Pith. sign in

Paper Citation Record · LEDGER

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version)

As of 7 August 2026, this Paper Citation Record lists 86 of 86 outbound references and 3 inbound Pith citation observations for arXiv:2508.20083.

A citation records a reference. It does not transfer a finding from one paper to another.

pith.paper-citation-record.v1
2508.20083 v2

Coverage vector

measured 86 of 86 reference resolution

Typed states for the displayed outbound observations.

Source: paper_references, paper_reference_links, observed 2026-08-05T15:18:37.195476Z

measured 89 of 89 standing notices

One-hop event checks from named stored sources.

Source: scholarly_work_events, retraction_status_cache, observed 2026-08-07T06:34:17.273281+00:00

measured 3 of 3 inbound itemization

Pith citing papers itemized under the disclosed page cap.

Source: paper_references, paper_reference_links, observed 2026-08-03T05:31:33.371931Z

measured 1 of 1 external citation measurements

A source-named dated measurement, never combined with another source.

Source: arxiv_reference, observed 2026-08-05T02:28:24.338817Z

Reference resolution

86 of 86 outbound references displayed

  • verified exact1
  • verified fuzzy46
  • unresolved37
  • parse uncertain1
  • malformed identifier1
  • metadata mismatch0

External citation measurements

0
arxiv_reference, observed 2026-08-05T02:28:24.338817Z

Outbound references

Observation 55aa9561-40a5-4b65-aa95-7eb140fecceb · outbound

This paper cites https://www.nvidia.com/en-us/ai-on-rtx/chatrtx/.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) https://www.nvidia.com/en-us/ai-on-rtx/chatrtx/

Reference 1

Resolution
unresolved
no resolver link, observed 2026-08-05T15:18:29.066232Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T15:18:29.066232Z digest=sha256:f3e8225e6bdd57acf972da3958c2edfa7b0fe4fa436a54ed61856cbaaa162915

Observation dbf83c86-4d04-46fe-a370-3be10d24e81b · outbound

This paper cites https://www.langchain.com/.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) https://www.langchain.com/

Reference 2

Resolution
unresolved
no resolver link, observed 2026-08-05T15:18:29.162119Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T15:18:29.162119Z digest=sha256:18b6766a5b72048fcd090e0769849f5072915679c5b9ff4f60aa0c467dc46c89

Observation db1f7eaa-24a1-47f1-9018-980829d1b382 · outbound

This paper cites https://github.com/0xeb/TheBigPromptLibrary,.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) https://github.com/0xeb/TheBigPromptLibrary,

Reference 3

Resolution
unresolved
no resolver link, observed 2026-08-05T15:18:29.256301Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T15:18:29.256301Z digest=sha256:e732154a19342d2b27bd839c8e15966d48bd4e212d0c244b2fb700fb8baae8f5

Observation 23e7068f-d13f-4bfe-a959-dd31db0d9ef7 · outbound

This paper cites https://github.com/danielrosehill/ System-Prompt-Library, 2023.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) https://github.com/danielrosehill/ System-Prompt-Library, 2023

Reference 4

Resolution
unresolved
no resolver link, observed 2026-08-05T15:18:29.462948Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T15:18:29.462948Z digest=sha256:68a21ab36eb409027ae0fb14c874f9797268bb7810f605700c5d29e379cc0bff

Observation 58bb89ef-1f52-423f-915d-0fd233120b03 · outbound

This paper cites Detecting Language Model Attacks with Perplexity.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Detecting Language Model Attacks with Perplexity

Reference 5

Resolution
unresolved
no resolver link, observed 2026-08-05T15:18:29.558593Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T15:18:29.558593Z digest=sha256:04abed208b284cfb3b8b0bd8852c9a38c8fbe3cbe51ef73ed414bbee1eddd9b7

Observation 2a2728b2-269c-479b-a2f2-954db4432f80 · outbound

This paper cites Gasliteing the retrieval: Explor- ing vulnerabilities in dense embedding-based search.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Gasliteing the retrieval: Explor- ing vulnerabilities in dense embedding-based search

Reference 6

Resolution
verified exact
raw_fallback, observed 2026-08-05T15:18:38.189861Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:29.639885Z digest=sha256:d75ef30d52cfba4d081d3b7aea5e34deebbe34252efd96575e88d9ef7e0c3d9c

Observation 6b07b563-0bdf-4f81-b41d-24202a7c815c · outbound

This paper cites Decision-Based Adversarial Attacks: Reliable Attacks Against Black-Box Machine Learning Models.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Decision-Based Adversarial Attacks: Reliable Attacks Against Black-Box Machine Learning Models

Reference 7

Resolution
unresolved
no resolver link, observed 2026-08-05T15:18:29.760311Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T15:18:29.760311Z digest=sha256:2c82e2b74a07ed06f9274e0a5e308f9c442fa81f712e7073544d94db26285bff

Observation f0432415-65b2-4fe6-8bd5-60beead500a0 · outbound

This paper cites Poisoning and Backdooring Contrastive Learning.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Poisoning and Backdooring Contrastive Learning

