structural Blind Spots in LLM Agents","version":1},"reference_index":66,"source":"pdf_text","source_observed_at":"2026-08-02T01:34:16.008911Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2607.14651"},"observation_digest":"sha256:290993ec53f52953fcdd1d6816fd8e75b574f18a46bade6336d2577b04b34b52","observation_id":"5f5d9c08-2fe4-495f-bbb6-56a7c896eafc","resolution":{"observed_at":"2026-08-02T01:34:16.008911Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-01T20:20:09.527207Z","title":"Agent security bench (asb): Formalizing and bench- marking attacks and defenses in llm-based agents","venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2607.16660","last_updated":"2026-07-18T06:30:12Z","snapshot_observed_at":"2026-08-01T20:19:55.361428Z","submitted_at":"2026-07-18T06:30:12Z","title":"How Do You Choose Your AI Component? An Interview Study of Secure AI Integration in Practice","version":1},"reference_index":119,"source":"pdf_text","source_observed_at":"2026-08-01T20:20:09.527207Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2607.16660"},"observation_digest":"sha256:3c7052ed8b307d4675f04edcb1278642ccd88ab44eb3854f745c16400bfce61c","observation_id":"59aa6030-0cdd-429a-b803-5ec70a09ab28","resolution":{"observed_at":"2026-08-01T20:20:09.527207Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-01T16:32:04.097021Z","title":null,"venue":null,"work_id":null,"year":2025},"citing_paper":{"arxiv_id":"2607.17986","last_updated":"2026-07-20T14:16:55Z","snapshot_observed_at":"2026-08-03T23:39:52.474269Z","submitted_at":"2026-07-20T14:16:55Z","title":"Self-State Attacks on Self-Hosted AI Agents: How Far Can OS Defenses Go?","version":1},"reference_index":57,"source":"pdf_text","source_observed_at":"2026-08-01T16:32:04.097021Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2607.17986"},"observation_digest":"sha256:fa1ab50c2da1352e58a46033d666fb849235515f880278ce54b4b76cd3cd0be4","observation_id":"aaf8b5b4-0d15-4981-a825-f1342f6301ed","resolution":{"observed_at":"2026-08-01T16:32:04.097021Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-01T15:28:30.469167Z","title":null,"venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2607.19430","last_updated":"2026-07-20T19:11:17Z","snapshot_observed_at":"2026-08-05T03:37:07.947892Z","submitted_at":"2026-07-20T19:11:17Z","title":"ChannelGuard: Safe Models Do Not Compose into Safe Multi-Agent Systems","version":1},"reference_index":28,"source":"pdf_text","source_observed_at":"2026-08-01T15:28:30.469167Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2607.19430"},"observation_digest":"sha256:781734f743564ec7db3e8931eaaac38d11d373f0512f5b1299b822ba1ec15cfd","observation_id":"d115aadd-394f-482b-9a3e-b7b035fc542e","resolution":{"observed_at":"2026-08-01T15:28:30.469167Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-01T09:30:51.290701Z","title":"Agent security bench (ASB): Formalizing and benchmarking attacks and defenses in LLM-based agents,","venue":null,"work_id":null,"year":2025},"citing_paper":{"arxiv_id":"2607.20759","last_updated":"2026-07-22T22:20:02Z","snapshot_observed_at":"2026-08-04T00:17:22.539121Z","submitted_at":"2026-07-22T22:20:02Z","title":"IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests","version":1},"reference_index":24,"source":"pdf_text","source_observed_at":"2026-08-01T09:30:51.290701Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2607.20759"},"observation_digest":"sha256:b6ad659ceaa756cc0337af1888cf1e58f7385e3e87546cb50193e5cb060fb736","observation_id":"48bcac9d-1961-437b-a039-51f235b0dcad","resolution":{"observed_at":"2026-08-01T09:30:51.290701Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-07-30T22:03:09.995584Z","title":"Agent security bench (asb): Formalizing and benchmarking at- tacks and defenses in llm-based agents, 2025","venue":null,"work_id":null,"year":2025},"citing_paper":{"arxiv_id":"2607.23444","last_updated":"2026-07-26T03:51:20Z","snapshot_observed_at":"2026-08-02T21:53:05.560611Z","submitted_at":"2026-07-26T03:51:20Z","title":"Isolated but Exposed: Persistence-Based Memory Extraction Attack on LLM Agents","version":1},"reference_index":38,"source":"pdf_text","source_observed_at":"2026-07-30T22:03:09.995584Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2607.23444"},"observation_digest":"sha256:e8db959d02ff278f8ae411ea905752d2858a6bdec5551f25da95f24918c3c01c","observation_id":"245c14bd-6156-45b4-9fb3-078ac453d8bd","resolution":{"observed_at":"2026-07-30T22:03:09.995584Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-01T03:01:04.949244Z","title":null,"venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2607.25255","last_updated":"2026-07-29T23:58:46Z","snapshot_observed_at":"2026-08-02T23:20:20.432726Z","submitted_at":"2026-07-28T03:55:47Z","title":"SafeFlow: Semantic Information-Flow Control for Blocking Malicious Propagation in Multi-Agent Systems","version":2},"reference_index":33,"source":"arxiv_source","source_observed_at":"2026-08-01T03:01:04.949244Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2607.25255"},"observation_digest":"sha256:1f0eb87d910b92e288b79bf944835c3c7085e55aae09592d3116b109bac0e0b2","observation_id":"0bf33890-f0bd-4a1b-9675-fcbf3357c1a8","resolution":{"observed_at":"2026-08-01T03:01:04.949244Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-01T00:59:08.246438Z","title":"Agent security bench (asb): Formalizing and benchmarking attacks and defenses in llm-based agents.arXiv preprint arXiv:2410.02644,","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2607.25987","last_updated":"2026-07-29T14:39:56Z","snapshot_observed_at":"2026-08-05T01:41:53.354572Z","submitted_at":"2026-07-28T17:06:13Z","title":"IH-Benchmark: A Conflict-Centered Benchmark for Instruction-Hierarchy Robustness in LLM Applications","version":2},"reference_index":11,"source":"pdf_text","source_observed_at":"2026-08-01T00:59:08.246438Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2607.25987"},"observation_digest":"sha256:14a31cb887d3bd028b68b037c6a6afa8c9305ced642a9da78d1f03aa553f3b88","observation_id":"d2ac8360-d29e-428f-bcd8-2bf4a99ab2e3","resolution":{"observed_at":"2026-08-01T00:59:08.246438Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-01T01:12:44.195947Z","title":"Zou,A., Wang,Z., Kolter, J.Z., andFredrikson, M","venue":null,"work_id":null,"year":2023},"citing_paper":{"arxiv_id":"2607.26115","last_updated":"2026-07-28T16:03:39Z","snapshot_observed_at":"2026-08-03T09:49:36.555011Z","submitted_at":"2026-07-28T16:03:39Z","title":"GPT-Red: Automated Red Teaming via Self-Play at Scale","version":1},"reference_index":17,"source":"pdf_text","source_observed_at":"2026-08-01T01:12:44.195947Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2607.26115"},"observation_digest":"sha256:b01e5d2aeeaa39b893498571a9fe45672d389deeeb4f534eca56f2de7449e6b4","observation_id":"03156622-021f-43a8-884d-63311c262b19","resolution":{"observed_at":"2026-08-01T01:12:44.195947Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-01T00:51:16.966876Z","title":"arXiv preprint arXiv:2410.02644 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2607.26120","last_updated":"2026-07-28T17:48:54Z","snapshot_observed_at":"2026-08-03T22:51:29.375300Z","submitted_at":"2026-07-28T17:48:54Z","title":"Even More Deception: Objective Misalignment in Mixed-Motive LLM Multi-Agent Systems","version":1},"reference_index":42,"source":"arxiv_source","source_observed_at":"2026-08-01T00:51:16.966876Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2607.26120"},"observation_digest":"sha256:fec7c808e91a5654ca002210498ca26adf9620e2643ce49e7c26bf91d0a2b0cc","observation_id":"1aa731a2-36a4-44e4-85b0-818ff43ed3db","resolution":{"observed_at":"2026-08-01T00:51:16.966876Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2410.02644","snapshot_observed_at":"2026-08-03T00:55:23.734394Z","title":"arXiv preprint arXiv:2410.02644 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2607.28636","last_updated":"2026-05-19T13:56:13Z","snapshot_observed_at":"2026-08-05T04:10:19.737171Z","submitted_at":"2026-05-19T13:56:13Z","title":"Chain-of-Models: Cross-Model Auditing for Bias-Robust LLM