{"as_of":"2026-08-11T19:58:00Z","caps":{"database_statements":6,"inbound":100,"outbound":100},"context_digest":"sha256:a0880ce6b564eb2be538ad0edd703b2430f185377e1dacaecef8637c504ffd9e","coverage":[{"denominator":95,"lane":"reference_resolution","note":"Typed states for the displayed outbound observations.","records_observed":95,"source":"paper_references, paper_reference_links","source_observed_at":"2026-08-10T22:12:52.084879Z","state":"measured"},{"denominator":95,"lane":"standing_notices","note":"One-hop event checks from named stored sources.","records_observed":95,"source":"scholarly_work_events, retraction_status_cache","source_observed_at":"2026-08-11T06:34:44.6726+00:00","state":"measured"},{"denominator":0,"lane":"inbound_itemization","note":"Pith citing papers itemized under the disclosed page cap.","records_observed":0,"source":"paper_references, paper_reference_links","source_observed_at":null,"state":"measured"},{"denominator":1,"lane":"external_citation_measurements","note":"A source-named dated measurement, never combined with another source.","records_observed":0,"source":"cited_works","source_observed_at":null,"state":"measured"}],"external_citation_measurements":[],"inbound":[],"links":{"evidence":"/evidence","html":"/paper/2501.02654/citation-record","integrity":"/paper/2501.02654/integrity","json":"/paper/2501.02654/citation-record.json","paper":"/paper/2501.02654"},"outbound":[{"citation":{"cited_paper":{"arxiv_id":"2404.14219","last_updated":"2024-08-30T21:17:17Z","snapshot_observed_at":"2026-08-10T14:07:02.234322Z","submitted_at":"2024-04-22T14:32:33Z","title":"Phi-3 Technical Report: A Highly Capable Language Model Locally on Your Phone","version":4},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2404.14219","snapshot_observed_at":"2026-08-10T22:12:48.264928Z","title":null,"venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":1,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:48.264928Z"},"links":{"cited_paper":"/paper/2404.14219","citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:8acffce51cdd1f51be5f247652cff5f5b41640df04d7d1fd4894ef4dd58edf10","observation_id":"c9c1caf4-999a-4043-9825-86aaade22406","resolution":{"observed_at":"2026-08-10T22:12:48.264928Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:48.294734Z","title":"Balanya, Juan Maro\\ n as, and Daniel Ramos","venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":2,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:48.294734Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:bca43f4a950fbdd2ea9e325bb4cbdcf9050924b2a1d36e216bf2105b3d51dfce","observation_id":"61939389-bf0f-46c7-a34b-899c75c5ada0","resolution":{"observed_at":"2026-08-10T22:12:48.294734Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2105.14553","last_updated":"2021-05-30T14:24:53Z","snapshot_observed_at":"2026-08-06T22:39:54.309797Z","submitted_at":"2021-05-30T14:24:53Z","title":"Defending Pre-trained Language Models from Adversarial Word Substitutions Without Performance Sacrifice","version":1},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2105.14553","snapshot_observed_at":"2026-08-10T22:12:48.334549Z","title":null,"venue":null,"work_id":null,"year":2021},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":3,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:48.334549Z"},"links":{"cited_paper":"/paper/2105.14553","citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:a7c4e1716e9cc688d972bee5a7697bcb7e72a01e03dcd1f6a9dff03356adf7e9","observation_id":"12e7d6fc-30d8-428a-964f-719b5e3c9647","resolution":{"observed_at":"2026-08-10T22:12:48.334549Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:48.360118Z","title":null,"venue":null,"work_id":null,"year":2021},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":4,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:48.360118Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:a5ff3487fd32a43ffe7f9b07e9f4aaaa6c45b252192352a8f9d845256d4ecc3b","observation_id":"1be39183-a585-4260-b5eb-bad8d37f3b1c","resolution":{"observed_at":"2026-08-10T22:12:48.360118Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:48.384875Z","title":null,"venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":5,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:48.384875Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:df8a7aebf5bdf42cfda06226d71c75425189516e80642f147fc42acc8ad08520","observation_id":"4daafb57-7928-43bb-a194-ca6e3ee62909","resolution":{"observed_at":"2026-08-10T22:12:48.384875Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:48.409655Z","title":null,"venue":null,"work_id":null,"year":2019},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":6,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:48.409655Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:89cfb37ab9c4910337f6ea37382189967ad2b71d6b20463126071ece47bbf769","observation_id":"a7a62905-2a26-461f-b33f-3d79ec8c6fe7","resolution":{"observed_at":"2026-08-10T22:12:48.409655Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:48.434988Z","title":null,"venue":null,"work_id":null,"year":2005},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":7,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:48.434988Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:9535ebe3d8d59fd30c4cb72e7f46b133ce307310ce4b3834a47fd946ec9152c0","observation_id":"03b38084-8e82-46e3-8365-ffff72e66f0b","resolution":{"observed_at":"2026-08-10T22:12:48.434988Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2107.13541","last_updated":"2021-07-28T17:55:08Z","snapshot_observed_at":"2026-08-09T11:11:24.587164Z","submitted_at":"2021-07-28T17:55:08Z","title":"Towards