{"as_of":"2026-08-13T05:47:00Z","caps":{"database_statements":6,"inbound":100,"outbound":100},"context_digest":"sha256:a067a7ee037b47e86901e9a73958c283db4b79d27da48b9a070db9f5793245bb","coverage":[{"denominator":44,"lane":"reference_resolution","note":"Typed states for the displayed outbound observations.","records_observed":44,"source":"paper_references, paper_reference_links","source_observed_at":"2026-08-10T19:28:46.693004Z","state":"measured"},{"denominator":44,"lane":"standing_notices","note":"One-hop event checks from named stored sources.","records_observed":44,"source":"scholarly_work_events, retraction_status_cache","source_observed_at":"2026-08-12T06:34:41.77262+00:00","state":"measured"},{"denominator":0,"lane":"inbound_itemization","note":"Pith citing papers itemized under the disclosed page cap.","records_observed":0,"source":"paper_references, paper_reference_links","source_observed_at":null,"state":"measured"},{"denominator":1,"lane":"external_citation_measurements","note":"A source-named dated measurement, never combined with another source.","records_observed":0,"source":"cited_works","source_observed_at":null,"state":"measured"}],"external_citation_measurements":[],"inbound":[],"links":{"evidence":"/evidence","html":"/paper/2608.06862/citation-record","integrity":"/paper/2608.06862/integrity","json":"/paper/2608.06862/citation-record.json","paper":"/paper/2608.06862"},"outbound":[{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T19:28:45.755414Z","title":"arXiv preprint arXiv:2511.15080 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":1,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:45.755414Z"},"links":{"citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:738874bbf5c4083e6f436c72df79016b9172c3e44b3f25d7b20e479385d58429","observation_id":"43e2ef8d-198a-4ced-8174-cd886729b0ad","resolution":{"observed_at":"2026-08-10T19:28:45.755414Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2107.03374","last_updated":"2021-07-14T17:16:02Z","snapshot_observed_at":"2026-08-08T11:58:24.516369Z","submitted_at":"2021-07-07T17:41:24Z","title":"Evaluating Large Language Models Trained on Code","version":2},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2107.03374","snapshot_observed_at":"2026-08-10T19:28:45.825458Z","title":"arXiv preprint arXiv:2107.03374 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":2,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:45.825458Z"},"links":{"cited_paper":"/paper/2107.03374","citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:fe194b0118178ce1b178cb02cb6ca88c53dfd073d4ff50472bd959655c6f4ca4","observation_id":"b66b6389-9be0-4b60-8be1-42222d1c72a2","resolution":{"observed_at":"2026-08-10T19:28:45.825458Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2602.08234","last_updated":"2026-02-09T03:17:17Z","snapshot_observed_at":"2026-07-06T22:45:05.823859Z","submitted_at":"2026-02-09T03:17:17Z","title":"SkillRL: Evolving Agents via Recursive Skill-Augmented Reinforcement Learning","version":1},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2602.08234","snapshot_observed_at":"2026-08-10T19:28:45.831298Z","title":"arXiv preprint arXiv:2602.08234 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":3,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:45.831298Z"},"links":{"cited_paper":"/paper/2602.08234","citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:4a1bb8d3519f8bdc1d49cd445cc1ed71b00b9cd116ad4457a3e9a63b99501818","observation_id":"3f88cdeb-eeda-4db7-93af-0a2a227780b3","resolution":{"observed_at":"2026-08-10T19:28:45.831298Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2604.02268","last_updated":"2026-05-15T09:15:24Z","snapshot_observed_at":"2026-07-06T22:51:44.663367Z","submitted_at":"2026-04-02T17:03:05Z","title":"SKILL0: In-Context Agentic Reinforcement Learning for Skill Internalization","version":2},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2604.02268","snapshot_observed_at":"2026-08-10T19:28:45.838108Z","title":"arXiv preprint arXiv:2604.02268 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":4,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:45.838108Z"},"links":{"cited_paper":"/paper/2604.02268","citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:9e23076e888d505302c3a6c5318ef9f9c43cc0c7e440fd630f129fd12130d1d1","observation_id":"a099b9c6-9899-44e3-b796-86cd75483900","resolution":{"observed_at":"2026-08-10T19:28:45.838108Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2604.01687","last_updated":"2026-08-10T23:18:05Z","snapshot_observed_at":"2026-08-13T05:20:21.659998Z","submitted_at":"2026-04-02T06:43:20Z","title":"CoEvoSkills: Self-Evolving Agent Skills via Co-Evolutionary Verification","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2604.01687","snapshot_observed_at":"2026-08-10T19:28:45.845944Z","title":"arXiv preprint arXiv:2604.01687 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":5,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:45.845944Z"},"links":{"cited_paper":"/paper/2604.01687","citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:fec2fc266def842ccf03e5b2b4f0dc1fca33c48654fd4ce24703073577eab94d","observation_id":"f4713435-4566-4e87-86d9-ff35602c6a30","resolution":{"observed_at":"2026-08-10T19:28:45.845944Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T19:28:48.781184Z","title":null,"venue":null,"work_id":"f0fb6cc6-d742-47f8-937b-c268a0d50b08","year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":6,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:45.852809Z"},"links":{"citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:70a1860a82bab3e52f075c7b82f711b82dc4bfbd1d0c5cbf9b65f7f45174033f","observation_id":"de98a34f-9ffe-488c-9970-b210385d80b3","resolution":{"observed_at":"2026-08-10T19:28:48.786480Z","resolver_source":"raw_fallback","status":"parse_uncertain"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T19:28:48.764413Z","title":null,"venue":null,"work_id":"e0ea9f2c-4b59-447b-862f-e25ada6e9728","year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":7,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:45.860465Z"},"links":{"citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:afda42301293ad8e1836b827d8f85e4b99809d052e875ecf6c1af539ad2e477d","observation_id":"7333a7a7-a30e-49d2-bb1e-885520673765","resolution":{"observed_at":"2026-08-10T19:28:48.770063Z","resolver_source":"raw_fallback","status":"unresolved"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T19:28:45.866190Z","title":"Journal of Artificial Intelligence Research , volume=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":8,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:45.866190Z"},"links":{"citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:ff392096ee72030c70698c117e515a03d33514b6fe85cb369d1e73a3bd557c90","observation_id":"156a73bf-d4a4-4fcb-8148-113fdc6cf939","resolution":{"observed_at":"2026-08-10T19:28:45.866190Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T19:28:45.874899Z","title":"arXiv preprint arXiv:2508.09123 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":9,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:45.874899Z"},"links":{"citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:435c0dc7ab555542c200eb542e1cf5a89238305e5302ba6070c6538b6c701752","observation_id":"e746cc0d-c5db-4452-9b83-5d9e7a25616d","resolution":{"observed_at":"2026-08-10T19:28:45.874899Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T19:28:45.880931Z","title":"arXiv preprint arXiv:2601.21123 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":10,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:45.880931Z"},"links":{"citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:9158c7d33042072e63144a8b20a8ec2c4104574e50b8f81db9346b22eb02c3b6","observation_id":"bcca0059-0e2f-4725-bcf6-25bd48500c41","resolution":{"observed_at":"2026-08-10T19:28:45.880931Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2602.12430","last_updated":"2026-06-02T16:14:54Z","snapshot_observed_at":"2026-08-06T11:11:16.632352Z","submitted_at":"2026-02-12T21:33:25Z","title":"Agent Skills for Large Language Models: Architecture, Acquisition, Security, and the Path Forward","version":4},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2602.12430","snapshot_observed_at":"2026-08-10T19:28:45.886216Z","title":"arXiv preprint arXiv:2602.12430 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":11,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:45.886216Z"},"links":{"cited_paper":"/paper/2602.12430","citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:acbbb6e14e2fb30debd41fb645beb9b38a3f7e13cd26ff25720903b83c73d4c4","observation_id":"82109b21-7211-4f5e-bca3-36df44737499","resolution":{"observed_at":"2026-08-10T19:28:45.886216Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2602.12670","last_updated":"2026-03-13T07:33:01Z","snapshot_observed_at":"2026-08-12T09:12:28.700231Z","submitted_at":"2026-02-13T07:06:06Z","title":"SkillsBench: Benchmarking How Well Agent Skills Work Across Diverse Tasks","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2602.12670","snapshot_observed_at":"2026-08-10T19:28:45.894141Z","title":"arXiv