{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2023:FF3UB24SRQKK3GMW6P7VXPDJUP","short_pith_number":"pith:FF3UB24S","schema_version":"1.0","canonical_sha256":"297740eb928c14ad9996f3ff5bbc69a3c6507aac6da21e8d2f926163604dcd76","source":{"kind":"arxiv","id":"2310.01469","version":3},"attestation_state":"computed","paper":{"title":"LLM Lies: Hallucinations are not Bugs, but Features as Adversarial Examples","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.AI"],"primary_cat":"cs.CL","authors_text":"Jia-Yu Yao, Kun-Peng Ning, Li Yuan, Mu-Nan Ning, Yu-Yang Liu, Zhen-Hui Liu","submitted_at":"2023-10-02T17:01:56Z","abstract_excerpt":"Large Language Models (LLMs), including GPT-3.5, LLaMA, and PaLM, seem to be knowledgeable and able to adapt to many tasks. However, we still cannot completely trust their answers, since LLMs suffer from \\textbf{hallucination}\\textemdash fabricating non-existent facts, deceiving users with or without their awareness. However, the reasons for their existence and pervasiveness remain unclear. In this paper, we demonstrate that nonsensical prompts composed of random tokens can also elicit the LLMs to respond with hallucinations. Moreover, we provide both theoretical and experimental evidence that"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2310.01469","kind":"arxiv","version":3},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CL","submitted_at":"2023-10-02T17:01:56Z","cross_cats_sorted":["cs.AI"],"title_canon_sha256":"26e0c64b3614e3ea41669c56658d10f6d0ac14a52c7d93e5754018a497a9e2e2","abstract_canon_sha256":"13ce369bcf5a1dde5a7b65e052e03d2b21d34e5155ba8dfc1a77b370adaefcf5"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T08:51:43.735876Z","signature_b64":"I7eNztZ+q/eR+mcazzVn819l38aAchLGox5kwlScGtgnqzhjFTZFrNWYKORpaq4CRnTcdJMtlBnnZfyCTz0YBw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"297740eb928c14ad9996f3ff5bbc69a3c6507aac6da21e8d2f926163604dcd76","last_reissued_at":"2026-07-05T08:51:43.735376Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T08:51:43.735376Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"LLM Lies: Hallucinations are not Bugs, but Features as Adversarial Examples","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.AI"],"primary_cat":"cs.CL","authors_text":"Jia-Yu Yao, Kun-Peng Ning, Li Yuan, Mu-Nan Ning, Yu-Yang Liu, Zhen-Hui Liu","submitted_at":"2023-10-02T17:01:56Z","abstract_excerpt":"Large Language Models (LLMs), including GPT-3.5, LLaMA, and PaLM, seem to be knowledgeable and able to adapt to many tasks. However, we still cannot completely trust their answers, since LLMs suffer from \\textbf{hallucination}\\textemdash fabricating non-existent facts, deceiving users with or without their awareness. However, the reasons for their existence and pervasiveness remain unclear. In this paper, we demonstrate that nonsensical prompts composed of random tokens can also elicit the LLMs to respond with hallucinations. Moreover, we provide both theoretical and experimental evidence that"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2310.01469","kind":"arxiv","version":3},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2310.01469/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2310.01469","created_at":"2026-07-05T08:51:43.735439+00:00"},{"alias_kind":"arxiv_version","alias_value":"2310.01469v3","created_at":"2026-07-05T08:51:43.735439+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2310.01469","created_at":"2026-07-05T08:51:43.735439+00:00"},{"alias_kind":"pith_short_12","alias_value":"FF3UB24SRQKK","created_at":"2026-07-05T08:51:43.735439+00:00"},{"alias_kind":"pith_short_16","alias_value":"FF3UB24SRQKK3GMW","created_at":"2026-07-05T08:51:43.735439+00:00"},{"alias_kind":"pith_short_8","alias_value":"FF3UB24S","created_at":"2026-07-05T08:51:43.735439+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":12,"internal_anchor_count":0,"sample":[{"citing_arxiv_id":"2606.04612","citing_title":"Hybrid