Typed states for the displayed outbound observations.
Source: paper_references, paper_reference_links, observed 2026-08-07T00:12:27.078558Z
Paper Citation Record · LEDGER
As of 7 August 2026, this Paper Citation Record lists 55 of 55 outbound references and 0 inbound Pith citation observations for arXiv:2608.01558.
A citation records a reference. It does not transfer a finding from one paper to another.
Typed states for the displayed outbound observations.
Source: paper_references, paper_reference_links, observed 2026-08-07T00:12:27.078558Z
One-hop event checks from named stored sources.
Source: scholarly_work_events, retraction_status_cache, observed 2026-08-07T06:34:17.273281+00:00
Pith citing papers itemized under the disclosed page cap.
Source: paper_references, paper_reference_links
A source-named dated measurement, never combined with another source.
Source: cited_works
55 of 55 outbound references displayed
External citation measurements
No source-named external measurement is stored.
Observation d90b0aef-fc35-4176-9847-d71e7c2998a8 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance 2024.System architecture for the 5G System (TS 23.501)
Reference 1
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation 508f4b3a-d805-4f3d-8234-47afce6c2e12 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance Security Threat Modeling for Emerging AI-Agent Protocols: A Comparative Analysis of MCP, A2A, Agora, and ANP
Reference 2
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation b7dfa417-2d66-441a-9b2b-2fb93ac7d73e · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance Unresolved cited work
Reference 3
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 7655f297-4550-4aee-b806-2a18b97ac2eb · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance Unresolved cited work
Reference 4
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation c3facac2-0e00-4c0c-aed9-bbd8c38eb557 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance Unresolved cited work
Reference 5
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation f332cb43-44ed-47b3-bb15-2d598316e784 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance AgentPoison: Red-teaming LLM Agents via Poisoning Memory or Knowledge Bases
Reference 6
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 345b9450-26d8-49f5-97a3-22b13a5d5372 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance 2012.Computer Security Incident Handling Guide (NIST SP 800-61 Rev
Reference 7
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation 4982389e-3cb7-4eef-841b-8e46e62152cf · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance 2025.Securing AI Agents with Cisco’s Open-Source A2A Scanner
Reference 8
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation 12a6028b-46e2-497f-9099-3e687c51ea92 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance Unresolved cited work
Reference 9
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation a7a7e11a-186f-4033-a1fb-0de4a6ce2a25 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance Here Comes The AI Worm: Unleashing Zero-click Worms that Target GenAI-Powered Applications
Reference 10
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation b560053b-4adf-47e6-85ef-147adec35fd9 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance Agentic AI Security: Threats, Defenses, Evaluation, and Open Challenges
Reference 11
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 752afc91-068b-4e94-8e2c-55e86530c623 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance Defeating Prompt Injections by Design
Reference 12
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 0d707773-6112-4200-91d1-82a20796ddbe · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance AgentDojo: A Dynamic Environment to Evaluate Prompt Injection Attacks and Defenses for LLM Agents
Reference 13
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 0f5ac053-9f9d-4e43-b4f2-62f43889da4c · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance A survey of agent interoperability protocols: Model Context Protocol (MCP), Agent Communication Protocol (ACP), Agent-to-Agent Protocol (A2A), and Agent Network Protocol (ANP)
Reference 14
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation ed5b273b-06c8-40a4-81ea-7e1a09c5f7d9 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance 2018.MiFID II Articles 17 and 21; RTS 6 Algorithmic Trading
Reference 15
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation 76b2a1c9-1e9e-4e20-9bc0-1a529b3408ad · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance Unresolved cited work
Reference 16
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation a97c45a7-0929-471c-ab3a-90dd132c3903 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance 2025.Safeguarding AI Agents: An In-Depth Look at A2A Protocol Risks
Reference 17
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation b4d4b2f8-ca56-4a56-b4a8-c9e594d47e4d · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance Unresolved cited work
Reference 18
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation 3fb1543d-b560-4271-9859-6410d51c2893 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance 2023.HL7 FHIR Release 5: Workflow Module
Reference 19
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation 096cf875-d7a9-4935-94c6-3b4e673fa876 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance Don't Make Models Guess Security and Safety: Symbolic Guardrails for Domain-Specific AI Agents
Reference 20
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 52e314d6-b13d-4526-b304-b05bfdc6b52e · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance RepetitionCurse: Measuring and Understanding Router Imbalance in Mixture-of-Experts LLMs under DoS Stress
Reference 21
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation 456f57e7-6c97-4e49-ae3e-09d5ecce964c · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance Unresolved cited work
Reference 22
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation e610b514-8243-471d-b14b-65abcb25fd59 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance Unresolved cited work
Reference 23
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation 663c4715-075b-4a8b-933e-70c67598f1ee · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance 2025.Potential Attack Surfaces in Agent2Agent (A2A) Protocol
Reference 24
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation 71f63925-21cb-4534-a09f-99c0f9fa8664 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance Unresolved cited work
