{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2026:3LVUXDZXRNH4BA2EI27F42RB3X","short_pith_number":"pith:3LVUXDZX","canonical_record":{"source":{"id":"2605.24497","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.AI","submitted_at":"2026-05-23T10:11:32Z","cross_cats_sorted":[],"title_canon_sha256":"fcec15e520d26a5a335b29954fea4092c837dc787d1fad2f95cb6ae3934fa723","abstract_canon_sha256":"7016630dfdfa70601aa634f46f617324f3d986a4367f0c54ac966d608f023730"},"schema_version":"1.0"},"canonical_sha256":"daeb4b8f378b4fc0834446be5e6a21ddcb2701c8b21be9f847604931e7afd74d","source":{"kind":"arxiv","id":"2605.24497","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2605.24497","created_at":"2026-05-26T01:03:43Z"},{"alias_kind":"arxiv_version","alias_value":"2605.24497v1","created_at":"2026-05-26T01:03:43Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2605.24497","created_at":"2026-05-26T01:03:43Z"},{"alias_kind":"pith_short_12","alias_value":"3LVUXDZXRNH4","created_at":"2026-05-26T01:03:43Z"},{"alias_kind":"pith_short_16","alias_value":"3LVUXDZXRNH4BA2E","created_at":"2026-05-26T01:03:43Z"},{"alias_kind":"pith_short_8","alias_value":"3LVUXDZX","created_at":"2026-05-26T01:03:43Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2026:3LVUXDZXRNH4BA2EI27F42RB3X","target":"record","payload":{"canonical_record":{"source":{"id":"2605.24497","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.AI","submitted_at":"2026-05-23T10:11:32Z","cross_cats_sorted":[],"title_canon_sha256":"fcec15e520d26a5a335b29954fea4092c837dc787d1fad2f95cb6ae3934fa723","abstract_canon_sha256":"7016630dfdfa70601aa634f46f617324f3d986a4367f0c54ac966d608f023730"},"schema_version":"1.0"},"canonical_sha256":"daeb4b8f378b4fc0834446be5e6a21ddcb2701c8b21be9f847604931e7afd74d","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-26T01:03:43.022655Z","signature_b64":"fxgMh0ECQkc/bT+MHhG/UID1auLlsaw23kuH4mDflDSzoahJ7yjM09K6Gquwr5YdKgyGAGFJHDYe8tDF20/9CA==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"daeb4b8f378b4fc0834446be5e6a21ddcb2701c8b21be9f847604931e7afd74d","last_reissued_at":"2026-05-26T01:03:43.022018Z","signature_status":"signed_v1","first_computed_at":"2026-05-26T01:03:43.022018Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"2605.24497","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-26T01:03:43Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"6C6ARJaGIHXo+FWKJm4G3kEVDUzK4eZ9C3kxGy6/47qs1SdA62h4UBSrdFHRmyQj7L6NN9ZXdExG+rhmfbZmAQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-31T16:26:44.166240Z"},"content_sha256":"644feef0f7761c7e82c0322c0b8acd258debd5507abe41f16416529c903fa44b","schema_version":"1.0","event_id":"sha256:644feef0f7761c7e82c0322c0b8acd258debd5507abe41f16416529c903fa44b"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2026:3LVUXDZXRNH4BA2EI27F42RB3X","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Reasoning as an Attack Surface: Adaptive Evolutionary CoT Jailbreaks for LLMs","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.AI","authors_text":"Jianan Li, Lionel Z. Wang, Simeng Qin, Tianhang Zheng, Xiaochun Cao, Xiaojun Jia, Xiaoshuang Jia, Yang Liu","submitted_at":"2026-05-23T10:11:32Z","abstract_excerpt":"Large Reasoning Models (LRMs) have demonstrated remarkable capabilities in reasoning and generation tasks and are increasingly deployed in real-world applications. However, their explicit chain-of-thought (CoT) mechanism introduces new security risks, making them particularly vulnerable to jailbreak attacks. Existing approaches often rely on static CoT templates to elicit harmful outputs, but such fixed designs suffer from limited diversity, adaptability, and effectiveness. To overcome these limitations, we propose an adaptive evolutionary CoT jailbreak framework, called AE-CoT. Specifically, "},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2605.24497","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2605.24497/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-26T01:03:43Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"pLXKhKmA1xE2I6TCraETQkJ2gS38ToFJxE8m0QJR+CHRtJkoMyA0rLz0fOyXUjCWuyKjBvhhs88tNoI2amfgBw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-31T16:26:44.167025Z"},"content_sha256":"6316974d9edfa36d733f22e3bda931732c86323f4db68b33390d64f43f39413f","schema_version":"1.0","event_id":"sha256:6316974d9edfa36d733f22e3bda931732c86323f4db68b33390d64f43f39413f"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/3LVUXDZXRNH4BA2EI27F42RB3X/bundle.json","state_url":"https://pith.science