preprint arXiv:2602.12670 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":12,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:45.894141Z"},"links":{"cited_paper":"/paper/2602.12670","citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:35887cb6306cbf585acf052313a6d39df82eff77ae977d9132c8265926c734ca","observation_id":"ed1972f7-7169-459f-8bf8-b80f58af0848","resolution":{"observed_at":"2026-08-10T19:28:45.894141Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2603.02766","last_updated":"2026-03-03T09:07:22Z","snapshot_observed_at":"2026-08-04T19:32:12.955430Z","submitted_at":"2026-03-03T09:07:22Z","title":"EvoSkill: Automated Skill Discovery for Multi-Agent Systems","version":1},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2603.02766","snapshot_observed_at":"2026-08-10T19:28:45.899515Z","title":"arXiv preprint arXiv:2603.02766 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":13,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:45.899515Z"},"links":{"cited_paper":"/paper/2603.02766","citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:c6b88a1ea466ca5d47c0e6049537f109f8dff9a17d7ea0c2addfb2c2af12144a","observation_id":"c266d8d3-3519-4254-ad7c-6324a27e7e63","resolution":{"observed_at":"2026-08-10T19:28:45.899515Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2602.20867","last_updated":"2026-02-24T13:11:38Z","snapshot_observed_at":"2026-08-07T21:03:43.270322Z","submitted_at":"2026-02-24T13:11:38Z","title":"SoK: Agentic Skills -- Beyond Tool Use in LLM Agents","version":1},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2602.20867","snapshot_observed_at":"2026-08-10T19:28:45.914881Z","title":"arXiv preprint arXiv:2602.20867 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":14,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:45.914881Z"},"links":{"cited_paper":"/paper/2602.20867","citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:9f61e02223b5aa2fcc724ec9e325f07e6f8102bfb7a2a30a6f39db34a2e82cad","observation_id":"daad93e0-46a1-4138-85d2-513ae8a8e22a","resolution":{"observed_at":"2026-08-10T19:28:45.914881Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T19:28:46.002404Z","title":"arXiv preprint arXiv:2602.14364 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":15,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:46.002404Z"},"links":{"citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:9e1e88c9d18b9956c745c552f44e5bb3f131df14e6e87aba8e017f7dc1448edd","observation_id":"d5af7ddb-f4de-4ca3-81bd-517ae415b0c0","resolution":{"observed_at":"2026-08-10T19:28:46.002404Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2602.14211","last_updated":"2026-06-16T17:33:00Z","snapshot_observed_at":"2026-08-02T23:20:40.869423Z","submitted_at":"2026-02-15T16:09:48Z","title":"SkillJect: Effectively Automating Skill-Based Prompt Injection for Skill-Enabled Agents","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2602.14211","snapshot_observed_at":"2026-08-10T19:28:46.009952Z","title":"arXiv preprint arXiv:2602.14211 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":16,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:46.009952Z"},"links":{"cited_paper":"/paper/2602.14211","citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:2d91aec8d7263a3f6a55ddfc870e335dc2c3c58d1a86198881ec948356f0d1f1","observation_id":"f4bdfc1f-0317-4cc8-8714-c3e228ddbe3f","resolution":{"observed_at":"2026-08-10T19:28:46.009952Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2604.04989","last_updated":"2026-04-05T06:25:11Z","snapshot_observed_at":"2026-08-12T21:37:53.714776Z","submitted_at":"2026-04-05T06:25:11Z","title":"SkillAttack: Automated Red Teaming of Agent Skills through Attack Path Refinement","version":1},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2604.04989","snapshot_observed_at":"2026-08-10T19:28:46.017217Z","title":"arXiv preprint arXiv:2604.04989 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":17,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:46.017217Z"},"links":{"cited_paper":"/paper/2604.04989","citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:7d9c7832839d304645862c4466db2d48d69c6242f7ff7b7ebf5b776b6298b830","observation_id":"25c9661e-de25-4ce1-a6f9-9c917a554d08","resolution":{"observed_at":"2026-08-10T19:28:46.017217Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T19:28:46.023113Z","title":"arXiv preprint arXiv:2603.22447 