Reference 8

Resolution
unresolved
no resolver link, observed 2026-08-05T15:18:29.850429Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T15:18:29.850429Z digest=sha256:415731fe28f77efb89b3fdd6ff3547d2cd92e81fdbcbc651cc040b958a02a229

Observation 03ab3a91-bfda-4ac4-9441-6aaa8d98c155 · outbound

This paper cites Towards evaluating the robustness of neural networks.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Towards evaluating the robustness of neural networks

Reference 9

Resolution
unresolved
no resolver link, observed 2026-08-05T15:18:29.951628Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T15:18:29.951628Z digest=sha256:d0cb44f0b2753f978dbf82caeb2c2a2e1209297e4f31c99d3147a0e2e496e37d

Observation 5e94e4b5-fd30-4299-b43e-46657abb0bc3 · outbound

This paper cites LexGLUE: A benchmark dataset for legal language understanding in English.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) LexGLUE: A benchmark dataset for legal language understanding in English

Reference 10

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:47.472541Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:30.064999Z digest=sha256:225a77e0d3df7499d6215a826ed0cdd21c7553056e69f05e62984281fa2d7e8f

Observation c7e67935-f9b6-4882-8965-81aa5a82b4f7 · outbound

This paper cites FinQA: A dataset of numerical reasoning over financial data.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) FinQA: A dataset of numerical reasoning over financial data

Reference 11

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:47.321879Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:30.190399Z digest=sha256:bea050cf25a4ac75bc7889092864f5e750247347004e079f5acaf0821a7ef106

Observation 9e5ede33-c7bd-4a5f-9c59-f6f524bd36f7 · outbound

This paper cites Trojanrag: Retrieval-augmented generation can be backdoor driver in large language models, 2024.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Trojanrag: Retrieval-augmented generation can be backdoor driver in large language models, 2024

Reference 12

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:47.137367Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:30.356337Z digest=sha256:cf7c1af3f56e57f244bdbe5402a6818b876077198e5f300c023beb0745059226

Observation f60cf567-269b-484b-88ef-6ac38018f281 · outbound

This paper cites Debiased contrastive learning.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Debiased contrastive learning

Reference 13

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:46.941144Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:30.484632Z digest=sha256:db300343636b6204c5cf7fec6ad261091af77c8e89676b8aaccb975c718f8654

Observation 22dcd998-8267-4973-9c6e-4d124faa0e1a · outbound

This paper cites Deepseek-r1: Incentivizing reasoning capability in llms via reinforcement learning, 2025.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Deepseek-r1: Incentivizing reasoning capability in llms via reinforcement learning, 2025

Reference 14

Resolution
unresolved
no resolver link, observed 2026-08-05T15:18:30.624100Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T15:18:30.624100Z digest=sha256:fc356f019aa856946c47ec4f3bd43fbdc8ebdcd3106b008ff9063c3a580a8e10

Observation b27447e8-3b68-44c6-887c-a94726b7c1b9 · outbound

This paper cites Deepseek-v3 technical report, 2025.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Deepseek-v3 technical report, 2025

Reference 15

Resolution
unresolved
no resolver link, observed 2026-08-05T15:18:30.755713Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T15:18:30.755713Z digest=sha256:db2e55c19f1bf55942863aa8c1f801989c7e59f1fdb9143f518ce623e246f443

Observation 7d2ab33f-4c48-477a-9960-3ead9c63aa23 · outbound

This paper cites The philosopher’s stone: Trojaning plugins of large language models.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) The philosopher’s stone: Trojaning plugins of large language models

Reference 16

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:46.765994Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:30.829407Z digest=sha256:a41419592fd36f4e454648745ba2226fec5cf98e947c627e4acaedbdb544b661

Observation 820052b5-cb92-4ae1-a444-79a591bb7b21 · outbound

This paper cites Synthetic disinformation attacks on automated fact verification systems.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Synthetic disinformation attacks on automated fact verification systems

Reference 17

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:46.584153Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:30.988536Z digest=sha256:8a4ce87148835f5b1d8912310ab73b147f6b4682b73103cd9c292958dc974cfc

Observation 5efdf519-e22b-494d-a8d7-4525df41178e · outbound

This paper cites Hot- Flip: White-box adversarial examples for text classification.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Hot- Flip: White-box adversarial examples for text classification

Reference 18

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:46.382053Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:31.095727Z digest=sha256:ded081634879dda41b72e94cbf7a63591508cbe28c04d3d74fd18d0130c95f67

Observation 29bd5bac-4228-4a6e-aa14-c21894a1b4b0 · outbound

This paper cites Defending against knowledge poisoning attacks during retrieval-augmented generation.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Defending against knowledge poisoning attacks during retrieval-augmented generation

Reference 19

Resolution
unresolved
no resolver link, observed 2026-08-05T15:18:31.227679Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T15:18:31.227679Z digest=sha256:38fb4e55249f265893ac21e9158ee40108bb67902f1bc9fa16a5245990391312

