{"as_of":"2026-08-14T15:53:00Z","caps":{"database_statements":6,"inbound":100,"outbound":100},"context_digest":"sha256:4ddc3b8ae8c0324c7d718627c85903b335ef26c39f263a764d28ee071c58ada3","coverage":[{"denominator":0,"lane":"reference_resolution","note":"Typed states for the displayed outbound observations.","records_observed":0,"source":"paper_references, paper_reference_links","source_observed_at":null,"state":"measured"},{"denominator":7,"lane":"standing_notices","note":"One-hop event checks from named stored sources.","records_observed":7,"source":"scholarly_work_events, retraction_status_cache","source_observed_at":"2026-08-14T06:32:32.682623+00:00","state":"measured"},{"denominator":7,"lane":"inbound_itemization","note":"Pith citing papers itemized under the disclosed page cap.","records_observed":7,"source":"paper_references, paper_reference_links","source_observed_at":"2026-08-10T20:35:52.898323Z","state":"measured"},{"denominator":1,"lane":"external_citation_measurements","note":"A source-named dated measurement, never combined with another source.","records_observed":0,"source":"arxiv_reference","source_observed_at":"2026-07-04T19:50:11.193751Z","state":"measured"}],"external_citation_measurements":[],"inbound":[{"citation":{"cited_paper":{"arxiv_id":"2406.01288","last_updated":"2024-10-30T12:08:42Z","snapshot_observed_at":"2026-08-12T23:51:36.861422Z","submitted_at":"2024-06-03T12:59:17Z","title":"Improved Few-Shot Jailbreaking Can Circumvent Aligned Language Models and Their Defenses","version":2},"cited_work":{"arxiv_id":"2406.01288","doi":null,"metadata_source":"arxiv_reference","pith_arxiv_id":"2406.01288","snapshot_observed_at":"2026-07-04T19:50:11.193751Z","title":"Improved few- shot jailbreaking can circumvent aligned language models and their defenses","venue":null,"work_id":"dcf8173d-4f97-4a8c-8809-e49e50087e05","year":2024},"citing_paper":{"arxiv_id":"2404.01318","last_updated":"2024-10-31T22:26:40Z","snapshot_observed_at":"2026-08-11T16:28:21.917686Z","submitted_at":"2024-03-28T02:44:02Z","title":"JailbreakBench: An Open Robustness Benchmark for Jailbreaking Large Language Models","version":5},"reference_index":60,"source":"arxiv_source","source_observed_at":"2026-05-15T06:08:05.386345Z"},"links":{"cited_paper":"/paper/2406.01288","citing_paper":"/paper/2404.01318"},"observation_digest":"sha256:7dadc6237c517e3dede649b75d4aefef676a371ef15330feaf63d237b3ff2045","observation_id":"173496f5-42e2-412e-8760-c37a1c4e3b2a","resolution":{"observed_at":"2026-05-15T06:08:05.552383Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-14T06:32:32.682623+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-14T06:32:32.682623+00:00","source":"crossref"},{"observed_at":"2026-08-14T06:32:18.44784+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.01288","last_updated":"2024-10-30T12:08:42Z","snapshot_observed_at":"2026-08-12T23:51:36.861422Z","submitted_at":"2024-06-03T12:59:17Z","title":"Improved Few-Shot Jailbreaking Can Circumvent Aligned Language Models and Their Defenses","version":2},"cited_work":{"arxiv_id":"2406.01288","doi":null,"metadata_source":"arxiv_reference","pith_arxiv_id":"2406.01288","snapshot_observed_at":"2026-07-04T19:50:11.193751Z","title":"Improved few- shot jailbreaking can circumvent aligned language models and their defenses","venue":null,"work_id":"dcf8173d-4f97-4a8c-8809-e49e50087e05","year":2024},"citing_paper":{"arxiv_id":"2407.04295","last_updated":"2024-08-30T11:57:47Z","snapshot_observed_at":"2026-08-12T17:45:10.384900Z","submitted_at":"2024-07-05T06:57:30Z","title":"Jailbreak Attacks and Defenses Against Large Language Models: A Survey","version":2},"reference_index":120,"source":"pdf_text","source_observed_at":"2026-05-15T02:20:44.368219Z"},"links":{"cited_paper":"/paper/2406.01288","citing_paper":"/paper/2407.04295"},"observation_digest":"sha256:b29e8938ace5eadfd02634d544b886468e3371ab69cdf769d84a2dded5421304","observation_id":"0c0fc490-c1c6-4a4e-a3e5-b88db1df9cb5","resolution":{"observed_at":"2026-05-15T02:20:44.513821Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-14T06:32:32.682623+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-14T06:32:32.682623+00:00","source":"crossref"},{"observed_at":"2026-08-14T06:32:18.44784+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.01288","last_updated":"2024-10-30T12:08:42Z","snapshot_observed_at":"2026-08-12T23:51:36.861422Z","submitted_at":"2024-06-03T12:59:17Z","title":"Improved