Pith. sign in

Paper Citation Record · LEDGER

Voice Jailbreak Attacks Against GPT-4o

As of 15 August 2026, this Paper Citation Record lists 0 of 0 outbound references and 23 inbound Pith citation observations for arXiv:2405.19103.

A citation records a reference. It does not transfer a finding from one paper to another.

pith.paper-citation-record.v1
2405.19103 v1

Coverage vector

measured 0 of 0 reference resolution

Typed states for the displayed outbound observations.

Source: paper_references, paper_reference_links

measured 23 of 23 standing notices

One-hop event checks from named stored sources.

Source: scholarly_work_events, retraction_status_cache, observed 2026-08-14T06:32:32.682623+00:00

measured 23 of 23 inbound itemization

Pith citing papers itemized under the disclosed page cap.

Source: paper_references, paper_reference_links, observed 2026-08-12T20:53:14.738270Z

measured 0 of 1 external citation measurements

A source-named dated measurement, never combined with another source.

Source: arxiv_reference, observed 2026-07-02T15:37:06.720828Z

Reference resolution

0 of 0 outbound references displayed

  • verified exact0
  • verified fuzzy0
  • unresolved0
  • parse uncertain0
  • malformed identifier0
  • metadata mismatch0

External citation measurements

No source-named external measurement is stored.

Outbound references

No outbound reference observations are available for this paper version.

Pith citing papers

Observation 686d807f-0ad3-41be-aa7d-d676b928655c · inbound

Jailbreak Attacks and Defenses against Multimodal Generative Models: A Survey cites this paper.

Jailbreak Attacks and Defenses against Multimodal Generative Models: A Survey Voice Jailbreak Attacks Against GPT-4o

Reference 21

Resolution
unresolved
no resolver link, observed 2026-08-12T20:53:14.738270Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-12T20:53:14.738270Z digest=sha256:b8205a3dcb1f6819cecadc80fde4d891905c609922fd57d9e4529677f7910170

Observation 302c8416-9f2c-4e1f-9ca9-51d95c7ad476 · inbound

Best-of-N Jailbreaking cites this paper.

Best-of-N Jailbreaking Voice Jailbreak Attacks Against GPT-4o

Reference 4

Resolution
unresolved
no resolver link, observed 2026-08-11T22:21:46.952160Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-11T22:21:46.952160Z digest=sha256:44068940b3ebd4e107c405bef632113f9852feb4d5ac18319ece5ffd49b1c182

Observation 121ccd65-fc28-4f99-85e9-54f674e4f9e9 · inbound

Divide and Conquer: A Hybrid Strategy Defeats Multimodal Large Language Models cites this paper.

Divide and Conquer: A Hybrid Strategy Defeats Multimodal Large Language Models Voice Jailbreak Attacks Against GPT-4o

Reference 39

Resolution
unresolved
no resolver link, observed 2026-08-11T10:32:28.337881Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-11T10:32:28.337881Z digest=sha256:bcff4db7e2ce856023cbd50db3eb43bab6613dd3b5bca7bf2eec7373dbbc2260

Observation 094fc1c1-70b9-4523-aad5-925d36fe9675 · inbound

"I am bad": Interpreting Stealthy, Universal and Robust Audio Jailbreaks in Audio-Language Models cites this paper.

"I am bad": Interpreting Stealthy, Universal and Robust Audio Jailbreaks in Audio-Language Models Voice Jailbreak Attacks Against GPT-4o

Reference 47

Resolution
unresolved
no resolver link, observed 2026-08-09T18:05:52.369200Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=arxiv_source observed=2026-08-09T18:05:52.369200Z digest=sha256:0aaf8f146ac620feb730280b4c0df508a7542e70f28ab0cab90b8adef8a4066f

Observation 42aa56a1-c8a2-4a37-a55d-2b4d3eeb9df5 · inbound

`Do as I say not as I do': A Semi-Automated Approach for Jailbreak Prompt Attack against Multimodal LLMs cites this paper.