Observation 3788abba-d1c1-47c5-ae61-8e6e5b59eb7a · outbound

This paper cites Hugging face: Open-source ai community.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Hugging face: Open-source ai community

Reference 20

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:46.255861Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:31.369728Z digest=sha256:70d179f5ff39b707854d06dfa41b6f00ec22d9bc99dc8613bef9363f52a8b572

Observation e6e4c22f-6fcb-4a2d-b31b-6abcaf20cb44 · outbound

This paper cites Demystifying Prompts in Language Models via Perplexity Estimation.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Demystifying Prompts in Language Models via Perplexity Estimation

Reference 21

Resolution
unresolved
no resolver link, observed 2026-08-05T15:18:31.533223Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T15:18:31.533223Z digest=sha256:345f7d029ad08a28cbe857a63b5cc53cba7c7af45f41d7ad6adb706cb75ffd1c

Observation 9e8dfa07-756b-4741-b17a-a1f803c01888 · outbound

This paper cites Not what you’ve signed up for: Com- promising real-world llm-integrated applications with indirect prompt injection.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Not what you’ve signed up for: Com- promising real-world llm-integrated applications with indirect prompt injection

Reference 22

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:46.111441Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:31.654647Z digest=sha256:7fb013171436d3696ddb7d395ae878a174f210c6af1a8f7b94a49620ddf7e9a5

Observation ef52d9f2-e44b-466b-b6cf-1572c8c57dc4 · outbound

This paper cites Retrieval augmented language model pre-training.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Retrieval augmented language model pre-training

Reference 23

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:45.922497Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:31.829873Z digest=sha256:64ccf9ae4bd97095ca12e10715c14eab62241769b229511b415ebbe1d9f30bd4

Observation e70a30d2-5fcc-45f7-b92b-8a3cbac85ef2 · outbound

This paper cites Aging with grace: Lifelong model editing with discrete key-value adaptors.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Aging with grace: Lifelong model editing with discrete key-value adaptors

Reference 24

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:45.804889Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:31.978083Z digest=sha256:ed69a97ae32c76dada268520388b2207c67c8bd71c1eba4d9f55cbe2b352cb75

Observation fbbc13e1-7cd2-4b10-8d91-3d034e208141 · outbound

This paper cites A survey on hallucination in large language models: Principles, taxonomy, challenges, and open questions.ACM Transactions on Information Systems , 43(2):1–55, 2025.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) A survey on hallucination in large language models: Principles, taxonomy, challenges, and open questions.ACM Transactions on Information Systems , 43(2):1–55, 2025

Reference 25

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:45.669656Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:32.055519Z digest=sha256:5686934d37341d31a6e51c930e4b070ef15c1b26cdbb53464d9fb193bd0a0c4f

Observation 2682d8af-3638-4532-b4a2-50705da6d7d0 · outbound

This paper cites Qwen2.5-Coder Technical Report.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Qwen2.5-Coder Technical Report

Reference 26

Resolution
unresolved
no resolver link, observed 2026-08-05T15:18:32.147743Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T15:18:32.147743Z digest=sha256:840e8060db31643de0cb5ea4f9b0da778f2deef3d6779bcc58c1b04501120404

Observation 0226bb2c-5973-4e92-b4b5-6c0eca2af22d · outbound

This paper cites Unsupervised dense information retrieval with contrastive learning.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Unsupervised dense information retrieval with contrastive learning

Reference 27

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:45.527583Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:32.261127Z digest=sha256:54fb2ac1054f0691053b67035db555450480e4fd7edcf5fca1f82c356b5f14f2

Observation 12c51656-ef2a-41d9-bd34-fce550565746 · outbound

This paper cites Leveraging Passage Retrieval with Generative Models for Open Domain Question Answering.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Leveraging Passage Retrieval with Generative Models for Open Domain Question Answering

Reference 28

Resolution
unresolved
no resolver link, observed 2026-08-05T15:18:32.316307Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T15:18:32.316307Z digest=sha256:86e627adee3031640bf54099b81b08b7cd920d854a554a24ddef6ecdad6685ed

Observation 49b1555e-ccf0-476f-8907-1d048457b1b4 · outbound

This paper cites Atlas: Few-shot learning with retrieval augmented language models.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Atlas: Few-shot learning with retrieval augmented language models

Reference 29

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:45.337037Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:32.436098Z digest=sha256:43c09a77952ed0867c88215dac12674144c6a123b9d86d92fc79eb82b274baaa

Observation 25fffe44-6e47-4c59-b5fa-d35df3341589 · outbound

This paper cites Baseline Defenses for Adversarial Attacks Against Aligned Language Models.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Baseline Defenses for Adversarial Attacks Against Aligned Language Models

Reference 30

Resolution
unresolved
no resolver link, observed 2026-08-05T15:18:32.592658Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T15:18:32.592658Z digest=sha256:a20b23dc2b67340f2ab4731aa45a5b071a51a9739d76cff2bcae6199d2c2c950

Observation d6e69cf5-5f39-41b9-b2fc-f24dd853c922 · outbound

This paper cites Interpolated estimation of markov source parameters from sparse data.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Interpolated estimation of markov source parameters from sparse data

