{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2025:LJBYYYBZVQJNBLSLJ3QOB3ZZGB","short_pith_number":"pith:LJBYYYBZ","canonical_record":{"source":{"id":"2511.12710","kind":"arxiv","version":2},"metadata":{"license":"http://creativecommons.org/licenses/by-nc-nd/4.0/","primary_cat":"cs.CL","submitted_at":"2025-11-16T17:52:07Z","cross_cats_sorted":["cs.CR"],"title_canon_sha256":"e64d9df03fbdf0e634273b3bafbe4de8d9194c897cbda3412464ad25fc565a61","abstract_canon_sha256":"4203dbce4151df715b2e04557719499fff01795317752a8115ed44a65a85a596"},"schema_version":"1.0"},"canonical_sha256":"5a438c6039ac12d0ae4b4ee0e0ef3930414649e84fe7e2e96100a9e92b9f7d19","source":{"kind":"arxiv","id":"2511.12710","version":2},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2511.12710","created_at":"2026-05-20T00:04:17Z"},{"alias_kind":"arxiv_version","alias_value":"2511.12710v2","created_at":"2026-05-20T00:04:17Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2511.12710","created_at":"2026-05-20T00:04:17Z"},{"alias_kind":"pith_short_12","alias_value":"LJBYYYBZVQJN","created_at":"2026-05-20T00:04:17Z"},{"alias_kind":"pith_short_16","alias_value":"LJBYYYBZVQJNBLSL","created_at":"2026-05-20T00:04:17Z"},{"alias_kind":"pith_short_8","alias_value":"LJBYYYBZ","created_at":"2026-05-20T00:04:17Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2025:LJBYYYBZVQJNBLSLJ3QOB3ZZGB","target":"record","payload":{"canonical_record":{"source":{"id":"2511.12710","kind":"arxiv","version":2},"metadata":{"license":"http://creativecommons.org/licenses/by-nc-nd/4.0/","primary_cat":"cs.CL","submitted_at":"2025-11-16T17:52:07Z","cross_cats_sorted":["cs.CR"],"title_canon_sha256":"e64d9df03fbdf0e634273b3bafbe4de8d9194c897cbda3412464ad25fc565a61","abstract_canon_sha256":"4203dbce4151df715b2e04557719499fff01795317752a8115ed44a65a85a596"},"schema_version":"1.0"},"canonical_sha256":"5a438c6039ac12d0ae4b4ee0e0ef3930414649e84fe7e2e96100a9e92b9f7d19","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-20T00:04:17.450367Z","signature_b64":"mLG+n3YD8wFg2Yq2/R6z7CkZVv/YVt3CpEZ03UA8QqCVqaN3oW/Ob1g6XyrZpg9hCAJ8fdg8HTlhZA4jkWwECQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"5a438c6039ac12d0ae4b4ee0e0ef3930414649e84fe7e2e96100a9e92b9f7d19","last_reissued_at":"2026-05-20T00:04:17.449473Z","signature_status":"signed_v1","first_computed_at":"2026-05-20T00:04:17.449473Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"2511.12710","source_version":2,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-20T00:04:17Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"O2//XceOovVxLCUpZHx7ebFkp24RRGSOMAGjrt1aseNG0Y5Ab8MN+VCSFOc2Uq95CnC7IFRXZa0fM7+0UJDqCA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-25T21:07:56.823855Z"},"content_sha256":"cd09977a5ba6c9e84529d5b7810269daaf34e265a1d55bf6ceea7a225b1efb95","schema_version":"1.0","event_id":"sha256:cd09977a5ba6c9e84529d5b7810269daaf34e265a1d55bf6ceea7a225b1efb95"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2025:LJBYYYBZVQJNBLSLJ3QOB3ZZGB","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Evolve the Method, Not the Prompts: Evolutionary Synthesis of Jailbreak Attacks on LLMs","license":"http://creativecommons.org/licenses/by-nc-nd/4.0/","headline":"","cross_cats":["cs.CR"],"primary_cat":"cs.CL","authors_text":"Jie Li, Juncheng Li, Xingjun Ma, Xin Wang, Yan Teng, Yingchun Wang, Yixu Wang, Yunhao Chen","submitted_at":"2025-11-16T17:52:07Z","abstract_excerpt":"Automated red teaming frameworks for Large Language Models (LLMs) have become increasingly sophisticated, yet many still formulate attack optimization primarily in the prompt space. In other words, these methods mainly search for better attack wording or better strategy choices, but they do not search over executable code. By moving the search into code space, we can optimize not only the final attack prompt, but also the procedure that generates it, including execution flow, reusable logic, branching, and failure-driven repair. To overcome this gap, we introduce EvoSynth, an autonomous multi-"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2511.12710","kind":"arxiv","version":2},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2511.12710/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-20T00:04:17Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"B0hc0NlOc37l82eNnd+4wQVyDuGnADPI6WBBPI5tl5de0qiS9mpgWyqFxD2e0EViPDuIw3sb2wzAEiJWa29XCg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-25T21:07:56.824624Z"},"content_sha256":"8ea20b98b7b1f12d8e0d477b96d5acd022ba56f7255979073f313805c9fd9c80","schema_version":"1.0","event_id":"sha256:8ea20b98b7b1f12d8e0d477b96d5acd022ba56f7255979073f313805c9fd9c80"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/LJBYYYBZVQJNBLSLJ3QOB3ZZGB/bundle.json","state_url":"https://pith.science