{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2026:P24YTHCOA6BY5IBEMAAO33X5XO","short_pith_number":"pith:P24YTHCO","schema_version":"1.0","canonical_sha256":"7eb9899c4e07838ea0246000edeefdbba73ec3fc98057ae1f6f13baa059c144d","source":{"kind":"arxiv","id":"2606.11592","version":1},"attestation_state":"computed","paper":{"title":"Defense Against Prompt Inversion Attacks: An Information-Theoretic Approach for LLM Collaborative Inference","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":[],"primary_cat":"cs.CR","authors_text":"Hossein Khalili, Nader Sehatbakhsh, Sayedeh Leila Noorbakhsh","submitted_at":"2026-06-10T02:36:26Z","abstract_excerpt":"Collaborative edge-cloud inference enables resource-constrained devices to leverage large language models (LLMs) by offloading partial computation to cloud servers. However, transmitting intermediate activations exposes sensitive user prompts to prompt inversion attacks, where an adversary reconstructs the original input from shared representations. Existing defenses rely largely on heuristic perturbations or empirical tuning, offering limited theoretical understanding of privacy leakage and its interaction with utility and latency constraints. We propose an information-theoretic defense frame"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2606.11592","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2026-06-10T02:36:26Z","cross_cats_sorted":[],"title_canon_sha256":"8b0861453ba781a3398bac8b23c4801e1bc1dc8794569390077ba5997372bdbd","abstract_canon_sha256":"51fd58c993a3a9061f5fa1fcfdfa469f569a900d01fbee95792d94bf33b27275"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-06-11T01:09:57.965464Z","signature_b64":"cFiJ9jCn5gZqhokJgif7IsFqbRRG7egwwobIyLChU/FM5r4Pork3TLPyfBAE9FfzS6Vg9obn7i7YF2+/hWfWCg==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"7eb9899c4e07838ea0246000edeefdbba73ec3fc98057ae1f6f13baa059c144d","last_reissued_at":"2026-06-11T01:09:57.964618Z","signature_status":"signed_v1","first_computed_at":"2026-06-11T01:09:57.964618Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"Defense Against Prompt Inversion Attacks: An Information-Theoretic Approach for LLM Collaborative Inference","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":[],"primary_cat":"cs.CR","authors_text":"Hossein Khalili, Nader Sehatbakhsh, Sayedeh Leila Noorbakhsh","submitted_at":"2026-06-10T02:36:26Z","abstract_excerpt":"Collaborative edge-cloud inference enables resource-constrained devices to leverage large language models (LLMs) by offloading partial computation to cloud servers. However, transmitting intermediate activations exposes sensitive user prompts to prompt inversion attacks, where an adversary reconstructs the original input from shared representations. Existing defenses rely largely on heuristic perturbations or empirical tuning, offering limited theoretical understanding of privacy leakage and its interaction with utility and latency constraints. We propose an information-theoretic defense frame"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2606.11592","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2606.11592/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2606.11592","created_at":"2026-06-11T01:09:57.964749+00:00"},{"alias_kind":"arxiv_version","alias_value":"2606.11592v1","created_at":"2026-06-11T01:09:57.964749+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2606.11592","created_at":"2026-06-11T01:09:57.964749+00:00"},{"alias_kind":"pith_short_12","alias_value":"P24YTHCOA6BY","created_at":"2026-06-11T01:09:57.964749+00:00"},{"alias_kind":"pith_short_16","alias_value":"P24YTHCOA6BY5IBE","created_at":"2026-06-11T01:09:57.964749+00:00"},{"alias_kind":"pith_short_8","alias_value":"P24YTHCO","created_at":"2026-06-11T01:09:57.964749+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":0,"internal_anchor_count":0,"sample":[]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/P24YTHCOA6BY5IBEMAAO33X5XO","json":"https://pith.science/pith/P24YTHCOA6BY5IBEMAAO33X5XO.json","graph_json":"https://pith.science/api/pith-number/P24YTHCOA6BY5IBEMAAO33X5XO/graph.json","events_json":"https://pith.science/api/pith-number/P24YTHCOA6BY5IBEMAAO33X5XO/events.json","paper":"https://pith.science/paper/P24YTHCO"},"agent_actions":{"view_html":"https://pith.science/pith/P24YTHCOA6BY5IBEMAAO33X5XO","download_json":"https://pith.science/pith/P24YTHCOA6BY5IBEMAAO33X5XO.json","view_paper":"https://pith.science/paper/P24YTHCO","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2606.11592&json=true","fetch_graph":"https://pith.science/api/pith-number/P24YTHCOA6BY5IBEMAAO33X5XO/graph.json","fetch_events":"https://pith.science/api/pith-number/P24YTHCOA6BY5IBEMAAO33X5XO/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/P24YTHCOA6BY5IBEMAAO33X5XO/action/timestamp_anchor","attest_storage":"https://pith.science/pith/P24YTHCOA6BY5IBEMAAO33X5XO/action/storage_attestation","attest_author":"https://pith.science/pith/P24YTHCOA6BY5IBEMAAO33X5XO/action/author_attestation","sign_citation":"https://pith.science/pith/P24YTHCOA6BY5IBEMAAO33X5XO/action/citation_signature","submit_replication":"https://pith.science/pith/P24YTHCOA6BY5IBEMAAO33X5XO/action/replication_record"}},"created_at":"2026-06-11T01:09:57.964749+00:00","updated_at":"2026-06-11T01:09:57.964749+00:00"}