Reference 31

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:45.147882Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:32.697581Z digest=sha256:8725fe2d2cc3dc1a26c58523ba2413df567652ac6063a337510f2630e20e510f

Observation bac2da26-d497-4ef8-9a50-28cb0382ff34 · outbound

This paper cites A Survey on Large Language Models for Code Generation.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) A Survey on Large Language Models for Code Generation

Reference 32

Resolution
unresolved
no resolver link, observed 2026-08-05T15:18:32.857911Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T15:18:32.857911Z digest=sha256:a7afa9b64cbaaac2c6744134831c8e37eff175d3916bb7d8940b8393b9be2a12

Observation 914b416e-d7e7-40c9-b8f1-54a6eb0e3246 · outbound

This paper cites Evaluating LLMs at Detecting Errors in LLM Responses.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Evaluating LLMs at Detecting Errors in LLM Responses

Reference 33

Resolution
unresolved
no resolver link, observed 2026-08-05T15:18:32.971133Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T15:18:32.971133Z digest=sha256:c45a871aa44c831ac761ec09b4736741b03d2fd7f42751e47075b5e5f11c1363

Observation f3cba4a2-152e-490a-8c38-ba223eb65976 · outbound

This paper cites Super- vised contrastive learning.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Super- vised contrastive learning

Reference 34

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:44.980564Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:33.073787Z digest=sha256:417df735db394bb9208166f5cea5199fdb41b02abc745c6b69ea8f60bdeb83e0

Observation 6ade8882-c79a-456d-9110-0fe0122b8fe8 · outbound

This paper cites Large language models are zero-shot reasoners.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Large language models are zero-shot reasoners

Reference 35

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:44.794318Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:33.143869Z digest=sha256:52c20dc9b0e417c94c3ad7f76c65cef568186265d970a117d64aead04eba0829

Observation 830d0e25-51dc-4106-97b4-046a06e6db59 · outbound

This paper cites Natural questions: a benchmark for question answering research.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Natural questions: a benchmark for question answering research

Reference 36

Resolution
unresolved
no resolver link, observed 2026-08-05T15:18:33.241369Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T15:18:33.241369Z digest=sha256:4ab9aa999798d813c8d0794a682aa0da6f45d3593686d7fe5dccb3448d889f56

Observation 89d5db61-e3ba-4ce3-bf6d-1bcbaf85f44f · outbound

This paper cites Retrieval-augmented generation for knowledge- intensive nlp tasks.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Retrieval-augmented generation for knowledge- intensive nlp tasks

Reference 37

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:44.645112Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:33.326092Z digest=sha256:b067fe3340a286a11b2d9aa168f284a0e03402904716690742c9efb1f31d1167

Observation 802859f6-32b5-4a9a-9d0a-c8a9d2d5f946 · outbound

This paper cites Solving quantitative reasoning problems with language models.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Solving quantitative reasoning problems with language models

Reference 38

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:44.489971Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:33.369607Z digest=sha256:5c5c01df39ffe38288dc1ea12f3663b81dfcd35bc92884b4ec9519c276b9871c

Observation f24e23c1-1dc6-46a7-b4cb-e7a745b3411b · outbound

This paper cites Superfiltering: Weak-to-strong data filtering for fast instruction-tuning.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Superfiltering: Weak-to-strong data filtering for fast instruction-tuning

Reference 39

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:44.316321Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:33.440299Z digest=sha256:5f083fa5f1ceaa7ed1c70c6e9c18cccbc42e562295cc37ffd553f0255ebaa8a8

Observation 824e0d85-b6f1-4ab4-bc31-2f47d459d15b · outbound

This paper cites Pmet: precise model editing in a transformer.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Pmet: precise model editing in a transformer

Reference 40

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:44.178913Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:33.538721Z digest=sha256:1270d7c1fa4a3de2f4fc990d8a8f2ae02acf5ab154323d5d1e3c56df68003465

Observation 6757cd66-de00-4152-a8e4-d029d4aaf072 · outbound

This paper cites Graphrag under fire, 2025.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Graphrag under fire, 2025

Reference 41

Resolution
unresolved
no resolver link, observed 2026-08-05T15:18:33.648148Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T15:18:33.648148Z digest=sha256:dd0278274d3d8bf537ccde045e99760110da2d1cc9da835aeb8606151ab15dd6

Observation 8e5ca3fa-e3fb-4aa1-854a-1227d4cd057a · outbound

This paper cites an unresolved cited work.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Unresolved cited work

Reference 42

Resolution
unresolved
raw_fallback, observed 2026-08-05T15:18:44.028379Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:33.726386Z digest=sha256:f7ee5552be513213da45819ea7fabf92c6847f786072b05ec492e2e0b5d1ad24

Observation 42aafb07-dbaa-4875-8c20-b4fc6ea3e4ca · outbound

This paper cites Pre-train, prompt, and predict: A systematic survey of prompting methods in natural language processing.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Pre-train, prompt, and predict: A systematic survey of prompting methods in natural language processing

