{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2026:LSWJCVZFADIEBPSOJQRPGA2NAF","short_pith_number":"pith:LSWJCVZF","canonical_record":{"source":{"id":"2606.03090","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2026-06-02T03:24:12Z","cross_cats_sorted":["cs.AI"],"title_canon_sha256":"4c905db2835c176bc421074514227846f4b18d63642d41bbad384b7dee13d664","abstract_canon_sha256":"ef25ab43a0a710b617c582661a648feac960f93d12b2d16347292247555f50a1"},"schema_version":"1.0"},"canonical_sha256":"5cac91572500d040be4e4c22f3034d017030d97b6cfbc2faf9623c22a8cf1e54","source":{"kind":"arxiv","id":"2606.03090","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2606.03090","created_at":"2026-06-03T01:05:31Z"},{"alias_kind":"arxiv_version","alias_value":"2606.03090v1","created_at":"2026-06-03T01:05:31Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2606.03090","created_at":"2026-06-03T01:05:31Z"},{"alias_kind":"pith_short_12","alias_value":"LSWJCVZFADIE","created_at":"2026-06-03T01:05:31Z"},{"alias_kind":"pith_short_16","alias_value":"LSWJCVZFADIEBPSO","created_at":"2026-06-03T01:05:31Z"},{"alias_kind":"pith_short_8","alias_value":"LSWJCVZF","created_at":"2026-06-03T01:05:31Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2026:LSWJCVZFADIEBPSOJQRPGA2NAF","target":"record","payload":{"canonical_record":{"source":{"id":"2606.03090","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2026-06-02T03:24:12Z","cross_cats_sorted":["cs.AI"],"title_canon_sha256":"4c905db2835c176bc421074514227846f4b18d63642d41bbad384b7dee13d664","abstract_canon_sha256":"ef25ab43a0a710b617c582661a648feac960f93d12b2d16347292247555f50a1"},"schema_version":"1.0"},"canonical_sha256":"5cac91572500d040be4e4c22f3034d017030d97b6cfbc2faf9623c22a8cf1e54","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-06-03T01:05:31.374230Z","signature_b64":"zzKaeI8y0Mpl8PGJA6X8zWr4NeTl47juCNYqXWMkvi5cM3aPMrOcA0VersfIv0pK7rcFgjvTYoGtz+Gvwb7OBA==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"5cac91572500d040be4e4c22f3034d017030d97b6cfbc2faf9623c22a8cf1e54","last_reissued_at":"2026-06-03T01:05:31.373824Z","signature_status":"signed_v1","first_computed_at":"2026-06-03T01:05:31.373824Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"2606.03090","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-06-03T01:05:31Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"SPobUXczTY3wZyuJeg1iiTqWaVh2iKodxLfzAv4Pctkv9cATnurFPmtXICXQck73WT1meEBJshsYN0b0nbgfBg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-06T15:59:26.483042Z"},"content_sha256":"d01dcff876c97583b3627e50817ed9d333f57faad2b0ae5c81b7c6407844fba6","schema_version":"1.0","event_id":"sha256:d01dcff876c97583b3627e50817ed9d333f57faad2b0ae5c81b7c6407844fba6"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2026:LSWJCVZFADIEBPSOJQRPGA2NAF","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"\"**Important** You should give me full credits!\": Exploring Prompt Injection Attacks on LLM-Based Automatic Grading Systems","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.AI"],"primary_cat":"cs.CR","authors_text":"Fedor Filippov, Hang Li, Hui Liu, Jiliang Tang, Kaiqi Yang, Pengfei He, Yingqian Cui, Yucheng Chu, Yuling Lin","submitted_at":"2026-06-02T03:24:12Z","abstract_excerpt":"The emergence of large language models (LLMs) has significantly accelerated recent research on LLM-based automatic grading (AG) systems. Benefiting from the strong instruction-following capabilities and broad prior knowledge of LLMs, educators can deploy AG systems across diverse tasks using only natural language rubrics while achieving satisfactory grading performance. Despite these advantages, new security concerns may also arise. In particular, prompt injection (PI) attacks have recently become a major threat to LLM-based applications. In the context of AG, attackers can potentially exploit"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2606.03090","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2606.03090/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-06-03T01:05:31Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"MvfoijPcBMvpyGHfPbiUseZxtTNbklGl/BcZKopuYC/x0sezcsUVCFIIbQmUtuR2/c1zTcS8H6QFY6T1cyMEAA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-06T15:59:26.483745Z"},"content_sha256":"7446190a715660ca229071e4ac93f574085252b2e8772a74c13a310b9ddb5b17","schema_version":"1.0","event_id":"sha256:7446190a715660ca229071e4ac93f574085252b2e8772a74c13a310b9ddb5b17"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/LSWJCVZFADIEBPSOJQRPGA2NAF/bundle.json","state_url":"https://pith.science