Pith. sign in

Paper Citation Record · LEDGER

Refusal-Trained LLMs Are Easily Jailbroken As Browser Agents

As of 7 August 2026, this Paper Citation Record lists 0 of 0 outbound references and 16 inbound Pith citation observations for arXiv:2410.13886.

A citation records a reference. It does not transfer a finding from one paper to another.

pith.paper-citation-record.v1
2410.13886 v2

Coverage vector

measured 0 of 0 reference resolution

Typed states for the displayed outbound observations.

Source: paper_references, paper_reference_links

measured 16 of 16 standing notices

One-hop event checks from named stored sources.

Source: scholarly_work_events, retraction_status_cache, observed 2026-08-07T06:34:17.273281+00:00

measured 16 of 16 inbound itemization

Pith citing papers itemized under the disclosed page cap.

Source: paper_references, paper_reference_links, observed 2026-08-07T00:15:01.139782Z

measured 0 of 1 external citation measurements

A source-named dated measurement, never combined with another source.

Source: arxiv_reference, observed 2026-07-02T08:06:48.241191Z

Reference resolution

0 of 0 outbound references displayed

  • verified exact0
  • verified fuzzy0
  • unresolved0
  • parse uncertain0
  • malformed identifier0
  • metadata mismatch0

External citation measurements

No source-named external measurement is stored.

Outbound references

No outbound reference observations are available for this paper version.

Pith citing papers

Observation 1f5deb70-d016-4da3-993c-b3740f09e8d6 · inbound

Humanity's Last Exam cites this paper.

Humanity's Last Exam Refusal-Trained LLMs Are Easily Jailbroken As Browser Agents

Reference 30

Resolution
verified exact
arxiv_id, observed 2026-05-10T18:40:50.378768Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-05-10T18:40:50.139345Z digest=sha256:d84e315f71dfd0cfb5ca634bd2ac742ee69e84a7b9222cb3daab146a34e180ae

Observation 8b52a7d5-405b-487e-8c8d-cc4f842f5f41 · inbound

A Survey on the Safety and Security Threats of Computer-Using Agents: JARVIS or Ultron? cites this paper.

A Survey on the Safety and Security Threats of Computer-Using Agents: JARVIS or Ultron? Refusal-Trained LLMs Are Easily Jailbroken As Browser Agents

Reference 5

Resolution
verified exact
arxiv_id, observed 2026-05-22T15:24:57.839929Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-05-22T15:22:11.766850Z digest=sha256:576e99bfdec40bbd537c907c36fa7a581c015869589e71bd562bf8c4cce44df9

Observation 8790198c-cfc5-4bb9-84bc-f284d8110a6b · inbound

FORTRESS: Frontier Risk Evaluation for National Security and Public Safety cites this paper.

FORTRESS: Frontier Risk Evaluation for National Security and Public Safety Refusal-Trained LLMs Are Easily Jailbroken As Browser Agents

Reference 24

Resolution
unresolved
no resolver link, observed 2026-08-07T00:15:01.139782Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-07T00:15:01.139782Z digest=sha256:36c9a450684247c9a5a470af48c243fc13878235bdcafe73e967dbf6ab004a8c

Observation 7ab7792c-e789-4154-a3b6-519601f1212d · inbound

Context manipulation attacks : Web agents are susceptible to corrupted memory cites this paper.

Context manipulation attacks : Web agents are susceptible to corrupted memory Refusal-Trained LLMs Are Easily Jailbroken As Browser Agents

Reference 10

Resolution
unresolved
no resolver link, observed 2026-08-06T23:59:57.578866Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-06T23:59:57.578866Z digest=sha256:e92c75e01813020a7e2c17720c84cb08085802c279900b6077db8ce73c756752

Observation e5d4f524-359c-4948-a729-9195ce0ab1da · inbound

A Survey on Autonomy-Induced Security Risks in Large Model-Based Agents cites this paper.

