Pith. sign in

Paper Citation Record · LEDGER

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills

As of 6 August 2026, this Paper Citation Record lists 57 of 57 outbound references and 1 inbound Pith citation observation for arXiv:2605.09594.

A citation records a reference. It does not transfer a finding from one paper to another.

pith.paper-citation-record.v1
2605.09594 v1

Coverage vector

measured 57 of 57 reference resolution

Typed states for the displayed outbound observations.

Source: paper_references, paper_reference_links, observed 2026-05-12T03:49:49.484361Z

measured 58 of 58 standing notices

One-hop event checks from named stored sources.

Source: scholarly_work_events, retraction_status_cache, observed 2026-08-06T06:34:29.942622+00:00

measured 1 of 1 inbound itemization

Pith citing papers itemized under the disclosed page cap.

Source: paper_references, paper_reference_links, observed 2026-08-02T00:07:40.428708Z

measured 0 of 1 external citation measurements

A source-named dated measurement, never combined with another source.

Source: cited_works

Reference resolution

57 of 57 outbound references displayed

  • verified exact15
  • verified fuzzy39
  • unresolved1
  • parse uncertain0
  • malformed identifier0
  • metadata mismatch2

External citation measurements

No source-named external measurement is stored.

Outbound references

Observation 02067e9b-1240-403b-96b4-0e473b54d7ab · outbound

This paper cites Repairagent: An autonomous, llm-based agent for program repair.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Repairagent: An autonomous, llm-based agent for program repair

Reference 1

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.493331Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:4193ae75a553d18a454db06f6f5db257168b8855d476273ed2a28b2cd59a08d6

Observation 71d1f4d8-a5d5-4101-b135-0db85f1f41f6 · outbound

This paper cites You name it, i run it: An llm agent to execute tests of arbitrary projects.Proc.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills You name it, i run it: An llm agent to execute tests of arbitrary projects.Proc

Reference 2

Resolution
verified exact
doi, observed 2026-05-12T03:51:19.583771Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:41da64c661df54e23ee1116fbc688b8513fc55c84d1cf4cb8638ca2a4387bc14

Observation 4f16b0a0-1c5a-4530-b8fc-1eb79229ee96 · outbound

This paper cites SWE-agent: Agent-computer interfaces enable automated software engineering.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills SWE-agent: Agent-computer interfaces enable automated software engineering

Reference 3

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.394879Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:6ab68cd12ac6e5fbef661b571e9bd3edf06a593fc186e894ac75a2501f43d05c

Observation 6b0dbc5d-eec0-4f11-a1f6-e3db99ced799 · outbound

This paper cites Github copilot.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Github copilot

Reference 4

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.399487Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:28d37c847b03fda69be857c1155e395ae296a54bfd86822157011234bca3b513

Observation 8fd11a88-0072-4a01-bf24-3f1fdf7160da · outbound

This paper cites an unresolved cited work.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Unresolved cited work

Reference 5

Resolution
unresolved
raw_fallback, observed 2026-05-12T18:01:44.317041Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:5649c0e38fc181477f046cfa3463e133a9ef5697969c9708c418e2087f3b4c99

Observation 5dc58865-deac-4f99-8d63-63fe360e9e7e · outbound

This paper cites Claude code overview.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Claude code overview

Reference 6

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.348351Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:b9fc597fbf5b6fd6c08acea02f3f4c6deedc4575495754bc3e3c708fdea7cca5

Observation fdb99505-6898-4b1a-bcce-29227216bb32 · outbound

This paper cites Introducing codex.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Introducing codex

Reference 7

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.468454Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:521eba2be3073ce2a203f866b82e83cbc322885a55e9c1b96d59db3c0bf681b7

Observation dd685fb3-846f-4f92-98c7-7864b55bb841 · outbound

This paper cites Gemini code assist overview.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Gemini code assist overview

Reference 8

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.448834Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:bdbc791d7097d630e891889607f4075c4360f86f7681d80461dc6ae0311b4b08

