{"as_of":"2026-08-21T07:21:00Z","caps":{"database_statements":6,"inbound":100,"outbound":100},"context_digest":"sha256:bc420d94654966f3c1e918af962cd3a1a218eb44850443213791928ff8372604","coverage":[{"denominator":0,"lane":"reference_resolution","note":"Typed states for the displayed outbound observations.","records_observed":0,"source":"paper_references, paper_reference_links","source_observed_at":null,"state":"measured"},{"denominator":5,"lane":"standing_notices","note":"One-hop event checks from named stored sources.","records_observed":5,"source":"scholarly_work_events, retraction_status_cache","source_observed_at":"2026-08-21T06:32:19.484+00:00","state":"measured"},{"denominator":5,"lane":"inbound_itemization","note":"Pith citing papers itemized under the disclosed page cap.","records_observed":5,"source":"paper_references, paper_reference_links","source_observed_at":"2026-08-15T18:04:49.515184Z","state":"measured"},{"denominator":1,"lane":"external_citation_measurements","note":"A source-named dated measurement, never combined with another source.","records_observed":0,"source":"arxiv_reference","source_observed_at":"2026-07-02T13:26:59.332682Z","state":"measured"}],"external_citation_measurements":[],"inbound":[{"citation":{"cited_paper":{"arxiv_id":"2410.16327","last_updated":"2025-07-08T03:32:27Z","snapshot_observed_at":"2026-08-18T12:03:58.769745Z","submitted_at":"2024-10-18T17:02:13Z","title":"Feint and Attack: Attention-Based Strategies for Jailbreaking and Protecting LLMs","version":2},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2410.16327","snapshot_observed_at":"2026-08-07T10:17:26.618779Z","title":"Feint and attack: Attention-based strategies for jailbreaking and protecting llms,","venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2506.11094","last_updated":"2025-10-30T06:22:33Z","snapshot_observed_at":"2026-08-13T12:53:10.459412Z","submitted_at":"2025-06-06T05:50:50Z","title":"The Scales of Justitia: A Comprehensive Survey on Safety Evaluation of LLMs","version":2},"reference_index":12,"source":"pdf_text","source_observed_at":"2026-08-07T10:17:26.618779Z"},"links":{"cited_paper":"/paper/2410.16327","citing_paper":"/paper/2506.11094"},"observation_digest":"sha256:5b699fca8313a57ac0254b173586e7c18d9c90416b74fc698148c6d0188520a5","observation_id":"62e4b8f5-7ef9-451f-8f30-fb596ba32f98","resolution":{"observed_at":"2026-08-07T10:17:26.618779Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2410.16327","last_updated":"2025-07-08T03:32:27Z","snapshot_observed_at":"2026-08-18T12:03:58.769745Z","submitted_at":"2024-10-18T17:02:13Z","title":"Feint and Attack: Attention-Based Strategies for Jailbreaking and Protecting LLMs","version":2},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2410.16327","snapshot_observed_at":"2026-08-15T18:04:49.515184Z","title":null,"venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2507.19185","last_updated":"2025-07-25T11:52:46Z","snapshot_observed_at":"2026-08-20T08:53:11.159170Z","submitted_at":"2025-07-25T11:52:46Z","title":"PrompTrend: Continuous Community-Driven Vulnerability Discovery and Assessment for Large Language Models","version":1},"reference_index":34,"source":"pdf_text","source_observed_at":"2026-08-15T18:04:49.515184Z"},"links":{"cited_paper":"/paper/2410.16327","citing_paper":"/paper/2507.19185"},"observation_digest":"sha256:6792ca2f8e2a6db2a38505f57213c6a9fb43520163e36daab2fd9ab73a6d3cf8","observation_id":"7f0cd493-6323-4f14-adae-34071d258670","resolution":{"observed_at":"2026-08-15T18:04:49.515184Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2410.16327","last_updated":"2025-07-08T03:32:27Z","snapshot_observed_at":"2026-08-18T12:03:58.769745Z","submitted_at":"2024-10-18T17:02:13Z","title":"Feint and Attack: Attention-Based Strategies for Jailbreaking and Protecting LLMs","version":2},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2410.16327","snapshot_observed_at":"2026-08-04T17:46:19.483282Z","title":"Feint and attack: Attention-based strategies for jail- breaking and protecting LLMs,","venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2509.10682","last_updated":"2025-09-12T20:26:16Z","snapshot_observed_at":"2026-08-18T22:31:48.171780Z","submitted_at":"2025-09-12T20:26:16Z","title":"LLM in the Middle: A Systematic Review of Threats and Mitigations to Real-World LLM-based