{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2024:634I2C4YTBIYDLWEZCLY2FKDN6","short_pith_number":"pith:634I2C4Y","schema_version":"1.0","canonical_sha256":"f6f88d0b98985181aec4c8978d15436fa8b80c5bae760bdfbe5ac632645ea839","source":{"kind":"arxiv","id":"2402.18649","version":1},"attestation_state":"computed","paper":{"title":"A New Era in LLM Security: Exploring Security Concerns in Real-World LLM-based Systems","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.AI"],"primary_cat":"cs.CR","authors_text":"Chaowei Xiao, Fangzhou Wu, Ning Zhang, Patrick McDaniel, Somesh Jha","submitted_at":"2024-02-28T19:00:12Z","abstract_excerpt":"Large Language Model (LLM) systems are inherently compositional, with individual LLM serving as the core foundation with additional layers of objects such as plugins, sandbox, and so on. Along with the great potential, there are also increasing concerns over the security of such probabilistic intelligent systems. However, existing studies on LLM security often focus on individual LLM, but without examining the ecosystem through the lens of LLM systems with other objects (e.g., Frontend, Webtool, Sandbox, and so on). In this paper, we systematically analyze the security of LLM systems, instead "},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2402.18649","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2024-02-28T19:00:12Z","cross_cats_sorted":["cs.AI"],"title_canon_sha256":"7425ddf71d76c9e3499527ad125c5d88111116809ab3999c8bb3908c8f8fb624","abstract_canon_sha256":"d295a53de2cff1f8ce374dc2cc50b0b5797074ee705160eb518e99a61ac0a8a1"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T07:50:25.800113Z","signature_b64":"625B+yzNKaDmmUlfMcwUxJhikucCmidN77b35nTvK5En2PiZxZQYBg1IumFP4+pZuqpbmZ57Go8uNX+oqBIaBA==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"f6f88d0b98985181aec4c8978d15436fa8b80c5bae760bdfbe5ac632645ea839","last_reissued_at":"2026-07-05T07:50:25.799568Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T07:50:25.799568Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"A New Era in LLM Security: Exploring Security Concerns in Real-World LLM-based Systems","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.AI"],"primary_cat":"cs.CR","authors_text":"Chaowei Xiao, Fangzhou Wu, Ning Zhang, Patrick McDaniel, Somesh Jha","submitted_at":"2024-02-28T19:00:12Z","abstract_excerpt":"Large Language Model (LLM) systems are inherently compositional, with individual LLM serving as the core foundation with additional layers of objects such as plugins, sandbox, and so on. Along with the great potential, there are also increasing concerns over the security of such probabilistic intelligent systems. However, existing studies on LLM security often focus on individual LLM, but without examining the ecosystem through the lens of LLM systems with other objects (e.g., Frontend, Webtool, Sandbox, and so on). In this paper, we systematically analyze the security of LLM systems, instead "},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2402.18649","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2402.18649/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2402.18649","created_at":"2026-07-05T07:50:25.799631+00:00"},{"alias_kind":"arxiv_version","alias_value":"2402.18649v1","created_at":"2026-07-05T07:50:25.799631+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2402.18649","created_at":"2026-07-05T07:50:25.799631+00:00"},{"alias_kind":"pith_short_12","alias_value":"634I2C4YTBIY","created_at":"2026-07-05T07:50:25.799631+00:00"},{"alias_kind":"pith_short_16","alias_value":"634I2C4YTBIYDLWE","created_at":"2026-07-05T07:50:25.799631+00:00"},{"alias_kind":"pith_short_8","alias_value":"634I2C4Y","created_at":"2026-07-05T07:50:25.799631+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":8,"internal_anchor_count":0,"sample":[{"citing_arxiv_id":"2606.22153","citing_title":"$\\pi$-RAG: Oblivious Retrieval via Semantic Quantization and Transcendental Addressing for Large Language Models","ref_index":8,"is_internal_anchor":false},{"citing_arxiv_id":"2409.10102","citing_title":"Trustworthiness in Retrieval-Augmented Generation Systems: A Survey","ref_index":57,"is_internal_anchor":false},{"citing_arxiv_id":"2504.11703","citing_title":"Progent: Securing AI Agents with Privilege Control","ref_index":67,"is_internal_anchor":false},{"citing_arxiv_id":"2510.21236","citing_title":"AgentBound: Securing Execution Boundaries of AI Agents","ref_index":46,"is_internal_anchor":false},{"citing_arxiv_id":"2510.23883","citing_title":"Agentic AI Security: Threats, Defenses, Evaluation, and Open Challenges","ref_index":220,"is_internal_anchor":false},{"citing_arxiv_id":"2605.08460","citing_title":"When Child Inherits: Modeling and Exploiting Subagent Spawn in Multi-Agent Networks","ref_index":40,"is_internal_anchor":false},{"citing_arxiv_id":"2604.19844","citing_title":"If you're waiting for a sign... that might not be it! Mitigating Trust Boundary Confusion from Visual Injections on Vision-Language Agentic Systems","ref_index":13,"is_internal_anchor":false},{"citing_arxiv_id":"2604.05987","citing_title":"Flowr -- Scaling Up Retail Supply Chain Operations Through Agentic AI in Large Scale Supermarket Chains","ref_index":16,"is_internal_anchor":false}]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/634I2C4YTBIYDLWEZCLY2FKDN6","json":"https://pith.science/pith/634I2C4YTBIYDLWEZCLY2FKDN6.json","graph_json":"https://pith.science/api/pith-number/634I2C4YTBIYDLWEZCLY2FKDN6/graph.json","events_json":"https://pith.science/api/pith-number/634I2C4YTBIYDLWEZCLY2FKDN6/events.json","paper":"https://pith.science/paper/634I2C4Y"},"agent_actions":{"view_html":"https://pith.science/pith/634I2C4YTBIYDLWEZCLY2FKDN6","download_json":"https://pith.science/pith/634I2C4YTBIYDLWEZCLY2FKDN6.json","view_paper":"https://pith.science/paper/634I2C4Y","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2402.18649&json=true","fetch_graph":"https://pith.science/api/pith-number/634I2C4YTBIYDLWEZCLY2FKDN6/graph.json","fetch_events":"https://pith.science/api/pith-number/634I2C4YTBIYDLWEZCLY2FKDN6/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/634I2C4YTBIYDLWEZCLY2FKDN6/action/timestamp_anchor","attest_storage":"https://pith.science/pith/634I2C4YTBIYDLWEZCLY2FKDN6/action/storage_attestation","attest_author":"https://pith.science/pith/634I2C4YTBIYDLWEZCLY2FKDN6/action/author_attestation","sign_citation":"https://pith.science/pith/634I2C4YTBIYDLWEZCLY2FKDN6/action/citation_signature","submit_replication":"https://pith.science/pith/634I2C4YTBIYDLWEZCLY2FKDN6/action/replication_record"}},"created_at":"2026-07-05T07:50:25.799631+00:00","updated_at":"2026-07-05T07:50:25.799631+00:00"}