/pith/LJBYYYBZVQJNBLSLJ3QOB3ZZGB/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/LJBYYYBZVQJNBLSLJ3QOB3ZZGB/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-25T21:07:56Z","links":{"resolver":"https://pith.science/pith/LJBYYYBZVQJNBLSLJ3QOB3ZZGB","bundle":"https://pith.science/pith/LJBYYYBZVQJNBLSLJ3QOB3ZZGB/bundle.json","state":"https://pith.science/pith/LJBYYYBZVQJNBLSLJ3QOB3ZZGB/state.json","well_known_bundle":"https://pith.science/.well-known/pith/LJBYYYBZVQJNBLSLJ3QOB3ZZGB/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2025:LJBYYYBZVQJNBLSLJ3QOB3ZZGB","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"4203dbce4151df715b2e04557719499fff01795317752a8115ed44a65a85a596","cross_cats_sorted":["cs.CR"],"license":"http://creativecommons.org/licenses/by-nc-nd/4.0/","primary_cat":"cs.CL","submitted_at":"2025-11-16T17:52:07Z","title_canon_sha256":"e64d9df03fbdf0e634273b3bafbe4de8d9194c897cbda3412464ad25fc565a61"},"schema_version":"1.0","source":{"id":"2511.12710","kind":"arxiv","version":2}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2511.12710","created_at":"2026-05-20T00:04:17Z"},{"alias_kind":"arxiv_version","alias_value":"2511.12710v2","created_at":"2026-05-20T00:04:17Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2511.12710","created_at":"2026-05-20T00:04:17Z"},{"alias_kind":"pith_short_12","alias_value":"LJBYYYBZVQJN","created_at":"2026-05-20T00:04:17Z"},{"alias_kind":"pith_short_16","alias_value":"LJBYYYBZVQJNBLSL","created_at":"2026-05-20T00:04:17Z"},{"alias_kind":"pith_short_8","alias_value":"LJBYYYBZ","created_at":"2026-05-20T00:04:17Z"}],"graph_snapshots":[{"event_id":"sha256:8ea20b98b7b1f12d8e0d477b96d5acd022ba56f7255979073f313805c9fd9c80","target":"graph","created_at":"2026-05-20T00:04:17Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/2511.12710/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"Automated red teaming frameworks for Large Language Models (LLMs) have become increasingly sophisticated, yet many still formulate attack optimization primarily in the prompt space. In other words, these methods mainly search for better attack wording or better strategy choices, but they do not search over executable code. By moving the search into code space, we can optimize not only the final attack prompt, but also the procedure that generates it, including execution flow, reusable logic, branching, and failure-driven repair. To overcome this gap, we introduce EvoSynth, an autonomous multi-","authors_text":"Jie Li, Juncheng Li, Xingjun Ma, Xin Wang, Yan Teng, Yingchun Wang, Yixu Wang, Yunhao Chen","cross_cats":["cs.CR"],"headline":"","license":"http://creativecommons.org/licenses/by-nc-nd/4.0/","primary_cat":"cs.CL","submitted_at":"2025-11-16T17:52:07Z","title":"Evolve the Method, Not the Prompts: Evolutionary Synthesis of Jailbreak Attacks on LLMs"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2511.12710","kind":"arxiv","version":2},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:cd09977a5ba6c9e84529d5b7810269daaf34e265a1d55bf6ceea7a225b1efb95","target":"record","created_at":"2026-05-20T00:04:17Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"4203dbce4151df715b2e04557719499fff01795317752a8115ed44a65a85a596","cross_cats_sorted":["cs.CR"],"license":"http://creativecommons.org/licenses/by-nc-nd/4.0/","primary_cat":"cs.CL","submitted_at":"2025-11-16T17:52:07Z","title_canon_sha256":"e64d9df03fbdf0e634273b3bafbe4de8d9194c897cbda3412464ad25fc565a61"},"schema_version":"1.0","source":{"id":"2511.12710","kind":"arxiv","version":2}},"canonical_sha256":"5a438c6039ac12d0ae4b4ee0e0ef3930414649e84fe7e2e96100a9e92b9f7d19","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"5a438c6039ac12d0ae4b4ee0e0ef3930414649e84fe7e2e96100a9e92b9f7d19","first_computed_at":"2026-05-20T00:04:17.449473Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-20T00:04:17.449473Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"mLG+n3YD8wFg2Yq2/R6z7CkZVv/YVt3CpEZ03UA8QqCVqaN3oW/Ob1g6XyrZpg9hCAJ8fdg8HTlhZA4jkWwECQ==","signature_status":"signed_v1","signed_at":"2026-05-20T00:04:17.450367Z","signed_message":"canonical_sha256_bytes"},"source_id":"2511.12710","source_kind":"arxiv","source_version":2}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:cd09977a5ba6c9e84529d5b7810269daaf34e265a1d55bf6ceea7a225b1efb95","sha256:8ea20b98b7b1f12d8e0d477b96d5acd022ba56f7255979073f313805c9fd9c80"],"state_sha256":"50aca8d187f4a4a102707bfb8b27d89eb4b6a11b2ead64a2ee2dcdaba5508583"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"7ef14qmbF/Ydf5ON9H24EB3pOlfcwA2PKvkgOssEHZvCSKswsLiEExUM8LD6VX+JmorUYMRLSpz3IypqgCi5DA==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-25T21:07:56.828507Z","bundle_sha256":"16445620d3d1a33e1f92a69ec559295391bfb5715d081c8f7aeb9d973199570b"}}