Adversarial Defence for Natural Language Understanding Tasks","ref_index":48,"is_internal_anchor":false},{"citing_arxiv_id":"2606.01441","citing_title":"Dive into Ambiguity: A*-Inspired Multi-Agents Commonsense Obfuscation Attack on LLM Prompts","ref_index":39,"is_internal_anchor":false},{"citing_arxiv_id":"2606.30093","citing_title":"Efficient Retrieval-Augmented Generation via Token Co-occurrence Graphs","ref_index":47,"is_internal_anchor":false},{"citing_arxiv_id":"2411.14721","citing_title":"MolReFlect: Towards In-Context Fine-grained Alignments between Molecules and Texts","ref_index":42,"is_internal_anchor":false},{"citing_arxiv_id":"2511.19931","citing_title":"LLM-EDT: Large Language Model Enhanced Cross-domain Sequential Recommendation with Dual-phase Training","ref_index":31,"is_internal_anchor":false},{"citing_arxiv_id":"2506.19045","citing_title":"Efficient Black-Box Fault Localization for System-Level Test Code Using Large Language Models","ref_index":66,"is_internal_anchor":false},{"citing_arxiv_id":"2508.18473","citing_title":"Principled Detection of Hallucinations in Large Language Models via Multiple Testing","ref_index":25,"is_internal_anchor":false},{"citing_arxiv_id":"2509.06572","citing_title":"Parasites in the Toolchain: A Large-Scale Analysis of Attacks on the MCP Ecosystem","ref_index":52,"is_internal_anchor":false},{"citing_arxiv_id":"2510.09689","citing_title":"When Search Goes Wrong: Red-Teaming Web-Augmented Large Language Models","ref_index":43,"is_internal_anchor":false},{"citing_arxiv_id":"2605.12813","citing_title":"REALISTA: Realistic Latent Adversarial Attacks that Elicit LLM Hallucinations","ref_index":183,"is_internal_anchor":false},{"citing_arxiv_id":"2604.01473","citing_title":"SelfGrader: LLM Jailbreak Detection via Anchored Token-Level Logits","ref_index":25,"is_internal_anchor":false},{"citing_arxiv_id":"2604.09998","citing_title":"Like a Hammer, It Can Build, It Can Break: Large Language Model Uses, Perceptions, and Adoption in Cybersecurity Operations on Reddit","ref_index":67,"is_internal_anchor":false}]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/FF3UB24SRQKK3GMW6P7VXPDJUP","json":"https://pith.science/pith/FF3UB24SRQKK3GMW6P7VXPDJUP.json","graph_json":"https://pith.science/api/pith-number/FF3UB24SRQKK3GMW6P7VXPDJUP/graph.json","events_json":"https://pith.science/api/pith-number/FF3UB24SRQKK3GMW6P7VXPDJUP/events.json","paper":"https://pith.science/paper/FF3UB24S"},"agent_actions":{"view_html":"https://pith.science/pith/FF3UB24SRQKK3GMW6P7VXPDJUP","download_json":"https://pith.science/pith/FF3UB24SRQKK3GMW6P7VXPDJUP.json","view_paper":"https://pith.science/paper/FF3UB24S","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2310.01469&json=true","fetch_graph":"https://pith.science/api/pith-number/FF3UB24SRQKK3GMW6P7VXPDJUP/graph.json","fetch_events":"https://pith.science/api/pith-number/FF3UB24SRQKK3GMW6P7VXPDJUP/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/FF3UB24SRQKK3GMW6P7VXPDJUP/action/timestamp_anchor","attest_storage":"https://pith.science/pith/FF3UB24SRQKK3GMW6P7VXPDJUP/action/storage_attestation","attest_author":"https://pith.science/pith/FF3UB24SRQKK3GMW6P7VXPDJUP/action/author_attestation","sign_citation":"https://pith.science/pith/FF3UB24SRQKK3GMW6P7VXPDJUP/action/citation_signature","submit_replication":"https://pith.science/pith/FF3UB24SRQKK3GMW6P7VXPDJUP/action/replication_record"}},"created_at":"2026-07-05T08:51:43.735439+00:00","updated_at":"2026-07-05T08:51:43.735439+00:00"}