Judges","version":1},"reference_index":50,"source":"arxiv_source","source_observed_at":"2026-08-03T00:55:23.734394Z"},"links":{"cited_paper":"/paper/2410.02644","citing_paper":"/paper/2607.28636"},"observation_digest":"sha256:9e93c262253c876c4425d752ee8c802ff5dc3d452274a4bff3feaad9b2cc9d78","observation_id":"3a91b1a6-7b23-44d8-b540-58c48773e4f9","resolution":{"observed_at":"2026-08-03T00:55:23.734394Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}}],"links":{"evidence":"/evidence","html":"/paper/2410.02644/citation-record","integrity":"/paper/2410.02644/integrity","json":"/paper/2410.02644/citation-record.json","paper":"/paper/2410.02644"},"outbound":[{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"2024 , eprint=","venue":null,"work_id":"3c2e1e67-93f8-4a57-8c0c-32d65f251a27","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":1,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:52f4fce8332596398aba6b58a7615b647c0afdf120fcc6c806b41cef007435fe","observation_id":"0f302d2d-8f48-400d-a91e-a1a37ede8cce","resolution":{"observed_at":"2026-05-12T13:36:57.386619Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"The 2023 Conference on Empirical Methods in Natural Language Processing , year=","venue":null,"work_id":"9b46c20c-17a6-4157-aa3f-7e3e0b093146","year":2023},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":2,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:fce2ee36799ec6ab4758fa901410468bec227dfe7e0a54ea4e8bdd4b067888f7","observation_id":"bc79f650-8870-4fe3-a6be-bacc541c3130","resolution":{"observed_at":"2026-05-12T13:36:57.286054Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"33rd USENIX Security Symposium (USENIX Security 24) , year =","venue":null,"work_id":"4ac90728-9594-4b49-9e9b-e1ab70d11e94","year":null},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":3,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:49153b5df71f7565e82a603084df41b248a7cc90fcaf60116e5f5b231a13168e","observation_id":"a6bc1b27-ed66-4861-b6b5-53dfc31eae26","resolution":{"observed_at":"2026-05-12T13:36:57.306569Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"2024 , eprint=","venue":null,"work_id":"39766c24-d8cc-4790-87c2-01885b3f3633","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":4,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:44f66c53d6bd174488f13af5b92e60e4cd6755118278b8bd56c6cddd27471dc8","observation_id":"ed560cfa-2ff3-4421-8b6a-c551bfc12722","resolution":{"observed_at":"2026-05-12T13:36:57.390538Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":null,"venue":null,"work_id":"97621ac6-6d61-4ad9-bf0a-1cba6e8223e6","year":null},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":6,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:b156898e51bd4655c8cd002335acd38386a8e6f4da4b342c0eb6c1200062f581","observation_id":"1d5ef2f3-ac26-4a49-bf95-33985087bd25","resolution":{"observed_at":"2026-05-12T13:36:57.392436Z","resolver_source":"raw_fallback","status":"unresolved"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":null,"venue":null,"work_id":"771d90c8-ec79-43e7-ac12-62d4e4e3f722","year":null},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":7,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:d02349fbd778a7e0f419ff72a964c513417e1bc919a4d0148b6ffac42dd6e9f9","observation_id":"44b007c3-9e94-4d36-8969-c3b9e1018812","resolution":{"observed_at":"2026-05-12T13:36:57.394618Z","resolver_source":"raw_fallback","status":"parse_uncertain"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"2022 , journal=","venue":null,"work_id":"3c76c267-a393-45f3-a449-c0642b37309d","year":2022},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":8,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:18494424d33de56c9e9ba0f6beccda38c88363d56f2737ed3a0d5f97018a02d6","observation_id":"b568cfde-5ca2-463c-ad11-82e691a11224","resolution":{"observed_at":"2026-05-12T13:36:57.396676Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"NeurIPS ML Safety Workshop , year =","venue":null,"work_id":"64457b17-f750-425e-9f8d-7a23aaf20bfa","year":null},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":9,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:b7cf21272074435cd554c6a4159075e836ebed3362c78366d158ac3b445a7191","observation_id":"779206c7-b680-4b78-8232-841c6fbcf1c8","resolution":{"observed_at":"2026-05-12T13:36:57.398854Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-07-08T01:44:26.977460Z","title":"Retrieval-augmented generation for knowledge-intensive NLP tasks , year =","venue":null,"work_id":"67971267-73f1-4801-9c94-e1d778a46dc8","year":null},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":10,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:235b5c907b5649224d265da3d14f3574ad4c6aa6900fa5ce9fc3896ec5dda1df","observation_id":"2bc061a7-f2b4-45cb-ab3c-7e98aa2a0b7e","resolution":{"observed_at":"2026-05-12T13:36:57.401410Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"The Impact of Reasoning Step Length on Large Language Models","venue":null,"work_id":"aab79fe7-721a-40af-9d56-b0bad63dc189","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":11,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:0f7db074a0dc34fae35dea44baa1391d5cb6bef2078759b631059b4e33d9132e","observation_id":"36b5d786-8e4b-421f-b426-f9c4cc62d21a","resolution":{"observed_at":"2026-05-12T13:36:57.403448Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"2023 , eprint=","venue":null,"work_id":"76328212-e578-4c95-9632-9eb0957addfb","year":2023},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":12,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:4f8f52e8188234f63d4ba4c5d51da35823e4abf9188f75413c881aa657ad8a1b","observation_id":"3ff12715-2172-436c-9089-042dfc3cc232","resolution":{"observed_at":"2026-05-12T13:36:57.405794Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"2022 , eprint=","venue":null,"work_id":"bd7dc9b5-84aa-40a3-b175-8b67dab62402","year":2022},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":13,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:573a15decb4159dcb3c8507c2b98db4f363015f7493eda93d970fd4e218b1342","observation_id":"60e0e7c4-d376-4913-a2bc-fbbda42421aa","resolution":{"observed_at":"2026-05-12T13:36:57.408040Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"A Survey of Man In The Middle Attacks , year=","venue":null,"work_id":"46216041-d5e3-47c4-8542-6bde8f08985b","year":null},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":14,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:595126e8aac18e4de1d7f44c2662343d7fbb37ca26652850b1953fa9e4d18398","observation_id":"dcb0c349-20d4-4e96-b6c4-856022c4fd41","resolution":{"observed_at":"2026-05-12T13:36:57.410502Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"arXiv , year=","venue":null,"work_id":"667bd6f4-53cd-40c2-ad5e-e887ddc8d730","year":null},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":16,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:70f2f554502818f6ac94177f4086ee5b26de8169faf451829e2a324fb2e5c759","observation_id":"9bc35b71-d36d-4550-85e6-ec9e87a858d4","resolution":{"observed_at":"2026-05-12T13:36:57.412679Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"2023 , journal=","venue":null,"work_id":"b33b5dd2-57c1-4dae-ae6a-d01d338176f4","year":2023},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":17,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:f7adb9f040ea4bd76c42e72a00c20388e2157203b3856e40ff19191021a8d43b","observation_id":"ee261799-e044-4050-8f7d-2f8dcd2eae00","resolution":{"observed_at":"2026-05-12T13:36:57.414966Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"2024 , publisher=","venue":null,"work_id":"52f26405-c1bf-4e68-a5f0-b4c109ade9d3","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":20,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:1a19668cefa2aa9d2697755777a944aa686c511d9e81c74a55bd23f68ddea9b1","observation_id":"67379ddb-5c1e-4b90-8a2d-04e5dd19acde","resolution":{"observed_at":"2026-05-12T13:36:57.418292Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2303.08774","last_updated":"2024-03-04T06:01:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2023-03-15T17:15:04Z","title":"GPT-4 Technical Report","version":6},"cited_work":{"arxiv_id":"2303.08774","doi":"10.1002/tea.20265","metadata_source":"pith","pith_arxiv_id":"2303.08774","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"GPT-4 Technical