{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2026:IK7DKOSHYW5F4ZX2XAGAMAZKHS","short_pith_number":"pith:IK7DKOSH","schema_version":"1.0","canonical_sha256":"42be353a47c5ba5e66fab80c06032a3cb5637ce83d0b69ef41837862bac92d3b","source":{"kind":"arxiv","id":"2607.20759","version":1},"attestation_state":"computed","paper":{"title":"IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests","license":"http://creativecommons.org/licenses/by-nc-nd/4.0/","headline":"","cross_cats":["cs.AI","cs.SE"],"primary_cat":"cs.CR","authors_text":"Ankur Singh, Jinqiu Yang, Tse-Hsun Chen","submitted_at":"2026-07-22T22:20:02Z","abstract_excerpt":"AI coding agents powered by LLMs are increasingly integrated into real-world software development, where they generate, edit, and execute code with autonomous access to local files and tools. Coding agents inherit security risks from both the LLM backbone, where adversarial prompts, poisoned training data, and backdoor triggers can cause models to emit insecure or attacker-chosen code, and their agentic architecture, where tool-using autonomy enables induced misuse of external APIs, data exfiltration, and persistent compromise of development environments. This paper presents a systematic evalu"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2607.20759","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by-nc-nd/4.0/","primary_cat":"cs.CR","submitted_at":"2026-07-22T22:20:02Z","cross_cats_sorted":["cs.AI","cs.SE"],"title_canon_sha256":"4272df8916303d85725e25e6eb338a7fa4bbd2d57110765941be3845a97066c7","abstract_canon_sha256":"c3a162b8c0895fab1f9fa7f39fc563a794a3f545a42a84ea5dc5877606c9097e"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-24T00:23:33.011392Z","signature_b64":"WfzFV49qlksOAXLfJwE3S67lK1EcPMbOxPNYAA3rgOrtDnHu3oQ/aBOqFI69/Z1BWBv8IcnNvqi1Mpvktc/xCA==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"42be353a47c5ba5e66fab80c06032a3cb5637ce83d0b69ef41837862bac92d3b","last_reissued_at":"2026-07-24T00:23:33.010459Z","signature_status":"signed_v1","first_computed_at":"2026-07-24T00:23:33.010459Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests","license":"http://creativecommons.org/licenses/by-nc-nd/4.0/","headline":"","cross_cats":["cs.AI","cs.SE"],"primary_cat":"cs.CR","authors_text":"Ankur Singh, Jinqiu Yang, Tse-Hsun Chen","submitted_at":"2026-07-22T22:20:02Z","abstract_excerpt":"AI coding agents powered by LLMs are increasingly integrated into real-world software development, where they generate, edit, and execute code with autonomous access to local files and tools. Coding agents inherit security risks from both the LLM backbone, where adversarial prompts, poisoned training data, and backdoor triggers can cause models to emit insecure or attacker-chosen code, and their agentic architecture, where tool-using autonomy enables induced misuse of external APIs, data exfiltration, and persistent compromise of development environments. This paper presents a systematic evalu"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2607.20759","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2607.20759/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2607.20759","created_at":"2026-07-24T00:23:33.010942+00:00"},{"alias_kind":"arxiv_version","alias_value":"2607.20759v1","created_at":"2026-07-24T00:23:33.010942+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2607.20759","created_at":"2026-07-24T00:23:33.010942+00:00"},{"alias_kind":"pith_short_12","alias_value":"IK7DKOSHYW5F","created_at":"2026-07-24T00:23:33.010942+00:00"},{"alias_kind":"pith_short_16","alias_value":"IK7DKOSHYW5F4ZX2","created_at":"2026-07-24T00:23:33.010942+00:00"},{"alias_kind":"pith_short_8","alias_value":"IK7DKOSH","created_at":"2026-07-24T00:23:33.010942+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":0,"internal_anchor_count":0,"sample":[]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/IK7DKOSHYW5F4ZX2XAGAMAZKHS","json":"https://pith.science/pith/IK7DKOSHYW5F4ZX2XAGAMAZKHS.json","graph_json":"https://pith.science/api/pith-number/IK7DKOSHYW5F4ZX2XAGAMAZKHS/graph.json","events_json":"https://pith.science/api/pith-number/IK7DKOSHYW5F4ZX2XAGAMAZKHS/events.json","paper":"https://pith.science/paper/IK7DKOSH"},"agent_actions":{"view_html":"https://pith.science/pith/IK7DKOSHYW5F4ZX2XAGAMAZKHS","download_json":"https://pith.science/pith/IK7DKOSHYW5F4ZX2XAGAMAZKHS.json","view_paper":"https://pith.science/paper/IK7DKOSH","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2607.20759&json=true","fetch_graph":"https://pith.science/api/pith-number/IK7DKOSHYW5F4ZX2XAGAMAZKHS/graph.json","fetch_events":"https://pith.science/api/pith-number/IK7DKOSHYW5F4ZX2XAGAMAZKHS/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/IK7DKOSHYW5F4ZX2XAGAMAZKHS/action/timestamp_anchor","attest_storage":"https://pith.science/pith/IK7DKOSHYW5F4ZX2XAGAMAZKHS/action/storage_attestation","attest_author":"https://pith.science/pith/IK7DKOSHYW5F4ZX2XAGAMAZKHS/action/author_attestation","sign_citation":"https://pith.science/pith/IK7DKOSHYW5F4ZX2XAGAMAZKHS/action/citation_signature","submit_replication":"https://pith.science/pith/IK7DKOSHYW5F4ZX2XAGAMAZKHS/action/replication_record"}},"created_at":"2026-07-24T00:23:33.010942+00:00","updated_at":"2026-07-24T00:23:33.010942+00:00"}