A Survey on Autonomy-Induced Security Risks in Large Model-Based Agents Refusal-Trained LLMs Are Easily Jailbroken As Browser Agents

Reference 67

Resolution
unresolved
no resolver link, observed 2026-08-06T21:34:43.602465Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-06T21:34:43.602465Z digest=sha256:162889412ab920848cb078859eea8969c90d3d8fa943de5dc97fc4aeff066b18

Observation caddabb4-294c-48d2-b1e5-78e4f70d6b39 · inbound

LLMs are Capable of Misaligned Behavior Under Explicit Prohibition and Surveillance cites this paper.

LLMs are Capable of Misaligned Behavior Under Explicit Prohibition and Surveillance Refusal-Trained LLMs Are Easily Jailbroken As Browser Agents

Reference 7

Resolution
unresolved
no resolver link, observed 2026-08-06T21:22:59.013316Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-06T21:22:59.013316Z digest=sha256:952a5e03c27dd868acebec29137f906ba73123b8c23bfc53ec3e89c88efc097c

Observation 9d841a2f-ec22-4551-9981-9270bd8ee601 · inbound

SecureWebArena: A Holistic Security Evaluation Benchmark for LVLM-based Web Agents cites this paper.

SecureWebArena: A Holistic Security Evaluation Benchmark for LVLM-based Web Agents Refusal-Trained LLMs Are Easily Jailbroken As Browser Agents

Reference 17

Resolution
verified exact
arxiv_id, observed 2026-05-18T08:16:06.580695Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-05-18T08:14:51.102085Z digest=sha256:72e235bc5c2f9bfc1cb313d2963b5d9fe0a79e68429bb45d65d72db1e97a9ae4

Observation dc631708-1152-4254-a5d9-e407302c48c9 · inbound

The Social Cost of Intelligence: Emergence, Propagation, and Amplification of Stereotypical Bias in Multi-Agent Systems cites this paper.

The Social Cost of Intelligence: Emergence, Propagation, and Amplification of Stereotypical Bias in Multi-Agent Systems Refusal-Trained LLMs Are Easily Jailbroken As Browser Agents

Reference 15

Resolution
unresolved
no resolver link, observed 2026-08-04T10:16:02.320578Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=arxiv_source observed=2026-08-04T10:16:02.320578Z digest=sha256:15258892924d36736d4d3be8e2308905d2b88daf38bac6218a0b0bd7c7040fe1

Observation c50f0a73-6ec3-451d-93d6-fc8011508c09 · inbound

Measuring the Security of Mobile LLM Agents under Adversarial Prompts from Untrusted Third-Party Channels cites this paper.

Measuring the Security of Mobile LLM Agents under Adversarial Prompts from Untrusted Third-Party Channels Refusal-Trained LLMs Are Easily Jailbroken As Browser Agents

Reference 31

Resolution
unresolved
no resolver link, observed 2026-08-04T07:06:38.033013Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-04T07:06:38.033013Z digest=sha256:cfd8756b9d39f396c56d22a5b2c9b753fad2237e3c39429bdc948590d95278e4

Observation f57a6247-9876-4af1-8268-35de4ccb737b · inbound

The 2025 AI Agent Index: Documenting Technical and Safety Features of Deployed Agentic AI Systems cites this paper.

The 2025 AI Agent Index: Documenting Technical and Safety Features of Deployed Agentic AI Systems Refusal-Trained LLMs Are Easily Jailbroken As Browser Agents

Reference 77

Resolution
verified exact
arxiv_id, observed 2026-05-15T20:46:36.186400Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-05-15T20:41:49.137745Z digest=sha256:269e2a431f47728d342b29214d3cd466cd1abe7cc45afb3d9ee9601359d2d47b

Observation d7802825-59ec-4bb1-9b3c-187c789e5b4f · inbound

AgentWorm: Self-Propagating Attacks Across LLM Agent Ecosystems cites this paper.

