Pith. sign in

Paper Citation Record · LEDGER

Tensor Trust: Interpretable Prompt Injection Attacks from an Online Game

As of 21 August 2026, this Paper Citation Record lists 0 of 0 outbound references and 26 inbound Pith citation observations for arXiv:2311.01011.

A citation records a reference. It does not transfer a finding from one paper to another.

pith.paper-citation-record.v1
2311.01011 v1

Coverage vector

measured 0 of 0 reference resolution

Typed states for the displayed outbound observations.

Source: paper_references, paper_reference_links

measured 26 of 26 standing notices

One-hop event checks from named stored sources.

Source: scholarly_work_events, retraction_status_cache, observed 2026-08-21T06:32:19.484+00:00

measured 26 of 26 inbound itemization

Pith citing papers itemized under the disclosed page cap.

Source: paper_references, paper_reference_links, observed 2026-08-16T04:43:52.286416Z

measured 1 of 1 external citation measurements

A source-named dated measurement, never combined with another source.

Source: arxiv_reference, observed 2026-08-05T02:28:24.338817Z

Reference resolution

0 of 0 outbound references displayed

  • verified exact0
  • verified fuzzy0
  • unresolved0
  • parse uncertain0
  • malformed identifier0
  • metadata mismatch0

External citation measurements

8
arxiv_reference, observed 2026-08-05T02:28:24.338817Z

Outbound references

No outbound reference observations are available for this paper version.

Pith citing papers

Observation f0d73d40-c8a6-4ba5-a8ec-8bf505f5eccb · inbound

Generative Models and Connected and Automated Vehicles: A Survey in Exploring the Intersection of Transportation and AI cites this paper.

Generative Models and Connected and Automated Vehicles: A Survey in Exploring the Intersection of Transportation and AI Tensor Trust: Interpretable Prompt Injection Attacks from an Online Game

Reference 19

Resolution
verified exact
arxiv_id, observed 2026-05-24T02:48:47.330084Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-21T06:32:19.484+00:00.

source=pdf_text observed=2026-05-24T02:48:10.934475Z digest=sha256:31173dfa1e19f2c9bf52cc91908bd7fbf8d483f125b6867cbd6dc505986ae4a7

Observation d629e88a-7f94-45c8-ac53-8a0ce87dc0db · inbound

AgentDojo: A Dynamic Environment to Evaluate Prompt Injection Attacks and Defenses for LLM Agents cites this paper.

AgentDojo: A Dynamic Environment to Evaluate Prompt Injection Attacks and Defenses for LLM Agents Tensor Trust: Interpretable Prompt Injection Attacks from an Online Game

Reference 57

Resolution
verified exact
arxiv_id, observed 2026-05-13T06:35:13.366955Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-21T06:32:19.484+00:00.

source=pdf_text observed=2026-05-13T06:35:13.331872Z digest=sha256:201bbbde0001203df5ad9531c119d7857e97b56720906dd71519782b6a8e6cb6

Observation 51473f95-fcc1-4c69-84ca-cb5a0967a77a · inbound

Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents cites this paper.

Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents Tensor Trust: Interpretable Prompt Injection Attacks from an Online Game

Reference 134

Resolution
verified exact
arxiv_id, observed 2026-05-12T13:36:57.179278Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-21T06:32:19.484+00:00.

source=arxiv_source observed=2026-05-12T13:36:57.011451Z digest=sha256:56ebbf5e682e2f44b49f6daafe12d05cc665240f30059d498333f6848e7d8726

Observation f3e12a6f-b945-4e18-8fda-c097b9d71b00 · inbound

LLM360 K2: Building a 65B 360-Open-Source Large Language Model from Scratch cites this paper.

LLM360 K2: Building a 65B 360-Open-Source Large Language Model from Scratch Tensor Trust: Interpretable Prompt Injection Attacks from an Online Game

Reference 139

Resolution
unresolved
no resolver link, observed 2026-08-10T20:54:02.468214Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=arxiv_source observed=2026-08-10T20:54:02.468214Z digest=sha256:3a04291c198155a729ad72fda41dcc8bd73a16dce34abdc7dee4f09aeee610ef

Observation ce4fc64e-507e-463b-bbe5-50f281f57f23 · inbound

The Illusion of Role Separation: Hidden Shortcuts in LLM Role Learning (and How to Fix Them) cites this paper.