Report","venue":"cs.CL","work_id":"b928e041-6991-4c08-8c81-0359e4097c7b","year":2023},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":23,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"cited_paper":"/paper/2303.08774","citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:d399609ae7fc59c0141d83c5317b7748cd34ef0127d5c39b1146c9e9d223000e","observation_id":"9aad6066-ab50-4788-9adf-b7d5a532b439","resolution":{"observed_at":"2026-05-12T13:36:57.083241Z","resolver_source":"local_arxiv","status":"metadata_mismatch"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"OpenAI Blog , year=","venue":null,"work_id":"00a4b5ad-23d1-434e-a6f1-de31d7384431","year":null},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":24,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:6cf1c7da2c416f68e7b4da32d6ee208f8ac4b277f3949b738ec97a229110eb96","observation_id":"790bd615-7318-42fe-9894-6a94e1347cab","resolution":{"observed_at":"2026-05-12T13:36:57.423242Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"OpenAI Blog , year=","venue":null,"work_id":"a5151daa-eb8a-413b-a603-b981ae95e2ab","year":null},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":25,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:e8035c819a41b609352766d5fc533c3d97501255f93cae6423cdd511180c8a63","observation_id":"e691c624-7637-4a70-a45d-5b34401096c1","resolution":{"observed_at":"2026-05-12T13:36:57.425373Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"2023 , url =","venue":null,"work_id":"1b66f1bb-1a77-423a-8a06-bd5b0f9ef922","year":2023},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":26,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:5a2a9ab641784575437ab5fd9bddb0aa50940cffbada062e4ac9b4ddfc3cf40e","observation_id":"d48e9712-fed9-47e9-8667-6af7e6b8dc6e","resolution":{"observed_at":"2026-05-12T13:36:57.427618Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"URL https://arxiv , volume=","venue":null,"work_id":"e38f5e81-87fb-4e60-b550-a5e5674b155f","year":2022},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":27,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:335d66ba85b10ce769fe70602c8d6e21fe1f8dbc9230fea768bd01ac51a5d29b","observation_id":"29655ecd-61e3-48df-8443-afd739120084","resolution":{"observed_at":"2026-05-12T13:36:57.429490Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"Thirty-seventh Conference on Neural Information Processing Systems Datasets and Benchmarks Track , year=","venue":null,"work_id":"c09fab8b-4720-4d28-b3d5-2d161cffa85a","year":null},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":29,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:f0db8c46bacd553239cd3632ddccd5fead4f7aadb7c4ccb6e2913403632943bb","observation_id":"56332c25-5aef-4489-adf9-cc8017a3f569","resolution":{"observed_at":"2026-05-12T13:36:57.431972Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"Rab: Provable robustness against backdoor attacks , booktitle =","venue":null,"work_id":"74bf9e64-a67c-44d8-baa8-34d08037f38f","year":2023},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":30,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:3b6b8d4a07301c23b9d27d77834c304bb4b9001c2038d7415b20951b2c60f8f9","observation_id":"67e9e9ee-ac13-4044-b597-0de93e0662cd","resolution":{"observed_at":"2026-05-12T13:36:57.434187Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"Advances in Neural Information Processing Systems (NeurIPS) , year =","venue":null,"work_id":"8e3e7276-f059-4f2f-b266-632393d7b90f","year":null},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":31,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:8664b0536b3564da6d50a14b84523375f59462cb67ad466246ba3c11d9c65ac3","observation_id":"45278ad0-0e0f-4175-9f39-23c5fd282962","resolution":{"observed_at":"2026-05-12T13:36:57.436422Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"International Conference on Machine Learning , pages=","venue":null,"work_id":"7c6f89ac-54e7-4878-827c-10f0dad61f40","year":2023},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":32,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:566a2f4285cb0acdda7464efaff3cd4f7c4b84b86d056ac4689c3245e6bee01e","observation_id":"718ed8a2-39f6-4138-a81d-192d70de2124","resolution":{"observed_at":"2026-05-12T13:36:57.438989Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2305.14710","last_updated":"2024-04-03T09:15:15Z","snapshot_observed_at":"2026-07-06T15:32:14.701994Z","submitted_at":"2023-05-24T04:27:21Z","title":"Instructions as Backdoors: Backdoor Vulnerabilities of Instruction Tuning for Large Language Models","version":2},"cited_work":{"arxiv_id":"2305.14710","doi":null,"metadata_source":"arxiv_reference","pith_arxiv_id":"2305.14710","snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"Instructions as Backdoors: Backdoor Vulnerabilities of Instruction Tuning for Large Language Models","venue":null,"work_id":"625cb425-a6f2-43e2-acb0-51c4a5293c68","year":2023},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":33,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"cited_paper":"/paper/2305.14710","citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:6e797f9b46b3473aced5a2cc725a037017bf988059ee901a3330642b5340570e","observation_id":"6d0f3c18-b513-4fd4-a1fc-3e7ad22a1cb5","resolution":{"observed_at":"2026-05-12T13:36:57.087415Z","resolver_source":"arxiv_id","status":"metadata_mismatch"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-07-10T22:47:37.666062Z","title":"Advances in neural information processing systems , volume=","venue":null,"work_id":"1265447d-0324-4d07-abba-34fa29d172da","year":null},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":39,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:36c589b38e38766877e2def1b3d2d0cd01420fc4881f5c686c4f95b5658a5627","observation_id":"39a82801-c1da-499d-a91c-960c8bd5de61","resolution":{"observed_at":"2026-05-12T13:36:57.443580Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"2024 , eprint=","venue":null,"work_id":"b1b42ceb-adf2-448b-9c79-bbf124171dce","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":40,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:5861120d692920911a8fe3a9094f31d17dfe4fb29ea57fbe706dbff11c19581f","observation_id":"5eb016b2-c542-4bc8-88ff-d978c58e2e1d","resolution":{"observed_at":"2026-05-12T13:36:57.445845Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"Proceedings of the 36th International Conference on Neural Information Processing Systems , articleno =","venue":null,"work_id":"574c03d8-ad7b-454e-9410-32545822f77c","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":41,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:65c04150f4bfbd304873dad591bfd35d326b139d71369a1ae59532dcf6a13e9e","observation_id":"82eb00d2-ba63-4410-8d84-50c63fb22330","resolution":{"observed_at":"2026-05-12T13:36:57.448136Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":null,"venue":null,"work_id":"8fc2ab1b-f84a-485e-8336-500cc642de33","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":43,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:5a56dc450a042ac1844be1d5634e49aad00a0bf3802bd812788594567134f1b9","observation_id":"eea54bcc-8303-425d-b797-14d2be0a6ba0","resolution":{"observed_at":"2026-05-12T13:36:57.450651Z","resolver_source":"raw_fallback","status":"unresolved"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"In Advances in Neural Information Processing Systems (NeurIPS) , year=","venue":null,"work_id":"751ce66a-e2de-4d0c-aec0-6489f0a78f7d","year":null},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":44,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:a5f53cb855db971d4e4657c72e06d4e1e7a814be2129d7d97bdc6062ae34a97d","observation_id":"d9288bce-1a14-4297-afc2-22cf9e2252dc","resolution":{"observed_at":"2026-05-12T13:36:57.453125Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"2024 , eprint=","venue":null,"work_id":"cf55f113-64e5-437e-88fd-1a6ec00a7093","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":45,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:d1d6e7189a61701ef9dd951594c44d2db532f26111c9ef15bf29d8c1fd231e46","observation_id":"f2c942f7-b58d-480c-8a84-6727682591a2","resolution":{"observed_at":"2026-05-12T13:36:57.455661Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"2023 , eprint=","venue":null,"work_id":"50f2057c-c581-4df1-8ac3-e420dafb2375","year":2023},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":46,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:8daf832c16ef98064fd132279a58343870c95e6ee05badcd37a68dba62ad0758","observation_id":"c237b50d-6f1e-44d0-8e41-436c01c918e5","resolution":{"observed_at":"2026-05-12T13:36:57.458116Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"2024 , eprint=","venue":null,"work_id":"e63f756f-afe3-4db5-bdca-e35133be52f2","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":48,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:6859e4b3de0e28e2ba31b6959151f8b0d2dd001a55ff961f95626c6ba700aa9b","observation_id":"23b9cdf5-1b36-4836-b2c6-5062c0d25248","resolution":{"observed_at":"2026-05-12T13:36:57.460947Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"Proceedings of the 2024 Conference of the North American Chapter of the Association for Computational Linguistics: Human Language Technologies (Volume 1: Long Papers) , pages=","venue":null,"work_id":"69916596-dcdd-42e6-9070-0fdd2b269dc4","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":50,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:acc0a14d192cd9f2ae2bf223415b921a3e331457d670551819daf083be3dd669","observation_id":"16714606-bb46-4f9f-864b-ad282d9f20c9","resolution":{"observed_at":"2026-05-12T13:36:57.463640Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"2024 IEEE Security and Privacy Workshops (SPW) , pages=","venue":null,"work_id":"e93d8d18-b220-4233-b545-cc7e358edb54","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":52,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:6b177fef2fa691428a4cf4b4d9fd2c5d6a4bcf376cc36a240a8b388065837931","observation_id":"2f71694d-5a19-4430-83b5-84738df4d9e0","resolution":{"observed_at":"2026-05-12T13:36:57.468044Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"Proceedings of the 16th ACM Workshop on Artificial Intelligence and Security , pages=","venue":null,"work_id":"1bad67fd-494b-4fab-9d62-3426193c7d49","year":null},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":53,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:f1aae9e8fba74ee68425fdd1e35daf83866cda02bde0945b6dc8359e47d35f53","observation_id":"4909b3dc-7415-47a3-8e01-abed55539dd2","resolution":{"observed_at":"2026-05-12T13:36:57.470970Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":null,"venue":null,"work_id":"761d35bd-8414-41af-9c92-a4858f685c56","year":null},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":55,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:d3364f82ef640417f712ab95ab0b26ead3daa97f65986aa8b7a8cf94454966b3","observation_id":"714092db-543b-4077-8064-f7c5ded6668c","resolution":{"observed_at":"2026-05-12T13:36:57.473728Z","resolver_source":"raw_fallback","status":"parse_uncertain"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"2023 , eprint=","venue":null,"work_id":"fd6d2113-9a12-4295-b698-5690728e998a","year":2023},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":58,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:195b0e3a20d9a3230acc7637a019dec14803b4912da9a09273bcc1b926c43c10","observation_id":"8facc36f-a5a2-49cf-baf1-195b89840d7a","resolution":{"observed_at":"2026-05-12T13:36:57.476123Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"2024 , eprint=","venue":null,"work_id":"01833ee0-c4fd-4dee-b43a-36e465f3f3b0","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":59,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:8cb1ca470baae1373e820d2e7232fdfa7b70136229b5446519fe8535abe12459","observation_id":"42884a1b-9c76-497e-91ae-a05988b6aec7","resolution":{"observed_at":"2026-05-12T13:36:57.230235Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"2024 , eprint=","venue":null,"work_id":"61ba7771-bc4f-48fa-abef-dbe6924bfe77","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":60,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:ef0cd235526c8764e628f126024fc6d2851fd91668448c61314f438162da0bac","observation_id":"a3177c5e-adc6-4f7b-b5d3-9c03b7009ff1","resolution":{"observed_at":"2026-05-12T13:36:57.232677Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"2024 , eprint=","venue":null,"work_id":"064197e2-7468-4b13-9b35-79958e5682d7","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":61,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:c6f235bd6549de0dbe663c9b1c893fb82e1bc1c81ed3e349dda5dc47ba9720f4","observation_id":"b53363d7-4ada-4724-ab57-0bf89504a187","resolution":{"observed_at":"2026-05-12T13:36:57.235194Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"Maddison and Tatsunori Hashimoto , booktitle=","venue":null,"work_id":"2105a8dd-5ec2-4607-8176-47bd52a7d558","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":62,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:1ae51b633ce5a3cee3fe23d2c70c4ffa61b04b8c8f8486a7e70709cb152a1215","observation_id":"d753c699-05b2-49a5-9237-cd9c06be9a4b","resolution":{"observed_at":"2026-05-12T13:36:57.237965Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2401.10019","last_updated":"2024-10-05T06:50:15Z","snapshot_observed_at":"2026-07-06T17:17:23.567885Z","submitted_at":"2024-01-18T14:40:46Z","title":"R-Judge: Benchmarking Safety Risk Awareness for LLM Agents","version":3},"cited_work":{"arxiv_id":"2401.10019","doi":null,"metadata_source":"pith","pith_arxiv_id":"2401.10019","snapshot_observed_at":"2026-07-11T02:47:50.885307Z","title":"arXiv preprint arXiv:2401.10019 , year=","venue":"cs.CL","work_id":"80797370-dc29-417d-83c5-ec1313a64166","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":63,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"cited_paper":"/paper/2401.10019","citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:fb4baf42168f4e063972dab54381901322c2e4209165506c6400bcb9c7d76859","observation_id":"f2c018c3-9266-4a2f-af8f-fe2126da702e","resolution":{"observed_at":"2026-05-12T13:36:57.091607Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"arXiv , primaryClass=","venue":null,"work_id":"1d057d5a-627f-444c-8654-d6ae549c92d2","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":64,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:e9c8ad5a8ef291b5c4a7b1920ab580c231325246ea53da2b6f173aa91afa6dff","observation_id":"1e068fd6-7710-4884-aa34-8b5261a7be38","resolution":{"observed_at":"2026-05-12T13:36:57.242670Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"EMNLP , year=","venue":null,"work_id":"df27691f-f25d-49a6-96a0-666abceaeaa3","year":null},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":65,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:c973302053c027bee3c1665ab6d8f3d1bcd179e030d61c73e5d352b4b7d9026a","observation_id":"d4697392-22a7-4cb7-b3af-e5b070aaf893","resolution":{"observed_at":"2026-05-12T13:36:57.244789Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"2024 , eprint=","venue":null,"work_id":"e2246f06-4c62-4dcb-a276-fc80d6d8d4dd","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":66,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:44e472155da22f1ae0d55c6b23bb7a2dff3b5474868f4a64473c1087c787c8c3","observation_id":"a4221a37-ab21-4d65-a0b7-d25be155837e","resolution":{"observed_at":"2026-05-12T13:36:57.246993Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"2024 , eprint=","venue":null,"work_id":"724304f5-c8a7-415c-bb0c-a2e52715599a","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":67,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:f0956482bd6a92a1a5d2bdceda3b8b5ed3f85d3c52ea2d77acec51b30baaab5a","observation_id":"e76ef73b-ec20-409c-a705-b169e65424b9","resolution":{"observed_at":"2026-05-12T13:36:57.249277Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"2024 , url =","venue":null,"work_id":"84ccdf90-bcec-43e6-b888-4e3aee2b5251","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":68,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:17dc0ffd7026a2310d98495f8811b58cc8625de92af74c2dc04f40a64a0fbfe7","observation_id":"4864ee39-8aa9-4b6c-a40b-80df91346a4c","resolution":{"observed_at":"2026-05-12T13:36:57.251499Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"2024 , howpublished =","venue":null,"work_id":"b9442618-88df-44af-b2a1-3217e412c4c9","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":69,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:d11a53e26493b6c631ac4053ddd0f9844566c5b3e33784dfcf42b81dd0a5d18d","observation_id":"5b8bc126-fdf0-44a6-b15d-8ebccc43d7a6","resolution":{"observed_at":"2026-05-12T13:36:57.254278Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-07-07T23:54:19.218385Z","title":"2024 , howpublished =","venue":null,"work_id":"251f0c0b-346a-443b-9049-1eb059b15e74","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":70,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:17ba2093358c6f93b03ed927daab7e4164d1819aae9ccde9e8699107b8c6f514","observation_id":"25d40eeb-37e6-40e4-869d-365084a8aa50","resolution":{"observed_at":"2026-05-12T13:36:57.256662Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"2024 , note =","venue":null,"work_id":"06340502-09f9-4bd8-a9c8-fb3aa0228174","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":71,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:a0ed6a7d30721bbaaeb57e2a5ba7cecef1896da819c29260de3cc2d0c12f9f71","observation_id":"be2ef07f-56b3-49e5-b225-c33b68dc819f","resolution":{"observed_at":"2026-05-12T13:36:57.259178Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"Proceedings of the 41st International Conference on Machine Learning (ICML) , year =","venue":null,"work_id":"28f7c56e-f4e0-4fc6-a47e-16dd9104cc93","year":null},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":72,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:ee24568929518078f10d0bbdfb17daa0e3cf9c0d6159f94a3a5ed6b0ed7bde58","observation_id":"e1879d31-0400-4eae-8278-7624b48c6dbc","resolution":{"observed_at":"2026-05-12T13:36:57.261577Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"Proceedings of the 62nd Annual Meeting of the Association for Computational Linguistics (ACL) , year =","venue":null,"work_id":"e857a9ca-4ff5-4461-9240-8e3538ff689e","year":null},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":73,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:d53def117d6836b60d11e46701d848db3c981f81d6731c607700072372401762","observation_id":"52fcc9d6-e93d-4a07-a017-3e1361207d0b","resolution":{"observed_at":"2026-05-12T13:36:57.264141Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"2023 , eprint=","venue":null,"work_id":"e95e2164-fac1-4a16-9d19-c2e5a4293c51","year":2023},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":74,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:1ddfd4647622f9bf1df1e5aaaa626bd75d1f5d2856181c443e1318fa25bf6c88","observation_id":"406140e4-372b-4156-93f3-20e9408824e8","resolution":{"observed_at":"2026-05-12T13:36:57.266402Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-07-05T18:51:18.690078Z","title":"2023 , eprint=","venue":null,"work_id":"dcae8783-458e-4970-8a0a-c900667aa2a8","year":2023},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":75,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:b337b2c14941590f2e13c8f6c6c633ec3514fc2c33e1f718609f450e04cf8254","observation_id":"8c90f575-be9e-40f6-8527-75f84d83b4ac","resolution":{"observed_at":"2026-05-12T13:36:57.268596Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"Proceedings of the 38th Conference on Neural Information Processing Systems (NeurIPS), Track on Datasets and Benchmarks , year =","venue":null,"work_id":"e64f8504-ac67-48b3-a74f-772c93131828","year":null},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":76,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:84a198239be8ba00b8a10b73bc4de8be0d8823494beafb6ffdb5039666745dac","observation_id":"79615d7b-d279-4074-b654-f26f4e01d70f","resolution":{"observed_at":"2026-05-12T13:36:57.271160Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.14595","last_updated":"2024-07-01T19:58:00Z","snapshot_observed_at":"2026-07-06T18:34:29.513732Z","submitted_at":"2024-06-20T17:43:18Z","title":"Adversaries Can Misuse Combinations of Safe Models","version":2},"cited_work":{"arxiv_id":"2406.14595","doi":null,"metadata_source":"arxiv_reference","pith_arxiv_id":"2406.14595","snapshot_observed_at":"2026-07-01T08:15:31.728950Z","title":"Adversaries can misuse combinations of safe models","venue":null,"work_id":"67e750c5-ff3d-41a0-8538-92e721725bb7","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":77,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"cited_paper":"/paper/2406.14595","citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:7e0940bc95504da401ac355f0c10d4ecc1dd4790d71c2cac3d3c501dff992070","observation_id":"9b6057ff-e9d7-495b-8b22-87d0bee3b9ba","resolution":{"observed_at":"2026-05-12T13:36:57.096155Z","resolver_source":"arxiv_id","status":"metadata_mismatch"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"Exploring Concept Depth: How Large Language Models Acquire Knowledge and Concept at Different Layers?","venue":null,"work_id":"ae4d96be-628e-4f48-a64b-ebf2431a9aff","year":2025},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":79,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:17cdf88b641de501c8b2daeeb6d552e14ecf24b003adaf89a19d4153e6034578","observation_id":"c5cfca29-b7e8-4099-9d89-5061872ffee6","resolution":{"observed_at":"2026-05-12T13:36:57.277453Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"Available at SSRN 5062105 , year=","venue":null,"work_id":"55c30ae4-457f-4a10-adcb-6b2c90ec57d6","year":null},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":80,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:e6face7c3a15ce0096d4db41db9ca05f765cc8f4a25d363b320329cdc13b1995","observation_id":"122f477c-9639-4c41-9f58-9118411cabfa","resolution":{"observed_at":"2026-05-12T13:36:57.280590Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"2025 , eprint=","venue":null,"work_id":"b54f1690-592d-4610-a8cb-72bba304fda5","year":2025},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":82,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:44947e4ee8d0d995f0651fa54312303c5c652e18881915efa14f0def4b1ea2b4","observation_id":"818626af-4551-4cad-b6fb-c1f92dc006ef","resolution":{"observed_at":"2026-05-12T13:36:57.283329Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2310.02374","last_updated":"2024-09-25T04:50:38Z","snapshot_observed_at":"2026-07-06T16:27:22.878185Z","submitted_at":"2023-10-03T18:54:10Z","title":"Conversational Health Agents: A Personalized LLM-Powered Agent Framework","version":5},"cited_work":{"arxiv_id":"2310.02374","doi":null,"metadata_source":"arxiv_reference","pith_arxiv_id":"2310.02374","snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"https://www.guardrailsai","venue":null,"work_id":"9d1a0a03-5c6c-4f5b-af92-79ac75950882","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":84,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"cited_paper":"/paper/2310.02374","citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:3fddc95b1d4561a57e388ce4daed15fca9f629541184c50e5e6d260f654a4d5c","observation_id":"f9093915-e172-4168-bc35-98f8fc47c380","resolution":{"observed_at":"2026-05-12T13:36:57.100600Z","resolver_source":"arxiv_id","status":"metadata_mismatch"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"Detecting language model attacks with perplexity","venue":null,"work_id":"3cdc4ea7-b04d-4a3a-a4d5-b2790d85a32a","year":2023},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":85,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:d52fbac6d8ec029a5a8e309c87867ccaaead962a32b137dde11fad9f3f828e85","observation_id":"e5f8d000-7b8b-4456-aad3-0420bf5a8488","resolution":{"observed_at":"2026-05-12T13:36:57.288599Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"Model leaderboards","venue":null,"work_id":"c9cf8dbb-1156-4d94-83f3-37263856b3fe","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":86,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:d66621ae5ac13f52285b99da1768694510df7ee24a24dc59b56aa6b94ade0912","observation_id":"f90f8c21-f61d-4c24-af1e-173af01533a0","resolution":{"observed_at":"2026-05-12T13:36:57.290937Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"Claude 3.5 sonnet","venue":null,"work_id":"80278d5a-1ad1-41b1-9bce-80704f038fcd","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":87,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:a1cbbc8e4d1253a9c0c9a742d8eb5c71b3b604150ca34deab16b1863f63fc47a","observation_id":"0b880e81-9f9c-4e1c-be29-577b0d763819","resolution":{"observed_at":"2026-05-12T13:36:57.293570Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"Api-blend: A comprehensive corpora for training and benchmarking api