Typed states for the displayed outbound observations.
Source: paper_references, paper_reference_links, observed 2026-08-06T15:49:00.970194Z
Paper Citation Record · LEDGER
As of 7 August 2026, this Paper Citation Record lists 37 of 37 outbound references and 3 inbound Pith citation observations for arXiv:2507.15042.
A citation records a reference. It does not transfer a finding from one paper to another.
Typed states for the displayed outbound observations.
Source: paper_references, paper_reference_links, observed 2026-08-06T15:49:00.970194Z
One-hop event checks from named stored sources.
Source: scholarly_work_events, retraction_status_cache, observed 2026-08-07T06:34:17.273281+00:00
Pith citing papers itemized under the disclosed page cap.
Source: paper_references, paper_reference_links, observed 2026-08-05T10:44:10.601057Z
A source-named dated measurement, never combined with another source.
Source: arxiv_reference, observed 2026-07-04T20:00:07.849622Z
37 of 37 outbound references displayed
External citation measurements
No source-named external measurement is stored.
Observation 5d655d0d-c75d-4cc5-b2dd-dd1bc81bc65a · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection MS MARCO: A Human Generated MAchine Reading COmprehension Dataset
Reference 1
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 3a9a8c58-d999-40b8-be0d-4ac180811128 · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection WWW’18 open challenge: Financial opinion mining and question answering
Reference 2
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation a91a3ef5-86b5-4d5b-9afe-b04dcb38cc9e · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection Fact or Fiction: Verifying Scientific Claims
Reference 3
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation 8183669c-5363-4780-acc4-f8cdfcc1192f · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection FEVER: A large-scale dataset for fact extraction and VERification
Reference 4
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation 3bdc3bb4-e328-447f-a096-83ebf39b5f17 · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection SQuAD: 100,000+ questions for machine comprehension of text
Reference 5
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation 32d60f6b-c450-4e6f-ae73-fa52e357ab80 · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection BEIR: A Heterogenous Benchmark for Zero-shot Evaluation of Information Retrieval Models
Reference 6
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation d9847514-dc4c-424c-a875-2971cb3b76eb · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection Dai, Jakob Uszkoreit, Quoc Le, and Slav Petrov
Reference 7
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation 92af87fd-150b-4984-8085-12ff84a97ae4 · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection Differential evolution – a simple and efficient heuristic for global optimization over continuous spaces
Reference 8
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation f6818379-ce7c-496d-b0e3-c8dd9fa3f5a5 · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection Salem, and Ahmed E
Reference 9
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation a359d608-5344-4049-ac7d-a401460176e9 · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection Enhancing LLM Factual Accuracy with RAG to Counter Hallucinations: A Case Study on Domain-Specific Queries in Private Knowledge-Bases
Reference 10
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 630c11ab-c934-4e03-8fb2-5715dda31ee6 · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection Targeting the Core: A Simple and Effective Method to Attack RAG-based Agents via Direct LLM Manipulation
Reference 11
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation ea27f41a-2e62-4e1a-8a1a-c919c5fc8c86 · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection BadRAG: Identifying Vulnerabilities in Retrieval Augmented Generation of Large Language Models
Reference 12
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation bcc68161-d6d3-4a8e-9e44-af07f4c51e9f · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection Detecting Language Model Attacks with Perplexity
Reference 13
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 55540e38-55c3-47d6-af28-bcc07804aa99 · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection Robust Safety Classifier Against Jailbreaking Attacks: Adversarial Prompt Shield
Reference 14
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation 7e39d900-ffb7-4ff9-9304-3e2b534f6d06 · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection CtrlRAG: Black-box Adversarial Attacks Based on Masked Lan- guage Models in Retrieval-Augmented Language Generation
Reference 15
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 283a017a-c98d-43e1-a8de-d9ec0d9e2f31 · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection PRADA: Practical Black-box Adversarial Attacks against Neural Ranking Models
Reference 16
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 5e2d89c9-d531-433b-b9e0-93a1b4e3b595 · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection One Pixel Attack for Fooling Deep Neural Networks
Reference 17
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 75787886-0a10-4a7e-81a2-6873fad46b03 · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection BERT: Pre-training of Deep Bidirectional Transformers for Language Understanding
