{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2026:JN7UP5WXLB5GNGZF2LG6BAESN2","short_pith_number":"pith:JN7UP5WX","canonical_record":{"source":{"id":"2605.18868","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2026-05-15T12:28:16Z","cross_cats_sorted":["cs.AI","cs.CV","cs.LG"],"title_canon_sha256":"57d863f1130ad3bc21e9bbd1e6e4fd32830cf20148ac0b8afa78cf47de44dbaa","abstract_canon_sha256":"22a4eea1a2e90c21ef878111270814524fd0af3a61fb42caa5b4a5624538f65e"},"schema_version":"1.0"},"canonical_sha256":"4b7f47f6d7587a669b25d2cde080926eb9a968da19343eb23428fa7f02dc8808","source":{"kind":"arxiv","id":"2605.18868","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2605.18868","created_at":"2026-05-20T00:06:29Z"},{"alias_kind":"arxiv_version","alias_value":"2605.18868v1","created_at":"2026-05-20T00:06:29Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2605.18868","created_at":"2026-05-20T00:06:29Z"},{"alias_kind":"pith_short_12","alias_value":"JN7UP5WXLB5G","created_at":"2026-05-20T00:06:29Z"},{"alias_kind":"pith_short_16","alias_value":"JN7UP5WXLB5GNGZF","created_at":"2026-05-20T00:06:29Z"},{"alias_kind":"pith_short_8","alias_value":"JN7UP5WX","created_at":"2026-05-20T00:06:29Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2026:JN7UP5WXLB5GNGZF2LG6BAESN2","target":"record","payload":{"canonical_record":{"source":{"id":"2605.18868","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2026-05-15T12:28:16Z","cross_cats_sorted":["cs.AI","cs.CV","cs.LG"],"title_canon_sha256":"57d863f1130ad3bc21e9bbd1e6e4fd32830cf20148ac0b8afa78cf47de44dbaa","abstract_canon_sha256":"22a4eea1a2e90c21ef878111270814524fd0af3a61fb42caa5b4a5624538f65e"},"schema_version":"1.0"},"canonical_sha256":"4b7f47f6d7587a669b25d2cde080926eb9a968da19343eb23428fa7f02dc8808","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-20T00:06:29.478576Z","signature_b64":"DRKGiGGRxJuRqxj7+NYHeKhMcFzrIrSVg78pNLxmI37Uh8awmmb/uC5Iw+oO+vUPzOw1jldAdfyipKHJv4ILAg==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"4b7f47f6d7587a669b25d2cde080926eb9a968da19343eb23428fa7f02dc8808","last_reissued_at":"2026-05-20T00:06:29.477717Z","signature_status":"signed_v1","first_computed_at":"2026-05-20T00:06:29.477717Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"2605.18868","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-20T00:06:29Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"ruq69UeD2/2vCNwZXQQv5pmGGhWZV9RsRwFmKJcSCGNB301+5qBAH3Kbz0Mf6Td7zpvozDj3f57SeiKjGQIUAw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-23T12:14:55.117281Z"},"content_sha256":"ef34c59485792417695db5f0d3eea18ac7401f38952a09bcf935be90d57ab622","schema_version":"1.0","event_id":"sha256:ef34c59485792417695db5f0d3eea18ac7401f38952a09bcf935be90d57ab622"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2026:JN7UP5WXLB5GNGZF2LG6BAESN2","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"DarkLLM: Learning Language-Driven Adversarial Attacks with Large Language Models","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":["cs.AI","cs.CV","cs.LG"],"primary_cat":"cs.CR","authors_text":"Henghui Ding, Jiaming Zhang, Qixian Zhang, Xingjun Ma, Xin Wang, Ye Sun, Yifan Ding, Yifeng Gao, Yixu Wang, Yu-Gang Jiang","submitted_at":"2026-05-15T12:28:16Z","abstract_excerpt":"While vision and multimodal foundation models underpin critical tasks from perception to complex reasoning, they remain highly vulnerable to adversarial attacks. However, traditional adversarial attacks are typically limited to single, predefined objectives, tightly coupling each attack to a specific model or task, which restricts their scalability and flexibility in real-world scenarios. In this work, we present DarkLLM, a novel attack framework that trains an LLM to translate natural-language attack instructions into latent attack vectors, which are then decoded into visual adversarial pertu"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2605.18868","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2605.18868/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-20T00:06:29Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"AkEYxJVKnrp+FTrFRws4yWhObzJFZBQrCE0GpLaQkNDXW+pBAbSY/J6f54gnKV6RC1sGW2Rbtbl85DdbxuktBQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-23T12:14:55.118024Z"},"content_sha256":"b61cbd0aac880b39ceacce2c2f3c6820118317dbd178f192582d58717aa3188e","schema_version":"1.0","event_id":"sha256:b61cbd0aac880b39ceacce2c2f3c6820118317dbd178f192582d58717aa3188e"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/JN7UP5WXLB5GNGZF2LG6BAESN2/bundle.json","state_url":"https://pith.science/pith/JN7UP5WXLB5GNGZF2LG6BAESN2/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/JN7UP5WXLB5GNGZF2LG6BAESN2/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-23T12:14:55Z","links":{"resolver":"https://pith.science/pith/JN7UP5WXLB5GNGZF2LG6BAESN2","bundle":"https://pith.science/pith/JN7UP5WXLB5GNGZF2LG6BAESN2/bundle.json","state":"https://pith.science/pith/JN7UP5WXLB5GNGZF2LG6BAESN2/state.json","well_known_bundle":"https://pith.science/.well-known/pith/JN7UP5WXLB5GNGZF2LG6BAESN2/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2026:JN7UP5WXLB5GNGZF2LG6BAESN2","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"22a4eea1a2e90c21ef878111270814524fd0af3a61fb42caa5b4a5624538f65e","cross_cats_sorted":["cs.AI","cs.CV","cs.LG"],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2026-05-15T12:28:16Z","title_canon_sha256":"57d863f1130ad3bc21e9bbd1e6e4fd32830cf20148ac0b8afa78cf47de44dbaa"},"schema_version":"1.0","source":{"id":"2605.18868","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2605.18868","created_at":"2026-05-20T00:06:29Z"},{"alias_kind":"arxiv_version","alias_value":"2605.18868v1","created_at":"2026-05-20T00:06:29Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2605.18868","created_at":"2026-05-20T00:06:29Z"},{"alias_kind":"pith_short_12","alias_value":"JN7UP5WXLB5G","created_at":"2026-05-20T00:06:29Z"},{"alias_kind":"pith_short_16","alias_value":"JN7UP5WXLB5GNGZF","created_at":"2026-05-20T00:06:29Z"},{"alias_kind":"pith_short_8","alias_value":"JN7UP5WX","created_at":"2026-05-20T00:06:29Z"}],"graph_snapshots":[{"event_id":"sha256:b61cbd0aac880b39ceacce2c2f3c6820118317dbd178f192582d58717aa3188e","target":"graph","created_at":"2026-05-20T00:06:29Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/2605.18868/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"While vision and multimodal foundation models underpin critical tasks from perception to complex reasoning, they remain highly vulnerable to adversarial attacks. However, traditional adversarial attacks are typically limited to single, predefined objectives, tightly coupling each attack to a specific model or task, which restricts their scalability and flexibility in real-world scenarios. In this work, we present DarkLLM, a novel attack framework that trains an LLM to translate natural-language attack instructions into latent attack vectors, which are then decoded into visual adversarial pertu","authors_text":"Henghui Ding, Jiaming Zhang, Qixian Zhang, Xingjun Ma, Xin Wang, Ye Sun, Yifan Ding, Yifeng Gao, Yixu Wang, Yu-Gang Jiang","cross_cats":["cs.AI","cs.CV","cs.LG"],"headline":"","license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2026-05-15T12:28:16Z","title":"DarkLLM: Learning Language-Driven Adversarial Attacks with Large Language Models"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2605.18868","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:ef34c59485792417695db5f0d3eea18ac7401f38952a09bcf935be90d57ab622","target":"record","created_at":"2026-05-20T00:06:29Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"22a4eea1a2e90c21ef878111270814524fd0af3a61fb42caa5b4a5624538f65e","cross_cats_sorted":["cs.AI","cs.CV","cs.LG"],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2026-05-15T12:28:16Z","title_canon_sha256":"57d863f1130ad3bc21e9bbd1e6e4fd32830cf20148ac0b8afa78cf47de44dbaa"},"schema_version":"1.0","source":{"id":"2605.18868","kind":"arxiv","version":1}},"canonical_sha256":"4b7f47f6d7587a669b25d2cde080926eb9a968da19343eb23428fa7f02dc8808","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"4b7f47f6d7587a669b25d2cde080926eb9a968da19343eb23428fa7f02dc8808","first_computed_at":"2026-05-20T00:06:29.477717Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-20T00:06:29.477717Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"DRKGiGGRxJuRqxj7+NYHeKhMcFzrIrSVg78pNLxmI37Uh8awmmb/uC5Iw+oO+vUPzOw1jldAdfyipKHJv4ILAg==","signature_status":"signed_v1","signed_at":"2026-05-20T00:06:29.478576Z","signed_message":"canonical_sha256_bytes"},"source_id":"2605.18868","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:ef34c59485792417695db5f0d3eea18ac7401f38952a09bcf935be90d57ab622","sha256:b61cbd0aac880b39ceacce2c2f3c6820118317dbd178f192582d58717aa3188e"],"state_sha256":"423f917518a4af0ba5ffea988837104be6c673c6fd4d71cb8465a3903ae6b4b7"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"JUXF4slfMWQF+3aMjE8T7XVo39F2rqTOwSB1dd4r6vXIznOeUIpNqyehpxwtrh20RLDXDiPZFP9xvSUISft0Bw==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-23T12:14:55.122612Z","bundle_sha256":"7238ae6b66772c59abd923d20cafd773ec683370157bab4fff2ce6e651747b78"}}