{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2025:TAIUDABD27ZI2HAZPP4X2W7BEX","short_pith_number":"pith:TAIUDABD","canonical_record":{"source":{"id":"2505.12574","kind":"arxiv","version":5},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.IR","submitted_at":"2025-05-18T23:22:53Z","cross_cats_sorted":[],"title_canon_sha256":"e2cde4b5adbe390bba7a2823b85b3578aead6c1fac8ed0ca96338f77c60b1c2d","abstract_canon_sha256":"780325480134eb90fe79ec0f638f81cc0960d3f5408770887e0a46dc22ca30cf"},"schema_version":"1.0"},"canonical_sha256":"9811418023d7f28d1c197bf97d5be125c7346a312daf2e2cec586d16ddc55e74","source":{"kind":"arxiv","id":"2505.12574","version":5},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2505.12574","created_at":"2026-06-03T01:05:44Z"},{"alias_kind":"arxiv_version","alias_value":"2505.12574v5","created_at":"2026-06-03T01:05:44Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2505.12574","created_at":"2026-06-03T01:05:44Z"},{"alias_kind":"pith_short_12","alias_value":"TAIUDABD27ZI","created_at":"2026-06-03T01:05:44Z"},{"alias_kind":"pith_short_16","alias_value":"TAIUDABD27ZI2HAZ","created_at":"2026-06-03T01:05:44Z"},{"alias_kind":"pith_short_8","alias_value":"TAIUDABD","created_at":"2026-06-03T01:05:44Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2025:TAIUDABD27ZI2HAZPP4X2W7BEX","target":"record","payload":{"canonical_record":{"source":{"id":"2505.12574","kind":"arxiv","version":5},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.IR","submitted_at":"2025-05-18T23:22:53Z","cross_cats_sorted":[],"title_canon_sha256":"e2cde4b5adbe390bba7a2823b85b3578aead6c1fac8ed0ca96338f77c60b1c2d","abstract_canon_sha256":"780325480134eb90fe79ec0f638f81cc0960d3f5408770887e0a46dc22ca30cf"},"schema_version":"1.0"},"canonical_sha256":"9811418023d7f28d1c197bf97d5be125c7346a312daf2e2cec586d16ddc55e74","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-06-03T01:05:44.022439Z","signature_b64":"qWBqv0cJ1lHRWEnn+GS2O1RISWr7nfZ+gOqtB3OS6VnWSIHZT5W25LsGYdWfnes0qqicnJck4nvic1qH61SBCw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"9811418023d7f28d1c197bf97d5be125c7346a312daf2e2cec586d16ddc55e74","last_reissued_at":"2026-06-03T01:05:44.021870Z","signature_status":"signed_v1","first_computed_at":"2026-06-03T01:05:44.021870Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"2505.12574","source_version":5,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-06-03T01:05:44Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"doy/LXi6O0vvONjQRwWS1vyHeOfjcvQh+96Ama0+Lalnb9g+DZ99rh64Zv49Kgn5iIqmqqbT5XRZPRqWvlBdCw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-10T09:00:09.895763Z"},"content_sha256":"8df4cce7ced26d0a8f6c521d18e0684901eddb6c68388785f0a3b7ec32011b7d","schema_version":"1.0","event_id":"sha256:8df4cce7ced26d0a8f6c521d18e0684901eddb6c68388785f0a3b7ec32011b7d"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2025:TAIUDABD27ZI2HAZPP4X2W7BEX","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Uncovering Competing Poisoning Attacks in Retrieval-Augmented Generation","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.IR","authors_text":"Jing Dong, Jinghao Zhang, Liang Wang, Liuji Chen, Qiang Liu, Shu Wu, Xiaofang Yang, Xin Sun, Yuanzhuo Lu","submitted_at":"2025-05-18T23:22:53Z","abstract_excerpt":"Retrieval-Augmented Generation (RAG) systems improve the factual grounding of large language models (LLMs) but remain vulnerable to retrieval poisoning, where adversaries seed the corpus with manipulated content. Prior work largely evaluates this threat under a simplified single-attacker assumption. In practice, however, high-value or high-visibility queries attract multiple adversaries with conflicting objectives. Motivated by real cases, we introduce the setting of competing attacks, in which multiple attackers simultaneously attempt to steer the same or closely related query toward differen"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2505.12574","kind":"arxiv","version":5},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2505.12574/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-06-03T01:05:44Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"+ea7xox929ibR5Bj53jM6oF8zoG5wbC7RohpaPsLsfAwgIhjATNdaX9lB58go6rqY8sa5CEaSr9D5vM4qw5ACg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-10T09:00:09.896554Z"},"content_sha256":"bf9a3fe8b2d3eafe96ac22e18c605a10a8440d4646fb7d4121006c1bca320eba","schema_version":"1.0","event_id":"sha256:bf9a3fe8b2d3eafe96ac22e18c605a10a8440d4646fb7d4121006c1bca320eba"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/TAIUDABD27ZI2HAZPP4X2W7BEX/bundle.json","state_url":"https://pith.science/pith/TAIUDABD27ZI2HAZPP4X2W7BEX/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/TAIUDABD27ZI2HAZPP4X2W7BEX/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-10T09:00:09Z","links":{"resolver":"https://pith.science/pith/TAIUDABD27ZI2HAZPP4X2W7BEX","bundle":"https://pith.science/pith/TAIUDABD27ZI2HAZPP4X2W7BEX/bundle.json","state":"https://pith.science/pith/TAIUDABD27ZI2HAZPP4X2W7BEX/state.json","well_known_bundle":"https://pith.science/.well-known/pith/TAIUDABD27ZI2HAZPP4X2W7BEX/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2025:TAIUDABD27ZI2HAZPP4X2W7BEX","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"780325480134eb90fe79ec0f638f81cc0960d3f5408770887e0a46dc22ca30cf","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.IR","submitted_at":"2025-05-18T23:22:53Z","title_canon_sha256":"e2cde4b5adbe390bba7a2823b85b3578aead6c1fac8ed0ca96338f77c60b1c2d"},"schema_version":"1.0","source":{"id":"2505.12574","kind":"arxiv","version":5}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2505.12574","created_at":"2026-06-03T01:05:44Z"},{"alias_kind":"arxiv_version","alias_value":"2505.12574v5","created_at":"2026-06-03T01:05:44Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2505.12574","created_at":"2026-06-03T01:05:44Z"},{"alias_kind":"pith_short_12","alias_value":"TAIUDABD27ZI","created_at":"2026-06-03T01:05:44Z"},{"alias_kind":"pith_short_16","alias_value":"TAIUDABD27ZI2HAZ","created_at":"2026-06-03T01:05:44Z"},{"alias_kind":"pith_short_8","alias_value":"TAIUDABD","created_at":"2026-06-03T01:05:44Z"}],"graph_snapshots":[{"event_id":"sha256:bf9a3fe8b2d3eafe96ac22e18c605a10a8440d4646fb7d4121006c1bca320eba","target":"graph","created_at":"2026-06-03T01:05:44Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/2505.12574/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"Retrieval-Augmented Generation (RAG) systems improve the factual grounding of large language models (LLMs) but remain vulnerable to retrieval poisoning, where adversaries seed the corpus with manipulated content. Prior work largely evaluates this threat under a simplified single-attacker assumption. In practice, however, high-value or high-visibility queries attract multiple adversaries with conflicting objectives. Motivated by real cases, we introduce the setting of competing attacks, in which multiple attackers simultaneously attempt to steer the same or closely related query toward differen","authors_text":"Jing Dong, Jinghao Zhang, Liang Wang, Liuji Chen, Qiang Liu, Shu Wu, Xiaofang Yang, Xin Sun, Yuanzhuo Lu","cross_cats":[],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.IR","submitted_at":"2025-05-18T23:22:53Z","title":"Uncovering Competing Poisoning Attacks in Retrieval-Augmented Generation"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2505.12574","kind":"arxiv","version":5},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:8df4cce7ced26d0a8f6c521d18e0684901eddb6c68388785f0a3b7ec32011b7d","target":"record","created_at":"2026-06-03T01:05:44Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"780325480134eb90fe79ec0f638f81cc0960d3f5408770887e0a46dc22ca30cf","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.IR","submitted_at":"2025-05-18T23:22:53Z","title_canon_sha256":"e2cde4b5adbe390bba7a2823b85b3578aead6c1fac8ed0ca96338f77c60b1c2d"},"schema_version":"1.0","source":{"id":"2505.12574","kind":"arxiv","version":5}},"canonical_sha256":"9811418023d7f28d1c197bf97d5be125c7346a312daf2e2cec586d16ddc55e74","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"9811418023d7f28d1c197bf97d5be125c7346a312daf2e2cec586d16ddc55e74","first_computed_at":"2026-06-03T01:05:44.021870Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-06-03T01:05:44.021870Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"qWBqv0cJ1lHRWEnn+GS2O1RISWr7nfZ+gOqtB3OS6VnWSIHZT5W25LsGYdWfnes0qqicnJck4nvic1qH61SBCw==","signature_status":"signed_v1","signed_at":"2026-06-03T01:05:44.022439Z","signed_message":"canonical_sha256_bytes"},"source_id":"2505.12574","source_kind":"arxiv","source_version":5}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:8df4cce7ced26d0a8f6c521d18e0684901eddb6c68388785f0a3b7ec32011b7d","sha256:bf9a3fe8b2d3eafe96ac22e18c605a10a8440d4646fb7d4121006c1bca320eba"],"state_sha256":"cad8f878a30d2211c9bb578743a23330b9ab311364ea2802bcf77ace78899982"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"8IDMw+ErcwpoNx3p27VLekfF4hlW8GI4zaZvg/RtHzDKm89/2GymN8bILkVaUyScccrVM96pXmZ1JOenWmcICQ==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-10T09:00:09.900556Z","bundle_sha256":"ca6ed344dce14613cb54711080e9bc1c441526b7e9ea50abb591cd1b2a601552"}}