Few-Shot Jailbreaking Can Circumvent Aligned Language Models and Their Defenses","version":2},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2406.01288","snapshot_observed_at":"2026-08-10T20:35:52.898323Z","title":"Improved few- shot jailbreaking can circumvent aligned language models and their defenses","venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2501.07959","last_updated":"2025-02-01T09:30:34Z","snapshot_observed_at":"2026-08-13T01:25:02.967809Z","submitted_at":"2025-01-14T09:23:30Z","title":"Self-Instruct Few-Shot Jailbreaking: Decompose the Attack into Pattern and Behavior Learning","version":2},"reference_index":52,"source":"pdf_text","source_observed_at":"2026-08-10T20:35:52.898323Z"},"links":{"cited_paper":"/paper/2406.01288","citing_paper":"/paper/2501.07959"},"observation_digest":"sha256:191f5b79019c56a10ba4bcd3baa094bde8a394f99bfaf8236c8051fd6df82e76","observation_id":"1f9f5f83-9ceb-4d85-b6b7-63b0cdaa32b1","resolution":{"observed_at":"2026-08-10T20:35:52.898323Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2406.01288","last_updated":"2024-10-30T12:08:42Z","snapshot_observed_at":"2026-08-12T23:51:36.861422Z","submitted_at":"2024-06-03T12:59:17Z","title":"Improved Few-Shot Jailbreaking Can Circumvent Aligned Language Models and Their Defenses","version":2},"cited_work":{"arxiv_id":"2406.01288","doi":null,"metadata_source":"arxiv_reference","pith_arxiv_id":"2406.01288","snapshot_observed_at":"2026-07-04T19:50:11.193751Z","title":"Improved few- shot jailbreaking can circumvent aligned language models and their defenses","venue":null,"work_id":"dcf8173d-4f97-4a8c-8809-e49e50087e05","year":2024},"citing_paper":{"arxiv_id":"2502.05206","last_updated":"2026-04-14T16:10:41Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2025-02-02T05:14:22Z","title":"Safety at Scale: A Comprehensive Survey of Large Model and Agent Safety","version":6},"reference_index":96,"source":"pdf_text","source_observed_at":"2026-05-23T04:39:04.591722Z"},"links":{"cited_paper":"/paper/2406.01288","citing_paper":"/paper/2502.05206"},"observation_digest":"sha256:eb1c7be9918c567ff7cc8e00eb843929bfe23d6ecd46d13f4b4cba241fba962d","observation_id":"23119037-8784-4bda-8a5d-ad01d32a4e2b","resolution":{"observed_at":"2026-05-23T04:42:34.262850Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-14T06:32:32.682623+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-14T06:32:32.682623+00:00","source":"crossref"},{"observed_at":"2026-08-14T06:32:18.44784+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.01288","last_updated":"2024-10-30T12:08:42Z","snapshot_observed_at":"2026-08-12T23:51:36.861422Z","submitted_at":"2024-06-03T12:59:17Z","title":"Improved Few-Shot Jailbreaking Can Circumvent Aligned Language Models and Their Defenses","version":2},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2406.01288","snapshot_observed_at":"2026-08-05T20:31:40.174290Z","title":"Improved few-shot jailbreaking can circumvent aligned language models and their defenses","venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2508.10404","last_updated":"2025-08-14T07:12:44Z","snapshot_observed_at":"2026-08-14T12:49:41.668100Z","submitted_at":"2025-08-14T07:12:44Z","title":"Layer-Wise Perturbations via Sparse Autoencoders for Adversarial Text Generation","version":1},"reference_index":77,"source":"pdf_text","source_observed_at":"2026-08-05T20:31:40.174290Z"},"links":{"cited_paper":"/paper/2406.01288","citing_paper":"/paper/2508.10404"},"observation_digest":"sha256:1ed152074a2da56a0feb7be24549d3a1ec815994162e69f890124fe84bd49d75","observation_id":"21da2a50-cc45-46b1-bf0a-ac8480d8d34d","resolution":{"observed_at":"2026-08-05T20:31:40.174290Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2406.01288","last_updated":"2024-10-30T12:08:42Z","snapshot_observed_at":"2026-08-12T23:51:36.861422Z","submitted_at":"2024-06-03T12:59:17Z","title":"Improved