/pith/3LVUXDZXRNH4BA2EI27F42RB3X/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/3LVUXDZXRNH4BA2EI27F42RB3X/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-31T16:26:44Z","links":{"resolver":"https://pith.science/pith/3LVUXDZXRNH4BA2EI27F42RB3X","bundle":"https://pith.science/pith/3LVUXDZXRNH4BA2EI27F42RB3X/bundle.json","state":"https://pith.science/pith/3LVUXDZXRNH4BA2EI27F42RB3X/state.json","well_known_bundle":"https://pith.science/.well-known/pith/3LVUXDZXRNH4BA2EI27F42RB3X/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2026:3LVUXDZXRNH4BA2EI27F42RB3X","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"7016630dfdfa70601aa634f46f617324f3d986a4367f0c54ac966d608f023730","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.AI","submitted_at":"2026-05-23T10:11:32Z","title_canon_sha256":"fcec15e520d26a5a335b29954fea4092c837dc787d1fad2f95cb6ae3934fa723"},"schema_version":"1.0","source":{"id":"2605.24497","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2605.24497","created_at":"2026-05-26T01:03:43Z"},{"alias_kind":"arxiv_version","alias_value":"2605.24497v1","created_at":"2026-05-26T01:03:43Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2605.24497","created_at":"2026-05-26T01:03:43Z"},{"alias_kind":"pith_short_12","alias_value":"3LVUXDZXRNH4","created_at":"2026-05-26T01:03:43Z"},{"alias_kind":"pith_short_16","alias_value":"3LVUXDZXRNH4BA2E","created_at":"2026-05-26T01:03:43Z"},{"alias_kind":"pith_short_8","alias_value":"3LVUXDZX","created_at":"2026-05-26T01:03:43Z"}],"graph_snapshots":[{"event_id":"sha256:6316974d9edfa36d733f22e3bda931732c86323f4db68b33390d64f43f39413f","target":"graph","created_at":"2026-05-26T01:03:43Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/2605.24497/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"Large Reasoning Models (LRMs) have demonstrated remarkable capabilities in reasoning and generation tasks and are increasingly deployed in real-world applications. However, their explicit chain-of-thought (CoT) mechanism introduces new security risks, making them particularly vulnerable to jailbreak attacks. Existing approaches often rely on static CoT templates to elicit harmful outputs, but such fixed designs suffer from limited diversity, adaptability, and effectiveness. To overcome these limitations, we propose an adaptive evolutionary CoT jailbreak framework, called AE-CoT. Specifically, ","authors_text":"Jianan Li, Lionel Z. Wang, Simeng Qin, Tianhang Zheng, Xiaochun Cao, Xiaojun Jia, Xiaoshuang Jia, Yang Liu","cross_cats":[],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.AI","submitted_at":"2026-05-23T10:11:32Z","title":"Reasoning as an Attack Surface: Adaptive Evolutionary CoT Jailbreaks for LLMs"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2605.24497","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:644feef0f7761c7e82c0322c0b8acd258debd5507abe41f16416529c903fa44b","target":"record","created_at":"2026-05-26T01:03:43Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"7016630dfdfa70601aa634f46f617324f3d986a4367f0c54ac966d608f023730","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.AI","submitted_at":"2026-05-23T10:11:32Z","title_canon_sha256":"fcec15e520d26a5a335b29954fea4092c837dc787d1fad2f95cb6ae3934fa723"},"schema_version":"1.0","source":{"id":"2605.24497","kind":"arxiv","version":1}},"canonical_sha256":"daeb4b8f378b4fc0834446be5e6a21ddcb2701c8b21be9f847604931e7afd74d","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"daeb4b8f378b4fc0834446be5e6a21ddcb2701c8b21be9f847604931e7afd74d","first_computed_at":"2026-05-26T01:03:43.022018Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-26T01:03:43.022018Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"fxgMh0ECQkc/bT+MHhG/UID1auLlsaw23kuH4mDflDSzoahJ7yjM09K6Gquwr5YdKgyGAGFJHDYe8tDF20/9CA==","signature_status":"signed_v1","signed_at":"2026-05-26T01:03:43.022655Z","signed_message":"canonical_sha256_bytes"},"source_id":"2605.24497","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:644feef0f7761c7e82c0322c0b8acd258debd5507abe41f16416529c903fa44b","sha256:6316974d9edfa36d733f22e3bda931732c86323f4db68b33390d64f43f39413f"],"state_sha256":"da40b64e3935dd70e3047fe20c53088f2fdf3d2602c0801137e74b4ee5b1ba47"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"UsZ5UvIMWk83XtlbGVhPhd31foW1TgQvXjFxDbX3cxBuf05AUeeyn+IJT5vuQH60VLHX7Pg6/v8+KU5ZPgBYBQ==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-31T16:26:44.170552Z","bundle_sha256":"f7ac88163587bc4ce597aa894e38eac463bbec1ec7caf76951f7481d8b01c900"}}