Reference 43

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:43.726984Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:33.893432Z digest=sha256:4d8c13484e2907d556b32773e206634ba9b1cb51c976703ea036f1640e622da2

Observation 4435b83d-ec90-449c-9044-ac49e45ebe75 · outbound

This paper cites Prompt Injection attack against LLM-integrated Applications.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Prompt Injection attack against LLM-integrated Applications

Reference 44

Resolution
unresolved
no resolver link, observed 2026-08-05T15:18:33.976569Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T15:18:33.976569Z digest=sha256:db1c0d83080a7869f10bc282a723a5bb04ca70632ae8d331babfdf11b25613b4

Observation 5aea91cf-0960-4c00-aef4-e7167af259a0 · outbound

This paper cites Formalizing and benchmarking prompt injection attacks and defenses.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Formalizing and benchmarking prompt injection attacks and defenses

Reference 45

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:43.517783Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:34.028512Z digest=sha256:e322727d2c3f7e2552e71464837746b6b06ae49d81213fa36b97bc697e06bac5

Observation c172727a-ea97-4871-b8e8-160cba06aedb · outbound

This paper cites fixed thinking pattern.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) fixed thinking pattern

Reference 46

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:43.395205Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:34.100070Z digest=sha256:f02c4b9bd3a124bb241f87fcd691b33ced7925a8da82953d517065e95283ec60

Observation 9ab6a138-197b-4240-99a0-d9c257a07106 · outbound

This paper cites Explicit eigenvalue regularization improves sharpness-aware minimization.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Explicit eigenvalue regularization improves sharpness-aware minimization

Reference 47

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:43.278822Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:34.149293Z digest=sha256:381412d2225d76724e23c4ce5e2021210b23134f521e48500831c1c33c638875

Observation 8accfeac-5dbc-4308-b2f6-e09dc0fa53ac · outbound

This paper cites Repackage-proofing android apps.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Repackage-proofing android apps

Reference 48

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:43.066422Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:34.204378Z digest=sha256:e8793c879faf50d7cc8dc06d33cf420acb7d7c365b6b52f4bd84f5f1bd30997c

Observation adb0b244-37e3-47f7-a17c-0c06d3f3cf88 · outbound

This paper cites Self-refine: Iterative refinement with self-feedback.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Self-refine: Iterative refinement with self-feedback

Reference 49

Resolution
unresolved
no resolver link, observed 2026-08-05T15:18:34.265027Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T15:18:34.265027Z digest=sha256:2ab86634639f89133c72392621b4d5d21cde0bf9552a669dc0dded81583de130

Observation 5b57ad28-d1a8-4428-8745-344912be042c · outbound

This paper cites Locating and Editing Factual Associations in GPT.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Locating and Editing Factual Associations in GPT

Reference 50

Resolution
unresolved
no resolver link, observed 2026-08-05T15:18:34.318320Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T15:18:34.318320Z digest=sha256:796c219d669145113042bb2c326ddaef5d199f7ef204149371b546d5b0aace06

Observation 7da12cbd-4511-4542-9c0b-edba40e5333e · outbound

This paper cites Mass editing memory in a transformer.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Mass editing memory in a transformer

Reference 51

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:42.867752Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:34.373723Z digest=sha256:f2e8df4865dd98e213c2c04a4eeb776aa4f0d41dbfb4e08e8fe73baebb293fbc

Observation 8e237f56-a919-4a77-9fd9-0c8047c3bc4a · outbound

This paper cites Fast model editing at scale.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Fast model editing at scale

Reference 52

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:42.716529Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:34.419799Z digest=sha256:1024d5f7a793e9b40d6c1ba895cf65d221f29327724fbd8774d7e41ad8f18ed8

Observation 40916261-de2f-4c64-a6db-3f9db99d061c · outbound

This paper cites Memory-based model editing at scale.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Memory-based model editing at scale

Reference 53

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:42.507125Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:34.489448Z digest=sha256:da7f2eeab895e7299b1d51158a6ea247e6cac48a0ae2a2370784d42d462c7118

Observation 9599ab60-1f0c-44f3-8980-3cdb02a26953 · outbound

This paper cites Ms marco: A human-generated machine reading comprehension dataset.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Ms marco: A human-generated machine reading comprehension dataset

Reference 54

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:42.314551Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:34.574134Z digest=sha256:bc7a195d8ad4b4ddb7a98a7a253c0c396ec81b5916675f3112c634810e9162ea

Observation b2d3b8c0-6b7c-4392-a11a-6818ad90361c · outbound

This paper cites Passage re-ranking with bert, 2020.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Passage re-ranking with bert, 2020

Reference 55

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:42.128099Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:34.629025Z digest=sha256:c04f9354470586c4fdcb8e77c77d12c579d9de5c0b7410f9f5e111ffc0e204ad

Observation 42f775e2-7dfc-4bfe-b1f3-b2bea3f5db04 · outbound

This paper cites Gpt-4 technical report, 2024.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Gpt-4 technical report, 2024