Observation 968b23d8-fc35-46d4-bd4d-8e0f76eee4af · outbound

This paper cites We have a package for you! a comprehensive analysis of package hallucinations by code generating llms.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills We have a package for you! a comprehensive analysis of package hallucinations by code generating llms

Reference 9

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.358625Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:0559b026a66b7a4517643365976a2ccfb4cd8417a35a135a00ee9b3694b130c3

Observation c082cdb6-708e-450e-b7be-f4f24370099e · outbound

This paper cites Beyond typosquatting: An in-depth look at package confusion.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Beyond typosquatting: An in-depth look at package confusion

Reference 10

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.478188Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:c0c86d5fe5d342ef1245797776d42c5ea2fbf474e88d41247d8fb10a961c444c

Observation e3a47a5e-7442-44d1-a816-a71f4dbcf850 · outbound

This paper cites Small world with high risks: A study of security threats in the npm ecosystem.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Small world with high risks: A study of security threats in the npm ecosystem

Reference 11

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.443517Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:a84afeacb68a8bf6fc6b6276c3e3760003a9a089731756766faad54e69c16051

Observation 592f6954-57ad-48b6-b430-edb7cdcd22c3 · outbound

This paper cites A survey on hallucination in large language models: Principles, taxonomy, challenges, and open questions.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills A survey on hallucination in large language models: Principles, taxonomy, challenges, and open questions

Reference 12

Resolution
verified exact
doi, observed 2026-05-12T03:51:19.607025Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:4f2e4d6135db1787bb42de5d667635f589be202146474a02d8efcabb9175f2ea

Observation da518a0b-3fba-4ce7-ac95-d8f0262fbf26 · outbound

This paper cites Survey of Hallucination in Natural Language Generation.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Survey of Hallucination in Natural Language Generation

Reference 13

Resolution
verified exact
doi, observed 2026-05-12T03:51:19.602018Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:9816b7740c696bb8bdec2b76bbc43e4f2c91d906168a088e9392980d58807cb6

Observation 0636e794-e453-4960-b353-184af6502cc8 · outbound

This paper cites Importing Phantoms: Measuring LLM Package Hallucination Vulnerabilities.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Importing Phantoms: Measuring LLM Package Hallucination Vulnerabilities

Reference 14

Resolution
verified exact
arxiv_id, observed 2026-05-12T06:56:27.239669Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:4aa2144e4598b18b7e33cc405c7f4b37f9f6687847e2151621073b4168823939

Observation 2c0fbab2-5b32-43f1-be99-2f6ad11082a4 · outbound

This paper cites URLhttps://doi.org/10.1145/3728894.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills URLhttps://doi.org/10.1145/3728894

Reference 15

Resolution
metadata mismatch
doi, observed 2026-05-12T03:51:19.587996Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:5311784caa1be4e9817409be1a0f5be1daca761543dedd1fe165addf0630c860

Observation 0c535f55-dbdc-47e4-ab63-f88ac541ead3 · outbound

This paper cites Skills | claude.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Skills | claude

Reference 16

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.381216Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:222ab3f3c318996bfd2196f2d043aaf28f8eb737870e2ef0f68a6c98e7f693dc

Observation a2175aeb-6a49-4983-be9b-1fd80dfedd27 · outbound

This paper cites Skills | openai api.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Skills | openai api

Reference 17

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.367439Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:51be777df4681783bbd5a41801d8c835af068cae66d97ac11f29eab99dc30048

Observation b4fcaeeb-9145-4cee-901f-44c8927508a3 · outbound

This paper cites Skill-Inject: Measuring Agent Vulnerability to Skill File Attacks.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Skill-Inject: Measuring Agent Vulnerability to Skill File Attacks

Reference 18

Resolution
verified exact
arxiv_id, observed 2026-05-16T08:57:26.226663Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:b1fcf625ca46b33e7cea52d1248026e15f5ed692b2f058a9de7a63ed19584f78

