{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2026:TUYJMRRETGXZURVBJLEVDUQR4A","short_pith_number":"pith:TUYJMRRE","canonical_record":{"source":{"id":"2605.27823","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2026-05-27T01:30:06Z","cross_cats_sorted":["cs.AI","cs.CV"],"title_canon_sha256":"0f6cf56553fa31f63866b623129a35c02af8e8c2af2a22b3a1d7860051d8e5e0","abstract_canon_sha256":"1ade3cbc6b675d742054105cd0c22447a730539112191c82ea9d060f072b531c"},"schema_version":"1.0"},"canonical_sha256":"9d3096462499af9a46a14ac951d211e01b60df92b65811d32676a2e59d50691c","source":{"kind":"arxiv","id":"2605.27823","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2605.27823","created_at":"2026-05-28T01:04:49Z"},{"alias_kind":"arxiv_version","alias_value":"2605.27823v1","created_at":"2026-05-28T01:04:49Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2605.27823","created_at":"2026-05-28T01:04:49Z"},{"alias_kind":"pith_short_12","alias_value":"TUYJMRRETGXZ","created_at":"2026-05-28T01:04:49Z"},{"alias_kind":"pith_short_16","alias_value":"TUYJMRRETGXZURVB","created_at":"2026-05-28T01:04:49Z"},{"alias_kind":"pith_short_8","alias_value":"TUYJMRRE","created_at":"2026-05-28T01:04:49Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2026:TUYJMRRETGXZURVBJLEVDUQR4A","target":"record","payload":{"canonical_record":{"source":{"id":"2605.27823","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2026-05-27T01:30:06Z","cross_cats_sorted":["cs.AI","cs.CV"],"title_canon_sha256":"0f6cf56553fa31f63866b623129a35c02af8e8c2af2a22b3a1d7860051d8e5e0","abstract_canon_sha256":"1ade3cbc6b675d742054105cd0c22447a730539112191c82ea9d060f072b531c"},"schema_version":"1.0"},"canonical_sha256":"9d3096462499af9a46a14ac951d211e01b60df92b65811d32676a2e59d50691c","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-28T01:04:49.705484Z","signature_b64":"Hym9crt0ZdluwxmvnicV11mK/D/joZ9lmzF13pnAOMkTTIGIhZ6/hi2NFHjljvBhJ+P9mXLPljKPWXWArRG5Ag==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"9d3096462499af9a46a14ac951d211e01b60df92b65811d32676a2e59d50691c","last_reissued_at":"2026-05-28T01:04:49.705051Z","signature_status":"signed_v1","first_computed_at":"2026-05-28T01:04:49.705051Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"2605.27823","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-28T01:04:49Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"L172JJlsYMt7hA6py4T0Fb2c5EICXdmHFE6N79T+Shl7/yk1t6IMg7YuJg+IrGyXDZN40q6urCizd21T3fqJAw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-05T21:16:31.725716Z"},"content_sha256":"95d1b450b45d98125d88a4662c0f48e40804e45d32265f545f4d989e8068a998","schema_version":"1.0","event_id":"sha256:95d1b450b45d98125d88a4662c0f48e40804e45d32265f545f4d989e8068a998"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2026:TUYJMRRETGXZURVBJLEVDUQR4A","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Disentangling Adversarial Prompts: A Semantic-Graph Defense for Robust LLM Security","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.AI","cs.CV"],"primary_cat":"cs.CR","authors_text":"Wanlong Fang, Xiang Fang","submitted_at":"2026-05-27T01:30:06Z","abstract_excerpt":"Large Language Models (LLMs) are increasingly vulnerable to adversarial prompts that exploit semantic ambiguities to bypass safety mechanisms, resulting in harmful or inappropriate outputs. Such attacks, including jailbreaking and prompt injection, pose significant risks to the integrity and availability of LLMs in security-critical applications. This paper proposes the Adversarial Prompt Disentanglement (APD) framework, a novel defense mechanism that proactively identifies and neutralizes malicious components in input prompts before they are processed by the LLM. The APD framework integrates "},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2605.27823","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2605.27823/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-28T01:04:49Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"ova4+eQHLFYGOb92rEwFk4LUy0bGUSpzVV2PMURPIM5p6jb5U3TfJAAqapXIkSht8cLomTUoHhK3xgJQXgLsCw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-05T21:16:31.726111Z"},"content_sha256":"8733b21c5ddd8110c0d74f50779790f2fbd4b16ce9e0813e0cf9eddd0b46d0ae","schema_version":"1.0","event_id":"sha256:8733b21c5ddd8110c0d74f50779790f2fbd4b16ce9e0813e0cf9eddd0b46d0ae"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/TUYJMRRETGXZURVBJLEVDUQR4A/bundle.json","state_url":"https://pith.science