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":18,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:46.023113Z"},"links":{"citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:3102081a7767806542b8b649d47b61cc7274057f58b035d049840f38b995dfd7","observation_id":"982680db-a6ef-4a35-ae2a-eb105528e897","resolution":{"observed_at":"2026-08-10T19:28:46.023113Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2602.20156","last_updated":"2026-02-25T18:14:01Z","snapshot_observed_at":"2026-08-11T16:43:10.190893Z","submitted_at":"2026-02-23T18:59:27Z","title":"Skill-Inject: Measuring Agent Vulnerability to Skill File Attacks","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2602.20156","snapshot_observed_at":"2026-08-10T19:28:46.030187Z","title":"arXiv preprint arXiv:2602.20156 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":19,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:46.030187Z"},"links":{"cited_paper":"/paper/2602.20156","citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:d4c0a2f693d02671fba3a642f19576ac3fd0ec20f37ebf2085d9c819e13aa049","observation_id":"cc8b9799-27a1-4295-874e-452ce366fda9","resolution":{"observed_at":"2026-08-10T19:28:46.030187Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T19:28:46.036345Z","title":"arXiv preprint arXiv:2602.20720 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":20,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:46.036345Z"},"links":{"citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:14863a1a381ad17a6565032cecc25d60006d6ae967cdc762f066dd9cd3a61135","observation_id":"46c24d28-ac86-4eef-bc7d-8eb181a0e67b","resolution":{"observed_at":"2026-08-10T19:28:46.036345Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T19:28:46.042718Z","title":"arXiv preprint arXiv:2602.08412 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":21,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:46.042718Z"},"links":{"citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:a2ceaf0a56559e0e8fc5af76cb805ccdec989c0b8d466d4273a31a4920928aa7","observation_id":"4e477e8f-49df-4ad8-93b6-fc084a11bdf0","resolution":{"observed_at":"2026-08-10T19:28:46.042718Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T19:28:46.050325Z","title":"arXiv preprint arXiv:2510.08238 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":22,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:46.050325Z"},"links":{"citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:e1dfe13740ad08ce9f4bc998e7107129d5f79498731c0cd9477a858d8a7b659c","observation_id":"3a09f8a5-714c-4aaf-80a7-ce1e2d200b97","resolution":{"observed_at":"2026-08-10T19:28:46.050325Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T19:28:46.116972Z","title":"arXiv preprint arXiv:2502.12575 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":23,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:46.116972Z"},"links":{"citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:a0eb373408098f134d648c6d28e09540b9c9ae96d44b026af4ae7a07a5ef50f5","observation_id":"687a28b2-9a38-468e-9290-e9a40c06a492","resolution":{"observed_at":"2026-08-10T19:28:46.116972Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T19:28:46.239785Z","title":"Advances in neural information processing systems , volume=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":24,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:46.239785Z"},"links":{"citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:f52da5e13690d935482f4350c9cbad29937e35275a94bb7b94e6799d3489c28c","observation_id":"89961545-fc92-45b4-bba6-339986c5d882","resolution":{"observed_at":"2026-08-10T19:28:46.239785Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T19:28:46.334541Z","title":"arXiv preprint arXiv:2601.04566 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":25,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:46.334541Z"},"links":{"citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:8596e159b7b4a7e2b7a82e4b50e2956a136685da6a271ba5ef109149d30c7a6a","observation_id":"1957d3d7-cd66-491c-86c8-d509792b94d4","resolution":{"observed_at":"2026-08-10T19:28:46.334541Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T19:28:46.340332Z","title":"Advances in Neural Information Processing Systems , volume=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":26,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:46.340332Z"},"links":{"citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:346a8ac78637451a41bc5f7efb904714b4d46464fab5d423e6a5a32d2b1f92ef","observation_id":"01decdf3-4e53-4ee7-b134-2f8b85a88aa4","resolution":{"observed_at":"2026-08-10T19:28:46.340332Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T19:28:48.707368Z","title":"Proceedings