llms","venue":null,"work_id":"fbb0d392-8c7e-4a66-b1ee-120f0aeb1161","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":88,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:0071d4fe2695107d6a0262432fb9f0ad9d6ecb5331d22252f998f3dd4a3b615e","observation_id":"65b6d7ca-6b07-48b2-97ac-575075dd1ca0","resolution":{"observed_at":"2026-05-12T13:36:57.296158Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"Branch, Jonathan Rodriguez Cefalu, Jeremy McHugh, Leyla Hujer, Aditya Bahl, Daniel del Castillo Iglesias, Ron Heichman, and Ramesh Darwishi","venue":null,"work_id":"4e5df2dd-37ac-44b4-bc9f-818987999a02","year":2022},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":89,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:a61d0f970d48d656a809ec20c50249e863ccab354ae924addfd411b5574888c8","observation_id":"ddfb43f4-7aa4-42eb-826c-12d86e383b46","resolution":{"observed_at":"2026-05-12T13:36:57.298798Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2211.14719","last_updated":"2022-11-27T04:23:18Z","snapshot_observed_at":"2026-08-04T04:41:41.616019Z","submitted_at":"2022-11-27T04:23:18Z","title":"BadPrompt: Backdoor Attacks on Continuous Prompts","version":1},"cited_work":{"arxiv_id":"2211.14719","doi":null,"metadata_source":"arxiv_reference","pith_arxiv_id":"2211.14719","snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"Badprompt: Backdoor attacks on continuous prompts","venue":null,"work_id":"88332ae9-72d9-4654-bb5e-a81b55de864f","year":2022},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":90,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"cited_paper":"/paper/2211.14719","citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:f1730892f32b5863784244f1536d68282ca1bdd8fcad3a1f812aaeead4aff7d3","observation_id":"79e8cdc7-e4e5-4d25-9bdf-430e16a0006a","resolution":{"observed_at":"2026-05-12T13:36:57.104780Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2407.12784","last_updated":"2024-07-17T17:59:47Z","snapshot_observed_at":"2026-07-06T18:47:56.109836Z","submitted_at":"2024-07-17T17:59:47Z","title":"AgentPoison: Red-teaming LLM Agents via Poisoning Memory or Knowledge Bases","version":1},"cited_work":{"arxiv_id":"2407.12784","doi":"10.48550/arxiv.2407.12784","metadata_source":"pith","pith_arxiv_id":"2407.12784","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agentpoison: Red-teaming llm agents via poisoning memory or knowledge bases","venue":"cs.LG","work_id":"fd576f32-99d7-40a6-866a-ad86ad47565d","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":91,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"cited_paper":"/paper/2407.12784","citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:31f07ff0e8734362845a0d18c49556cbaa191a999bd02944fcf09e16286fe79f","observation_id":"5cfcf83a-be81-421e-82a6-f48ab34cadbc","resolution":{"observed_at":"2026-05-12T13:36:57.109054Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":"2016.254842","doi":"10.1109/comst.2016.2548426","metadata_source":"arxiv_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"A survey of man in the middle attacks","venue":"IEEE Communications Surveys & Tutorials","work_id":"e1169e9b-6342-4174-a679-e38780313f36","year":2027},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":92,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:0c2a7d1492e95e6c1607ce56df102c9ff52b5f15e2b0eb811130f249bb60e87f","observation_id":"05eb6d93-f0c7-45f9-9bfc-5af1098e3465","resolution":{"observed_at":"2026-05-12T13:36:57.070227Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"Agentdojo: A dynamic environment to evaluate attacks and defenses for llm agents","venue":null,"work_id":"490634ce-c94f-4072-ac1b-77ab3fe9f1ea","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":93,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:6b705ac7b13563d735667bae3ce203b7d0504676c595596ec4fb20647a70e40f","observation_id":"4b602537-a16a-4161-afb9-b6986f99baac","resolution":{"observed_at":"2026-05-12T13:36:57.308753Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2312.00374","last_updated":"2024-09-11T12:48:42Z","snapshot_observed_at":"2026-07-06T16:55:29.501535Z","submitted_at":"2023-12-01T06:36:17Z","title":"The Philosopher's Stone: Trojaning Plugins of Large Language Models","version":3},"cited_work":{"arxiv_id":"2312.00374","doi":null,"metadata_source":"arxiv_reference","pith_arxiv_id":"2312.00374","snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"The philosopher’s stone: Trojaning plugins of large language models","venue":null,"work_id":"fecf0018-556c-44c0-91c7-f3d566887ec5","year":2023},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":94,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"cited_paper":"/paper/2312.00374","citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:1c5406108220b44ddf7ca225d8270faf00f0e03f8d2dd1575a4d1ed601706973","observation_id":"418ce3f1-111c-4220-9881-b5fd75246a8f","resolution":{"observed_at":"2026-05-12T13:36:57.113393Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2407.21783","last_updated":"2024-11-23T23:27:33Z","snapshot_observed_at":"2026-07-06T18:55:11.576666Z","submitted_at":"2024-07-31T17:54:27Z","title":"The Llama 3 Herd of Models","version":3},"cited_work":{"arxiv_id":"2407.21783","doi":"10.1016/s0749-0720(15","metadata_source":"pith","pith_arxiv_id":"2407.21783","snapshot_observed_at":"2026-07-11T11:50:26.030339Z","title":"The Llama 3 Herd of Models","venue":"cs.AI","work_id":"1549a635-88af-4ac1-acfe-51ae7bb53345","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":95,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"cited_paper":"/paper/2407.21783","citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:f6eeb920b9dcea2654c28c07b5b80197f08f6e11839027ee6991191a97c8a1a4","observation_id":"0f4ef4d6-091d-409d-8f46-77d68bdc66bb","resolution":{"observed_at":"2026-05-12T13:36:57.117714Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"Ai prompt optimization services","venue":null,"work_id":"05528acd-4b6c-4783-8d84-da53c44c479a","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":96,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:01e176db9df172eef1c564e748e64c2875f1887fe326dffba423f9e0623da2a9","observation_id":"b0592dd1-d8a1-4607-b72d-b53eb871acc1","resolution":{"observed_at":"2026-05-12T13:36:57.316599Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"Openagi: When llm meets domain experts","venue":null,"work_id":"ddbc6de8-55ba-41ee-9a2f-6643368298e5","year":2023},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":97,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:7930af6701aa64f734cebb829fe3b000b72daa8331817237f44238d697ae1026","observation_id":"2c45d253-0926-4951-9c1d-96869f4ee9b3","resolution":{"observed_at":"2026-05-12T13:36:57.318977Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2312.03815","last_updated":"2023-12-09T18:10:39Z","snapshot_observed_at":"2026-07-06T16:57:59.000365Z","submitted_at":"2023-12-06T18:50:26Z","title":"LLM as OS, Agents as Apps: Envisioning AIOS, Agents and the AIOS-Agent Ecosystem","version":2},"cited_work":{"arxiv_id":"2312.03815","doi":null,"metadata_source":"arxiv_reference","pith_arxiv_id":"2312.03815","snapshot_observed_at":"2026-07-01T19:36:09.370484Z","title":"Llm as os (llmao), agents as apps: Envisioning aios, agents and the aios-agent ecosystem","venue":null,"work_id":"f5753cb8-22bd-4e85-b5cd-c45b48df0cc4","year":2023},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":98,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"cited_paper":"/paper/2312.03815","citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:b70d623031efb0e62a0ef4d100682446d415ad31386314c83bf2a3d3dab7c675","observation_id":"ec95e0ca-d760-45cf-a916-cf41f788db28","resolution":{"observed_at":"2026-05-12T13:36:57.122714Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"Rapidapi hub","venue":null,"work_id":"4d930f05-acaf-4b52-a837-5120614a4c4b","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":99,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:cb2802a26f5f1a70c3b325cb14a7bdce934f848c1d0a18006e155183b2bb3d27","observation_id":"f0784c72-8e7a-48d6-83b5-dd9cd5bd7ac4","resolution":{"observed_at":"2026-05-12T13:36:57.323414Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"Using gpt-eliezer against chatgpt