Observation 04aa8c47-efe3-4a5c-af7d-59ec189db109 · outbound

This paper cites "Do Not Mention This to the User": Detecting and Understanding Malicious Agent Skills in the Wild.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills "Do Not Mention This to the User": Detecting and Understanding Malicious Agent Skills in the Wild

Reference 19

Resolution
verified exact
arxiv_id, observed 2026-06-02T04:04:28.114733Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:40a158e49dcc13ea9b15e12cf0b41e36c9cbd82dc2e3a053bf0ec98166a0764b

Observation ff327533-35c1-4ddb-b16d-1a552e55b2d3 · outbound

This paper cites How Your Credentials Are Leaked by LLM Agent Skills: An Empirical Study.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills How Your Credentials Are Leaked by LLM Agent Skills: An Empirical Study

Reference 20

Resolution
verified exact
local_arxiv, observed 2026-05-12T06:56:27.283904Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:ed573175e816aba9d26de0629b96db1840b0ad4b04b1feabbb2394b7dece3ab2

Observation dfa10a12-ef9f-447e-bf46-c69846d48007 · outbound

This paper cites Rules | cursor docs.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Rules | cursor docs

Reference 21

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.489474Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:55c6105c436bef4c7556d7624845c1177b514ef00af11fcf44e4e11e1cf62d76

Observation 6b2e125c-50b3-4c06-82a4-84b1323f579e · outbound

This paper cites Introduction to rules, memories, & workflows.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Introduction to rules, memories, & workflows

Reference 22

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.463691Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:51bb00e041d05332d7a32637c09361c395a1b739145723fa8cb392ef788923c9

Observation c314bea0-d4dd-436f-9dc6-b1fa241b4d61 · outbound

This paper cites Assistantagent | autogen 0.2.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Assistantagent | autogen 0.2

Reference 23

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.403920Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:3b43c7ec005ac5cfb11cb7793da2121ae23b0e3786d9ce76667a975fa900584f

Observation 99fd4ba3-f06d-4324-8959-97d206c31264 · outbound

This paper cites Prompt template format guide - langsmith docs.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Prompt template format guide - langsmith docs

Reference 24

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.409176Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:9d49662425bffa2b53f0331bbd1b3c7ba32aedbbfc9a06ef6c93f6c63597d298

Observation c94de70e-b070-490a-a79a-fff697cc4404 · outbound

This paper cites InProceedings of the 16th ACM Workshop on Artificial Intelligence and Security (AISec @ CCS 2023).

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills InProceedings of the 16th ACM Workshop on Artificial Intelligence and Security (AISec @ CCS 2023)

Reference 25

Resolution
metadata mismatch
arxiv_id, observed 2026-05-12T03:51:19.623632Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:93e5c52d3db61624c42985912ba305bb134d50580954c0ce306c8ff7ba1ae84d

Observation 63290f68-f6e1-41de-a91c-27f34285d784 · outbound

This paper cites InjecAgent: Benchmarking indirect prompt injections in tool-integrated large language model agents.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills InjecAgent: Benchmarking indirect prompt injections in tool-integrated large language model agents

Reference 26

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.459294Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:818faa1261506abdd8f103a70ed3373e2ae209e2647d114f4d944813bd044e6c

Observation 228ac59a-f1d3-4dcc-8f4c-4abf12639562 · outbound

This paper cites Agentdojo: A dynamic environment to evaluate prompt injection attacks and defenses for LLM agents.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Agentdojo: A dynamic environment to evaluate prompt injection attacks and defenses for LLM agents

Reference 27

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.418514Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:461aee1ccd9ebe21c10b671490156d8415b20d65f041016c9db17149db4819a6

Observation 839c6339-2264-4684-8571-81dd64bbdf25 · outbound

This paper cites Poisonedrag: knowledge corruption attacks to retrieval-augmented generation of large language models.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Poisonedrag: knowledge corruption attacks to retrieval-augmented generation of large language models

Reference 28

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.413988Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:d297d05ffd5c4df98fce54462a10eb9f737507b400f9ebd82486b91ec78d3c5b