`Do as I say not as I do': A Semi-Automated Approach for Jailbreak Prompt Attack against Multimodal LLMs Voice Jailbreak Attacks Against GPT-4o

Reference 14

Resolution
unresolved
no resolver link, observed 2026-08-09T17:58:57.413578Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-09T17:58:57.413578Z digest=sha256:26b852a81f99a6292d0b714303dd51a7b198d2f1003164ab9694cdf866339ed2

Observation 70fada26-c9f2-497b-be8e-ad7fecc34ae4 · inbound

Audio Jailbreak: An Open Comprehensive Benchmark for Jailbreaking Large Audio-Language Models cites this paper.

Audio Jailbreak: An Open Comprehensive Benchmark for Jailbreaking Large Audio-Language Models Voice Jailbreak Attacks Against GPT-4o

Reference 37

Resolution
unresolved
no resolver link, observed 2026-08-07T15:23:02.718736Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=arxiv_source observed=2026-08-07T15:23:02.718736Z digest=sha256:b3fb65c75d491fadd5e1c0608b8884ab4c4b0b861b737cb91e1be00a9a4041c7

Observation 2b7c339f-5559-4736-a794-3a0a1bb9be4b · inbound

Towards Holistic Evaluation of Large Audio-Language Models: A Comprehensive Survey cites this paper.

Towards Holistic Evaluation of Large Audio-Language Models: A Comprehensive Survey Voice Jailbreak Attacks Against GPT-4o

Reference 14

Resolution
metadata mismatch
arxiv_id, observed 2026-05-22T13:34:53.261884Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-14T06:32:32.682623+00:00.

source=pdf_text observed=2026-05-22T13:32:57.771753Z digest=sha256:a2f31ba857b98daf6cbee71d256137fdceac0f768a9321af470e8b7391cc55f7

Observation 3ed05453-4c27-4690-87b9-58065ff5fdd9 · inbound

Invisible Prompts, Visible Threats: Malicious Font Injection in External Resources for Large Language Models cites this paper.

Invisible Prompts, Visible Threats: Malicious Font Injection in External Resources for Large Language Models Voice Jailbreak Attacks Against GPT-4o

Reference 24

Resolution
unresolved
no resolver link, observed 2026-08-07T14:55:02.131857Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=arxiv_source observed=2026-08-07T14:55:02.131857Z digest=sha256:1cc781ac363927272c0d2e3e273ebbb90579d2f84c3fd2ced74f3a8d83a10778

Observation 410cd221-4ffe-405a-bedf-a2119c9870f6 · inbound

Audio Jailbreak Attacks: Exposing Vulnerabilities in SpeechGPT in a White-Box Framework cites this paper.

Audio Jailbreak Attacks: Exposing Vulnerabilities in SpeechGPT in a White-Box Framework Voice Jailbreak Attacks Against GPT-4o

Reference 9

Resolution
unresolved
no resolver link, observed 2026-08-07T14:27:05.448953Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-07T14:27:05.448953Z digest=sha256:1687c1737fa2039ad48b5bd2bab6c469c812a21317ee8fe1e006deaa59cc6ff4

Observation 965cd3c1-0dec-41e0-a7f7-cdc7e40210b8 · inbound

Chain-of-Code Collapse: Reasoning Failures in LLMs via Adversarial Prompting in Code Generation cites this paper.

Chain-of-Code Collapse: Reasoning Failures in LLMs via Adversarial Prompting in Code Generation Voice Jailbreak Attacks Against GPT-4o

Reference 25

Resolution
unresolved
no resolver link, observed 2026-08-07T05:51:08.260580Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=arxiv_source observed=2026-08-07T05:51:08.260580Z digest=sha256:1852c80684cfc61b8db0b9e3afe21bec5c5dfe662999bdc635777d6202adc820

Observation 6baf7137-5bd1-4e5e-aa2d-df76fc0c6270 · inbound

Investigating Vulnerabilities and Defenses Against Audio-Visual Attacks: A Comprehensive Survey Emphasizing Multimodal Models cites this paper.