/pith/TUYJMRRETGXZURVBJLEVDUQR4A/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/TUYJMRRETGXZURVBJLEVDUQR4A/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-05T21:16:31Z","links":{"resolver":"https://pith.science/pith/TUYJMRRETGXZURVBJLEVDUQR4A","bundle":"https://pith.science/pith/TUYJMRRETGXZURVBJLEVDUQR4A/bundle.json","state":"https://pith.science/pith/TUYJMRRETGXZURVBJLEVDUQR4A/state.json","well_known_bundle":"https://pith.science/.well-known/pith/TUYJMRRETGXZURVBJLEVDUQR4A/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2026:TUYJMRRETGXZURVBJLEVDUQR4A","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"1ade3cbc6b675d742054105cd0c22447a730539112191c82ea9d060f072b531c","cross_cats_sorted":["cs.AI","cs.CV"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2026-05-27T01:30:06Z","title_canon_sha256":"0f6cf56553fa31f63866b623129a35c02af8e8c2af2a22b3a1d7860051d8e5e0"},"schema_version":"1.0","source":{"id":"2605.27823","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2605.27823","created_at":"2026-05-28T01:04:49Z"},{"alias_kind":"arxiv_version","alias_value":"2605.27823v1","created_at":"2026-05-28T01:04:49Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2605.27823","created_at":"2026-05-28T01:04:49Z"},{"alias_kind":"pith_short_12","alias_value":"TUYJMRRETGXZ","created_at":"2026-05-28T01:04:49Z"},{"alias_kind":"pith_short_16","alias_value":"TUYJMRRETGXZURVB","created_at":"2026-05-28T01:04:49Z"},{"alias_kind":"pith_short_8","alias_value":"TUYJMRRE","created_at":"2026-05-28T01:04:49Z"}],"graph_snapshots":[{"event_id":"sha256:8733b21c5ddd8110c0d74f50779790f2fbd4b16ce9e0813e0cf9eddd0b46d0ae","target":"graph","created_at":"2026-05-28T01:04:49Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/2605.27823/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"Large Language Models (LLMs) are increasingly vulnerable to adversarial prompts that exploit semantic ambiguities to bypass safety mechanisms, resulting in harmful or inappropriate outputs. Such attacks, including jailbreaking and prompt injection, pose significant risks to the integrity and availability of LLMs in security-critical applications. This paper proposes the Adversarial Prompt Disentanglement (APD) framework, a novel defense mechanism that proactively identifies and neutralizes malicious components in input prompts before they are processed by the LLM. The APD framework integrates ","authors_text":"Wanlong Fang, Xiang Fang","cross_cats":["cs.AI","cs.CV"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2026-05-27T01:30:06Z","title":"Disentangling Adversarial Prompts: A Semantic-Graph Defense for Robust LLM Security"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2605.27823","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:95d1b450b45d98125d88a4662c0f48e40804e45d32265f545f4d989e8068a998","target":"record","created_at":"2026-05-28T01:04:49Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"1ade3cbc6b675d742054105cd0c22447a730539112191c82ea9d060f072b531c","cross_cats_sorted":["cs.AI","cs.CV"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2026-05-27T01:30:06Z","title_canon_sha256":"0f6cf56553fa31f63866b623129a35c02af8e8c2af2a22b3a1d7860051d8e5e0"},"schema_version":"1.0","source":{"id":"2605.27823","kind":"arxiv","version":1}},"canonical_sha256":"9d3096462499af9a46a14ac951d211e01b60df92b65811d32676a2e59d50691c","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"9d3096462499af9a46a14ac951d211e01b60df92b65811d32676a2e59d50691c","first_computed_at":"2026-05-28T01:04:49.705051Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-28T01:04:49.705051Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"Hym9crt0ZdluwxmvnicV11mK/D/joZ9lmzF13pnAOMkTTIGIhZ6/hi2NFHjljvBhJ+P9mXLPljKPWXWArRG5Ag==","signature_status":"signed_v1","signed_at":"2026-05-28T01:04:49.705484Z","signed_message":"canonical_sha256_bytes"},"source_id":"2605.27823","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:95d1b450b45d98125d88a4662c0f48e40804e45d32265f545f4d989e8068a998","sha256:8733b21c5ddd8110c0d74f50779790f2fbd4b16ce9e0813e0cf9eddd0b46d0ae"],"state_sha256":"c525c988b3987b2167c0c5dbe1eb4cb84554ec904d31c143ff6be67368ec045c"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"c+WDT11QYZNjaCuZ7rAWt2mMo6gGPolpb++ZarhgtXEM91PbOjbhEAQUMdeVadWWgVDuy0x3gpDG7T6ZbvLwCw==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-05T21:16:31.728959Z","bundle_sha256":"4767c2319a6953df8f3a58d396589f2195f596a7c53e514f986cf680391f8a46"}}