Observation a5099ca0-172d-4559-9ecf-798fd181ac5a · outbound

This paper cites ConfusedPilot: Confused Deputy Risks in RAG-based LLMs.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills ConfusedPilot: Confused Deputy Risks in RAG-based LLMs

Reference 29

Resolution
verified exact
arxiv_id, observed 2026-05-12T06:56:27.275598Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:39cf83c88993f1c29274cdb2d71f12d39b0c478195732fb1dc45fcc7534886f6

Observation 423a914e-a5f2-4af0-a577-9cf8f54c5f7c · outbound

This paper cites Poison-rag: Adversarial data poisoning attacks on retrieval-augmented generation in recommender systems.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Poison-rag: Adversarial data poisoning attacks on retrieval-augmented generation in recommender systems

Reference 30

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.473689Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:738f753de4471256b07841f0087c84b2936cdd5e53015dec8fe4504277bd6390

Observation d0dda537-668f-4267-805c-b113b7f62666 · outbound

This paper cites Neurogenpoisoning: Neuron-guided attacks on retrieval-augmented generation of LLM via genetic optimization of external knowledge.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Neurogenpoisoning: Neuron-guided attacks on retrieval-augmented generation of LLM via genetic optimization of external knowledge

Reference 31

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.339212Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:9591163fcb37401a6cf8017b0b5c368808c490e489cd20b2103a085a2a6e4727

Observation 84089e00-73f4-43f6-b1d7-dbf0892b6bac · outbound

This paper cites Iterative generation of adversarial example for deep code models.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Iterative generation of adversarial example for deep code models

Reference 32

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.438951Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:c9de1308b9676fd9210c0a27058e250de870293ed61a6c97a06e26bdd8f739a3

Observation 2014e357-d8c8-4549-aa66-b45618bb5223 · outbound

This paper cites Gaussian Processes in Machine Learning.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Gaussian Processes in Machine Learning

Reference 33

Resolution
verified exact
doi, observed 2026-05-12T03:51:19.597410Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:bb2c1d7ab3dcec670c67a45e831e94d7b2a7aa874542ce50dd9a1a67f8d95c99

Observation 87c682b4-cde8-41c8-9a40-9885a2fde65b · outbound

This paper cites A new view of automatic relevance determination.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills A new view of automatic relevance determination

Reference 34

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.385765Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:53c8e489be624dc7982cfd2cd13ebc1279e5a4efa00aab29e1448b548f8b6b20

Observation 09de53e0-b590-4186-b187-2a988ce5e185 · outbound

This paper cites AutoDAN-turbo: A lifelong agent for strategy self-exploration to jailbreak LLMs.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills AutoDAN-turbo: A lifelong agent for strategy self-exploration to jailbreak LLMs

Reference 35

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.329151Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:951a4e42f32b009cedab4f3f306f7a842ef450bf0db2593f28817d6dffdbb9cb

Observation 0ee53f36-3144-4772-b3a8-9ad385c8164e · outbound

This paper cites Llama-3.1-FoundationAI-SecurityLLM-8B-Instruct Technical Report.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Llama-3.1-FoundationAI-SecurityLLM-8B-Instruct Technical Report

Reference 36

Resolution
verified exact
arxiv_id, observed 2026-05-12T06:56:27.301526Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:4209767d76d68ed4c16549c607957b4a5be97bab596e48d531177b7239519f07

Observation 08c5d7b5-7783-402c-9bdf-aa30407e24c6 · outbound

This paper cites Phi-4-Mini Technical Report: Compact yet Powerful Multimodal Language Models via Mixture-of-LoRAs.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Phi-4-Mini Technical Report: Compact yet Powerful Multimodal Language Models via Mixture-of-LoRAs

Reference 37

Resolution
verified exact
local_arxiv, observed 2026-05-12T06:56:27.312250Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:fa38d732e88208ac52e6f7668e102258ab10f3490816067dc0c486a9623bdadb

Observation 09636f7c-0041-4159-878a-ce1e238c681b · outbound

This paper cites Qwen2.5-Coder Technical Report.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Qwen2.5-Coder Technical Report

