{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2022:DOOJLYFKXECJHVP35LAWUD4C6S","short_pith_number":"pith:DOOJLYFK","schema_version":"1.0","canonical_sha256":"1b9c95e0aab90493d5fbeac16a0f82f48bd19612b5c6193c6ad0ae2bf777c3e2","source":{"kind":"arxiv","id":"2204.05239","version":1},"attestation_state":"computed","paper":{"title":"Exploring the Universal Vulnerability of Prompt-based Learning Paradigm","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.CL","authors_text":"Ganqu Cui, Hongcheng Gao, Lei Xu, Yangyi Chen, Zhiyuan Liu","submitted_at":"2022-04-11T16:34:10Z","abstract_excerpt":"Prompt-based learning paradigm bridges the gap between pre-training and fine-tuning, and works effectively under the few-shot setting. However, we find that this learning paradigm inherits the vulnerability from the pre-training stage, where model predictions can be misled by inserting certain triggers into the text. In this paper, we explore this universal vulnerability by either injecting backdoor triggers or searching for adversarial triggers on pre-trained language models using only plain text. In both scenarios, we demonstrate that our triggers can totally control or severely decrease the"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2204.05239","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CL","submitted_at":"2022-04-11T16:34:10Z","cross_cats_sorted":[],"title_canon_sha256":"e4a2f7670d2a392d3fcb74e83d351a4097422b86016ee53a3dfca8d2350f5303","abstract_canon_sha256":"5d43f55783d998d4886e1fd6dbd0399da47dae17a024f230dfd2e6fd2faea29f"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T04:13:19.465925Z","signature_b64":"5oA4POMz7+oM9AzlLPu62Apfsr08WG34EIHvrKWYTbRSmsp7IXg/jGHgh+6CX6T7YcHh8EfuJu1uzf5+mI6NBg==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"1b9c95e0aab90493d5fbeac16a0f82f48bd19612b5c6193c6ad0ae2bf777c3e2","last_reissued_at":"2026-07-05T04:13:19.465416Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T04:13:19.465416Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"Exploring the Universal Vulnerability of Prompt-based Learning Paradigm","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.CL","authors_text":"Ganqu Cui, Hongcheng Gao, Lei Xu, Yangyi Chen, Zhiyuan Liu","submitted_at":"2022-04-11T16:34:10Z","abstract_excerpt":"Prompt-based learning paradigm bridges the gap between pre-training and fine-tuning, and works effectively under the few-shot setting. However, we find that this learning paradigm inherits the vulnerability from the pre-training stage, where model predictions can be misled by inserting certain triggers into the text. In this paper, we explore this universal vulnerability by either injecting backdoor triggers or searching for adversarial triggers on pre-trained language models using only plain text. In both scenarios, we demonstrate that our triggers can totally control or severely decrease the"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2204.05239","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2204.05239/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2204.05239","created_at":"2026-07-05T04:13:19.465483+00:00"},{"alias_kind":"arxiv_version","alias_value":"2204.05239v1","created_at":"2026-07-05T04:13:19.465483+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2204.05239","created_at":"2026-07-05T04:13:19.465483+00:00"},{"alias_kind":"pith_short_12","alias_value":"DOOJLYFKXECJ","created_at":"2026-07-05T04:13:19.465483+00:00"},{"alias_kind":"pith_short_16","alias_value":"DOOJLYFKXECJHVP3","created_at":"2026-07-05T04:13:19.465483+00:00"},{"alias_kind":"pith_short_8","alias_value":"DOOJLYFK","created_at":"2026-07-05T04:13:19.465483+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":1,"internal_anchor_count":1,"sample":[{"citing_arxiv_id":"2506.23107","citing_title":"Can Large Language Models Capture Human Risk Preferences? A Cross-Cultural Study","ref_index":42,"is_internal_anchor":true}]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/DOOJLYFKXECJHVP35LAWUD4C6S","json":"https://pith.science/pith/DOOJLYFKXECJHVP35LAWUD4C6S.json","graph_json":"https://pith.science/api/pith-number/DOOJLYFKXECJHVP35LAWUD4C6S/graph.json","events_json":"https://pith.science/api/pith-number/DOOJLYFKXECJHVP35LAWUD4C6S/events.json","paper":"https://pith.science/paper/DOOJLYFK"},"agent_actions":{"view_html":"https://pith.science/pith/DOOJLYFKXECJHVP35LAWUD4C6S","download_json":"https://pith.science/pith/DOOJLYFKXECJHVP35LAWUD4C6S.json","view_paper":"https://pith.science/paper/DOOJLYFK","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2204.05239&json=true","fetch_graph":"https://pith.science/api/pith-number/DOOJLYFKXECJHVP35LAWUD4C6S/graph.json","fetch_events":"https://pith.science/api/pith-number/DOOJLYFKXECJHVP35LAWUD4C6S/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/DOOJLYFKXECJHVP35LAWUD4C6S/action/timestamp_anchor","attest_storage":"https://pith.science/pith/DOOJLYFKXECJHVP35LAWUD4C6S/action/storage_attestation","attest_author":"https://pith.science/pith/DOOJLYFKXECJHVP35LAWUD4C6S/action/author_attestation","sign_citation":"https://pith.science/pith/DOOJLYFKXECJHVP35LAWUD4C6S/action/citation_signature","submit_replication":"https://pith.science/pith/DOOJLYFKXECJHVP35LAWUD4C6S/action/replication_record"}},"created_at":"2026-07-05T04:13:19.465483+00:00","updated_at":"2026-07-05T04:13:19.465483+00:00"}