jailbreaking","venue":null,"work_id":"e1776e48-e334-4f14-b28c-8b148ac0b408","year":2023},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":100,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:4a782688c231d5d5df98e896f4cabfc8acddf56c9e151765b485d2152b01334d","observation_id":"1934347b-aba6-4d28-bec7-3e0f3d9e27af","resolution":{"observed_at":"2026-05-12T13:36:57.325580Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"Not what you've signed up for: Compromising real-world llm-integrated applications with indirect prompt injection","venue":null,"work_id":"5c0d79d8-3655-432f-968c-b1906c41ed3b","year":2023},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":101,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:0305c57b1e251e9aa2a602652adf194a366c98ee1462ddbfeb746d134c13415c","observation_id":"eede8d70-ef24-465d-a0af-b6e361821213","resolution":{"observed_at":"2026-05-12T13:36:57.327735Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"Securing llm systems against prompt injection","venue":null,"work_id":"58e5e979-8db2-411e-913a-055433690a18","year":2023},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":102,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:1703ab4e0cf060e716fd010aaf33a261713bac03018c6f41d8002db6e9265c7d","observation_id":"04b35710-f305-451b-b9a3-f3f84fc19f76","resolution":{"observed_at":"2026-05-12T13:36:57.329842Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"Trustagent: Towards safe and trustworthy llm-based agents through agent constitution","venue":null,"work_id":"d732fa22-52fe-4408-a6d5-d04c14da50be","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":103,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:4524a8ff80da185a3a1653bf5e2d2f56874975f29d850680086ffee3befea4d8","observation_id":"4752e341-a23b-48bc-aacb-e67578052f9e","resolution":{"observed_at":"2026-05-12T13:36:57.331960Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2201.07207","last_updated":"2022-03-08T06:47:17Z","snapshot_observed_at":"2026-07-06T12:28:29.322975Z","submitted_at":"2022-01-18T18:59:45Z","title":"Language Models as Zero-Shot Planners: Extracting Actionable Knowledge for Embodied Agents","version":2},"cited_work":{"arxiv_id":"2201.07207","doi":"10.48550/arxiv.2201.07207","metadata_source":"pith","pith_arxiv_id":"2201.07207","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Language models as zero-shot planners: Extracting actionable knowledge for embodied agents","venue":"cs.LG","work_id":"e2e590a8-7af9-4ab9-b5be-29c703ef90fb","year":2022},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":104,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"cited_paper":"/paper/2201.07207","citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:3c94049b928bc3503d81fe8dfd02de213ede195b2aafd378beb12a9ac86831ba","observation_id":"6ab6ae8f-db1a-4e24-b73b-2ebe41667118","resolution":{"observed_at":"2026-05-12T13:36:57.127277Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2401.05566","last_updated":"2024-01-17T20:26:01Z","snapshot_observed_at":"2026-07-06T17:14:03.152949Z","submitted_at":"2024-01-10T22:14:35Z","title":"Sleeper Agents: Training Deceptive LLMs that Persist Through Safety Training","version":3},"cited_work":{"arxiv_id":"2401.05566","doi":"10.48550/arxiv.2401.05566","metadata_source":"pith","pith_arxiv_id":"2401.05566","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Sleeper Agents: Training Deceptive LLMs that Persist Through Safety Training","venue":"cs.CR","work_id":"b95e7447-320c-4c85-b5d0-3708cc2cc72e","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":105,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"cited_paper":"/paper/2401.05566","citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:13843ac998f3be58d637ae90d7cd3ca45cb292fe90cf56a57ab6b52566cc509e","observation_id":"69492c6f-88b4-4c7f-ba37-891b44b0c21b","resolution":{"observed_at":"2026-05-12T13:36:57.131425Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-01T07:38:13.966538+00:00","source":"crossref_status_cache"},{"observed_at":"2026-08-01T07:38:13.966538+00:00","source":"openalex_status_cache"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"Baseline defenses for adversarial attacks against aligned language models","venue":null,"work_id":"c1680f46-77d4-4ba2-b63b-a39931c2e712","year":2023},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":106,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:c1e7ae768a6b66e35e6c16a5b03ebc742be7af7593d1ca9842590d99725d7067","observation_id":"b8947ddd-2ece-4614-ac5d-0119c1e25b9b","resolution":{"observed_at":"2026-05-12T13:36:57.339296Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2401.04088","last_updated":"2024-01-08T18:47:34Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-01-08T18:47:34Z","title":"Mixtral of Experts","version":1},"cited_work":{"arxiv_id":"2401.04088","doi":"10.48550/arxiv.2401.04088","metadata_source":"pith","pith_arxiv_id":"2401.04088","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Mixtral of Experts","venue":"cs.LG","work_id":"0de8c352-9daa-4e1e-8c7b-3d0dec69f369","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":107,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"cited_paper":"/paper/2401.04088","citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:520dfb6ea8c007b808be46ddaaef619c3de9775d104aa891c0b2e42bf595bff0","observation_id":"98f74d82-578d-4bb2-a54b-df80e4f273dc","resolution":{"observed_at":"2026-05-12T13:36:57.135277Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-07-09T08:48:39.110013+00:00","source":"crossref_status_cache"},{"observed_at":"2026-07-09T08:48:39.110013+00:00","source":"openalex_status_cache"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"The impact of reasoning step length on large language models","venue":null,"work_id":"51c96f32-05a8-48c0-a672-936da0b40378","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":108,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:9c393126a752b0249113525cd46384c0219c4e2a3d7c92a10b7c4d9f4020cc61","observation_id":"ccd147ee-5171-42fc-b2b9-7a45c472609c","resolution":{"observed_at":"2026-05-12T13:36:57.343898Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2502.01563","last_updated":"2025-05-20T18:08:40Z","snapshot_observed_at":"2026-07-06T20:30:22.267038Z","submitted_at":"2025-02-03T17:47:03Z","title":"Massive Values in Self-Attention Modules are the Key to Contextual Knowledge Understanding","version":4},"cited_work":{"arxiv_id":"2502.01563","doi":null,"metadata_source":"arxiv_reference","pith_arxiv_id":"2502.01563","snapshot_observed_at":"2026-07-04T09:09:43.221590Z","title":"Massive values in self-attention modules are the key to contextual knowledge understanding","venue":null,"work_id":"bcbf2451-3e8b-4662-80d9-4dc6f6a5cb75","year":2025},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":109,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"cited_paper":"/paper/2502.01563","citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:a7491007a5b7325cf7fd2b110d7a84749c940e721f4fa536c9ed4b66e7fce9e9","observation_id":"bf93ba74-5279-4adf-8c14-ab37143ef9c2","resolution":{"observed_at":"2026-05-12T13:36:57.139599Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":null,"venue":null,"work_id":"e73740bc-ca6c-47ba-a59b-0b6d3efab9f2","year":2025},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":110,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:b541f8d5a76256bbf81cee58082903ce0b2d7fe22237f51119cfc42b58cd0f4f","observation_id":"5d68421d-231b-47bb-85d0-4d32dee11f78","resolution":{"observed_at":"2026-05-12T13:36:57.348102Z","resolver_source":"raw_fallback","status":"unresolved"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2307.14692","last_updated":"2023-07-27T08:28:58Z","snapshot_observed_at":"2026-07-06T15:59:06.938571Z","submitted_at":"2023-07-27T08:28:58Z","title":"Backdoor Attacks for In-Context Learning with Language Models","version":1},"cited_work":{"arxiv_id":"2307.14692","doi":null,"metadata_source":"arxiv_reference","pith_arxiv_id":"2307.14692","snapshot_observed_at":"2026-07-03T02:07:33.651000Z","title":"Backdoor attacks for in-context learning with language models","venue":null,"work_id":"c42e2ce6-7ec0-4ae4-8f69-ea45b84a03b9","year":2023},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":111,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"cited_paper":"/paper/2307.14692","citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:f0e84b7be33e87b315958f01b98e3ad1d0321e7a8f91826d35db0e1cfe16c75a","observation_id":"88eb2081-cff7-472f-992f-49cf9235224a","resolution":{"observed_at":"2026-05-12T13:36:57.144086Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"Exploiting