Robustness Against Natural Language Word Substitutions","version":1},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2107.13541","snapshot_observed_at":"2026-08-10T22:12:48.484749Z","title":null,"venue":null,"work_id":null,"year":2021},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":8,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:48.484749Z"},"links":{"cited_paper":"/paper/2107.13541","citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:40a8880662a3a931cb5448b9e938db22fcd22b69e3e0a08b831f28ba33f91a59","observation_id":"1bcbb5f5-05a7-4035-b9b5-d32048f20253","resolution":{"observed_at":"2026-08-10T22:12:48.484749Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2407.21783","last_updated":"2024-11-23T23:27:33Z","snapshot_observed_at":"2026-08-10T16:40:37.411115Z","submitted_at":"2024-07-31T17:54:27Z","title":"The Llama 3 Herd of Models","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2407.21783","snapshot_observed_at":"2026-08-10T22:12:48.535625Z","title":null,"venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":9,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:48.535625Z"},"links":{"cited_paper":"/paper/2407.21783","citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:3737c7109fa874fc3db2f453f245fe3bf8870fd182b132c9c4b589826ed25507","observation_id":"b7f50dce-48ef-4694-96d3-4fe7add9af07","resolution":{"observed_at":"2026-08-10T22:12:48.535625Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:48.594747Z","title":"o zde G \\","venue":null,"work_id":null,"year":2019},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":10,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:48.594747Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:aa6265941cae1f8dbbcfe80831f1299f655e0d1583f660e54beb787c4c81ec23","observation_id":"195fab61-7c69-4c0a-8ca0-1fef57c7e8db","resolution":{"observed_at":"2026-08-10T22:12:48.594747Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"1903.11508","last_updated":"2020-06-10T12:20:04Z","snapshot_observed_at":"2026-08-11T18:59:57.139918Z","submitted_at":"2019-03-27T16:01:18Z","title":"Text Processing Like Humans Do: Visually Attacking and Shielding NLP Systems","version":2},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"1903.11508","snapshot_observed_at":"2026-08-10T22:12:48.644824Z","title":"o zde G \\","venue":null,"work_id":null,"year":2019},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":11,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:48.644824Z"},"links":{"cited_paper":"/paper/1903.11508","citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:a31ddd51a662d6ff08195558077964ac59bb6743b603d31d77855a122c9aa70f","observation_id":"ca27f860-b189-40e8-85fa-0b50b0f36ca9","resolution":{"observed_at":"2026-08-10T22:12:48.644824Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:48.671799Z","title":null,"venue":null,"work_id":null,"year":2018},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":12,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:48.671799Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:a11e3d8f1e8789e9b3621cd17289df44bdf82170c317623a4a36495729f4f186","observation_id":"7eddc959-d3da-40ed-84ed-deaa543f2320","resolution":{"observed_at":"2026-08-10T22:12:48.671799Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:48.714910Z","title":null,"venue":null,"work_id":null,"year":2021},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":13,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:48.714910Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:a4eeac6bbaecf160e6edaf51e220eb80f3f3a351db1bd5d89e45327e8b8548f4","observation_id":"65f6da75-0047-4cc6-9b0e-f45f39a45e05","resolution":{"observed_at":"2026-08-10T22:12:48.714910Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2004.01970","last_updated":"2020-10-08T00:41:43Z","snapshot_observed_at":"2026-08-08T14:00:19.815816Z","submitted_at":"2020-04-04T16:25:48Z","title":"BAE: BERT-based Adversarial Examples for Text Classification","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2004.01970","snapshot_observed_at":"2026-08-10T22:12:48.764757Z","title":null,"venue":null,"work_id":null,"year":2020},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":14,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:48.764757Z"},"links":{"cited_paper":"/paper/2004.01970","citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:91b97f7e9c8db13c3e8656edad8c217723d1766c382665d30b2e95c07e7a96c3","observation_id":"143c57de-fac8-4a2a-8d90-8a7a751f2f75","resolution":{"observed_at":"2026-08-10T22:12:48.764757Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"1412.6572","last_updated":"2015-03-20T20:19:16Z","snapshot_observed_at":"2026-07-06T04:04:16.777653Z","submitted_at":"2014-12-20T01:17:12Z","title":"Explaining