Reference 38

Resolution
verified exact
local_arxiv, observed 2026-05-12T06:56:27.247028Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:69faee35b25ba71ab62e4be10f512ff30feb02b58792b44935fd2ae947b81089

Observation 2d43b353-308d-45a4-898c-0f4f1818ecde · outbound

This paper cites Learning word vectors for 157 languages.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Learning word vectors for 157 languages

Reference 39

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.485721Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:1a2ef5f531ed8926fdaf66c96bd0d23086784eb17a1c009002edd11b855162a6

Observation 196841e7-701e-4fbf-9e50-a7f753b497b3 · outbound

This paper cites Introducing the ai agent security scanner for ides.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Introducing the ai agent security scanner for ides

Reference 40

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.481657Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:e9e2d223981f1f90bb4cb28d1aa56b0949f428bf06054055d8cd323bd41d6c66

Observation 2624b520-3be1-46f4-a4ed-47da86b5d56e · outbound

This paper cites (2026) Skillrisk — free ai agent skill security scanner.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills (2026) Skillrisk — free ai agent skill security scanner

Reference 41

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.453550Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:0576c127f7bd0f12eb2b1ab8feda2cbe1d9331d7fe824d4be9c4d385973e4a5d

Observation 11f34198-d0af-45e3-80c4-1e3b5838ed0c · outbound

This paper cites Skillcheck by repello ai | ai skill vulnerability scanner.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Skillcheck by repello ai | ai skill vulnerability scanner

Reference 42

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.343799Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:984701e63cb531293d19b349bf8a538e9cd4a19068305498b231ad0007352eff

Observation 23448e4e-936f-4861-b752-08e420c5f79e · outbound

This paper cites Y ARA: The pattern matching swiss knife for malware researchers.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Y ARA: The pattern matching swiss knife for malware researchers

Reference 43

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.376873Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:f9963bc72d73f2adefa8d1d8869605c8b916b0efe0b4858fcd7479015d72dae4

Observation 225a3ad0-378c-45ba-a89f-b753c64a1692 · outbound

This paper cites Snyk agent red teaming.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Snyk agent red teaming

Reference 44

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.434585Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:8c39179cb4210afa7a877fcd4ce71501a6a34223cff11773e139a43f040c18e4

Observation 0d1a25d3-e983-4155-a7f3-6579ac6a1fb8 · outbound

This paper cites Ai agent vulnerabilities — free skill scanner.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Ai agent vulnerabilities — free skill scanner

Reference 45

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.497204Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:e5066e6a96fe9fb637566281a8b52250c74be86e1f1122b53bf7e9f0c655d4f4

Observation b447bf7f-859e-49da-aff9-fd308cae3d88 · outbound

This paper cites Skillprobe: Security auditing for emerging agent skill marketplaces via multi-agent collaboration.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Skillprobe: Security auditing for emerging agent skill marketplaces via multi-agent collaboration

Reference 46

Resolution
verified exact
arxiv_id, observed 2026-05-12T06:56:27.226715Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:6b2655e96a0083747f994b25e6a3e4b5caeedd7d2d206c65cec4190bd986b52c

Observation f50af804-9083-416e-a3a5-f48ab822b033 · outbound

This paper cites Gpt-4.1 sets the standard in automated experiment design using novel python libraries.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Gpt-4.1 sets the standard in automated experiment design using novel python libraries

Reference 47

Resolution
verified exact
doi, observed 2026-05-12T03:51:19.611746Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:67fbcbe28480b839ed87add82c087bb9f387a091d03ddf7f84e05e6716b8be18

Observation 4a3eddc1-f13f-481c-af81-e583f9963d0f · outbound

This paper cites Introducing sandyclaw — the first dynamic sandbox for ai agent skills and prompts.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Introducing sandyclaw — the first dynamic sandbox for ai agent skills and prompts

Reference 48

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.353342Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:0007233c8ae9d4f9d8c317caa709065ee3b107ae468a247c194b7f0b3ad341a4