Reference 25
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 78243060-5fa4-4890-ae64-9c6f4248e067 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance Unresolved cited work
Reference 26
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation eb452181-ee18-4f62-b1ca-0d1bae3a2c5b · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance 2025.ACP Joins Forces with A2A Under the Linux Foundation’s LF AI & Data
Reference 27
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation 6fde1e6d-e018-42c1-87af-c49f61f02043 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance Life-Cycle Routing Vulnerabilities of LLM Router
Reference 28
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 77a0b4f7-0765-4890-b4a2-52ac4e864081 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance Unresolved cited work
Reference 29
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation 87e5d589-ed43-460a-8cb5-72f0bc6e0714 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance Unresolved cited work
Reference 30
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation cf032acd-a091-4d9c-909e-04c7a881af85 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance Unresolved cited work
Reference 31
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 60075151-2517-4ac8-ac33-6151af36fca9 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance Security Considerations for Multi-agent Systems
Reference 32
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 7ed7363c-916d-4dcb-9bbd-887ab9a97125 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance Unresolved cited work
Reference 33
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation 544baad3-4d8c-42f8-a7f7-8094c98cfb95 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance Unresolved cited work
Reference 34
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation 6c6d1120-29b5-4128-9578-f9c013ce9061 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance Unresolved cited work
Reference 35
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation 3b43a8ba-78a0-4810-96b4-396a523c4364 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance Unresolved cited work
Reference 36
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation 5c4db43f-afef-4d0f-bc0e-1af3fed63b7b · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance Under the Hood of SKILL.md: Semantic Supply-chain Attacks on AI Agent Skill Registry
Reference 37
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 75121b02-8aed-4888-91cd-87613c0d45a6 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance 2026.A2A Protocol Security: Authenticating Agent-to-Agent Communi- cation
Reference 38
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation 446a917b-4392-4785-8152-6b8b809c6b60 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance Unresolved cited work
Reference 39
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation 6d5755eb-7184-4249-bc1f-95add8c6fd6c · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance Prompt Injection Attack to Tool Selection in LLM Agents
Reference 40
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 32663088-c234-4639-84e0-42d246b24447 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance Progent: Securing AI Agents with Privilege Control
Reference 41
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation ed50bcb4-1f05-445a-b2ce-2b59540e69d4 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance Route to Rome Attack: Directing LLM Routers to Expensive Models via Adversarial Suffix Optimization
Reference 42
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 57a63382-f3dc-43ee-8317-8b52ef0cdab6 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance 2025.Linux Foundation Announces the Forma- tion of the Agentic AI Foundation (AAIF)
Reference 43
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation 8679f679-8ad9-410a-8543-f962ff3dd360 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance 2025.Linux Foundation Launches the Agent2Agent Protocol Project to Enable Secure, Intelligent Communication Between AI Agents
Reference 44
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation 21ad1643-490a-4954-a7ff-b87eb2d7bfad · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance Unresolved cited work
Reference 45
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation 84c6b314-84ef-488c-8ddd-afc663ba51d0 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance AgentSpec: Customizable Runtime Enforcement for Safe and Reliable LLM Agents
Reference 46
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 30284983-2ca0-436a-9563-ea2437dc1589 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance Unresolved cited work
Reference 47
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation 36cfab86-09f9-4d41-beae-26d34d1865e7 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance Unresolved cited work
Reference 48
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 1867f1c6-7164-4a3b-ad41-b75d7b65c53e · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance ProbGuard: Proactive Runtime Monitoring for LLM Agent Safety via Probabilistic Prediction
Reference 49
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation b46de631-1721-4aa0-8f88-30252ed74380 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance Stealing User Prompts from Mixture of Experts
Reference 50
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 6b32b77d-b644-4426-be8a-c43df23e9368 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance RouteHijack: Routing-Aware Attack on Mixture-of-Experts LLMs
Reference 51
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 6baedb92-ac0c-4dd5-a071-338cecee1a3b · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance Unresolved cited work
Reference 52
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 364c5f77-8357-4899-aab5-bf48bd693a52 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance Unresolved cited work
Reference 53
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation b762fbc8-2f22-4c04-afaf-36ca9dbed0c2 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance PoisonedRAG: Knowledge Corruption Attacks to Retrieval-Augmented Generation of Large Language Models
Reference 55
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 08950bca-1daa-4dde-8a86-4f1e282ff083 · outbound
Securing Agentic AI: From Per-Action Checks to Trajectory Assurance Rerouting LLM Routers
Reference 2025
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
No inbound Pith citation observations are available.