Typed states for the displayed outbound observations.
Source: paper_references, paper_reference_links, observed 2026-05-12T03:49:49.484361Z
Paper Citation Record · LEDGER
As of 6 August 2026, this Paper Citation Record lists 57 of 57 outbound references and 1 inbound Pith citation observation for arXiv:2605.09594.
A citation records a reference. It does not transfer a finding from one paper to another.
Typed states for the displayed outbound observations.
Source: paper_references, paper_reference_links, observed 2026-05-12T03:49:49.484361Z
One-hop event checks from named stored sources.
Source: scholarly_work_events, retraction_status_cache, observed 2026-08-06T06:34:29.942622+00:00
Pith citing papers itemized under the disclosed page cap.
Source: paper_references, paper_reference_links, observed 2026-08-02T00:07:40.428708Z
A source-named dated measurement, never combined with another source.
Source: cited_works
57 of 57 outbound references displayed
External citation measurements
No source-named external measurement is stored.
Observation 02067e9b-1240-403b-96b4-0e473b54d7ab · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Repairagent: An autonomous, llm-based agent for program repair
Reference 1
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation 71d1f4d8-a5d5-4101-b135-0db85f1f41f6 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills You name it, i run it: An llm agent to execute tests of arbitrary projects.Proc
Reference 2
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation 4f16b0a0-1c5a-4530-b8fc-1eb79229ee96 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills SWE-agent: Agent-computer interfaces enable automated software engineering
Reference 3
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation 6b0dbc5d-eec0-4f11-a1f6-e3db99ced799 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Github copilot
Reference 4
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation 8fd11a88-0072-4a01-bf24-3f1fdf7160da · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Unresolved cited work
Reference 5
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation 5dc58865-deac-4f99-8d63-63fe360e9e7e · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Claude code overview
Reference 6
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation fdb99505-6898-4b1a-bcce-29227216bb32 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Introducing codex
Reference 7
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation dd685fb3-846f-4f92-98c7-7864b55bb841 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Gemini code assist overview
Reference 8
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation 968b23d8-fc35-46d4-bd4d-8e0f76eee4af · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills We have a package for you! a comprehensive analysis of package hallucinations by code generating llms
Reference 9
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation c082cdb6-708e-450e-b7be-f4f24370099e · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Beyond typosquatting: An in-depth look at package confusion
Reference 10
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation e3a47a5e-7442-44d1-a816-a71f4dbcf850 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Small world with high risks: A study of security threats in the npm ecosystem
Reference 11
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation 592f6954-57ad-48b6-b430-edb7cdcd22c3 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills A survey on hallucination in large language models: Principles, taxonomy, challenges, and open questions
Reference 12
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation da518a0b-3fba-4ce7-ac95-d8f0262fbf26 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Survey of Hallucination in Natural Language Generation
Reference 13
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation 0636e794-e453-4960-b353-184af6502cc8 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Importing Phantoms: Measuring LLM Package Hallucination Vulnerabilities
Reference 14
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation 2c0fbab2-5b32-43f1-be99-2f6ad11082a4 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills URLhttps://doi.org/10.1145/3728894
Reference 15
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation 0c535f55-dbdc-47e4-ab63-f88ac541ead3 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Skills | claude
Reference 16
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation a2175aeb-6a49-4983-be9b-1fd80dfedd27 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Skills | openai api
Reference 17
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation b4fcaeeb-9145-4cee-901f-44c8927508a3 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Skill-Inject: Measuring Agent Vulnerability to Skill File Attacks
Reference 18
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation 04aa8c47-efe3-4a5c-af7d-59ec189db109 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills "Do Not Mention This to the User": Detecting and Understanding Malicious Agent Skills in the Wild
Reference 19
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation ff327533-35c1-4ddb-b16d-1a552e55b2d3 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills How Your Credentials Are Leaked by LLM Agent Skills: An Empirical Study
Reference 20
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation dfa10a12-ef9f-447e-bf46-c69846d48007 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Rules | cursor docs
Reference 21
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation 6b2e125c-50b3-4c06-82a4-84b1323f579e · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Introduction to rules, memories, & workflows
Reference 22
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation c314bea0-d4dd-436f-9dc6-b1fa241b4d61 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Assistantagent | autogen 0.2
Reference 23
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation 99fd4ba3-f06d-4324-8959-97d206c31264 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Prompt template format guide - langsmith docs
Reference 24
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation c94de70e-b070-490a-a79a-fff697cc4404 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills InProceedings of the 16th ACM Workshop on Artificial Intelligence and Security (AISec @ CCS 2023)
Reference 25
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation 63290f68-f6e1-41de-a91c-27f34285d784 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills InjecAgent: Benchmarking indirect prompt injections in tool-integrated large language model agents
Reference 26
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation 228ac59a-f1d3-4dcc-8f4c-4abf12639562 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Agentdojo: A dynamic environment to evaluate prompt injection attacks and defenses for LLM agents
Reference 27
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation 839c6339-2264-4684-8571-81dd64bbdf25 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Poisonedrag: knowledge corruption attacks to retrieval-augmented generation of large language models