Observation 3d9a01cc-c020-40aa-945a-ebe29c523442 · outbound

This paper cites Openhands: An open platform for AI software developers as generalist agents.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Openhands: An open platform for AI software developers as generalist agents

Reference 49

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.372477Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:8d6c91130e916774aba3a7fbd8968b188741bd5ef4b5cece26d13284717bc24e

Observation def3a6a9-7de2-46bd-9d9b-186d0074be54 · outbound

This paper cites On faithfulness and factuality in abstractive summarization.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills On faithfulness and factuality in abstractive summarization

Reference 50

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.362843Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:82c51371adae8f06ba9ef3d99aa8690f9d8700565877858e5ff9c15ec5f28a81

Observation b31f7e1f-156c-4985-9791-f89ecd890940 · outbound

This paper cites A comprehensive survey of hallucination in large language, image, video and audio foundation models.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills A comprehensive survey of hallucination in large language, image, video and audio foundation models

Reference 51

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.323047Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:949599f0b232711a26f633a035cd7336ccf3d288b0aae982912ebb4d710ca305

Observation 3fca8b82-9649-468b-83e9-32b0e1ba7453 · outbound

This paper cites Understanding and detecting hallucinations in neural machine translation via model introspection.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Understanding and detecting hallucinations in neural machine translation via model introspection

Reference 52

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.423493Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:b05be0b6e5c43347bf00107237b25b79cb3fbfb58efb7dc09707a9f0a44a16e0

Observation a8dceba1-6b56-4227-9f76-716b795ea221 · outbound

This paper cites Donapi: malicious npm packages detector using behavior sequence knowledge mapping.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Donapi: malicious npm packages detector using behavior sequence knowledge mapping

Reference 53

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.390269Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:6b244fed5d66f813f14902ad6cb10d820aa60c51ee9f53c2ed05c97e8253ae66

Observation efcd3c57-9288-43f7-993f-1e2a4bc7981d · outbound

This paper cites Journey to the center of software supply chain attacks.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Journey to the center of software supply chain attacks

Reference 54

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.334309Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:7c939fc3b5b497f7c40c7e484d71dfffc252c71f4e69bd4315c20bf970406e11

Observation 46db30ba-1785-49ab-894d-4a8f195107ae · outbound

This paper cites Backstabber’s knife collection: A review of open source software supply chain attacks.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Backstabber’s knife collection: A review of open source software supply chain attacks

Reference 55

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.429211Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:709a4b64dca47e8bcaa201e446c544f54ea4fd7bf3ee0435e3e192c928ea463c

Observation d261b9b3-fddb-445f-acd1-2533f43ec498 · outbound

This paper cites Research directions in software supply chain security.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Research directions in software supply chain security

Reference 56

Resolution
verified exact
doi, observed 2026-05-12T03:51:19.592134Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:426cd58c0b0fcfe0ad572d20e0b7f853daa8e3c6dbe8f82f73d62122c26625be

Observation c9ca2dd7-b104-4393-8817-8b2d3fec836b · outbound

This paper cites Ty- posquatting and combosquatting attacks on the python ecosystem.

Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Ty- posquatting and combosquatting attacks on the python ecosystem

Reference 57

Resolution
verified fuzzy
raw_fallback, observed 2026-05-12T18:01:44.311990Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-12T03:49:49.484361Z digest=sha256:a1b9312facad7d3e3764f2a750e63264ea89d870a327592e84aae4009d3ba987

Pith citing papers

Observation d531ca00-90f1-4d5a-98e6-593258582531 · inbound

Setup Complete, Now You Are Compromised: Weaponizing Setup Instructions Against AI Coding Agents cites this paper.

Setup Complete, Now You Are Compromised: Weaponizing Setup Instructions Against AI Coding Agents Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills

Reference 4

Resolution
unresolved
no resolver link, observed 2026-08-02T00:07:40.428708Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-02T00:07:40.428708Z digest=sha256:c86738a33356979a05b87fc3953a039577841c8b01d24f079dbc8ed2936592eb