Reference 18
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 57954197-763d-49be-905e-01ddf0c74363 · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection Ignore Previous Prompt: Attack Techniques For Language Models
Reference 19
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation e7e68571-f96e-4f65-ada3-7426759e29b2 · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection Automatic and Universal Prompt Injection Attacks against Large Language Models
Reference 20
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 91050d90-8900-4fe2-a68c-2446cd62a221 · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection Goal-guided Generative Prompt Injection Attack on Large Language Models
Reference 21
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation bd98d08a-721e-473e-af78-e6286c03d56b · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection Jailbreaking Black Box Large Language Models in Twenty Queries
Reference 22
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 9014105d-ea42-4b63-9c8d-5165e2519b28 · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection Prompt Perturbation in Retrieval-Augmented Generation based Large Language Models
Reference 23
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation 5176bed5-3ecb-4986-945d-bf5989dd8968 · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection TEMPEST: Multi-Turn Jailbreaking of Large Language Models with Tree Search
Reference 24
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation 1a961bf6-c059-4e95-a1b3-03cbde47ff4e · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection Retrieval-Augmented Generation for Knowledge-Intensive NLP Tasks
Reference 25
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 2dd1cd2d-204b-4f1a-858e-be4a3f7284bf · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection Release Strategies and the Social Impacts of Language Models
Reference 26
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 31d56b97-da33-4b56-9e70-1cad8fd199f8 · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection Black-box Adversarial Sample Generation Based on Differential Evolution
Reference 28
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation 80dc2c97-6a6f-4fea-a748-0319b4caf0bc · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection Black-Box Prompt Learning for Pre-trained Language Models
Reference 29
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation 7cd9529c-51c7-47a5-a0f0-311c75fa2bac · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection Generative Representational Instruction Tuning
Reference 30
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 84bbaabe-9546-4bca-8463-bf6be57a6fd4 · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection Arctic-Embed: Scalable, Efficient, and Accurate Text Embedding Models
Reference 31
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation fbc1b277-a695-4a6e-8905-ad112feabcc2 · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection Token-Level Adversarial Prompt Detection Based on Perplexity Measures and Contextual Information
Reference 32
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation ba24aec9-af6d-43cc-addf-a10ad5a86257 · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection Unresolved cited work
Reference 33
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 2d87080b-84f7-4314-b8b6-392c0126f2ca · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection Unresolved cited work
Reference 34
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation 08737cbd-b2c2-4bd1-89eb-03e6da87eac7 · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection The Probabilistic Relevance Framework: BM25 and Beyond
Reference 35
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation fc70a480-734b-4b62-a382-fd83cec2d94f · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection Download to CSV
Reference 36
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation 6d6ba860-845d-409d-b954-ada883c11048 · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection Unresolved cited work
Reference 2009
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 3fb4155e-17e1-42f1-a4aa-c79b8b5123de · outbound
DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection EvoPrompt: Connecting LLMs with Evolutionary Algorithms Yields Powerful Prompt Optimizers
Reference 2025
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 349d7963-e035-454b-a5f8-dcefb9cfe494 · inbound
Evaluating the Robustness of Retrieval-Augmented Generation to Adversarial Evidence in the Health Domain DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection
Reference 76
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 2a5047a3-ee61-4305-8648-5807f6b954a8 · inbound
Conflict-Aware Retriever Editing for Knowledge Injection Attacks on LLM-Based RAG Systems DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection
Reference 40
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.
Observation a06c6220-4bae-4214-864c-7ec085aefb4f · inbound
Security and Privacy in Retrieval-Augmented Generation: Architectures, Threats, Defenses, and Future Directions for Building Trustworthy Systems DeRAG: Black-box Adversarial Attacks on Multiple Retrieval-Augmented Generation Applications via Prompt Injection
Reference 60
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.