Reference 56

Resolution
unresolved
no resolver link, observed 2026-08-05T15:18:34.680906Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T15:18:34.680906Z digest=sha256:5646c044f306891ccb32a6c25610f526044dbb83a4ed28415794a81a262b5d6a

Observation 732b14db-889f-4d44-a499-7fbb268b2ee4 · outbound

This paper cites gpt-oss-120b & gpt-oss-20b model card.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) gpt-oss-120b & gpt-oss-20b model card

Reference 57

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:41.932854Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:34.761187Z digest=sha256:ec7e56bb8a9af4807838b8f362c0b2c6f3a1c9630b2510abe96a621aae93178d

Observation e8bc2aae-fe5d-44f5-973b-62393fbe13f5 · outbound

This paper cites On the Risk of Misinformation Pollution with Large Language Models.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) On the Risk of Misinformation Pollution with Large Language Models

Reference 58

Resolution
unresolved
no resolver link, observed 2026-08-05T15:18:34.810186Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T15:18:34.810186Z digest=sha256:2ed488b6a60a3e1029d2a7d3a2c9c0a3926dfdbc2db1e8ffd884f4f112db88c2

Observation 5175eb71-0be1-40d9-a066-dbb1718df9a1 · outbound

This paper cites Stress-testing machine generated text detection: Shifting language models writing style to fool detectors.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Stress-testing machine generated text detection: Shifting language models writing style to fool detectors

Reference 59

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:41.723970Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:34.878843Z digest=sha256:f05fda6a2225cd2d1a0c4b662f9d57b9af69289f2f6c74904e99c8044b9eb6c0

Observation 2842a7e2-f8b8-4076-a160-13c03331046c · outbound

This paper cites Ignore Previous Prompt: Attack Techniques For Language Models.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Ignore Previous Prompt: Attack Techniques For Language Models

Reference 60

Resolution
unresolved
no resolver link, observed 2026-08-05T15:18:34.967028Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T15:18:34.967028Z digest=sha256:8714968d3106923de30a4d0713b60e291bb679b9948baec8c20fe4507c8f6f49

Observation a81d89ae-6e41-4344-bb67-f46d5c64b49a · outbound

This paper cites RocketQA: An optimized training approach to dense passage retrieval for open-domain question answering.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) RocketQA: An optimized training approach to dense passage retrieval for open-domain question answering

Reference 61

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:41.464130Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:35.053337Z digest=sha256:775876b4ef64787e10ec8d3e60d75713beb266b0e2846176c632f66f88fc9e46

Observation 765b4711-a084-4d67-834b-d25f057be2d5 · outbound

This paper cites QwQ: Reflect deeply on the boundaries of the unknown.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) QwQ: Reflect deeply on the boundaries of the unknown

Reference 62

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:41.270279Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:35.154397Z digest=sha256:23c855c008ce3be20b00c022f9e2d1b09a9cebf069c6f8fb336eb1ca91350d95

Observation 95c4d7d9-ca33-4b6d-8c26-b3b0159e6359 · outbound

This paper cites I2C-Huelva at SemEval-2024 task 8: Boosting AI-generated text detection with multimodal models and optimized ensembles.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) I2C-Huelva at SemEval-2024 task 8: Boosting AI-generated text detection with multimodal models and optimized ensembles

Reference 63

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:41.044401Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:35.202876Z digest=sha256:b7a2ee228680c30b1983bc826efeac0515c4aa36f5cd82f22ef91b724e2047b8

Observation d61b9e26-74a7-4bbe-b04e-e4c9ee41c09c · outbound

This paper cites Repack me if you can: An anti-repackaging solution based on android virtualization.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Repack me if you can: An anti-repackaging solution based on android virtualization

Reference 64

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:40.853319Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:35.285577Z digest=sha256:1fbf4bbb64fd5810a0223a947e853c5fd89a7166103debe528d5a099367d1f2c

Observation 5dab7ed9-c72b-4268-aa29-e212bb21108b · outbound

This paper cites Poison frogs! targeted clean-label poisoning attacks on neural networks.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Poison frogs! targeted clean-label poisoning attacks on neural networks

Reference 65

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:40.611890Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:35.390136Z digest=sha256:457def048b9e13bbc34dd49fa80a1edcb2803aed50cc1467872c032e69c73ea6

Observation 75a04176-77f5-4f47-a2d1-e054b51a60a9 · outbound

This paper cites Backdoor scanning for deep neural networks through k-arm optimization.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Backdoor scanning for deep neural networks through k-arm optimization

Reference 66

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:40.314326Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:35.467944Z digest=sha256:24b553628d1e8d538b8a5c01bbce1e418c15428caacd8e9817127fe15f2b2067

Observation f489c20f-9bec-4208-8f26-875ad47ee95f · outbound

This paper cites Powernorm: Rethinking batch normalization in transformers.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Powernorm: Rethinking batch normalization in transformers

Reference 67

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:40.118124Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:35.561033Z digest=sha256:b45ff3ddce3dff010ab85e40d9401d09b91ae9a67edaed9498f9a07996c1ed72