Investigating Vulnerabilities and Defenses Against Audio-Visual Attacks: A Comprehensive Survey Emphasizing Multimodal Models Voice Jailbreak Attacks Against GPT-4o

Reference 96

Resolution
unresolved
no resolver link, observed 2026-08-07T04:08:50.912160Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=arxiv_source observed=2026-08-07T04:08:50.912160Z digest=sha256:7afd79fabe814b44bf6b7c4a64baeed977e3817081d5aab45b073960d4e81f76

Observation b0d5d361-12e8-418f-aab9-59ac1f2a6cca · inbound

LLM in the Middle: A Systematic Review of Threats and Mitigations to Real-World LLM-based Systems cites this paper.

LLM in the Middle: A Systematic Review of Threats and Mitigations to Real-World LLM-based Systems Voice Jailbreak Attacks Against GPT-4o

Reference 271

Resolution
unresolved
no resolver link, observed 2026-08-04T17:46:19.679388Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-04T17:46:19.679388Z digest=sha256:87aef7ca2b431e72d0e71dce2fbe43de335385ea724e46f11063c8e262ae038b

Observation 0c3ab26a-ad32-4cf4-8c3e-4cdc8e6ff0a7 · inbound

The Alignment Curse: Modality Alignment Supercharges Audio Attacks via Text Transfer cites this paper.

The Alignment Curse: Modality Alignment Supercharges Audio Attacks via Text Transfer Voice Jailbreak Attacks Against GPT-4o

Reference 16

Resolution
unresolved
no resolver link, observed 2026-08-03T06:23:43.490072Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-03T06:23:43.490072Z digest=sha256:1b8b676d13c26226459b59e0dacdd46655f355432ce367a19dcecec8ba844fdd

Observation 08866f49-e05d-4f42-adb9-b37978d0474f · inbound

The Salami Slicing Threat: Exploiting Cumulative Risks in LLM Systems cites this paper.

The Salami Slicing Threat: Exploiting Cumulative Risks in LLM Systems Voice Jailbreak Attacks Against GPT-4o

Reference 14

Resolution
verified exact
arxiv_id, observed 2026-05-11T09:16:04.343350Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-14T06:32:32.682623+00:00.

source=pdf_text observed=2026-05-10T16:07:31.602378Z digest=sha256:db4c7e86585508a778fbdb3508d31e0ccecaaddbe9e71473d3437ea08f786b89

Observation 8c116bdc-d90c-40e3-a04b-cfe6b9e286fa · inbound

A Synonymous Variational Perspective on the Rate-Distortion-Perception Tradeoff cites this paper.

A Synonymous Variational Perspective on the Rate-Distortion-Perception Tradeoff Voice Jailbreak Attacks Against GPT-4o

Reference 13

Resolution
unresolved
no resolver link, observed 2026-07-12T20:09:57.922788Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-07-12T20:09:57.922788Z digest=sha256:aeaf71294e65260d3aa7634b42096de0b9c11cb26fee831d8f0fe043604c6c3c

Observation 6e26a09d-a93e-4f42-a798-0a862136b3d8 · inbound

Hijacking Large Audio-Language Models via Context-Agnostic and Imperceptible Auditory Prompt Injection cites this paper.

Hijacking Large Audio-Language Models via Context-Agnostic and Imperceptible Auditory Prompt Injection Voice Jailbreak Attacks Against GPT-4o

Reference 13

Resolution
verified exact
arxiv_id, observed 2026-05-10T11:35:18.907426Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-14T06:32:32.682623+00:00.

source=pdf_text observed=2026-05-10T11:32:10.126062Z digest=sha256:ab228669d0c7cd98e0fecf243fc121c2ee36ca57533d5ea0f06686452214bebc

Observation 95887362-f0ac-4f9a-aad8-4e89094a2da4 · inbound

Benign Fine-Tuning Breaks Safety Alignment in Audio LLMs cites this paper.

Benign Fine-Tuning Breaks Safety Alignment in Audio LLMs Voice Jailbreak Attacks Against GPT-4o

Reference 24

Resolution
metadata mismatch
arxiv_id, observed 2026-05-10T08:02:24.870743Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-14T06:32:32.682623+00:00.

source=pdf_text observed=2026-05-10T08:01:25.938248Z digest=sha256:22f6c8b3ef9614e3cea63906de5566e2093ef37e17802744cd11d01148ba2e70

Observation 281488dd-40dd-4284-ad84-4a804d9a1652 · inbound

Acoustic Interference: A New Paradigm Weaponizing Acoustic Latent Semantic for Universal Jailbreak against Large Audio Language Models cites this paper.