and Harnessing Adversarial Examples","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"1412.6572","snapshot_observed_at":"2026-08-10T22:12:48.854758Z","title":null,"venue":null,"work_id":null,"year":2014},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":16,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:48.854758Z"},"links":{"cited_paper":"/paper/1412.6572","citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:f445d538163a98d4802473d8b618ca20bf4798c38f214401bd41678b6e9775e7","observation_id":"64d941f2-e11f-4eb6-8909-7fac44f90ede","resolution":{"observed_at":"2026-08-10T22:12:48.854758Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:48.904743Z","title":null,"venue":null,"work_id":null,"year":2023},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":17,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:48.904743Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:050ab8ca13b770d523e83c756b9e1d652044781be3ce166739367926a89f8e24","observation_id":"48459593-2b1c-42e2-be88-26c3d2319c47","resolution":{"observed_at":"2026-08-10T22:12:48.904743Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:48.954752Z","title":null,"venue":null,"work_id":null,"year":2017},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":18,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:48.954752Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:0d4634bf7c3d90d49c429369d7e0249e88dfda6d167756d158d631cf703ac1b1","observation_id":"722c5a32-e41d-4551-8276-c3531d8c9a60","resolution":{"observed_at":"2026-08-10T22:12:48.954752Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:49.015802Z","title":null,"venue":null,"work_id":null,"year":2022},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":19,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:49.015802Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:e64ebfd768b6a1ec55ba85a517433f9f58ff39ccd33ed3f8680a5b739ad1fb98","observation_id":"f4891730-9681-4f9c-b315-f8bc0ab93440","resolution":{"observed_at":"2026-08-10T22:12:49.015802Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2402.12329","last_updated":"2024-12-07T23:09:49Z","snapshot_observed_at":"2026-08-11T03:10:02.344730Z","submitted_at":"2024-02-19T18:01:36Z","title":"Query-Based Adversarial Prompt Generation","version":2},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2402.12329","snapshot_observed_at":"2026-08-10T22:12:49.062210Z","title":null,"venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":20,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:49.062210Z"},"links":{"cited_paper":"/paper/2402.12329","citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:b62b4159ac30f2fe46c7d54760f806341cf3b53d17702b02730c9198feead4e6","observation_id":"ee768d32-0e8a-4541-b8aa-3d00c3773f16","resolution":{"observed_at":"2026-08-10T22:12:49.062210Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":"10.3233/jifs-230787","metadata_source":"doi_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:13:38.543866Z","title":null,"venue":null,"work_id":"1bd27c1e-876a-463e-a75c-cd4b1a5ce0ed","year":2023},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":21,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:49.124757Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:216114fcf0a8de6484b3a2fb539365526cb76e6b1fdbfb727ccc3a68820e3021","observation_id":"533a2e9d-6e76-4f4b-a38f-9023b787d4d1","resolution":{"observed_at":"2026-08-10T22:13:38.604312Z","resolver_source":"doi","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2006.03654","last_updated":"2021-10-06T21:02:00Z","snapshot_observed_at":"2026-07-06T09:26:29.068023Z","submitted_at":"2020-06-05T19:54:34Z","title":"DeBERTa: Decoding-enhanced BERT with Disentangled Attention","version":6},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2006.03654","snapshot_observed_at":"2026-08-10T22:12:49.165370Z","title":null,"venue":null,"work_id":null,"year":2020},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":22,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:49.165370Z"},"links":{"cited_paper":"/paper/2006.03654","citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:af2ad82f9e8cd486a0cd8ea8c4e46f5c87d544b5a9c7193b819b6c97b1b6edfb","observation_id":"1add7c90-be24-41f8-b322-dfa2a147ae12","resolution":{"observed_at":"2026-08-10T22:12:49.165370Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":"10.18653/v1/2023.findings-eacl.78","metadata_source":"doi_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:13:38.483690Z","title":null,"venue":null,"work_id":"c1bd814a-4acf-4d20-833c-e294edcfcfdf","year":2023},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":23,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:49.214748Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:e99981c78390cd8e171b297f66a83470a7726e38f63bc0069706af98d65e1c05","