Observation e5fd6334-dd59-4d28-85b8-457cdc28ec20 · outbound

This paper cites Reflexion: Language agents with verbal reinforcement learning.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Reflexion: Language agents with verbal reinforcement learning

Reference 68

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:39.928427Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:35.667249Z digest=sha256:c4f29aa3297f9812c1d2a169c4935a2bc389423cc556dee12de4acd4507b8431

Observation a2c6c574-d92e-4016-9556-c0989ba512e1 · outbound

This paper cites Large language models encode clinical knowledge.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Large language models encode clinical knowledge

Reference 69

Resolution
unresolved
no resolver link, observed 2026-08-05T15:18:35.746903Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T15:18:35.746903Z digest=sha256:0b532b2f973657f3d52122e140d8f6e5d9d4d7ed154959f806c76939ed7e80cf

Observation ba4c075b-2131-449f-b30c-1b2a09e9cd9f · outbound

This paper cites Massive Editing for Large Language Models via Meta Learning.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Massive Editing for Large Language Models via Meta Learning

Reference 70

Resolution
unresolved
no resolver link, observed 2026-08-05T15:18:35.887794Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T15:18:35.887794Z digest=sha256:c542d362ccf7fda1c37a6ccecf952b25f9760624eaf58bd097ac8c674b06fa0d

Observation 19d9b696-644f-43cc-9d82-fe81e3f9a17e · outbound

This paper cites Qwen2.5 Technical Report.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Qwen2.5 Technical Report

Reference 71

Resolution
unresolved
no resolver link, observed 2026-08-05T15:18:36.013369Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T15:18:36.013369Z digest=sha256:66633138eb600d9bb81c8a802e29859f1357717170939cde5c2335b800b262d3

Observation 235b85ee-0ecd-45ad-8c79-06d2681ab93f · outbound

This paper cites BEIR: A Heterogenous Benchmark for Zero-shot Evaluation of Information Retrieval Models.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) BEIR: A Heterogenous Benchmark for Zero-shot Evaluation of Information Retrieval Models

Reference 72

Resolution
unresolved
no resolver link, observed 2026-08-05T15:18:36.083612Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T15:18:36.083612Z digest=sha256:db36ccdbfd966f43dabfc774fe31bd4b1baf2d98eba2fd9db475b1a244af67dc

Observation 55ebde51-8a31-4995-bd9d-0e261e3832ee · outbound

This paper cites LLMs cannot find reasoning errors, but can correct them given the error location.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) LLMs cannot find reasoning errors, but can correct them given the error location

Reference 73

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:39.714624Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:36.157921Z digest=sha256:bfabec78c5add9f93bef62e392a2c3ad084e7995930436ee07d6e38d2fe3453d

Observation 4572fae7-f455-4cfb-af79-53c7ac271978 · outbound

This paper cites Neural cleanse: Identifying and miti- gating backdoor attacks in neural networks.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Neural cleanse: Identifying and miti- gating backdoor attacks in neural networks

Reference 74

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:39.487306Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:36.298408Z digest=sha256:b23c122031fd720d30bd27736227a9cbfa41ae39750d23c5ed223e53df7e523a

Observation 4116f134-f0dc-4115-941e-63ece8920079 · outbound

This paper cites Large language models are not fair evaluators.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Large language models are not fair evaluators

Reference 75

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:39.261767Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:36.398958Z digest=sha256:2ae50af0b39674e651fedd30bd2834fc02cd5000bf8fbd939c9f0db957d1bb1e

Observation 3e379488-4064-4492-8cdb-bd1bf5248298 · outbound

This paper cites Self-Consistency Improves Chain of Thought Reasoning in Language Models.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Self-Consistency Improves Chain of Thought Reasoning in Language Models

Reference 76

Resolution
unresolved
no resolver link, observed 2026-08-05T15:18:36.456523Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T15:18:36.456523Z digest=sha256:9481264647cf55026bc444c20d505c8071daca0ae18f35c4951d89353459b697

Observation f4ba0dc7-f794-42dc-a58d-ba88f479d362 · outbound

This paper cites Rethinking the reverse-engineering of trojan triggers.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Rethinking the reverse-engineering of trojan triggers

Reference 77

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:39.062504Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:36.545274Z digest=sha256:d9d83ee0504a81365121f17b82ec67ad10275ecb88e7dbc13496a1fa793ea7ab

Observation fd9d9b56-cc7e-4450-8b44-d1d3de4895fc · outbound

This paper cites Generating sequences by learning to self-correct.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Generating sequences by learning to self-correct

Reference 78

Resolution
unresolved
no resolver link, observed 2026-08-05T15:18:36.655168Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T15:18:36.655168Z digest=sha256:e4b78057b43b4ee1851e38be6306a0e87d8a3b3d7b80dec6c17256e8e6875547

Observation 70312e76-645c-420a-9331-4bab31908e57 · outbound

This paper cites HotpotQA: A Dataset for Diverse, Explainable Multi-hop Question Answering.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) HotpotQA: A Dataset for Diverse, Explainable Multi-hop Question Answering

