Pith. sign in

Paper Citation Record · LEDGER

Attention Tracker: Detecting Prompt Injection Attacks in LLMs

As of 10 August 2026, this Paper Citation Record lists 0 of 0 outbound references and 11 inbound Pith citation observations for arXiv:2411.00348.

A citation records a reference. It does not transfer a finding from one paper to another.

pith.paper-citation-record.v1
2411.00348 v2

Coverage vector

measured 0 of 0 reference resolution

Typed states for the displayed outbound observations.

Source: paper_references, paper_reference_links

measured 11 of 11 standing notices

One-hop event checks from named stored sources.

Source: scholarly_work_events, retraction_status_cache, observed 2026-08-09T06:31:02.800959+00:00

measured 11 of 11 inbound itemization

Pith citing papers itemized under the disclosed page cap.

Source: paper_references, paper_reference_links, observed 2026-08-08T20:06:58.253925Z

measured 0 of 1 external citation measurements

A source-named dated measurement, never combined with another source.

Source: arxiv_reference, observed 2026-05-19T11:32:17.365821Z

Reference resolution

0 of 0 outbound references displayed

  • verified exact0
  • verified fuzzy0
  • unresolved0
  • parse uncertain0
  • malformed identifier0
  • metadata mismatch0

External citation measurements

No source-named external measurement is stored.

Outbound references

No outbound reference observations are available for this paper version.

Pith citing papers

Observation b1dc6c89-9d97-48be-a6eb-b3b54354f6ec · inbound

MELON: Provable Defense Against Indirect Prompt Injection Attacks in AI Agents cites this paper.

MELON: Provable Defense Against Indirect Prompt Injection Attacks in AI Agents Attention Tracker: Detecting Prompt Injection Attacks in LLMs

Reference 9

Resolution
unresolved
no resolver link, observed 2026-08-08T20:06:58.253925Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=arxiv_source observed=2026-08-08T20:06:58.253925Z digest=sha256:4856de2ede3492687d156759b678bad906c15d7639d1d1270c089d18d9a4636e

Observation 5c9caa73-c550-4fb1-b7d7-82c0db51c642 · inbound

A Critical Evaluation of Defenses against Prompt Injection Attacks cites this paper.

A Critical Evaluation of Defenses against Prompt Injection Attacks Attention Tracker: Detecting Prompt Injection Attacks in LLMs

Reference 15

Resolution
unresolved
no resolver link, observed 2026-08-07T14:36:10.402453Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-07T14:36:10.402453Z digest=sha256:0af5c327dfc75afb9d84c16ab5bdf6e745b5486466c1c7113206a758e0095943

Observation 4202bd62-c2d9-4d7b-beb3-a6ac69f92f39 · inbound

To trust or not to trust: Attention-based Trust Management for LLM Multi-Agent Systems cites this paper.

To trust or not to trust: Attention-based Trust Management for LLM Multi-Agent Systems Attention Tracker: Detecting Prompt Injection Attacks in LLMs

Reference 26

Resolution
verified exact
arxiv_id, observed 2026-05-19T11:32:17.369840Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.

source=pdf_text observed=2026-05-19T11:30:47.877793Z digest=sha256:6bbe3807d2b5e37ded51b67f71e0c243490209b8155ae116a0ad5d08ab3c764d

Observation d136625b-8bd1-4eca-bba9-5c2b2a346ec9 · inbound

PromptArmor: Simple yet Effective Prompt Injection Defenses cites this paper.

PromptArmor: Simple yet Effective Prompt Injection Defenses Attention Tracker: Detecting Prompt Injection Attacks in LLMs

Reference 15

Resolution
unresolved
no resolver link, observed 2026-08-06T15:42:00.939667Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=arxiv_source observed=2026-08-06T15:42:00.939667Z digest=sha256:670a1dcd553f599e2f4ed971a140b16985cbc6b99f913d69b17c345782b7c298

Observation 199f599f-cb57-4f3f-a049-4b9c0a226e6f · inbound

LLM in the Middle: A Systematic Review of Threats and Mitigations to Real-World LLM-based Systems cites this paper.