The Illusion of Role Separation: Hidden Shortcuts in LLM Role Learning (and How to Fix Them) Tensor Trust: Interpretable Prompt Injection Attacks from an Online Game

Reference 6

Resolution
unresolved
no resolver link, observed 2026-08-16T04:43:52.286416Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-16T04:43:52.286416Z digest=sha256:51d044223d55951a8dafbb7111116ed7f2055b58fa3ece535751a6fd77adb541

Observation 9caed535-1b1e-43ca-9b47-4a496ded3145 · inbound

POISONCRAFT: Practical Poisoning of Retrieval-Augmented Generation for Large Language Models cites this paper.

POISONCRAFT: Practical Poisoning of Retrieval-Augmented Generation for Large Language Models Tensor Trust: Interpretable Prompt Injection Attacks from an Online Game

Reference 28

Resolution
unresolved
no resolver link, observed 2026-08-15T22:43:06.014345Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-15T22:43:06.014345Z digest=sha256:e98bad5cb0dde45882f9ebe24bb1130699ee8f875c4bbf1436bc24e33f2af178

Observation 143a350b-7628-4b78-9856-7fb72f059a06 · inbound

Simple Prompt Injection Attacks Can Leak Personal Data Observed by LLM Agents During Task Execution cites this paper.

Simple Prompt Injection Attacks Can Leak Personal Data Observed by LLM Agents During Task Execution Tensor Trust: Interpretable Prompt Injection Attacks from an Online Game

Reference 41

Resolution
unresolved
no resolver link, observed 2026-08-07T11:59:26.298515Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-07T11:59:26.298515Z digest=sha256:10431020c93c9709097716f391e315d99656c7a2d4d6b3d46630eddcfb6fb22a

Observation b71b49a1-7392-4df8-80af-f4a4e28d0588 · inbound

JavelinGuard: Low-Cost Transformer Architectures for LLM Security cites this paper.

JavelinGuard: Low-Cost Transformer Architectures for LLM Security Tensor Trust: Interpretable Prompt Injection Attacks from an Online Game

Reference 48

Resolution
unresolved
no resolver link, observed 2026-08-07T05:41:25.500880Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=arxiv_source observed=2026-08-07T05:41:25.500880Z digest=sha256:45f07be240e6837a53efad2cef7db461ca83ec42a6fa7e1aaa3f18b378f1b3cb

Observation b8553c24-fc90-4633-9db7-1c66e6a638ba · inbound

Provably Secure Retrieval-Augmented Generation cites this paper.

Provably Secure Retrieval-Augmented Generation Tensor Trust: Interpretable Prompt Injection Attacks from an Online Game

Reference 67

Resolution
unresolved
no resolver link, observed 2026-08-06T05:56:20.374600Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-06T05:56:20.374600Z digest=sha256:495b04751e4b6e6a3e30d9d695aff5b94e1872d07c72d2f1fe21bd6948ad9f70

Observation 5c03889a-82f0-4b39-bf67-ea4dcf4822fe · inbound

Transferable Direct Prompt Injection via Activation-Guided MCMC Sampling cites this paper.

Transferable Direct Prompt Injection via Activation-Guided MCMC Sampling Tensor Trust: Interpretable Prompt Injection Attacks from an Online Game

Reference 29

Resolution
unresolved
no resolver link, observed 2026-08-04T22:01:57.960028Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=arxiv_source observed=2026-08-04T22:01:57.960028Z digest=sha256:b3d53196192b2ee28a079b12f9deeb54b2fc0282320ade7a1c608e90f95643c6

Observation 78279eed-d985-4b15-8846-15b52593e725 · inbound

MetaBreak: Jailbreaking Online LLM Services via Special Token Manipulation cites this paper.

MetaBreak: Jailbreaking Online LLM Services via Special Token Manipulation Tensor Trust: Interpretable Prompt Injection Attacks from an Online Game

Reference 44

Resolution
unresolved
no resolver link, observed 2026-08-04T10:22:08.545695Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-04T10:22:08.545695Z digest=sha256:41a9ee4f40499fc00c4bbacdff3046d82896360e51f694017b6e030926bb71ce

Observation 10072e46-9cfd-43f8-941e-890405c024ae · inbound

Reasoning Up the Instruction Ladder for Controllable Language Models cites this paper.

Reasoning Up the Instruction Ladder for Controllable Language Models Tensor Trust: Interpretable Prompt Injection Attacks from an Online Game

Reference 36

Resolution
unresolved
no resolver link, observed 2026-08-04T07:07:55.586337Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=arxiv_source observed=2026-08-04T07:07:55.586337Z digest=sha256:6ebfef01418050a5f1c35aa5b716281dd03ffcdb085b6753ccbe1b821042a501

Observation 39bdd794-c5e6-473b-a16e-356f951ca5cd · inbound

SALLIE: Generation-Free Hidden-State Detection of Jailbreaks and Prompt Injections Across Text and Vision cites this paper.