programmatic behavior of llms: Dual-use through standard security attacks","venue":null,"work_id":"3134b74e-441b-469b-adbc-c55a4fef19c8","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":112,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:f22295b4954c92e21f0b24ae4b58d54b5f0311f1d9f36d4477e35b14e2faa73e","observation_id":"c6080923-ea21-4dbd-b0f0-733b44e75a9a","resolution":{"observed_at":"2026-05-12T13:36:57.352904Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"Large language models are zero-shot reasoners","venue":null,"work_id":"29e37f46-a215-40d2-ba92-24677c71b438","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":113,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:91428b08e0021ed66a3cc8dd429a0a5f095a29b37ea2852a7ab61cf0d20e74e8","observation_id":"06fbc4d5-d866-4fb1-87f7-168fec7b0d3f","resolution":{"observed_at":"2026-05-12T13:36:57.355017Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"Random sequence enclosure","venue":null,"work_id":"8a4a11b2-b17e-4032-82ec-81940ae9c6f5","year":2023},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":114,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:b7af091552431523242b0c4d8f9cd39a05acaaaed4dd32cdfcc4c556ab9021c5","observation_id":"be92c361-22d2-4b27-8e99-5c0bd86a4f4c","resolution":{"observed_at":"2026-05-12T13:36:57.356943Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"Instruction defense","venue":null,"work_id":"37fc1dea-2cbe-4d8f-8749-21c5ced4e0a1","year":2023},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":115,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:be1a148dbc359351d157d3a5e60fad138075c175376def4ae0d6538de09bcfe7","observation_id":"2b1d651c-c43e-4f8d-84d8-62c3043f4f55","resolution":{"observed_at":"2026-05-12T13:36:57.358841Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"Sandwitch defense","venue":null,"work_id":"d7adb1a4-9563-4e20-b236-a8fe9f801192","year":2023},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":116,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:6752f5946271d419d5ba367e326c9eb3a90ef79098c2c516ef21b390184b6d09","observation_id":"6e07628d-a822-4c4a-b687-8646a1d60705","resolution":{"observed_at":"2026-05-12T13:36:57.360790Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"u ttler, Mike Lewis, Wen-tau Yih, Tim Rockt\\","venue":null,"work_id":"95dd070f-fcd6-40aa-ae4c-cc4b571599f9","year":2020},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":117,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:803cdf5745fa1659ed90c9fcec15eed9786a833a66b5f17ff70378d5fffc6047","observation_id":"10a29236-5198-4d1d-92dc-54614efc2e05","resolution":{"observed_at":"2026-05-12T13:36:57.362797Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2403.13355","last_updated":"2024-03-20T07:34:18Z","snapshot_observed_at":"2026-08-05T01:30:35.921934Z","submitted_at":"2024-03-20T07:34:18Z","title":"BadEdit: Backdooring large language models by model editing","version":1},"cited_work":{"arxiv_id":"2403.13355","doi":null,"metadata_source":"arxiv_reference","pith_arxiv_id":"2403.13355","snapshot_observed_at":"2026-07-02T20:47:23.476517Z","title":"Badedit: Backdooring large language models by model editing","venue":null,"work_id":"7fbae58b-c6ea-44e4-8580-4bd7f6c99a7e","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":118,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"cited_paper":"/paper/2403.13355","citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:a2e7425a861c3b83eca0037a60375e69d28d1033952c3f6a2fa3d5141c995ad9","observation_id":"150e10ab-4830-4988-b780-e4a23cb89c6c","resolution":{"observed_at":"2026-05-12T13:36:57.148449Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2306.05499","last_updated":"2025-12-29T02:25:27Z","snapshot_observed_at":"2026-07-06T15:40:27.639368Z","submitted_at":"2023-06-08T18:43:11Z","title":"Prompt Injection attack against LLM-integrated Applications","version":3},"cited_work":{"arxiv_id":"2306.05499","doi":"10.48550/arxiv.2306.05499","metadata_source":"pith","pith_arxiv_id":"2306.05499","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Prompt Injection attack against LLM-integrated Applications","venue":"cs.CR","work_id":"977b4683-bba6-49d6-8f3d-496c41cb7fac","year":2023},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":119,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"cited_paper":"/paper/2306.05499","citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:52155f4595de4fda3d06c9cb58970d3940f570b8ed93391ee6cdc9d0e727e7f4","observation_id":"4bfe2f0c-2475-4567-8ba0-f5722eb71e90","resolution":{"observed_at":"2026-05-12T13:36:57.152360Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"Formalizing and benchmarking prompt injection attacks and defenses","venue":null,"work_id":"7e96b35c-541a-432d-bc9d-d944dbc89d5a","year":2024},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":120,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:35f22e26bba2572f5feec4af1bc781c5b784816b5d56e9ec1e4a4560e92a1d54","observation_id":"75180926-31e7-48b6-8c5a-b09d45f77d5e","resolution":{"observed_at":"2026-05-12T13:36:57.369859Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2311.10813","last_updated":"2024-07-28T23:37:51Z","snapshot_observed_at":"2026-08-01T17:51:53.220489Z","submitted_at":"2023-11-17T18:59:56Z","title":"A Language Agent for Autonomous Driving","version":4},"cited_work":{"arxiv_id":"2311.10813","doi":null,"metadata_source":"pith","pith_arxiv_id":"2311.10813","snapshot_observed_at":"2026-07-09T00:25:48.578008Z","title":"A language agent for autonomous driving","venue":"cs.CV","work_id":"258c13af-49d8-47eb-b398-bd4e16fb48aa","year":2023},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":121,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"cited_paper":"/paper/2311.10813","citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:e667e33dcfe9b9e7f100c8e4075e47b84e377b7e6aac7ba1cdb76222ac2fbb66","observation_id":"564029f0-adab-4ae5-817d-cb12edf903c8","resolution":{"observed_at":"2026-05-12T13:36:57.157257Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2305.18462","last_updated":"2023-08-07T06:32:56Z","snapshot_observed_at":"2026-07-06T15:34:59.457879Z","submitted_at":"2023-05-29T07:06:03Z","title":"Membership Inference Attacks against Language Models via Neighbourhood Comparison","version":2},"cited_work":{"arxiv_id":"2305.18462","doi":"10.48550/arxiv.2305.18462","metadata_source":"arxiv_reference","pith_arxiv_id":"2305.18462","snapshot_observed_at":"2026-07-10T06:15:00.866473Z","title":"Membership in- ference attacks against language models via neighbour- 14 hood comparison","venue":null,"work_id":"ca343e68-10c9-446f-963f-2780ef1eec92","year":2023},"citing_paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents","version":4},"reference_index":122,"source":"arxiv_source","source_observed_at":"2026-05-12T13:36:57.011451Z"},"links":{"cited_paper":"/paper/2305.18462","citing_paper":"/paper/2410.02644"},"observation_digest":"sha256:0a88177ce68da137cc611278ca4124dd38b4c7af1ca2dab92bb49d8269a1c29c","observation_id":"54681231-d39d-43fa-abed-4a4e27a6b38b","resolution":{"observed_at":"2026-05-12T13:36:57.161301Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"state":"measured"}}],"paper":{"arxiv_id":"2410.02644","last_updated":"2025-05-30T03:50:33Z","latest_version":4,"primary_category":"cs.CR","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2024-10-03T16:30:47Z","title":"Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents"},"reference_resolution":{"displayed":100,"state_counts":{"malformed_identifier":0,"metadata_mismatch":4,"parse_uncertain":2,"unresolved":3,"verified_exact":16,"verified_fuzzy":75},"total_outbound_references":143},"refusal":"A citation records a reference. It does not transfer a finding from one paper to another.","schema":"pith.paper-citation-record.v1","standing_sources":[{"observed_at":"2026-08-04T06:34:03.388597+00:00","source":"crossref"},{"observed_at":"2026-08-04T06:33:57.428241+00:00","source":"retraction_watch"}],"thesis":"As of 5 August 2026, this Paper Citation Record lists 100 of 143 outbound references and 79 inbound Pith citation observations for arXiv:2410.02644."}