of the 62nd Annual Meeting of the Association for Computational Linguistics (Volume 1: Long Papers) , pages=","venue":null,"work_id":"a54593d4-6c57-493b-b7dd-11d5e3bbd488","year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":27,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:46.381622Z"},"links":{"citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:49a2f4c932da12d5af0533745b9716ef7094557f38e23ff54c4d93e74fce3ddc","observation_id":"e9b9126d-9876-4460-a1ff-afdc50848841","resolution":{"observed_at":"2026-08-10T19:28:48.713330Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2401.12242","last_updated":"2024-01-20T04:53:35Z","snapshot_observed_at":"2026-08-13T04:38:47.155528Z","submitted_at":"2024-01-20T04:53:35Z","title":"BadChain: Backdoor Chain-of-Thought Prompting for Large Language Models","version":1},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2401.12242","snapshot_observed_at":"2026-08-10T19:28:46.426079Z","title":"arXiv preprint arXiv:2401.12242 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":28,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:46.426079Z"},"links":{"cited_paper":"/paper/2401.12242","citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:aa0218909f9383554b43e12c42d638f114a6d3f74c1355ffd7c4e5e181fe1754","observation_id":"71fa5947-6c13-4f27-8c9c-ee37d71f89d2","resolution":{"observed_at":"2026-08-10T19:28:46.426079Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2510.05159","last_updated":"2026-08-03T18:11:09Z","snapshot_observed_at":"2026-08-07T23:09:07.293633Z","submitted_at":"2025-10-03T12:47:21Z","title":"Malice in Agentland: Down the Rabbit Hole of Backdoors in the AI Supply Chain","version":5},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2510.05159","snapshot_observed_at":"2026-08-10T19:28:46.433571Z","title":"arXiv preprint arXiv:2510.05159 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":29,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:46.433571Z"},"links":{"cited_paper":"/paper/2510.05159","citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:84a76a180f0622bb7c4e654f40c0abeb24b177d8a099fb7bf413d3c3cf55c6f6","observation_id":"b66389c2-5c7a-47cd-ab76-cffe9370fb48","resolution":{"observed_at":"2026-08-10T19:28:46.433571Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2603.00195","last_updated":"2026-08-05T13:43:09Z","snapshot_observed_at":"2026-08-13T03:53:48.921856Z","submitted_at":"2026-02-27T06:21:53Z","title":"Formal Analysis and Supply Chain Security for Agentic AI Skills","version":2},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2603.00195","snapshot_observed_at":"2026-08-10T19:28:46.439770Z","title":"arXiv preprint arXiv:2603.00195 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":30,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:46.439770Z"},"links":{"cited_paper":"/paper/2603.00195","citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:85cfcc4ddcaca4b7e1beab434c76e39801f394198b4495d9f4ced8bcaaaa91a1","observation_id":"436444eb-9fba-4013-95e2-6d312e463968","resolution":{"observed_at":"2026-08-10T19:28:46.439770Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T19:28:46.448825Z","title":"arXiv preprint arXiv:2508.14040 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":31,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:46.448825Z"},"links":{"citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:a6e2147e14df56044e2f483b469178d74509037ff30fdf1b9b69e42e7533e727","observation_id":"34a2c6d6-8dee-464a-abee-eb780e68c0af","resolution":{"observed_at":"2026-08-10T19:28:46.448825Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T19:28:46.454373Z","title":"International Journal of Production Research , pages=","venue":null,"work_id":null,"year":2026},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":32,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:46.454373Z"},"links":{"citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:9553dcfbc774dc534798c88077a751846fbd28e1c5d6b197f8439477c3ba4edc","observation_id":"82ca8b83-8fc8-4f66-b08e-813835823aba","resolution":{"observed_at":"2026-08-10T19:28:46.454373Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2602.19555","last_updated":"2026-04-19T23:16:33Z","snapshot_observed_at":"2026-07-06T22:46:45.213871Z","submitted_at":"2026-02-23T06:57:57Z","title":"SOK: A Taxonomy of Attack Vectors and Defense Strategies for Agentic Supply Chain Runtime","version":2},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2602.19555","snapshot_observed_at":"2026-08-10T19:28:46.460022Z","title":"arXiv