SALLIE: Generation-Free Hidden-State Detection of Jailbreaks and Prompt Injections Across Text and Vision Tensor Trust: Interpretable Prompt Injection Attacks from an Online Game

Reference 26

Resolution
metadata mismatch
arxiv_id, observed 2026-05-10T23:30:51.262802Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-21T06:32:19.484+00:00.

source=pdf_text observed=2026-05-10T19:04:46.426969Z digest=sha256:dba3e73238c701b15505c13c6a7f06d965a077834b774a3bb75d1e22bac24c2f

Observation 526694a7-2747-4715-8e7f-79a420bc1c55 · inbound

Jailbreaking the Matrix: Nullspace Steering for Controlled Model Subversion cites this paper.

Jailbreaking the Matrix: Nullspace Steering for Controlled Model Subversion Tensor Trust: Interpretable Prompt Injection Attacks from an Online Game

Reference 15

Resolution
verified exact
arxiv_id, observed 2026-05-11T10:46:04.339281Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-21T06:32:19.484+00:00.

source=arxiv_source observed=2026-05-10T15:19:46.920899Z digest=sha256:8b5cc9554f172c2eb910cc0a922f912576135b2d8767a1cd5cb0848ea178095d

Observation 39ba00f4-2947-4a49-91fd-d7ceb65d3d01 · inbound

Representation-Guided Parameter-Efficient LLM Unlearning cites this paper.

Representation-Guided Parameter-Efficient LLM Unlearning Tensor Trust: Interpretable Prompt Injection Attacks from an Online Game

Reference 45

Resolution
verified exact
arxiv_id, observed 2026-05-10T06:06:19.359492Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-21T06:32:19.484+00:00.

source=arxiv_source observed=2026-05-10T06:01:46.885030Z digest=sha256:884e2e5b4f13c49c3ae450804984ffdf7de8e574f279cb4f03ec710fb7bea2ed

Observation 59e7711c-e2f1-4770-8ed0-92b4b4c814b7 · inbound

Evaluation of Prompt Injection Defenses in Large Language Models cites this paper.

Evaluation of Prompt Injection Defenses in Large Language Models Tensor Trust: Interpretable Prompt Injection Attacks from an Online Game

Reference 15

Resolution
verified exact
arxiv_id, observed 2026-05-11T21:21:12.067435Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-21T06:32:19.484+00:00.

source=pdf_text observed=2026-05-08T05:50:20.608166Z digest=sha256:eeab1c73fdc3c36faa4e3b338b701e4885a8544b6c16b877aa2edf82517e8d2c

Observation e107ed0c-088d-49f8-9409-92d132a994c7 · inbound

Evaluation of Prompt Injection Defenses in Large Language Models cites this paper.

Evaluation of Prompt Injection Defenses in Large Language Models Tensor Trust: Interpretable Prompt Injection Attacks from an Online Game

Reference 15

Resolution
verified exact
arxiv_id, observed 2026-05-14T21:19:28.486598Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-21T06:32:19.484+00:00.

source=pdf_text observed=2026-05-14T21:05:23.800356Z digest=sha256:0d28a1e200d4b75dbd4dc40e073682ef41666120787bb801c2344fad3c270b44

Observation 984cb9b8-92d1-48ef-9658-5114dd70c620 · inbound

A Comparative Evaluation of AI Agent Security Guardrails cites this paper.

A Comparative Evaluation of AI Agent Security Guardrails Tensor Trust: Interpretable Prompt Injection Attacks from an Online Game

Reference 4

Resolution
verified exact
arxiv_id, observed 2026-05-11T22:26:14.788649Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-21T06:32:19.484+00:00.

source=arxiv_source observed=2026-05-08T02:45:51.022758Z digest=sha256:3df4a4bab345c5efd0b5c88d222928de1efac4c1a9e56893d22c5f1d19a5c4ea

Observation 35d95809-b566-42fc-902c-9b0a9604d750 · inbound

PAAC: Privacy-Aware Agentic Device-Cloud Collaboration cites this paper.

PAAC: Privacy-Aware Agentic Device-Cloud Collaboration Tensor Trust: Interpretable Prompt Injection Attacks from an Online Game

Reference 42

Resolution
verified exact
arxiv_id, observed 2026-05-12T08:31:23.752832Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-21T06:32:19.484+00:00.

source=pdf_text observed=2026-05-12T01:05:56.688392Z digest=sha256:7d8c8eee8c87a78b75ff5383c39aa36fbc04797ab6d0a085be9662fa123af7df

Observation 0d4bc74b-e705-43e2-90b4-530dca9e7a67 · inbound

IPI-proxy: An Intercepting Proxy for Red-Teaming Web-Browsing AI Agents Against Indirect Prompt Injection cites this paper.

