{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2025:YCWQVJO4PZTZGSRPYWURSCWCXJ","short_pith_number":"pith:YCWQVJO4","schema_version":"1.0","canonical_sha256":"c0ad0aa5dc7e67934a2fc5a9190ac2ba44bd40ad2c23326b7ed7de9b0d7dff6a","source":{"kind":"arxiv","id":"2505.11449","version":1},"attestation_state":"computed","paper":{"title":"LLMs unlock new paths to monetizing exploits","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.AI"],"primary_cat":"cs.CR","authors_text":"Barry Wang, Christopher A. Choquette-Choo, Daphne Ippolito, Edoardo Debenedetti, Florian Tram\\`er, Matthew Jagielski, Milad Nasr, Nicholas Carlini","submitted_at":"2025-05-16T17:05:25Z","abstract_excerpt":"We argue that Large language models (LLMs) will soon alter the economics of cyberattacks. Instead of attacking the most commonly used software and monetizing exploits by targeting the lowest common denominator among victims, LLMs enable adversaries to launch tailored attacks on a user-by-user basis. On the exploitation front, instead of human attackers manually searching for one difficult-to-identify bug in a product with millions of users, LLMs can find thousands of easy-to-identify bugs in products with thousands of users. And on the monetization front, instead of generic ransomware that alw"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2505.11449","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2025-05-16T17:05:25Z","cross_cats_sorted":["cs.AI"],"title_canon_sha256":"b47bcdfc48fbf7575967bca1dade10d7cb4e0583b89aa898c14c95e3f78cf8f5","abstract_canon_sha256":"cdff6b749287d3c8926cb322a0374e2c3aa7f43708934a53e4f33278578a2eb4"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T11:04:16.550223Z","signature_b64":"vYqU0Thv1pl+iT8FaG2oFUp79Ka08bivRIuigF3MPO3+66B+2OkFDgOjM9hVie6LQ+1UONR51JMNr8h7s10jBA==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"c0ad0aa5dc7e67934a2fc5a9190ac2ba44bd40ad2c23326b7ed7de9b0d7dff6a","last_reissued_at":"2026-07-05T11:04:16.549662Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T11:04:16.549662Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"LLMs unlock new paths to monetizing exploits","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.AI"],"primary_cat":"cs.CR","authors_text":"Barry Wang, Christopher A. Choquette-Choo, Daphne Ippolito, Edoardo Debenedetti, Florian Tram\\`er, Matthew Jagielski, Milad Nasr, Nicholas Carlini","submitted_at":"2025-05-16T17:05:25Z","abstract_excerpt":"We argue that Large language models (LLMs) will soon alter the economics of cyberattacks. Instead of attacking the most commonly used software and monetizing exploits by targeting the lowest common denominator among victims, LLMs enable adversaries to launch tailored attacks on a user-by-user basis. On the exploitation front, instead of human attackers manually searching for one difficult-to-identify bug in a product with millions of users, LLMs can find thousands of easy-to-identify bugs in products with thousands of users. And on the monetization front, instead of generic ransomware that alw"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2505.11449","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2505.11449/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2505.11449","created_at":"2026-07-05T11:04:16.549734+00:00"},{"alias_kind":"arxiv_version","alias_value":"2505.11449v1","created_at":"2026-07-05T11:04:16.549734+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2505.11449","created_at":"2026-07-05T11:04:16.549734+00:00"},{"alias_kind":"pith_short_12","alias_value":"YCWQVJO4PZTZ","created_at":"2026-07-05T11:04:16.549734+00:00"},{"alias_kind":"pith_short_16","alias_value":"YCWQVJO4PZTZGSRP","created_at":"2026-07-05T11:04:16.549734+00:00"},{"alias_kind":"pith_short_8","alias_value":"YCWQVJO4","created_at":"2026-07-05T11:04:16.549734+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":4,"internal_anchor_count":0,"sample":[{"citing_arxiv_id":"2606.25836","citing_title":"AI Snitches Get Glitches: Towards Evading Agentic Surveillance","ref_index":21,"is_internal_anchor":false},{"citing_arxiv_id":"2606.18062","citing_title":"Security and Privacy Prompts in the Wild: What Users Ask LLMs and How LLMs Respond","ref_index":45,"is_internal_anchor":false},{"citing_arxiv_id":"2606.03811","citing_title":"AI Agents Enable Adaptive Computer Worms","ref_index":57,"is_internal_anchor":false},{"citing_arxiv_id":"2606.25836","citing_title":"AI Snitches Get Glitches: Towards Evading Agentic Surveillance","ref_index":21,"is_internal_anchor":false}]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/YCWQVJO4PZTZGSRPYWURSCWCXJ","json":"https://pith.science/pith/YCWQVJO4PZTZGSRPYWURSCWCXJ.json","graph_json":"https://pith.science/api/pith-number/YCWQVJO4PZTZGSRPYWURSCWCXJ/graph.json","events_json":"https://pith.science/api/pith-number/YCWQVJO4PZTZGSRPYWURSCWCXJ/events.json","paper":"https://pith.science/paper/YCWQVJO4"},"agent_actions":{"view_html":"https://pith.science/pith/YCWQVJO4PZTZGSRPYWURSCWCXJ","download_json":"https://pith.science/pith/YCWQVJO4PZTZGSRPYWURSCWCXJ.json","view_paper":"https://pith.science/paper/YCWQVJO4","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2505.11449&json=true","fetch_graph":"https://pith.science/api/pith-number/YCWQVJO4PZTZGSRPYWURSCWCXJ/graph.json","fetch_events":"https://pith.science/api/pith-number/YCWQVJO4PZTZGSRPYWURSCWCXJ/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/YCWQVJO4PZTZGSRPYWURSCWCXJ/action/timestamp_anchor","attest_storage":"https://pith.science/pith/YCWQVJO4PZTZGSRPYWURSCWCXJ/action/storage_attestation","attest_author":"https://pith.science/pith/YCWQVJO4PZTZGSRPYWURSCWCXJ/action/author_attestation","sign_citation":"https://pith.science/pith/YCWQVJO4PZTZGSRPYWURSCWCXJ/action/citation_signature","submit_replication":"https://pith.science/pith/YCWQVJO4PZTZGSRPYWURSCWCXJ/action/replication_record"}},"created_at":"2026-07-05T11:04:16.549734+00:00","updated_at":"2026-07-05T11:04:16.549734+00:00"}