Acoustic Interference: A New Paradigm Weaponizing Acoustic Latent Semantic for Universal Jailbreak against Large Audio Language Models Voice Jailbreak Attacks Against GPT-4o

Reference 37

Resolution
verified exact
arxiv_id, observed 2026-05-20T09:53:15.983463Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-14T06:32:32.682623+00:00.

source=arxiv_source observed=2026-05-20T09:48:43.319804Z digest=sha256:f48839dfbd6a9a96077c7c475c28d92d1addfdeeef405ea4ca085f3c6df4e269

Observation 1883e4af-ae56-4c2c-aad0-fa0d20270566 · inbound

Codec-Robust Attacks on Audio LLMs cites this paper.

Codec-Robust Attacks on Audio LLMs Voice Jailbreak Attacks Against GPT-4o

Reference 39

Resolution
verified exact
arxiv_id, observed 2026-05-21T06:44:00.660382Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-14T06:32:32.682623+00:00.

source=pdf_text observed=2026-05-21T06:43:52.735211Z digest=sha256:5bff4ed2a256f1c36052f69e215b0eca0a72a03392e00930b0d6bb456eabc819

Observation 8c921932-00f4-44db-b64c-e9b33879e2a3 · inbound

Codec-Robust Attacks on Audio LLMs cites this paper.

Codec-Robust Attacks on Audio LLMs Voice Jailbreak Attacks Against GPT-4o

Reference 39

Resolution
verified exact
arxiv_id, observed 2026-05-25T05:45:23.741364Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-14T06:32:32.682623+00:00.

source=pdf_text observed=2026-05-25T05:44:46.831360Z digest=sha256:014148daf560ecd56360add9cdd064b09720d63255d7f90c6f3a95e42b1f8841

Observation a62f8546-bce1-42e3-b903-202792d0ab9c · inbound

Audio Jailbreaks in Large Audio-Language Models: Taxonomy, Attack-Defense Analysis, and Cost-Aware Evaluation cites this paper.

Audio Jailbreaks in Large Audio-Language Models: Taxonomy, Attack-Defense Analysis, and Cost-Aware Evaluation Voice Jailbreak Attacks Against GPT-4o

Reference 10

Resolution
verified exact
arxiv_id, observed 2026-06-29T05:53:09.549390Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-14T06:32:32.682623+00:00.

source=pdf_text observed=2026-06-29T05:44:05.762261Z digest=sha256:dee904342d501f10eee92a61dcd64aa695118cfe4e65a70947e9dd672571f406

Observation f40075db-2086-412e-b21c-5049a5f0a90c · inbound

Off-Distribution Voices: Fanfiction Subgenres as Universal Vernacular Jailbreaks for Aligned LLMs cites this paper.

Off-Distribution Voices: Fanfiction Subgenres as Universal Vernacular Jailbreaks for Aligned LLMs Voice Jailbreak Attacks Against GPT-4o

Reference 25

Resolution
verified exact
arxiv_id, observed 2026-07-02T07:46:46.545430Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-14T06:32:32.682623+00:00.

source=arxiv_source observed=2026-06-28T06:37:51.354823Z digest=sha256:a4c60a297b3a2dd860c21497adbfd5348f345db7d2554c7cbc6d124263e033ec

Observation e41e2630-4f6f-4b15-8d84-b5e362eb1c17 · inbound

SpeechJBB: Probing Safety Alignment and Comprehension in Large Audio Language Models under Code-Switched Speech cites this paper.

SpeechJBB: Probing Safety Alignment and Comprehension in Large Audio Language Models under Code-Switched Speech Voice Jailbreak Attacks Against GPT-4o

Reference 3

Resolution
metadata mismatch
arxiv_id, observed 2026-07-02T15:37:06.722323Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-14T06:32:32.682623+00:00.

source=pdf_text observed=2026-06-27T23:44:42.188662Z digest=sha256:b122f406ec368a77e59206b45ed990a2d3ea7e09d2f6746c8e28000c69b179eb