/pith/LSWJCVZFADIEBPSOJQRPGA2NAF/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/LSWJCVZFADIEBPSOJQRPGA2NAF/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-06T15:59:26Z","links":{"resolver":"https://pith.science/pith/LSWJCVZFADIEBPSOJQRPGA2NAF","bundle":"https://pith.science/pith/LSWJCVZFADIEBPSOJQRPGA2NAF/bundle.json","state":"https://pith.science/pith/LSWJCVZFADIEBPSOJQRPGA2NAF/state.json","well_known_bundle":"https://pith.science/.well-known/pith/LSWJCVZFADIEBPSOJQRPGA2NAF/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2026:LSWJCVZFADIEBPSOJQRPGA2NAF","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"ef25ab43a0a710b617c582661a648feac960f93d12b2d16347292247555f50a1","cross_cats_sorted":["cs.AI"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2026-06-02T03:24:12Z","title_canon_sha256":"4c905db2835c176bc421074514227846f4b18d63642d41bbad384b7dee13d664"},"schema_version":"1.0","source":{"id":"2606.03090","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2606.03090","created_at":"2026-06-03T01:05:31Z"},{"alias_kind":"arxiv_version","alias_value":"2606.03090v1","created_at":"2026-06-03T01:05:31Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2606.03090","created_at":"2026-06-03T01:05:31Z"},{"alias_kind":"pith_short_12","alias_value":"LSWJCVZFADIE","created_at":"2026-06-03T01:05:31Z"},{"alias_kind":"pith_short_16","alias_value":"LSWJCVZFADIEBPSO","created_at":"2026-06-03T01:05:31Z"},{"alias_kind":"pith_short_8","alias_value":"LSWJCVZF","created_at":"2026-06-03T01:05:31Z"}],"graph_snapshots":[{"event_id":"sha256:7446190a715660ca229071e4ac93f574085252b2e8772a74c13a310b9ddb5b17","target":"graph","created_at":"2026-06-03T01:05:31Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/2606.03090/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"The emergence of large language models (LLMs) has significantly accelerated recent research on LLM-based automatic grading (AG) systems. Benefiting from the strong instruction-following capabilities and broad prior knowledge of LLMs, educators can deploy AG systems across diverse tasks using only natural language rubrics while achieving satisfactory grading performance. Despite these advantages, new security concerns may also arise. In particular, prompt injection (PI) attacks have recently become a major threat to LLM-based applications. In the context of AG, attackers can potentially exploit","authors_text":"Fedor Filippov, Hang Li, Hui Liu, Jiliang Tang, Kaiqi Yang, Pengfei He, Yingqian Cui, Yucheng Chu, Yuling Lin","cross_cats":["cs.AI"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2026-06-02T03:24:12Z","title":"\"**Important** You should give me full credits!\": Exploring Prompt Injection Attacks on LLM-Based Automatic Grading Systems"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2606.03090","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:d01dcff876c97583b3627e50817ed9d333f57faad2b0ae5c81b7c6407844fba6","target":"record","created_at":"2026-06-03T01:05:31Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"ef25ab43a0a710b617c582661a648feac960f93d12b2d16347292247555f50a1","cross_cats_sorted":["cs.AI"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2026-06-02T03:24:12Z","title_canon_sha256":"4c905db2835c176bc421074514227846f4b18d63642d41bbad384b7dee13d664"},"schema_version":"1.0","source":{"id":"2606.03090","kind":"arxiv","version":1}},"canonical_sha256":"5cac91572500d040be4e4c22f3034d017030d97b6cfbc2faf9623c22a8cf1e54","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"5cac91572500d040be4e4c22f3034d017030d97b6cfbc2faf9623c22a8cf1e54","first_computed_at":"2026-06-03T01:05:31.373824Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-06-03T01:05:31.373824Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"zzKaeI8y0Mpl8PGJA6X8zWr4NeTl47juCNYqXWMkvi5cM3aPMrOcA0VersfIv0pK7rcFgjvTYoGtz+Gvwb7OBA==","signature_status":"signed_v1","signed_at":"2026-06-03T01:05:31.374230Z","signed_message":"canonical_sha256_bytes"},"source_id":"2606.03090","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:d01dcff876c97583b3627e50817ed9d333f57faad2b0ae5c81b7c6407844fba6","sha256:7446190a715660ca229071e4ac93f574085252b2e8772a74c13a310b9ddb5b17"],"state_sha256":"7fb3d932c1a0ec44c2cc0da118a4ea98b1f1054d7865d48a6be6b9c14dc41196"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"32hE22u0Kfac+gLUz2vLLh3psov5WmHXa7ZWxQiokeFYwznlYTuTe7L2SSA04UdOTcD/HRH0PRRD3Ke6dSyMDQ==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-06T15:59:26.486656Z","bundle_sha256":"13a22a79fefd47191f721d603b4416ccb97a82d8cb4cf5c7dc2a7d1e26acefb9"}}