{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2025:LHEDBXLS6Y37ERGY2JJ72O7RS3","short_pith_number":"pith:LHEDBXLS","canonical_record":{"source":{"id":"2509.19858","kind":"arxiv","version":2},"metadata":{"license":"http://creativecommons.org/licenses/by-nc-nd/4.0/","primary_cat":"cs.CL","submitted_at":"2025-09-24T07:57:10Z","cross_cats_sorted":[],"title_canon_sha256":"9188c6d6f873154fe884e953a48670d579abf605e833636d6b1e560b8194cb7e","abstract_canon_sha256":"dc580381b5e3987b17dac2e15db2a5b0a884f3dfec33a9e8af5167e233f5ea6f"},"schema_version":"1.0"},"canonical_sha256":"59c830dd72f637f244d8d253fd3bf196db95b5f8348551a47fad909938451b7e","source":{"kind":"arxiv","id":"2509.19858","version":2},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2509.19858","created_at":"2026-05-25T02:02:09Z"},{"alias_kind":"arxiv_version","alias_value":"2509.19858v2","created_at":"2026-05-25T02:02:09Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2509.19858","created_at":"2026-05-25T02:02:09Z"},{"alias_kind":"pith_short_12","alias_value":"LHEDBXLS6Y37","created_at":"2026-05-25T02:02:09Z"},{"alias_kind":"pith_short_16","alias_value":"LHEDBXLS6Y37ERGY","created_at":"2026-05-25T02:02:09Z"},{"alias_kind":"pith_short_8","alias_value":"LHEDBXLS","created_at":"2026-05-25T02:02:09Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2025:LHEDBXLS6Y37ERGY2JJ72O7RS3","target":"record","payload":{"canonical_record":{"source":{"id":"2509.19858","kind":"arxiv","version":2},"metadata":{"license":"http://creativecommons.org/licenses/by-nc-nd/4.0/","primary_cat":"cs.CL","submitted_at":"2025-09-24T07:57:10Z","cross_cats_sorted":[],"title_canon_sha256":"9188c6d6f873154fe884e953a48670d579abf605e833636d6b1e560b8194cb7e","abstract_canon_sha256":"dc580381b5e3987b17dac2e15db2a5b0a884f3dfec33a9e8af5167e233f5ea6f"},"schema_version":"1.0"},"canonical_sha256":"59c830dd72f637f244d8d253fd3bf196db95b5f8348551a47fad909938451b7e","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-25T02:02:09.214691Z","signature_b64":"oEi+yTkDNxJcOf16K89QQ4WUVuD9Q3j6kb/bcgRHAbMBrAqacQFIfKW0zDZztKvzUYo4ckZvbBxiLq2c4UBuBg==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"59c830dd72f637f244d8d253fd3bf196db95b5f8348551a47fad909938451b7e","last_reissued_at":"2026-05-25T02:02:09.213898Z","signature_status":"signed_v1","first_computed_at":"2026-05-25T02:02:09.213898Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"2509.19858","source_version":2,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-25T02:02:09Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"zlP/Mrvevb0AOWuUX4PHhiF4kCzBLl+5Z6kZaCeIv0DMsBOS82vxbGlWLlZsDNIN1ML36+BIQBVzN3a4T2tzDQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-26T20:24:31.159984Z"},"content_sha256":"4c46f320c02d675780026d407823343580e2d060b32579d57b4133b7a68e0349","schema_version":"1.0","event_id":"sha256:4c46f320c02d675780026d407823343580e2d060b32579d57b4133b7a68e0349"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2025:LHEDBXLS6Y37ERGY2JJ72O7RS3","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Benchmarking Gaslighting Attacks Against Speech Large Language Models","license":"http://creativecommons.org/licenses/by-nc-nd/4.0/","headline":"","cross_cats":[],"primary_cat":"cs.CL","authors_text":"Bin Zhu, Jinyang Wu, Pan Zhou, Qiquan Zhang, Xiandong Zou, Xu Fang","submitted_at":"2025-09-24T07:57:10Z","abstract_excerpt":"As Speech Large Language Models (Speech LLMs) become increasingly integrated into voice-based applications, ensuring their robustness against manipulative or adversarial input becomes critical. Although prior work has studied adversarial attacks in text-based LLMs and vision-language models, the unique cognitive and perceptual challenges of speech-based interaction remain underexplored. In contrast, speech presents inherent ambiguity, continuity, and perceptual diversity, which make adversarial attacks more difficult to detect. In this paper, we introduce gaslighting attacks, strategically cra"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2509.19858","kind":"arxiv","version":2},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2509.19858/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-25T02:02:09Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"ZP/E6BOlbnT/KnWbkC8ht9YPYQB/q9C1C4BN+OdfihKZZ+36vU4sb9VAHb463Wj85u/yHVwnqaZLKPHXOyjzCw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-26T20:24:31.160502Z"},"content_sha256":"7097cdfaefd8e00b016d7549574f5d7c5d3f2ae652028b1cd945e7b227ba9bbf","schema_version":"1.0","event_id":"sha256:7097cdfaefd8e00b016d7549574f5d7c5d3f2ae652028b1cd945e7b227ba9bbf"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/LHEDBXLS6Y37ERGY2JJ72O7RS3/bundle.json","state_url":"https://pith.