Reference 79

Resolution
unresolved
no resolver link, observed 2026-08-05T15:18:36.782414Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T15:18:36.782414Z digest=sha256:a187dafdc476d1645fddbd59bd8408b7ab43e586ccb0898333165d0cf4c7cf59

Observation babe2dcc-44a2-4ac6-a8c0-28d8ff7e5e05 · outbound

This paper cites Melo: Enhancing model editing with neuron-indexed dynamic lora.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Melo: Enhancing model editing with neuron-indexed dynamic lora

Reference 80

Resolution
verified fuzzy
raw_fallback, observed 2026-08-05T15:18:38.866598Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:36.861243Z digest=sha256:bd9a461a8af771189020fac50e407acac486ab365ab39c0468f1c65421ec94ec

Observation ad58ddcf-7096-454f-a151-4e085f27729b · outbound

This paper cites Benchmarking Poisoning Attacks against Retrieval-Augmented Generation.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Benchmarking Poisoning Attacks against Retrieval-Augmented Generation

Reference 81

Resolution
unresolved
no resolver link, observed 2026-08-05T15:18:36.938530Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T15:18:36.938530Z digest=sha256:544170ef92f812e87c38ac1d61d1bdbc8b157e4d9d9d815b447a2961776b41ea

Observation fdd741db-c527-4127-8bf4-af3025922256 · outbound

This paper cites an unresolved cited work.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Unresolved cited work

Reference 82

Resolution
unresolved
raw_fallback, observed 2026-08-05T15:18:38.667797Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:37.039083Z digest=sha256:bf77425e9b9413f0b70b73b59b6799b51efb6507ba58892e6463b52ca9f6a93a

Observation f2b911c7-cfd5-487d-abc9-14a1fca88c14 · outbound

This paper cites Poisoning Retrieval Corpora by Injecting Adversarial Passages.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Poisoning Retrieval Corpora by Injecting Adversarial Passages

Reference 83

Resolution
unresolved
no resolver link, observed 2026-08-05T15:18:37.129287Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T15:18:37.129287Z digest=sha256:bfdd4db6dead7ff08a78381e41529b0a958b85b1e3c23bca3046d931d49a3797

Observation 4754624b-1e61-4329-99d3-cfd15157e399 · outbound

This paper cites case_id": 0,.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) case_id": 0,

Reference 84

Resolution
malformed identifier
raw_fallback, observed 2026-08-05T15:18:38.413036Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:37.195476Z digest=sha256:ebdc7615f1fc6df987a74bff118990b7958e29a7637f82b5ada4244986cccd79

Observation 27bab412-d921-4c03-83b9-11d8e0b5e38c · outbound

This paper cites an unresolved cited work.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Unresolved cited work

Reference 2022

Resolution
unresolved
raw_fallback, observed 2026-08-05T15:18:43.897534Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-08-05T15:18:33.770727Z digest=sha256:1019558008a4d4adb370a528bbf2cd58629daa022095c7acaf8fd6ef4297bd1e

Observation 2915ef4d-8d6f-4c45-843c-e4c1052bc8c7 · outbound

This paper cites an unresolved cited work.

DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version) Unresolved cited work

Reference 2023

Resolution
parse uncertain
no resolver link, observed 2026-08-05T15:18:29.375772Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T15:18:29.375772Z digest=sha256:4da342400e62e7809c9016e623d4c2f868e6c8d0fab069627d5d44d5210de073

Pith citing papers

Observation 7c65dd72-7402-4cd4-aeb6-55027e13f911 · inbound

CAM: A Causality-based Analysis Framework for Multi-Agent Code Generation Systems cites this paper.

CAM: A Causality-based Analysis Framework for Multi-Agent Code Generation Systems DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version)

Reference 10

Resolution
unresolved
no resolver link, observed 2026-08-03T05:31:33.371931Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-03T05:31:33.371931Z digest=sha256:ccb625d8c777ed10443ba2c02ceb6f7b57d5b754723af2e8c27e9076e59cb288

Observation f587150e-d17b-4a46-af15-2eaa6d5cefd5 · inbound

Influence Factors on RAG Poisoning cites this paper.

Influence Factors on RAG Poisoning DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version)

Reference 2

Resolution
verified exact
arxiv_id, observed 2026-07-21T01:20:36.348935Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-06-27T12:24:31.349808Z digest=sha256:bac2f881832741af53edca33cc4925474b4172974956416450f2254b444b01d8

Observation 165eb885-42c6-494c-bef0-b2c4a8008985 · inbound

Influence Factors on RAG Poisoning cites this paper.

Influence Factors on RAG Poisoning DisarmRAG: Stealthy Retriever-Centric Poisoning to Disable Self-Correction in Retrieval-Augmented Generation (Extended Version)

Reference 3

Resolution
verified exact
arxiv_id, observed 2026-07-21T01:20:36.348935Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.

source=pdf_text observed=2026-06-27T12:24:31.349808Z digest=sha256:6a8a7e23767791c31439f18e2dd44a8708fe47417f5ab6707a0616f5ec6db56b