Systems","version":1},"reference_index":192,"source":"pdf_text","source_observed_at":"2026-08-04T17:46:19.483282Z"},"links":{"cited_paper":"/paper/2410.16327","citing_paper":"/paper/2509.10682"},"observation_digest":"sha256:e10184003d4f742322bceb53773b1e3219f0acfdaad7b486a8fc5c51aee3666f","observation_id":"f100a163-87dc-4363-a6a1-f67e84679a64","resolution":{"observed_at":"2026-08-04T17:46:19.483282Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2410.16327","last_updated":"2025-07-08T03:32:27Z","snapshot_observed_at":"2026-08-18T12:03:58.769745Z","submitted_at":"2024-10-18T17:02:13Z","title":"Feint and Attack: Attention-Based Strategies for Jailbreaking and Protecting LLMs","version":2},"cited_work":{"arxiv_id":"2410.16327","doi":null,"metadata_source":"arxiv_reference","pith_arxiv_id":"2410.16327","snapshot_observed_at":"2026-07-02T13:26:59.332682Z","title":"openai.com/pdf/4173ec8d-1229-47db-96de-06d87147e07e/5_1_system_card.pdf","venue":null,"work_id":"4fc536a6-7eec-4d23-868e-a66b6a9431a6","year":null},"citing_paper":{"arxiv_id":"2605.17971","last_updated":"2026-05-18T07:27:59Z","snapshot_observed_at":"2026-08-15T12:53:55.431981Z","submitted_at":"2026-05-18T07:27:59Z","title":"Babel: Jailbreaking Safety Attention via Obfuscation Distribution Optimized Sampling","version":1},"reference_index":12,"source":"pdf_text","source_observed_at":"2026-05-20T10:08:07.648295Z"},"links":{"cited_paper":"/paper/2410.16327","citing_paper":"/paper/2605.17971"},"observation_digest":"sha256:dadae288178ff605951f8cc28cb29a8d126e7a251811349307e365e183b3397c","observation_id":"f2da932a-330d-413b-80f0-868d7f3eb65e","resolution":{"observed_at":"2026-05-20T10:08:11.972412Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-21T06:32:19.484+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-21T06:32:19.484+00:00","source":"crossref"},{"observed_at":"2026-08-21T06:32:16.066871+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2410.16327","last_updated":"2025-07-08T03:32:27Z","snapshot_observed_at":"2026-08-18T12:03:58.769745Z","submitted_at":"2024-10-18T17:02:13Z","title":"Feint and Attack: Attention-Based Strategies for Jailbreaking and Protecting LLMs","version":2},"cited_work":{"arxiv_id":"2410.16327","doi":null,"metadata_source":"arxiv_reference","pith_arxiv_id":"2410.16327","snapshot_observed_at":"2026-07-02T13:26:59.332682Z","title":"openai.com/pdf/4173ec8d-1229-47db-96de-06d87147e07e/5_1_system_card.pdf","venue":null,"work_id":"4fc536a6-7eec-4d23-868e-a66b6a9431a6","year":null},"citing_paper":{"arxiv_id":"2606.05609","last_updated":"2026-06-04T02:31:29Z","snapshot_observed_at":"2026-08-05T14:48:48.513078Z","submitted_at":"2026-06-04T02:31:29Z","title":"SlotGCG: Exploiting the Positional Vulnerability in LLMs for Jailbreak Attacks","version":1},"reference_index":8,"source":"arxiv_source","source_observed_at":"2026-06-28T01:16:07.252429Z"},"links":{"cited_paper":"/paper/2410.16327","citing_paper":"/paper/2606.05609"},"observation_digest":"sha256:20832efbd14c5b2e17bdb0fcfedcb8663c2a09d8bf55b917ebafb9bdbc9cd358","observation_id":"38601936-4f9b-480c-afb2-8c7186746115","resolution":{"observed_at":"2026-07-02T13:26:59.334013Z","resolver_source":"arxiv_id","status":"metadata_mismatch"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-21T06:32:19.484+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-21T06:32:19.484+00:00","source":"crossref"},{"observed_at":"2026-08-21T06:32:16.066871+00:00","source":"retraction_watch"}],"state":"measured"}}],"links":{"evidence":"/evidence","html":"/paper/2410.16327/citation-record","integrity":"/paper/2410.16327/integrity","json":"/paper/2410.16327/citation-record.json","paper":"/paper/2410.16327"},"outbound":[],"paper":{"arxiv_id":"2410.16327","last_updated":"2025-07-08T03:32:27Z","latest_version":2,"primary_category":"cs.CR","snapshot_observed_at":"2026-08-18T12:03:58.769745Z","submitted_at":"2024-10-18T17:02:13Z","title":"Feint and Attack: Attention-Based Strategies for Jailbreaking and Protecting LLMs"},"reference_resolution":{"displayed":0,"state_counts":{"malformed_identifier":0,"metadata_mismatch":0,"parse_uncertain":0,"unresolved":0,"verified_exact":0,"verified_fuzzy":0},"total_outbound_references":0},"refusal":"A citation records a reference. It does not transfer a finding from one paper to another.","schema":"pith.paper-citation-record.v1","standing_sources":[{"observed_at":"2026-08-21T06:32:19.484+00:00","source":"crossref"},{"observed_at":"2026-08-21T06:32:16.066871+00:00","source":"retraction_watch"}],"thesis":"As of 21 August 2026, this Paper Citation Record lists 0 of 0 outbound references and 5 inbound Pith citation observations for arXiv:2410.16327."}