IPI-proxy: An Intercepting Proxy for Red-Teaming Web-Browsing AI Agents Against Indirect Prompt Injection Tensor Trust: Interpretable Prompt Injection Attacks from an Online Game

Reference 14

Resolution
verified exact
arxiv_id, observed 2026-05-13T05:47:21.300470Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-21T06:32:19.484+00:00.

source=pdf_text observed=2026-05-13T05:46:07.132408Z digest=sha256:49852e2680a2537bc8b4186d329e21c764f6c473161ad0ee5e2b5e9fdae06f70

Observation 48cb3bbc-1951-4ac0-aa21-f313eafe9be7 · inbound

Sleeper Channels and Provenance Gates: Persistent Prompt Injection in Always-on Autonomous AI Agents cites this paper.

Sleeper Channels and Provenance Gates: Persistent Prompt Injection in Always-on Autonomous AI Agents Tensor Trust: Interpretable Prompt Injection Attacks from an Online Game

Reference 12

Resolution
verified exact
arxiv_id, observed 2026-05-14T18:22:33.624660Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-21T06:32:19.484+00:00.

source=pdf_text observed=2026-05-14T18:21:06.872045Z digest=sha256:a1b114aed1bdaa04e3f5608146f13c42a3699b8ffe557ab6d031b9c98e46d9d2

Observation 1a3ed555-9489-434a-83ab-605566dcd692 · inbound

Provably Secure Agent Guardrail cites this paper.

Provably Secure Agent Guardrail Tensor Trust: Interpretable Prompt Injection Attacks from an Online Game

Reference 50

Resolution
verified exact
arxiv_id, observed 2026-06-29T07:53:14.261536Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-21T06:32:19.484+00:00.

source=pdf_text observed=2026-06-29T07:43:17.593344Z digest=sha256:159dbf019dd4bedbf25629c4f2de3f350cf4f31c5e70576afc224432028246bb

Observation e4e368db-bb0f-4d04-87df-9f997832e56f · inbound

Evaluating using Mock Tool Calls to Quarantine Untrusted Prompt Inputs cites this paper.

Evaluating using Mock Tool Calls to Quarantine Untrusted Prompt Inputs Tensor Trust: Interpretable Prompt Injection Attacks from an Online Game

Reference 2

Resolution
verified exact
arxiv_id, observed 2026-06-29T07:33:13.755760Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-21T06:32:19.484+00:00.

source=pdf_text observed=2026-06-29T07:29:36.706000Z digest=sha256:822f7a87b81cfdec5db0962d3df84e84ce6b38621ca550dfe5f778a64c11c147

Observation 93a37971-8fc0-4dff-9f1c-01821804ba7c · inbound

Caught in the Act(ivation): Toward Pre-Output and Multi-Turn Detection of Credential Exfiltration by LLM Agents cites this paper.

Caught in the Act(ivation): Toward Pre-Output and Multi-Turn Detection of Credential Exfiltration by LLM Agents Tensor Trust: Interpretable Prompt Injection Attacks from an Online Game

Reference 16

Resolution
metadata mismatch
arxiv_id, observed 2026-07-02T04:16:36.022333Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-21T06:32:19.484+00:00.

source=pdf_text observed=2026-06-28T09:15:57.044886Z digest=sha256:3dc5012dcbc0e0cbdbbec40948a2df64eeb467f3f37af55e80e052eefd70ba66

Observation 25def97d-8005-4c05-93a2-295855a21966 · inbound

Steering Instruction Hierarchies at Inference Time cites this paper.

Steering Instruction Hierarchies at Inference Time Tensor Trust: Interpretable Prompt Injection Attacks from an Online Game

Reference 17

Resolution
unresolved
no resolver link, observed 2026-08-01T00:29:36.409779Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=arxiv_source observed=2026-08-01T00:29:36.409779Z digest=sha256:00e212579f2e08e6bf200dddd6696f607ada244e338fe48b4ed5a5bd0eb02fe6

Observation 2b339f4c-fdf9-465f-bbfb-7c52b605216c · inbound

Efficient LLM Adversarial Training via Low-Rank Defense and Circuit-Guided Surrogates cites this paper.

Efficient LLM Adversarial Training via Low-Rank Defense and Circuit-Guided Surrogates Tensor Trust: Interpretable Prompt Injection Attacks from an Online Game

Reference 25

Resolution
unresolved
no resolver link, observed 2026-08-03T16:32:05.653882Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-03T16:32:05.653882Z digest=sha256:571a7c2db99d9213c99802de307fbbe119a60b7617afefc4ab1f31b80257adfc