observation_id":"fdfd47b9-4a7a-4d1f-a764-b5c62081bad4","resolution":{"observed_at":"2026-08-10T22:13:38.487406Z","resolver_source":"doi","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:49.284855Z","title":null,"venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":24,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:49.284855Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:8e29a15cf8e09a17af2dc86535e79580da110c30fed7c46a56dfb29035de2f72","observation_id":"860e3aee-9bc5-4b84-8a82-570c05de839a","resolution":{"observed_at":"2026-08-10T22:12:49.284855Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:49.334576Z","title":null,"venue":null,"work_id":null,"year":2020},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":25,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:49.334576Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:683a0ec46afd7c8d89156c792929e2f2dd5308ab5e42d8c548f0ad6a02d6f18c","observation_id":"93310812-d20e-40f8-a62e-ac966306554c","resolution":{"observed_at":"2026-08-10T22:12:49.334576Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:49.384756Z","title":null,"venue":null,"work_id":null,"year":2018},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":26,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:49.384756Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:240ec95fa8ef5fc87adc77f8a469f58701eac882cb4085a1d3c40f7b84684dee","observation_id":"979d0e5a-3bfc-46dc-87e8-fc2db86d22a2","resolution":{"observed_at":"2026-08-10T22:12:49.384756Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":"10.18653/v1/2024.naacl-short.23","metadata_source":"doi_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:13:38.465548Z","title":null,"venue":null,"work_id":"2fa8f963-36ba-44cf-ae05-d79fb492ff33","year":2024},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":27,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:49.434757Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:92172d7741e237c1c65a6ca48333ace9459da24f1106aafc8d595af287298888","observation_id":"42acdf2d-4890-4c96-9e15-107f0d0c1128","resolution":{"observed_at":"2026-08-10T22:13:38.469546Z","resolver_source":"doi","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:49.484830Z","title":null,"venue":null,"work_id":null,"year":2020},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":28,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:49.484830Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:1054dd1896ac88a3d3633e34e97b667a117eecfc822b7ce627e1f76cc3d76a42","observation_id":"a97cb688-f687-4cda-a1b7-99ddbaf4b6ac","resolution":{"observed_at":"2026-08-10T22:12:49.484830Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:49.529551Z","title":null,"venue":null,"work_id":null,"year":2018},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":29,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:49.529551Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:adf873fd5506daaca8e3ba910b312f0f118156c55268baa150193da7e2a52a14","observation_id":"67769240-fab1-4cca-9c79-c1502a7e263e","resolution":{"observed_at":"2026-08-10T22:12:49.529551Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:49.555864Z","title":null,"venue":null,"work_id":null,"year":2022},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":30,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:49.555864Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:c09d6bd745c6f2934a7ac864cedcc5f0bb2dd92fc174f2bc4dc1bc87c3718582","observation_id":"61c8608d-ba41-4ba2-b13f-5d2864ca49eb","resolution":{"observed_at":"2026-08-10T22:12:49.555864Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2009.07502","last_updated":"2021-03-15T04:56:31Z","snapshot_observed_at":"2026-08-10T15:39:24.005150Z","submitted_at":"2020-09-16T06:53:15Z","title":"Contextualized Perturbation for Textual Adversarial Attack","version":2},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2009.07502","snapshot_observed_at":"2026-08-10T22:12:49.604931Z","title":null,"venue":null,"work_id":null,"year":2020},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":31,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:49.604931Z"},"links":{"cited_paper":"/paper/2009.07502","citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:8c0d593f3daf032d05b350e12f9e22529584c1b3e76032fad260a3f5a6c41de1","observation_id":"c9e31a70-88cd-4f07-8b24-7300ea95f291","resolution":{"observed_at":"2026-08-10T22:12:49.604931Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:49.654756Z","title":null,"venue":null,"work_id":null,"year":2021},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":32,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:49.654756Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:d6fb7a20b92ab93d0e954eeee74312ab56b4b8eb9ccc3fb3f0a95ebc323a529c","observation_id":"3f4dcd1a-be03-43fd-818e-a527a564a748","resolution":{"observed_at":"2026-08-10T22:12:49.654756Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"1812.05271","last_updated":"2018-12-13T05:32:43Z","snapshot_observed_at":"2026-07-06T07:20:54.523864Z","submitted_at":"2018-12-13T05:32:43Z","title":"TextBugger: Generating Adversarial Text Against Real-world Applications","version":1},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"1812.05271","snapshot_observed_at":"2026-08-10T22:12:49.705107Z","title":null,"venue":null,"work_id":null,"year":2018},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":33,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:49.705107Z"},"links":{"cited_paper":"/paper/1812.05271","citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:8a8142ade69b2461d2eec64f823783355f30b22823505f2d55c624e0545d77c1","observation_id":"f313719b-a5a9-4ea6-82b7-da9f88539d9d","resolution":{"observed_at":"2026-08-10T22:12:49.705107Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:49.754944Z","title":null,"venue":null,"work_id":null,"year":2020},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":34,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:49.754944Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:39f9839d54e564b8d13a41fc549fcc7675a174fde08b1ed98847f5401d2b7057","observation_id":"acf0610b-4dcb-4e7a-b4a1-eaa6c62a8c02","resolution":{"observed_at":"2026-08-10T22:12:49.754944Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:49.784028Z","title":null,"venue":null,"work_id":null,"year":2021},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":35,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:49.784028Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:69525bdb7d1a7e04bb5db633c7875d463b4f6c821e274c8aa69e91978f540fe1","observation_id":"1e69e42b-1499-4949-944a-be33e5c2e633","resolution":{"observed_at":"2026-08-10T22:12:49.784028Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":"10.18653/v1/2021.emnlp-main.251","metadata_source":"doi_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:13:38.443592Z","title":null,"venue":null,"work_id":"f77c2399-2c79-400b-9bfd-2993fef1c77f","year":2021},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":36,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:49.806564Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:09e5e28010a5d844b99c775c747cd2b8c1a3ed205dc363cc0bdca239cbcdf987","observation_id":"64a84084-cb5e-4823-b411-f5d21aa9ec7b","resolution":{"observed_at":"2026-08-10T22:13:38.447240Z","resolver_source":"doi","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2108.12777","last_updated":"2021-10-06T06:18:28Z","snapshot_observed_at":"2026-07-06T11:42:23.052482Z","submitted_at":"2021-08-29T08:11:36Z","title":"Searching for an Effective Defender: Benchmarking Defense against Adversarial Word Substitution","version":2},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2108.12777","snapshot_observed_at":"2026-08-10T22:12:49.835380Z","title":null,"venue":null,"work_id":null,"year":2021},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":37,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:49.835380Z"},"links":{"cited_paper":"/paper/2108.12777","citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:774a213ab16bab1ddff531887ea51a1ef5219cacf980c7a5ba9c2b23f2c74be6","observation_id":"c2bc539f-fca5-41ec-8563-5a527c970255","resolution":{"observed_at":"2026-08-10T22:12:49.835380Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":"10.18653/v1/2022.emnlp-main.522","metadata_source":"doi_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:13:38.433042Z","title":null,"venue":null,"work_id":"3450e57a-cb30-4357-89bd-5e984fd927f5","year":2022},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":38,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:49.874843Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:62179cf28c42c09311b8a9e3bf85f386ab7b9c25fc6ad5cc20900cf8a9aac203","observation_id":"0a9c2852-fd5e-444a-bfff-fff32a8aeba7","resolution":{"observed_at":"2026-08-10T22:13:38.436675Z","resolver_source":"doi","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:49.892050Z","title":null,"venue":null,"work_id":null,"year":2023},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":39,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:49.892050Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:ae936976061963b9cb1508e83676de24bb8dc2b30d83da59b29157fe4005b408","observation_id":"4f15b3fe-b927-47f9-a6f0-89dfeb0e46db","resolution":{"observed_at":"2026-08-10T22:12:49.892050Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:49.926561Z","title":null,"venue":null,"work_id":null,"year":2022},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":40,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:49.926561Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:f2da75b6d983142479042bbffef7322cd8f23f3055bf286c90723fc0330d92e5","observation_id":"8071d598-571d-4dc3-b327-1ee403b9a4ac","resolution":{"observed_at":"2026-08-10T22:12:49.926561Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":"10.18653/v1/2022.acl-long.386","metadata_source":"doi_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:13:38.421509Z","title":null,"venue":null,"work_id":"1faa918f-5c2e-4883-841f-89c5aa1b643b","year":2022},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":41,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:49.975394Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:39a1ff22458b73ac7b445445e82be673a4b7004ea81bc472ad68bfcca316420c","observation_id":"5affb08c-ec76-435a-b7ca-685b9c02410a","resolution":{"observed_at":"2026-08-10T22:13:38.425937Z","resolver_source":"doi","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"1901.11504","last_updated":"2019-05-30T00:01:20Z","snapshot_observed_at":"2026-07-06T07:30:20.997518Z","submitted_at":"2019-01-31T18:07:25Z","title":"Multi-Task