preprint arXiv:2602.19555 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":33,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:46.460022Z"},"links":{"cited_paper":"/paper/2602.19555","citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:afb3a42d91c46b901a858ad9ec2dff8f3cf13fccef372db0b9ea2bbb1305ac4b","observation_id":"79b03e47-477d-4bbb-8d84-9c4bbb11b92b","resolution":{"observed_at":"2026-08-10T19:28:46.460022Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T19:28:48.676502Z","title":"Advances in Information and Computer Security: 20th International Workshop on Security, IWSEC 2025, Fukuoka, Japan, November 25--27, 2025, Proceedings , pages=","venue":null,"work_id":"4e36fdbd-602c-41a3-9239-2b09f3820d81","year":2025},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":34,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:46.465443Z"},"links":{"citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:63307029934a065d23101db3d79c335cf685db5f33046bee2c6ce30df216b2cf","observation_id":"7c173154-5b5a-4db6-807a-0d6a6f17c9fc","resolution":{"observed_at":"2026-08-10T19:28:48.682604Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2506.15170","last_updated":"2025-08-01T10:42:39Z","snapshot_observed_at":"2026-08-13T01:46:12.020451Z","submitted_at":"2025-06-18T06:33:19Z","title":"From LLMs to MLLMs to Agents: A Survey of Emerging Paradigms in Jailbreak Attacks and Defenses within LLM Ecosystem","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2506.15170","snapshot_observed_at":"2026-08-10T19:28:46.534696Z","title":"arXiv preprint arXiv:2506.15170 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":35,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:46.534696Z"},"links":{"cited_paper":"/paper/2506.15170","citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:a10eb893e1cb034a07970fe18c50f416a0d0d15461f8c6d4df323f60cf9b2933","observation_id":"54ccdeae-3182-49f1-9aa4-546293ccab5a","resolution":{"observed_at":"2026-08-10T19:28:46.534696Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T19:28:46.648662Z","title":"arXiv preprint arXiv:2602.20708 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":36,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:46.648662Z"},"links":{"citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:d3757de1815c0ee5c7331ea539e42d3b3a7d6ab8199d6fdb770e2dbe0f1c31ea","observation_id":"90b544e1-6bc3-4abb-9589-7c293e88326d","resolution":{"observed_at":"2026-08-10T19:28:46.648662Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T19:28:46.654613Z","title":"arXiv preprint arXiv:2511.13248 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":37,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:46.654613Z"},"links":{"citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:94e955a6239505d585a214a31afcfea1f6236190619a4d6d3fe41c4371438edd","observation_id":"d209f1c1-ea95-49d4-b1ce-ebfcfeb7c2c1","resolution":{"observed_at":"2026-08-10T19:28:46.654613Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T19:28:48.658509Z","title":"ICML 2025 workshop on computer use agents , year=","venue":null,"work_id":"572a3d8f-9271-4b8f-aa50-f017bc4f3a15","year":2025},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":38,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:46.659761Z"},"links":{"citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:fc0dc7790c0e3ed0fa86fb553adeb2d848e8b8706a4ae8ec45206b5fc19d98c1","observation_id":"1bbdddf3-6e26-44ca-b821-e8ca1b2e25bc","resolution":{"observed_at":"2026-08-10T19:28:48.664099Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2407.21783","last_updated":"2024-11-23T23:27:33Z","snapshot_observed_at":"2026-08-10T16:40:37.411115Z","submitted_at":"2024-07-31T17:54:27Z","title":"The Llama 3 Herd of Models","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2407.21783","snapshot_observed_at":"2026-08-10T19:28:46.665102Z","title":"arXiv preprint arXiv:2407.21783 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":39,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:46.665102Z"},"links":{"cited_paper":"/paper/2407.21783","citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:eaecefded2c9ac7fcb3a29222fedb2e46ea3acbf900f04b09240d6d40ad6367a","observation_id":"3396044a-6a44-4af9-a6fe-9097ace6cabd","resolution":{"observed_at":"2026-08-10T19:28:46.665102Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2601.08584","last_updated":"2026-01-13T14:06:03Z","snapshot_observed_at":"2026-08-12T22:11:58.919874Z","submitted_at":"2026-01-13T14:06:03Z","title":"Ministral 