{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2026:B6GRTJHV7Z2YS35YQC72FNRDZO","short_pith_number":"pith:B6GRTJHV","schema_version":"1.0","canonical_sha256":"0f8d19a4f5fe75896fb880bfa2b623cba21d9d959432e6eba9ca46df661a791f","source":{"kind":"arxiv","id":"2606.09700","version":1},"attestation_state":"computed","paper":{"title":"What the Eyes See, the LLMs Miss: Exploiting Human Perception for Adversarial Text Attacks","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.HC","cs.LG"],"primary_cat":"cs.CR","authors_text":"Doowon Kim, Joshua Lee, Lu Malloy, Meisam Mohammady, Qin Yang, Xiaohan Chang, Yuan Hong","submitted_at":"2026-06-08T16:21:34Z","abstract_excerpt":"Large language model (LLM)-powered content moderation systems have become a critical defense against harmful online content. However, these systems primarily operate on tokenized text and largely ignore the visual cues that humans naturally rely on when interpreting content. We show that this discrepancy creates a fundamental perceptual mismatch: content that is readily recognized as harmful by humans can become effectively invisible to automated moderation systems. To study this vulnerability, we introduce a class of Human-Perceptible Adversarial Attacks (HPAA), in which harmful expressions a"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2606.09700","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2026-06-08T16:21:34Z","cross_cats_sorted":["cs.HC","cs.LG"],"title_canon_sha256":"d08112ed4797b87c3f1be3546e3872b871f3d869f7632ea54bac471020a25268","abstract_canon_sha256":"4c778c6bd35c762fae5526c27a31b20c6baf1816aba982706415f980b161b7ae"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-06-09T02:09:04.610894Z","signature_b64":"dbcvrO4gITeCJmgQfyT25srZ3JHb2rwrM9B4ghuL2BJQgyHOTJ+RxYbSkC7X6XaCEK7RsKM7HS9HiwSmDjHECg==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"0f8d19a4f5fe75896fb880bfa2b623cba21d9d959432e6eba9ca46df661a791f","last_reissued_at":"2026-06-09T02:09:04.609917Z","signature_status":"signed_v1","first_computed_at":"2026-06-09T02:09:04.609917Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"What the Eyes See, the LLMs Miss: Exploiting Human Perception for Adversarial Text Attacks","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.HC","cs.LG"],"primary_cat":"cs.CR","authors_text":"Doowon Kim, Joshua Lee, Lu Malloy, Meisam Mohammady, Qin Yang, Xiaohan Chang, Yuan Hong","submitted_at":"2026-06-08T16:21:34Z","abstract_excerpt":"Large language model (LLM)-powered content moderation systems have become a critical defense against harmful online content. However, these systems primarily operate on tokenized text and largely ignore the visual cues that humans naturally rely on when interpreting content. We show that this discrepancy creates a fundamental perceptual mismatch: content that is readily recognized as harmful by humans can become effectively invisible to automated moderation systems. To study this vulnerability, we introduce a class of Human-Perceptible Adversarial Attacks (HPAA), in which harmful expressions a"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2606.09700","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2606.09700/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2606.09700","created_at":"2026-06-09T02:09:04.610087+00:00"},{"alias_kind":"arxiv_version","alias_value":"2606.09700v1","created_at":"2026-06-09T02:09:04.610087+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2606.09700","created_at":"2026-06-09T02:09:04.610087+00:00"},{"alias_kind":"pith_short_12","alias_value":"B6GRTJHV7Z2Y","created_at":"2026-06-09T02:09:04.610087+00:00"},{"alias_kind":"pith_short_16","alias_value":"B6GRTJHV7Z2YS35Y","created_at":"2026-06-09T02:09:04.610087+00:00"},{"alias_kind":"pith_short_8","alias_value":"B6GRTJHV","created_at":"2026-06-09T02:09:04.610087+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":0,"internal_anchor_count":0,"sample":[]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/B6GRTJHV7Z2YS35YQC72FNRDZO","json":"https://pith.science/pith/B6GRTJHV7Z2YS35YQC72FNRDZO.json","graph_json":"https://pith.science/api/pith-number/B6GRTJHV7Z2YS35YQC72FNRDZO/graph.json","events_json":"https://pith.science/api/pith-number/B6GRTJHV7Z2YS35YQC72FNRDZO/events.json","paper":"https://pith.science/paper/B6GRTJHV"},"agent_actions":{"view_html":"https://pith.science/pith/B6GRTJHV7Z2YS35YQC72FNRDZO","download_json":"https://pith.science/pith/B6GRTJHV7Z2YS35YQC72FNRDZO.json","view_paper":"https://pith.science/paper/B6GRTJHV","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2606.09700&json=true","fetch_graph":"https://pith.science/api/pith-number/B6GRTJHV7Z2YS35YQC72FNRDZO/graph.json","fetch_events":"https://pith.science/api/pith-number/B6GRTJHV7Z2YS35YQC72FNRDZO/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/B6GRTJHV7Z2YS35YQC72FNRDZO/action/timestamp_anchor","attest_storage":"https://pith.science/pith/B6GRTJHV7Z2YS35YQC72FNRDZO/action/storage_attestation","attest_author":"https://pith.science/pith/B6GRTJHV7Z2YS35YQC72FNRDZO/action/author_attestation","sign_citation":"https://pith.science/pith/B6GRTJHV7Z2YS35YQC72FNRDZO/action/citation_signature","submit_replication":"https://pith.science/pith/B6GRTJHV7Z2YS35YQC72FNRDZO/action/replication_record"}},"created_at":"2026-06-09T02:09:04.610087+00:00","updated_at":"2026-06-09T02:09:04.610087+00:00"}