science/pith/LHEDBXLS6Y37ERGY2JJ72O7RS3/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/LHEDBXLS6Y37ERGY2JJ72O7RS3/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-26T20:24:31Z","links":{"resolver":"https://pith.science/pith/LHEDBXLS6Y37ERGY2JJ72O7RS3","bundle":"https://pith.science/pith/LHEDBXLS6Y37ERGY2JJ72O7RS3/bundle.json","state":"https://pith.science/pith/LHEDBXLS6Y37ERGY2JJ72O7RS3/state.json","well_known_bundle":"https://pith.science/.well-known/pith/LHEDBXLS6Y37ERGY2JJ72O7RS3/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2025:LHEDBXLS6Y37ERGY2JJ72O7RS3","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"dc580381b5e3987b17dac2e15db2a5b0a884f3dfec33a9e8af5167e233f5ea6f","cross_cats_sorted":[],"license":"http://creativecommons.org/licenses/by-nc-nd/4.0/","primary_cat":"cs.CL","submitted_at":"2025-09-24T07:57:10Z","title_canon_sha256":"9188c6d6f873154fe884e953a48670d579abf605e833636d6b1e560b8194cb7e"},"schema_version":"1.0","source":{"id":"2509.19858","kind":"arxiv","version":2}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2509.19858","created_at":"2026-05-25T02:02:09Z"},{"alias_kind":"arxiv_version","alias_value":"2509.19858v2","created_at":"2026-05-25T02:02:09Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2509.19858","created_at":"2026-05-25T02:02:09Z"},{"alias_kind":"pith_short_12","alias_value":"LHEDBXLS6Y37","created_at":"2026-05-25T02:02:09Z"},{"alias_kind":"pith_short_16","alias_value":"LHEDBXLS6Y37ERGY","created_at":"2026-05-25T02:02:09Z"},{"alias_kind":"pith_short_8","alias_value":"LHEDBXLS","created_at":"2026-05-25T02:02:09Z"}],"graph_snapshots":[{"event_id":"sha256:7097cdfaefd8e00b016d7549574f5d7c5d3f2ae652028b1cd945e7b227ba9bbf","target":"graph","created_at":"2026-05-25T02:02:09Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/2509.19858/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"As Speech Large Language Models (Speech LLMs) become increasingly integrated into voice-based applications, ensuring their robustness against manipulative or adversarial input becomes critical. Although prior work has studied adversarial attacks in text-based LLMs and vision-language models, the unique cognitive and perceptual challenges of speech-based interaction remain underexplored. In contrast, speech presents inherent ambiguity, continuity, and perceptual diversity, which make adversarial attacks more difficult to detect. In this paper, we introduce gaslighting attacks, strategically cra","authors_text":"Bin Zhu, Jinyang Wu, Pan Zhou, Qiquan Zhang, Xiandong Zou, Xu Fang","cross_cats":[],"headline":"","license":"http://creativecommons.org/licenses/by-nc-nd/4.0/","primary_cat":"cs.CL","submitted_at":"2025-09-24T07:57:10Z","title":"Benchmarking Gaslighting Attacks Against Speech Large Language Models"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2509.19858","kind":"arxiv","version":2},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:4c46f320c02d675780026d407823343580e2d060b32579d57b4133b7a68e0349","target":"record","created_at":"2026-05-25T02:02:09Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"dc580381b5e3987b17dac2e15db2a5b0a884f3dfec33a9e8af5167e233f5ea6f","cross_cats_sorted":[],"license":"http://creativecommons.org/licenses/by-nc-nd/4.0/","primary_cat":"cs.CL","submitted_at":"2025-09-24T07:57:10Z","title_canon_sha256":"9188c6d6f873154fe884e953a48670d579abf605e833636d6b1e560b8194cb7e"},"schema_version":"1.0","source":{"id":"2509.19858","kind":"arxiv","version":2}},"canonical_sha256":"59c830dd72f637f244d8d253fd3bf196db95b5f8348551a47fad909938451b7e","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"59c830dd72f637f244d8d253fd3bf196db95b5f8348551a47fad909938451b7e","first_computed_at":"2026-05-25T02:02:09.213898Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-25T02:02:09.213898Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"oEi+yTkDNxJcOf16K89QQ4WUVuD9Q3j6kb/bcgRHAbMBrAqacQFIfKW0zDZztKvzUYo4ckZvbBxiLq2c4UBuBg==","signature_status":"signed_v1","signed_at":"2026-05-25T02:02:09.214691Z","signed_message":"canonical_sha256_bytes"},"source_id":"2509.19858","source_kind":"arxiv","source_version":2}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:4c46f320c02d675780026d407823343580e2d060b32579d57b4133b7a68e0349","sha256:7097cdfaefd8e00b016d7549574f5d7c5d3f2ae652028b1cd945e7b227ba9bbf"],"state_sha256":"8ce60b8a9fb942ba04a1f2be87940d977a13463d3217b9ce62aac9841b93e637"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"+lwolyr0L76LVjdKp8LZD1lNIkctHpWHrfMnSHnevCNyH71w8wdRu/uq5ScayFkIAcqu2f2Y9xvlVqWxYz1KCw==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-26T20:24:31.163814Z","bundle_sha256":"91309f8cbabde475c21b133afa61c720f5054784de78bf64da37c1e31fa58536"}}