{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2024:AAKA5CGV5BWOU4T7R3R4ILFDOG","short_pith_number":"pith:AAKA5CGV","schema_version":"1.0","canonical_sha256":"00140e88d5e86cea727f8ee3c42ca37196e2e273c5f31148e73f64bff27990a3","source":{"kind":"arxiv","id":"2410.13691","version":2},"attestation_state":"computed","paper":{"title":"Jailbreaking LLM-Controlled Robots","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.AI"],"primary_cat":"cs.RO","authors_text":"Alexander Robey, George J. Pappas, Hamed Hassani, Vijay Kumar, Zachary Ravichandran","submitted_at":"2024-10-17T15:55:36Z","abstract_excerpt":"The recent introduction of large language models (LLMs) has revolutionized the field of robotics by enabling contextual reasoning and intuitive human-robot interaction in domains as varied as manipulation, locomotion, and self-driving vehicles. When viewed as a stand-alone technology, LLMs are known to be vulnerable to jailbreaking attacks, wherein malicious prompters elicit harmful text by bypassing LLM safety guardrails. To assess the risks of deploying LLMs in robotics, in this paper, we introduce RoboPAIR, the first algorithm designed to jailbreak LLM-controlled robots. Unlike existing, te"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2410.13691","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.RO","submitted_at":"2024-10-17T15:55:36Z","cross_cats_sorted":["cs.AI"],"title_canon_sha256":"4362987e2085aa5e200dd3ffc573ce57897cec27ffda52015e899e0f99af3d8c","abstract_canon_sha256":"0b1d148a084c0b8329a063c855fc2b4d72ef987c2b16ec6f096c6987e87f15ac"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T09:33:38.954906Z","signature_b64":"vcIBYIzN8hDc/2OLXZKzpidJNLl23O8LWqCRiYdsNuUoveckXUY64mcDGATM7gcg5mtb/5+IidmfLA79S4Q9AA==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"00140e88d5e86cea727f8ee3c42ca37196e2e273c5f31148e73f64bff27990a3","last_reissued_at":"2026-07-05T09:33:38.954403Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T09:33:38.954403Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"Jailbreaking LLM-Controlled Robots","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.AI"],"primary_cat":"cs.RO","authors_text":"Alexander Robey, George J. Pappas, Hamed Hassani, Vijay Kumar, Zachary Ravichandran","submitted_at":"2024-10-17T15:55:36Z","abstract_excerpt":"The recent introduction of large language models (LLMs) has revolutionized the field of robotics by enabling contextual reasoning and intuitive human-robot interaction in domains as varied as manipulation, locomotion, and self-driving vehicles. When viewed as a stand-alone technology, LLMs are known to be vulnerable to jailbreaking attacks, wherein malicious prompters elicit harmful text by bypassing LLM safety guardrails. To assess the risks of deploying LLMs in robotics, in this paper, we introduce RoboPAIR, the first algorithm designed to jailbreak LLM-controlled robots. Unlike existing, te"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2410.13691","kind":"arxiv","version":2},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2410.13691/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2410.13691","created_at":"2026-07-05T09:33:38.954465+00:00"},{"alias_kind":"arxiv_version","alias_value":"2410.13691v2","created_at":"2026-07-05T09:33:38.954465+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2410.13691","created_at":"2026-07-05T09:33:38.954465+00:00"},{"alias_kind":"pith_short_12","alias_value":"AAKA5CGV5BWO","created_at":"2026-07-05T09:33:38.954465+00:00"},{"alias_kind":"pith_short_16","alias_value":"AAKA5CGV5BWOU4T7","created_at":"2026-07-05T09:33:38.954465+00:00"},{"alias_kind":"pith_short_8","alias_value":"AAKA5CGV","created_at":"2026-07-05T09:33:38.954465+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":6,"internal_anchor_count":1,"sample":[{"citing_arxiv_id":"2607.07420","citing_title":"Initiation Safety: A Missing Dimension in Generalist-Robot Safety","ref_index":11,"is_internal_anchor":true},{"citing_arxiv_id":"2606.10371","citing_title":"Test-time Adversarial Takeover: A Real-time Hijacking Interface against Robotic Diffusion Policies","ref_index":44,"is_internal_anchor":false},{"citing_arxiv_id":"2606.00047","citing_title":"Comprehensive AI governance requires addressing non-model gains","ref_index":78,"is_internal_anchor":false},{"citing_arxiv_id":"2606.28649","citing_title":"RIPA: Sensory-Vector Prompt Injection Attacks on LLM-Controlled ROS 2 Robots","ref_index":3,"is_internal_anchor":false},{"citing_arxiv_id":"2512.07765","citing_title":"Toward Seamless Physical Human-Humanoid Interaction: Insights from Control, Intent, and Modeling with a Vision for What Comes Next","ref_index":120,"is_internal_anchor":false},{"citing_arxiv_id":"2604.27267","citing_title":"From Prompt to Physical Actuation: Holistic Threat Modeling of LLM-Enabled Robotic Systems","ref_index":20,"is_internal_anchor":false}]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/AAKA5CGV5BWOU4T7R3R4ILFDOG","json":"https://pith.science/pith/AAKA5CGV5BWOU4T7R3R4ILFDOG.json","graph_json":"https://pith.science/api/pith-number/AAKA5CGV5BWOU4T7R3R4ILFDOG/graph.json","events_json":"https://pith.science/api/pith-number/AAKA5CGV5BWOU4T7R3R4ILFDOG/events.json","paper":"https://pith.science/paper/AAKA5CGV"},"agent_actions":{"view_html":"https://pith.science/pith/AAKA5CGV5BWOU4T7R3R4ILFDOG","download_json":"https://pith.science/pith/AAKA5CGV5BWOU4T7R3R4ILFDOG.json","view_paper":"https://pith.science/paper/AAKA5CGV","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2410.13691&json=true","fetch_graph":"https://pith.science/api/pith-number/AAKA5CGV5BWOU4T7R3R4ILFDOG/graph.json","fetch_events":"https://pith.science/api/pith-number/AAKA5CGV5BWOU4T7R3R4ILFDOG/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/AAKA5CGV5BWOU4T7R3R4ILFDOG/action/timestamp_anchor","attest_storage":"https://pith.science/pith/AAKA5CGV5BWOU4T7R3R4ILFDOG/action/storage_attestation","attest_author":"https://pith.science/pith/AAKA5CGV5BWOU4T7R3R4ILFDOG/action/author_attestation","sign_citation":"https://pith.science/pith/AAKA5CGV5BWOU4T7R3R4ILFDOG/action/citation_signature","submit_replication":"https://pith.science/pith/AAKA5CGV5BWOU4T7R3R4ILFDOG/action/replication_record"}},"created_at":"2026-07-05T09:33:38.954465+00:00","updated_at":"2026-07-05T09:33:38.954465+00:00"}