Few-Shot Jailbreaking Can Circumvent Aligned Language Models and Their Defenses","version":2},"cited_work":{"arxiv_id":"2406.01288","doi":null,"metadata_source":"arxiv_reference","pith_arxiv_id":"2406.01288","snapshot_observed_at":"2026-07-04T19:50:11.193751Z","title":"Improved few- shot jailbreaking can circumvent aligned language models and their defenses","venue":null,"work_id":"dcf8173d-4f97-4a8c-8809-e49e50087e05","year":2024},"citing_paper":{"arxiv_id":"2606.25476","last_updated":"2026-07-21T11:09:35Z","snapshot_observed_at":"2026-08-10T19:09:23.623118Z","submitted_at":"2026-06-24T07:00:53Z","title":"A Red Teaming Framework for Large Language Models: A Case Study on Faithfulness Evaluation","version":1},"reference_index":55,"source":"pdf_text","source_observed_at":"2026-06-25T20:58:53.119386Z"},"links":{"cited_paper":"/paper/2406.01288","citing_paper":"/paper/2606.25476"},"observation_digest":"sha256:7a7414b3fe6c18427dd320c06f0d945fc22e86d1fed888fce97c68a4ad088bb2","observation_id":"03eb55cc-4cac-4976-91ed-f36dcd46cb38","resolution":{"observed_at":"2026-07-04T19:50:11.195703Z","resolver_source":"arxiv_id","status":"metadata_mismatch"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-14T06:32:32.682623+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-14T06:32:32.682623+00:00","source":"crossref"},{"observed_at":"2026-08-14T06:32:18.44784+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.01288","last_updated":"2024-10-30T12:08:42Z","snapshot_observed_at":"2026-08-12T23:51:36.861422Z","submitted_at":"2024-06-03T12:59:17Z","title":"Improved Few-Shot Jailbreaking Can Circumvent Aligned Language Models and Their Defenses","version":2},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2406.01288","snapshot_observed_at":"2026-08-02T10:16:41.977777Z","title":"arXiv preprint arXiv:2406.01288 (2024)","venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2606.25476","last_updated":"2026-07-21T11:09:35Z","snapshot_observed_at":"2026-08-10T19:09:23.623118Z","submitted_at":"2026-06-24T07:00:53Z","title":"A Red Teaming Framework for Large Language Models: A Case Study on Faithfulness Evaluation","version":2},"reference_index":55,"source":"pdf_text","source_observed_at":"2026-08-02T10:16:41.977777Z"},"links":{"cited_paper":"/paper/2406.01288","citing_paper":"/paper/2606.25476"},"observation_digest":"sha256:9b6fb92da1078c9103c68da0d6c87590a690fa8ca45844b3a9c1e10225ffa64b","observation_id":"58f94bc2-8b51-4cdc-8426-73154f8d126b","resolution":{"observed_at":"2026-08-02T10:16:41.977777Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}}],"links":{"evidence":"/evidence","html":"/paper/2406.01288/citation-record","integrity":"/paper/2406.01288/integrity","json":"/paper/2406.01288/citation-record.json","paper":"/paper/2406.01288"},"outbound":[],"paper":{"arxiv_id":"2406.01288","last_updated":"2024-10-30T12:08:42Z","latest_version":2,"primary_category":"cs.CL","snapshot_observed_at":"2026-08-12T23:51:36.861422Z","submitted_at":"2024-06-03T12:59:17Z","title":"Improved Few-Shot Jailbreaking Can Circumvent Aligned Language Models and Their Defenses"},"reference_resolution":{"displayed":0,"state_counts":{"malformed_identifier":0,"metadata_mismatch":0,"parse_uncertain":0,"unresolved":0,"verified_exact":0,"verified_fuzzy":0},"total_outbound_references":0},"refusal":"A citation records a reference. It does not transfer a finding from one paper to another.","schema":"pith.paper-citation-record.v1","standing_sources":[{"observed_at":"2026-08-14T06:32:32.682623+00:00","source":"crossref"},{"observed_at":"2026-08-14T06:32:18.44784+00:00","source":"retraction_watch"}],"thesis":"As of 14 August 2026, this Paper Citation Record lists 0 of 0 outbound references and 7 inbound Pith citation observations for arXiv:2406.01288."}