{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2025:LCD4RKJNHKJKEP6UXBPCGTIXWT","short_pith_number":"pith:LCD4RKJN","schema_version":"1.0","canonical_sha256":"5887c8a92d3a92a23fd4b85e234d17b4f72f99b8beac7d490d9d748a357da915","source":{"kind":"arxiv","id":"2504.11281","version":1},"attestation_state":"computed","paper":{"title":"The Obvious Invisible Threat: LLM-Powered GUI Agents' Vulnerability to Fine-Print Injections","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.CL","cs.CR"],"primary_cat":"cs.HC","authors_text":"Bingcan Guo, Chaoran Chen, Ibrahim Khalilov, Shang Ma, Simret A Gebreegziabher, Tianshi Li, Toby Jia-Jun Li, Yanfang Ye, Yaxing Yao, Zhiping Zhang, Ziang Xiao","submitted_at":"2025-04-15T15:21:09Z","abstract_excerpt":"A Large Language Model (LLM) powered GUI agent is a specialized autonomous system that performs tasks on the user's behalf according to high-level instructions. It does so by perceiving and interpreting the graphical user interfaces (GUIs) of relevant apps, often visually, inferring necessary sequences of actions, and then interacting with GUIs by executing the actions such as clicking, typing, and tapping. To complete real-world tasks, such as filling forms or booking services, GUI agents often need to process and act on sensitive user data. However, this autonomy introduces new privacy and s"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2504.11281","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.HC","submitted_at":"2025-04-15T15:21:09Z","cross_cats_sorted":["cs.CL","cs.CR"],"title_canon_sha256":"d479c9af6f8180f170506f40024acfde95a063cbdd7e96fd941b7c1851bca5e6","abstract_canon_sha256":"12fe57aa9d3feaaf93086b74ef2398360336d888b8d68c6dc6eb802204a49694"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T10:49:31.687347Z","signature_b64":"w3VF81/bJf205S+dBetw8uDX4FyWzyRjwJyuk0jAm2AMWtIZ7R/0K72BYj4GTYjxG/HwJpxcQbYwNxTPDnS5Dw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"5887c8a92d3a92a23fd4b85e234d17b4f72f99b8beac7d490d9d748a357da915","last_reissued_at":"2026-07-05T10:49:31.686697Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T10:49:31.686697Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"The Obvious Invisible Threat: LLM-Powered GUI Agents' Vulnerability to Fine-Print Injections","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.CL","cs.CR"],"primary_cat":"cs.HC","authors_text":"Bingcan Guo, Chaoran Chen, Ibrahim Khalilov, Shang Ma, Simret A Gebreegziabher, Tianshi Li, Toby Jia-Jun Li, Yanfang Ye, Yaxing Yao, Zhiping Zhang, Ziang Xiao","submitted_at":"2025-04-15T15:21:09Z","abstract_excerpt":"A Large Language Model (LLM) powered GUI agent is a specialized autonomous system that performs tasks on the user's behalf according to high-level instructions. It does so by perceiving and interpreting the graphical user interfaces (GUIs) of relevant apps, often visually, inferring necessary sequences of actions, and then interacting with GUIs by executing the actions such as clicking, typing, and tapping. To complete real-world tasks, such as filling forms or booking services, GUI agents often need to process and act on sensitive user data. However, this autonomy introduces new privacy and s"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2504.11281","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2504.11281/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2504.11281","created_at":"2026-07-05T10:49:31.686779+00:00"},{"alias_kind":"arxiv_version","alias_value":"2504.11281v1","created_at":"2026-07-05T10:49:31.686779+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2504.11281","created_at":"2026-07-05T10:49:31.686779+00:00"},{"alias_kind":"pith_short_12","alias_value":"LCD4RKJNHKJK","created_at":"2026-07-05T10:49:31.686779+00:00"},{"alias_kind":"pith_short_16","alias_value":"LCD4RKJNHKJKEP6U","created_at":"2026-07-05T10:49:31.686779+00:00"},{"alias_kind":"pith_short_8","alias_value":"LCD4RKJN","created_at":"2026-07-05T10:49:31.686779+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":5,"internal_anchor_count":0,"sample":[{"citing_arxiv_id":"2606.06914","citing_title":"DPAgent-in-the-Middle: Agentic Defense and Repair Against AI-Groomed Deceptive Patterns","ref_index":49,"is_internal_anchor":false},{"citing_arxiv_id":"2507.10610","citing_title":"LaSM: Layer-wise Scaling Mechanism for Defending Pop-up Attack on GUI Agents","ref_index":26,"is_internal_anchor":false},{"citing_arxiv_id":"2510.04465","citing_title":"Autonomy Reshapes How Personalization Affects Privacy Concerns and Trust in LLM Agents","ref_index":12,"is_internal_anchor":false},{"citing_arxiv_id":"2601.18842","citing_title":"GUIGuard-Bench: Toward a General Evaluation for Privacy-Preserving GUI Agents","ref_index":57,"is_internal_anchor":false},{"citing_arxiv_id":"2604.04918","citing_title":"Comparing Human Oversight Strategies for Computer-Use Agents","ref_index":4,"is_internal_anchor":false}]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/LCD4RKJNHKJKEP6UXBPCGTIXWT","json":"https://pith.science/pith/LCD4RKJNHKJKEP6UXBPCGTIXWT.json","graph_json":"https://pith.science/api/pith-number/LCD4RKJNHKJKEP6UXBPCGTIXWT/graph.json","events_json":"https://pith.science/api/pith-number/LCD4RKJNHKJKEP6UXBPCGTIXWT/events.json","paper":"https://pith.science/paper/LCD4RKJN"},"agent_actions":{"view_html":"https://pith.science/pith/LCD4RKJNHKJKEP6UXBPCGTIXWT","download_json":"https://pith.science/pith/LCD4RKJNHKJKEP6UXBPCGTIXWT.json","view_paper":"https://pith.science/paper/LCD4RKJN","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2504.11281&json=true","fetch_graph":"https://pith.science/api/pith-number/LCD4RKJNHKJKEP6UXBPCGTIXWT/graph.json","fetch_events":"https://pith.science/api/pith-number/LCD4RKJNHKJKEP6UXBPCGTIXWT/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/LCD4RKJNHKJKEP6UXBPCGTIXWT/action/timestamp_anchor","attest_storage":"https://pith.science/pith/LCD4RKJNHKJKEP6UXBPCGTIXWT/action/storage_attestation","attest_author":"https://pith.science/pith/LCD4RKJNHKJKEP6UXBPCGTIXWT/action/author_attestation","sign_citation":"https://pith.science/pith/LCD4RKJNHKJKEP6UXBPCGTIXWT/action/citation_signature","submit_replication":"https://pith.science/pith/LCD4RKJNHKJKEP6UXBPCGTIXWT/action/replication_record"}},"created_at":"2026-07-05T10:49:31.686779+00:00","updated_at":"2026-07-05T10:49:31.686779+00:00"}