3","version":1},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2601.08584","snapshot_observed_at":"2026-08-10T19:28:46.670941Z","title":"arXiv preprint arXiv:2601.08584 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":40,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:46.670941Z"},"links":{"cited_paper":"/paper/2601.08584","citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:99f930e6ebff3e4eb571a7df0880e7afa7a02703930363e5e28f260711f9b200","observation_id":"2d7b507b-3986-4f71-996c-e6f40316e600","resolution":{"observed_at":"2026-08-10T19:28:46.670941Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2604.10577","last_updated":"2026-04-17T07:20:03Z","snapshot_observed_at":"2026-08-12T20:55:55.475630Z","submitted_at":"2026-04-12T10:52:42Z","title":"The Blind Spot of Agent Safety: How Benign User Instructions Expose Critical Vulnerabilities in Computer-Use Agents","version":2},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2604.10577","snapshot_observed_at":"2026-08-10T19:28:46.677112Z","title":"arXiv preprint arXiv:2604.10577 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":41,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:46.677112Z"},"links":{"cited_paper":"/paper/2604.10577","citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:e66a93cd7cda2104a4d92b8cc88df778001461cf90f88d710b20ae223925e71f","observation_id":"fe0c8cee-d5da-475a-b551-edc87f155b9a","resolution":{"observed_at":"2026-08-10T19:28:46.677112Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T19:28:46.682601Z","title":"arXiv preprint arXiv:2601.07779 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":42,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:46.682601Z"},"links":{"citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:ba063b174243c8a08110bdc4150a64595468feb993cd46cc46e588da11d4aefc","observation_id":"66c2e5bf-ae2a-41b7-b787-2718c3c04db5","resolution":{"observed_at":"2026-08-10T19:28:46.682601Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T19:28:48.636665Z","title":null,"venue":null,"work_id":"d0766969-6e7f-4a61-aca8-d88782aefee4","year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":43,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:46.687491Z"},"links":{"citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:ef264100cd044d5b674d531d2c4c662883cdff1cbd3c5050640ac45c60197fde","observation_id":"4bc0d0af-6e3f-401a-bc07-8685f32a4b6f","resolution":{"observed_at":"2026-08-10T19:28:48.643906Z","resolver_source":"raw_fallback","status":"unresolved"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-12T06:34:41.77262+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2604.02947","last_updated":"2026-04-03T10:29:31Z","snapshot_observed_at":"2026-07-29T16:09:43.498926Z","submitted_at":"2026-04-03T10:29:31Z","title":"AgentHazard: A Benchmark for Evaluating Harmful Behavior in Computer-Use Agents","version":1},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2604.02947","snapshot_observed_at":"2026-08-10T19:28:46.693004Z","title":"arXiv preprint arXiv:2604.02947 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains","version":1},"reference_index":44,"source":"arxiv_source","source_observed_at":"2026-08-10T19:28:46.693004Z"},"links":{"cited_paper":"/paper/2604.02947","citing_paper":"/paper/2608.06862"},"observation_digest":"sha256:46a3fbcbe03da85b9289d7669c57ea6339ffd337caf8ebf86199b17368b8c502","observation_id":"f6bf50ff-bd7d-4030-81a5-7793e1f42da7","resolution":{"observed_at":"2026-08-10T19:28:46.693004Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}}],"paper":{"arxiv_id":"2608.06862","last_updated":"2026-08-07T06:39:51Z","latest_version":1,"primary_category":"cs.CR","snapshot_observed_at":"2026-08-12T23:11:25.686454Z","submitted_at":"2026-08-07T06:39:51Z","title":"SynChain: Inducing Computer-Use Agent Systems to Construct Their Own Attack Chains"},"reference_resolution":{"displayed":44,"state_counts":{"malformed_identifier":0,"metadata_mismatch":0,"parse_uncertain":1,"unresolved":40,"verified_exact":0,"verified_fuzzy":3},"total_outbound_references":44},"refusal":"A citation records a reference. It does not transfer a finding from one paper to another.","schema":"pith.paper-citation-record.v1","standing_sources":[{"observed_at":"2026-08-12T06:34:41.77262+00:00","source":"crossref"},{"observed_at":"2026-08-12T06:34:36.333875+00:00","source":"retraction_watch"}],"thesis":"As of 13 August 2026, this Paper Citation Record lists 44 of 44 outbound references and 0 inbound Pith citation observations for arXiv:2608.06862."}