AgentWorm: Self-Propagating Attacks Across LLM Agent Ecosystems Refusal-Trained LLMs Are Easily Jailbroken As Browser Agents

Reference 22

Resolution
unresolved
no resolver link, observed 2026-08-02T18:10:38.060471Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-02T18:10:38.060471Z digest=sha256:406f626d2f99ea4bc1dcb2a244d03ee58276a8267481cf20c992111eeac82474

Observation 38f9d78d-96bd-4d95-a5fc-19938868ad31 · inbound

Your Agent, Their Asset: A Real-World Safety Analysis of OpenClaw cites this paper.

Your Agent, Their Asset: A Real-World Safety Analysis of OpenClaw Refusal-Trained LLMs Are Easily Jailbroken As Browser Agents

Reference 8

Resolution
metadata mismatch
arxiv_id, observed 2026-05-10T23:05:49.008995Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-05-10T19:20:52.845052Z digest=sha256:caa71ee65e489c0b9170871f820be14524b14f065a6ea4d0259e32ba3d71a547

Observation cc48aef2-9002-442e-b1c0-0a439ee6f23e · inbound

Domain-Conditioned Safety in Frontier Computer-Using Agents: A 793-Episode Browser Benchmark, a Coding-Domain Cross-Reference, and a Reproducibility Audit of Recent Red-Teaming cites this paper.

Domain-Conditioned Safety in Frontier Computer-Using Agents: A 793-Episode Browser Benchmark, a Coding-Domain Cross-Reference, and a Reproducibility Audit of Recent Red-Teaming Refusal-Trained LLMs Are Easily Jailbroken As Browser Agents

Reference 9

Resolution
metadata mismatch
arxiv_id, observed 2026-07-02T08:06:48.242777Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-06-28T06:22:03.848058Z digest=sha256:d1556c32396b82d14e49a5ff0d8a2302d807e24e93b584f55463c7185e83319a

Observation a428daee-0475-4eda-9ca2-16350193fbf6 · inbound

Refused in Chat, Written in Code: Workflow-Level Jailbreak Construction in IDE Coding Agents cites this paper.

Refused in Chat, Written in Code: Workflow-Level Jailbreak Construction in IDE Coding Agents Refusal-Trained LLMs Are Easily Jailbroken As Browser Agents

Reference 24

Resolution
unresolved
no resolver link, observed 2026-07-11T22:40:37.839133Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-07-11T22:40:37.839133Z digest=sha256:5b3488994cb3035c4dfa063a1b4a656de71796c01c4c54b59c8240dd3190e74c

Observation 1e38be30-be24-4324-9734-978f2d789f73 · inbound

Refused in Chat, Written in Code: Workflow-Level Jailbreak Construction in IDE Coding Agents cites this paper.

Refused in Chat, Written in Code: Workflow-Level Jailbreak Construction in IDE Coding Agents Refusal-Trained LLMs Are Easily Jailbroken As Browser Agents

Reference 24

Resolution
unresolved
no resolver link, observed 2026-07-13T07:01:49.222325Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-07-13T07:01:49.222325Z digest=sha256:07b5ae08f2e643f4d2947fe7542623ed157ce23b97cda3f9e8350c7b6db7bad1

Observation 06c5071e-9eaf-4bc1-8498-5c5b9cf01bf6 · inbound

ToolAlignBench: Investigating Alignment Conflicts in Tool-Calling Enabled LLMs cites this paper.

ToolAlignBench: Investigating Alignment Conflicts in Tool-Calling Enabled LLMs Refusal-Trained LLMs Are Easily Jailbroken As Browser Agents

Reference 2023

Resolution
unresolved
no resolver link, observed 2026-08-02T02:35:37.029971Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-02T02:35:37.029971Z digest=sha256:3ceb5cce6bd4a49fa88a1ad2d4473816338a9396d92a5b0db52862ac8f68f0dc