Reference 28
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation a5099ca0-172d-4559-9ecf-798fd181ac5a · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills ConfusedPilot: Confused Deputy Risks in RAG-based LLMs
Reference 29
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation 423a914e-a5f2-4af0-a577-9cf8f54c5f7c · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Poison-rag: Adversarial data poisoning attacks on retrieval-augmented generation in recommender systems
Reference 30
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation d0dda537-668f-4267-805c-b113b7f62666 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Neurogenpoisoning: Neuron-guided attacks on retrieval-augmented generation of LLM via genetic optimization of external knowledge
Reference 31
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation 84089e00-73f4-43f6-b1d7-dbf0892b6bac · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Iterative generation of adversarial example for deep code models
Reference 32
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation 2014e357-d8c8-4549-aa66-b45618bb5223 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Gaussian Processes in Machine Learning
Reference 33
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation 87c682b4-cde8-41c8-9a40-9885a2fde65b · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills A new view of automatic relevance determination
Reference 34
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation 09de53e0-b590-4186-b187-2a988ce5e185 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills AutoDAN-turbo: A lifelong agent for strategy self-exploration to jailbreak LLMs
Reference 35
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation 0ee53f36-3144-4772-b3a8-9ad385c8164e · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Llama-3.1-FoundationAI-SecurityLLM-8B-Instruct Technical Report
Reference 36
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation 08c5d7b5-7783-402c-9bdf-aa30407e24c6 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Phi-4-Mini Technical Report: Compact yet Powerful Multimodal Language Models via Mixture-of-LoRAs
Reference 37
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation 09636f7c-0041-4159-878a-ce1e238c681b · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Qwen2.5-Coder Technical Report
Reference 38
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation 2d43b353-308d-45a4-898c-0f4f1818ecde · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Learning word vectors for 157 languages
Reference 39
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation 196841e7-701e-4fbf-9e50-a7f753b497b3 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Introducing the ai agent security scanner for ides
Reference 40
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation 2624b520-3be1-46f4-a4ed-47da86b5d56e · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills (2026) Skillrisk — free ai agent skill security scanner
Reference 41
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation 11f34198-d0af-45e3-80c4-1e3b5838ed0c · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Skillcheck by repello ai | ai skill vulnerability scanner
Reference 42
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation 23448e4e-936f-4861-b752-08e420c5f79e · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Y ARA: The pattern matching swiss knife for malware researchers
Reference 43
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation 225a3ad0-378c-45ba-a89f-b753c64a1692 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Snyk agent red teaming
Reference 44
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation 0d1a25d3-e983-4155-a7f3-6579ac6a1fb8 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Ai agent vulnerabilities — free skill scanner
Reference 45
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation b447bf7f-859e-49da-aff9-fd308cae3d88 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Skillprobe: Security auditing for emerging agent skill marketplaces via multi-agent collaboration
Reference 46
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation f50af804-9083-416e-a3a5-f48ab822b033 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Gpt-4.1 sets the standard in automated experiment design using novel python libraries
Reference 47
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation 4a3eddc1-f13f-481c-af81-e583f9963d0f · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Introducing sandyclaw — the first dynamic sandbox for ai agent skills and prompts
Reference 48
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation 3d9a01cc-c020-40aa-945a-ebe29c523442 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Openhands: An open platform for AI software developers as generalist agents
Reference 49
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation def3a6a9-7de2-46bd-9d9b-186d0074be54 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills On faithfulness and factuality in abstractive summarization
Reference 50
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation b31f7e1f-156c-4985-9791-f89ecd890940 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills A comprehensive survey of hallucination in large language, image, video and audio foundation models
Reference 51
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation 3fca8b82-9649-468b-83e9-32b0e1ba7453 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Understanding and detecting hallucinations in neural machine translation via model introspection
Reference 52
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation a8dceba1-6b56-4227-9f76-716b795ea221 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Donapi: malicious npm packages detector using behavior sequence knowledge mapping
Reference 53
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation efcd3c57-9288-43f7-993f-1e2a4bc7981d · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Journey to the center of software supply chain attacks
Reference 54
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation 46db30ba-1785-49ab-894d-4a8f195107ae · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Backstabber’s knife collection: A review of open source software supply chain attacks
Reference 55
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation d261b9b3-fddb-445f-acd1-2533f43ec498 · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Research directions in software supply chain security
Reference 56
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation c9ca2dd7-b104-4393-8817-8b2d3fec836b · outbound
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills Ty- posquatting and combosquatting attacks on the python ecosystem
Reference 57
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.
Observation d531ca00-90f1-4d5a-98e6-593258582531 · inbound
Setup Complete, Now You Are Compromised: Weaponizing Setup Instructions Against AI Coding Agents Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills
Reference 4
Source-reported events for the cited work
Unavailable: canonical work link unavailable.