{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2026:F33LUR3ZIJORREGMCTV2KMX3V5","short_pith_number":"pith:F33LUR3Z","schema_version":"1.0","canonical_sha256":"2ef6ba4779425d1890cc14eba532fbaf68dacda0690ceff269910edddf07080d","source":{"kind":"arxiv","id":"2605.18239","version":1},"attestation_state":"computed","paper":{"title":"Multilingual jailbreaking of LLMs using low-resource languages","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":["cs.AI"],"primary_cat":"cs.CL","authors_text":"Dylan Marx, Marcel Dunaiski","submitted_at":"2026-05-18T11:33:18Z","abstract_excerpt":"Large Language Models (LLMs) remain vulnerable to jailbreak attempts that circumvent safety guardrails. We investigate whether multi-turn conversations using low-resource African languages (Afrikaans, Kiswahili, isiXhosa, and isiZulu) can bypass safety mechanisms across commercial LLMs. We translated prompts from existing datasets and evaluated ChatGPT, Claude, DeepSeek, Gemini, and Grok through automated testing and human red-teaming with native speakers. Single-turn translation attacks proved ineffective, while multi-turn conversations achieved English harmful response rates from 52.7% (Clau"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2605.18239","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CL","submitted_at":"2026-05-18T11:33:18Z","cross_cats_sorted":["cs.AI"],"title_canon_sha256":"b9d9f47063a0f5e49e92372212f994662b6e1023e375dbceefffd5c22bd087f6","abstract_canon_sha256":"364c8cacff04ae4ebb41ab80cb0174666378c754430bb776f52d76aa0811b1ee"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-20T00:05:51.786408Z","signature_b64":"5eEqY7FHk/ja1GpbcwY8iGSMbii5kIZa/y/QkeOhqLnH0Ob5YLJ2/rttcL/SiarDT9HTS6NLXr/YdvIX+lyHAQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"2ef6ba4779425d1890cc14eba532fbaf68dacda0690ceff269910edddf07080d","last_reissued_at":"2026-05-20T00:05:51.785737Z","signature_status":"signed_v1","first_computed_at":"2026-05-20T00:05:51.785737Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"Multilingual jailbreaking of LLMs using low-resource languages","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":["cs.AI"],"primary_cat":"cs.CL","authors_text":"Dylan Marx, Marcel Dunaiski","submitted_at":"2026-05-18T11:33:18Z","abstract_excerpt":"Large Language Models (LLMs) remain vulnerable to jailbreak attempts that circumvent safety guardrails. We investigate whether multi-turn conversations using low-resource African languages (Afrikaans, Kiswahili, isiXhosa, and isiZulu) can bypass safety mechanisms across commercial LLMs. We translated prompts from existing datasets and evaluated ChatGPT, Claude, DeepSeek, Gemini, and Grok through automated testing and human red-teaming with native speakers. Single-turn translation attacks proved ineffective, while multi-turn conversations achieved English harmful response rates from 52.7% (Clau"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2605.18239","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2605.18239/integrity.json","findings":[],"available":true,"detectors_run":[{"name":"claim_evidence","ran_at":"2026-05-19T23:41:58.913241Z","status":"completed","version":"1.0.0","findings_count":0},{"name":"ai_meta_artifact","ran_at":"2026-05-19T23:33:35.282002Z","status":"skipped","version":"1.0.0","findings_count":0}],"snapshot_sha256":"a9ed805d154b32e3d324b66574178ed5b01f282848f94a953750bf45f694ff6e"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2605.18239","created_at":"2026-05-20T00:05:51.785815+00:00"},{"alias_kind":"arxiv_version","alias_value":"2605.18239v1","created_at":"2026-05-20T00:05:51.785815+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2605.18239","created_at":"2026-05-20T00:05:51.785815+00:00"},{"alias_kind":"pith_short_12","alias_value":"F33LUR3ZIJOR","created_at":"2026-05-20T00:05:51.785815+00:00"},{"alias_kind":"pith_short_16","alias_value":"F33LUR3ZIJORREGM","created_at":"2026-05-20T00:05:51.785815+00:00"},{"alias_kind":"pith_short_8","alias_value":"F33LUR3Z","created_at":"2026-05-20T00:05:51.785815+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":0,"internal_anchor_count":0,"sample":[]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/F33LUR3ZIJORREGMCTV2KMX3V5","json":"https://pith.science/pith/F33LUR3ZIJORREGMCTV2KMX3V5.json","graph_json":"https://pith.science/api/pith-number/F33LUR3ZIJORREGMCTV2KMX3V5/graph.json","events_json":"https://pith.science/api/pith-number/F33LUR3ZIJORREGMCTV2KMX3V5/events.json","paper":"https://pith.science/paper/F33LUR3Z"},"agent_actions":{"view_html":"https://pith.science/pith/F33LUR3ZIJORREGMCTV2KMX3V5","download_json":"https://pith.science/pith/F33LUR3ZIJORREGMCTV2KMX3V5.json","view_paper":"https://pith.science/paper/F33LUR3Z","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2605.18239&json=true","fetch_graph":"https://pith.science/api/pith-number/F33LUR3ZIJORREGMCTV2KMX3V5/graph.json","fetch_events":"https://pith.science/api/pith-number/F33LUR3ZIJORREGMCTV2KMX3V5/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/F33LUR3ZIJORREGMCTV2KMX3V5/action/timestamp_anchor","attest_storage":"https://pith.science/pith/F33LUR3ZIJORREGMCTV2KMX3V5/action/storage_attestation","attest_author":"https://pith.science/pith/F33LUR3ZIJORREGMCTV2KMX3V5/action/author_attestation","sign_citation":"https://pith.science/pith/F33LUR3ZIJORREGMCTV2KMX3V5/action/citation_signature","submit_replication":"https://pith.science/pith/F33LUR3ZIJORREGMCTV2KMX3V5/action/replication_record"}},"created_at":"2026-05-20T00:05:51.785815+00:00","updated_at":"2026-05-20T00:05:51.785815+00:00"}