LLM in the Middle: A Systematic Review of Threats and Mitigations to Real-World LLM-based Systems Attention Tracker: Detecting Prompt Injection Attacks in LLMs

Reference 138

Resolution
unresolved
no resolver link, observed 2026-08-04T17:46:19.348770Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-04T17:46:19.348770Z digest=sha256:9dc998958dd5bad2852bd6388b5934aa120683af972af2f4f695a31c9c379432

Observation 248afb0b-0ca2-471d-abe0-9de54cbc5646 · inbound

"Your AI, My Shell": Demystifying Prompt Injection Attacks on Agentic AI Coding Editors cites this paper.

"Your AI, My Shell": Demystifying Prompt Injection Attacks on Agentic AI Coding Editors Attention Tracker: Detecting Prompt Injection Attacks in LLMs

Reference 21

Resolution
verified exact
arxiv_id, observed 2026-05-18T13:21:23.911602Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.

source=pdf_text observed=2026-05-18T13:20:15.306308Z digest=sha256:66fb6d395e763e2b2e5c7184515b678d2d3b8c87a910b761481d832d5f5845cb

Observation 00e475aa-87d6-4d9f-965e-fd4c1cf38d61 · inbound

Agentic AI Security: Threats, Defenses, Evaluation, and Open Challenges cites this paper.

Agentic AI Security: Threats, Defenses, Evaluation, and Open Challenges Attention Tracker: Detecting Prompt Injection Attacks in LLMs

Reference 257

Resolution
verified exact
arxiv_id, observed 2026-05-18T03:42:22.128264Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.

source=pdf_text observed=2026-05-18T03:42:10.703369Z digest=sha256:8c6fe8c1e7b442231bd35d99ea8e7db983354c43e5c5855329a9db9d253fe3a4

Observation 912f9482-4e2b-4461-a64e-b36e6e79c930 · inbound

RouteGuard: Internal-Signal Detection of Skill Poisoning in LLM Agents cites this paper.

RouteGuard: Internal-Signal Detection of Skill Poisoning in LLM Agents Attention Tracker: Detecting Prompt Injection Attacks in LLMs

Reference 6

Resolution
metadata mismatch
arxiv_id, observed 2026-05-11T19:36:14.821338Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.

source=arxiv_source observed=2026-05-08T11:26:53.382527Z digest=sha256:7b0c815b3799c69e872042d055f3284fc5b569d319d12dfd4a65da60c95b80f1

Observation 95298756-5175-4b61-906e-358c289ec709 · inbound

CrackedPDFs: A Controlled Benchmark for Hidden Prompt Injection in PDFs cites this paper.

CrackedPDFs: A Controlled Benchmark for Hidden Prompt Injection in PDFs Attention Tracker: Detecting Prompt Injection Attacks in LLMs

Reference 14

Resolution
unresolved
no resolver link, observed 2026-08-02T08:55:49.080193Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-02T08:55:49.080193Z digest=sha256:aa39b4e9681e2327f1948892032cb69d2020ee58b475431286ef9fd080c422fa

Observation fd443f65-e50b-4d29-a4f1-52610b00f23f · inbound

CrackedPDFs: A Controlled Benchmark for Hidden Prompt Injection in PDFs cites this paper.

CrackedPDFs: A Controlled Benchmark for Hidden Prompt Injection in PDFs Attention Tracker: Detecting Prompt Injection Attacks in LLMs

Reference 14

Resolution
unresolved
no resolver link, observed 2026-08-04T04:34:33.174989Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-04T04:34:33.174989Z digest=sha256:34f6b94516923e90eca74424c43e163bd5b27af29a38e2cfd254d4f87400a74d

Observation cdaa89bd-2b9c-4ff3-a50c-39c6a14e9f57 · inbound

Robust Context-Aware Detection of Malicious Instructions in Text cites this paper.

Robust Context-Aware Detection of Malicious Instructions in Text Attention Tracker: Detecting Prompt Injection Attacks in LLMs

Reference 13

Resolution
unresolved
no resolver link, observed 2026-08-08T13:19:01.828427Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=arxiv_source observed=2026-08-08T13:19:01.828427Z digest=sha256:6a67c5140f66579c45a543693ba05a93bd947b963499d444fc700e660f51d00f