{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2026:U5LGGG32TEWKVX7TLPJZXFY342","short_pith_number":"pith:U5LGGG32","canonical_record":{"source":{"id":"2605.19328","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2026-05-19T04:07:24Z","cross_cats_sorted":["cs.RO"],"title_canon_sha256":"1001dc0868ae131554b7174fcfbccd401d6a3af4893e1693fcec2880b7da4b3c","abstract_canon_sha256":"f3480eae9c7a48802456a8d486d06a910b1aec5103619c6e1739aecb6295a8b8"},"schema_version":"1.0"},"canonical_sha256":"a756631b7a992caadff35bd39b971be68da3463295391d37fadb6c4ccf1baa65","source":{"kind":"arxiv","id":"2605.19328","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2605.19328","created_at":"2026-05-20T01:05:39Z"},{"alias_kind":"arxiv_version","alias_value":"2605.19328v1","created_at":"2026-05-20T01:05:39Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2605.19328","created_at":"2026-05-20T01:05:39Z"},{"alias_kind":"pith_short_12","alias_value":"U5LGGG32TEWK","created_at":"2026-05-20T01:05:39Z"},{"alias_kind":"pith_short_16","alias_value":"U5LGGG32TEWKVX7T","created_at":"2026-05-20T01:05:39Z"},{"alias_kind":"pith_short_8","alias_value":"U5LGGG32","created_at":"2026-05-20T01:05:39Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2026:U5LGGG32TEWKVX7TLPJZXFY342","target":"record","payload":{"canonical_record":{"source":{"id":"2605.19328","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2026-05-19T04:07:24Z","cross_cats_sorted":["cs.RO"],"title_canon_sha256":"1001dc0868ae131554b7174fcfbccd401d6a3af4893e1693fcec2880b7da4b3c","abstract_canon_sha256":"f3480eae9c7a48802456a8d486d06a910b1aec5103619c6e1739aecb6295a8b8"},"schema_version":"1.0"},"canonical_sha256":"a756631b7a992caadff35bd39b971be68da3463295391d37fadb6c4ccf1baa65","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-20T01:05:39.501880Z","signature_b64":"+C7EoexWfxpzC9z5ENrZbae72J8q7zXxXLncqkFGiGx2sOqjcKQKxkOhFthPtmHp4j7Ag1apDTDcjCAx+JHXCA==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"a756631b7a992caadff35bd39b971be68da3463295391d37fadb6c4ccf1baa65","last_reissued_at":"2026-05-20T01:05:39.501111Z","signature_status":"signed_v1","first_computed_at":"2026-05-20T01:05:39.501111Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"2605.19328","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-20T01:05:39Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"jHiLXZLim5qiYOXeshL3ykGXY73wxl5qimEFn7YGhJGXH8g3kyHC1QbcKSf/QpCg6PQHhR4L4fQ1kzFDt83TAA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-30T14:15:52.244640Z"},"content_sha256":"70bef88f502d595255ae676c0b396c2ccf5cd620ce62f273bde162e340b53b41","schema_version":"1.0","event_id":"sha256:70bef88f502d595255ae676c0b396c2ccf5cd620ce62f273bde162e340b53b41"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2026:U5LGGG32TEWKVX7TLPJZXFY342","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"RoboJailBench: Benchmarking Adversarial Attacks and Defenses in Embodied Robotic Agents","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":["cs.RO"],"primary_cat":"cs.CR","authors_text":"Antonio Bianchi, Doguhuan Yeke, Hongyu Cai, Leo Y. Lin, Yanming Zhou, Z. Berkay Celik","submitted_at":"2026-05-19T04:07:24Z","abstract_excerpt":"Recent advances in Vision-Language Models (VLMs) facilitate a new class of embodied AI systems, where these models are integrated into physical platforms, e.g. robots and autonomous vehicles, to interpret visual scenes and execute natural language commands in diverse environments. Previous research has introduced jailbreak attacks and defenses for embodied AI. Their evaluations, however, rely on ad-hoc datasets, limited metrics, and emphasize attack success while neglecting the trade-off between security and the ability to follow benign commands. Existing benchmarks and evaluation frameworks e"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2605.19328","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2605.19328/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-20T01:05:39Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"UuDwMcWuu9SRrQ6Arx/5Ac7sQLFn/dgE0cJNAUYMYC/fwcZ4k6hwOIAFLQMOjAQcg0+fjGCXU520KATflGLYAA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-30T14:15:52.245548Z"},"content_sha256":"86909b107b2f14aa9daf61667e827269de3c684c38cca9080aa7f5503608acae","schema_version":"1.0","event_id":"sha256:86909b107b2f14aa9daf61667e827269de3c684c38cca9080aa7f5503608acae"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/U5LGGG32TEWKVX7TLPJZXFY342/bundle.json","state_url":"https://pith.science/pith/U5LGGG32TEWKVX7TLPJZXFY342/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/U5LGGG32TEWKVX7TLPJZXFY342/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-30T14:15:52Z","links":{"resolver":"https://pith.science/pith/U5LGGG32TEWKVX7TLPJZXFY342","bundle":"https://pith.science/pith/U5LGGG32TEWKVX7TLPJZXFY342/bundle.json","state":"https://pith.science/pith/U5LGGG32TEWKVX7TLPJZXFY342/state.json","well_known_bundle":"https://pith.science/.well-known/pith/U5LGGG32TEWKVX7TLPJZXFY342/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2026:U5LGGG32TEWKVX7TLPJZXFY342","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"f3480eae9c7a48802456a8d486d06a910b1aec5103619c6e1739aecb6295a8b8","cross_cats_sorted":["cs.RO"],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2026-05-19T04:07:24Z","title_canon_sha256":"1001dc0868ae131554b7174fcfbccd401d6a3af4893e1693fcec2880b7da4b3c"},"schema_version":"1.0","source":{"id":"2605.19328","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2605.19328","created_at":"2026-05-20T01:05:39Z"},{"alias_kind":"arxiv_version","alias_value":"2605.19328v1","created_at":"2026-05-20T01:05:39Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2605.19328","created_at":"2026-05-20T01:05:39Z"},{"alias_kind":"pith_short_12","alias_value":"U5LGGG32TEWK","created_at":"2026-05-20T01:05:39Z"},{"alias_kind":"pith_short_16","alias_value":"U5LGGG32TEWKVX7T","created_at":"2026-05-20T01:05:39Z"},{"alias_kind":"pith_short_8","alias_value":"U5LGGG32","created_at":"2026-05-20T01:05:39Z"}],"graph_snapshots":[{"event_id":"sha256:86909b107b2f14aa9daf61667e827269de3c684c38cca9080aa7f5503608acae","target":"graph","created_at":"2026-05-20T01:05:39Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/2605.19328/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"Recent advances in Vision-Language Models (VLMs) facilitate a new class of embodied AI systems, where these models are integrated into physical platforms, e.g. robots and autonomous vehicles, to interpret visual scenes and execute natural language commands in diverse environments. Previous research has introduced jailbreak attacks and defenses for embodied AI. Their evaluations, however, rely on ad-hoc datasets, limited metrics, and emphasize attack success while neglecting the trade-off between security and the ability to follow benign commands. Existing benchmarks and evaluation frameworks e","authors_text":"Antonio Bianchi, Doguhuan Yeke, Hongyu Cai, Leo Y. Lin, Yanming Zhou, Z. Berkay Celik","cross_cats":["cs.RO"],"headline":"","license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2026-05-19T04:07:24Z","title":"RoboJailBench: Benchmarking Adversarial Attacks and Defenses in Embodied Robotic Agents"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2605.19328","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:70bef88f502d595255ae676c0b396c2ccf5cd620ce62f273bde162e340b53b41","target":"record","created_at":"2026-05-20T01:05:39Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"f3480eae9c7a48802456a8d486d06a910b1aec5103619c6e1739aecb6295a8b8","cross_cats_sorted":["cs.RO"],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2026-05-19T04:07:24Z","title_canon_sha256":"1001dc0868ae131554b7174fcfbccd401d6a3af4893e1693fcec2880b7da4b3c"},"schema_version":"1.0","source":{"id":"2605.19328","kind":"arxiv","version":1}},"canonical_sha256":"a756631b7a992caadff35bd39b971be68da3463295391d37fadb6c4ccf1baa65","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"a756631b7a992caadff35bd39b971be68da3463295391d37fadb6c4ccf1baa65","first_computed_at":"2026-05-20T01:05:39.501111Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-20T01:05:39.501111Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"+C7EoexWfxpzC9z5ENrZbae72J8q7zXxXLncqkFGiGx2sOqjcKQKxkOhFthPtmHp4j7Ag1apDTDcjCAx+JHXCA==","signature_status":"signed_v1","signed_at":"2026-05-20T01:05:39.501880Z","signed_message":"canonical_sha256_bytes"},"source_id":"2605.19328","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:70bef88f502d595255ae676c0b396c2ccf5cd620ce62f273bde162e340b53b41","sha256:86909b107b2f14aa9daf61667e827269de3c684c38cca9080aa7f5503608acae"],"state_sha256":"3737f986f7f030dffd27219fc31ead5d816c713963aa11b491103ccb09968cd6"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"tbzBA0b5GYS5ZdWs+szAVDdmFpw2q/1GsBRGxC3nNQRGthzDzrVnekHQWwtkhpw24JOM7rcz9VtF8BQukt/oBA==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-30T14:15:52.250378Z","bundle_sha256":"3fbdf6ccb698455c94dccff6432d079d297a64b390704db18fa21807908ab184"}}