Deep Neural Networks for Natural Language Understanding","version":2},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"1901.11504","snapshot_observed_at":"2026-08-10T22:12:49.983571Z","title":null,"venue":null,"work_id":null,"year":2019},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":42,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:49.983571Z"},"links":{"cited_paper":"/paper/1901.11504","citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:16d7c54be71abf3777665bba2fbbc5d3f6942fe508a14d6d6b782f2f6efe8885","observation_id":"5925b884-372b-48bf-ab6a-62aecb4a40a5","resolution":{"observed_at":"2026-08-10T22:12:49.983571Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"1907.11692","last_updated":"2019-07-26T17:48:29Z","snapshot_observed_at":"2026-07-31T22:31:37.910868Z","submitted_at":"2019-07-26T17:48:29Z","title":"RoBERTa: A Robustly Optimized BERT Pretraining Approach","version":1},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"1907.11692","snapshot_observed_at":"2026-08-10T22:12:50.013864Z","title":null,"venue":null,"work_id":null,"year":2019},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":43,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:50.013864Z"},"links":{"cited_paper":"/paper/1907.11692","citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:6776dd317353bf16b7a5bb85c1397352993b0700feaa6af4c3ae53c36c01ae30","observation_id":"02689046-d942-4d4e-84ef-e47872b7dc56","resolution":{"observed_at":"2026-08-10T22:12:50.013864Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:50.065047Z","title":null,"venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":44,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:50.065047Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:784dab54155131e38d7c01b67e4632d3c7a3b3680d3b534bf59da02add466192","observation_id":"143408e4-0c24-4722-a14b-7a84ea3bbc86","resolution":{"observed_at":"2026-08-10T22:12:50.065047Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:50.114794Z","title":null,"venue":null,"work_id":null,"year":2018},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":45,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:50.114794Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:c1f7900bce7d4b610370b728f60869c2f64019bf0b012e6b96ebda38d08ed081","observation_id":"939fdf6b-9057-46e6-981f-f92054803c84","resolution":{"observed_at":"2026-08-10T22:12:50.114794Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:50.164755Z","title":null,"venue":null,"work_id":null,"year":2021},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":46,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:50.164755Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:1af1a386443b0e7acc634870ead7d72868542e1f2f87a700db14776db5785c6b","observation_id":"7a4c40a9-dbb8-4e58-a041-9c2f013a1de1","resolution":{"observed_at":"2026-08-10T22:12:50.164755Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":"10.1007/978-981-97-2262-4_6","metadata_source":"doi_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:13:38.214251Z","title":null,"venue":null,"work_id":"97772878-b260-46e5-96ac-17b6bb3d2d98","year":2024},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":47,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:50.215033Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:af639dccf3bb997e8b70785c511a5461b22d0a226935420ccf2843ef3522be4a","observation_id":"c8ece105-3a9b-4acd-ba5e-a5647fee5e13","resolution":{"observed_at":"2026-08-10T22:13:38.295059Z","resolver_source":"doi","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:50.255782Z","title":null,"venue":null,"work_id":null,"year":2020},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":48,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:50.255782Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:3ea235cb434bb2f6eb24254c91c61198b11bc9dc5d41c2b7b15527ff4ac3dd7a","observation_id":"dfc2bbe7-79bc-44d2-a2a0-328f7210d035","resolution":{"observed_at":"2026-08-10T22:12:50.255782Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:50.304755Z","title":null,"venue":null,"work_id":null,"year":2023},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":49,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:50.304755Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:e200810e132b60f1d5b068f0005a8405f9a35bf74404eec6207a520fc2d30404","observation_id":"1d66cc6f-b952-4c80-91f1-38d051368d59","resolution":{"observed_at":"2026-08-10T22:12:50.304755Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:50.321354Z","title":null,"venue":null,"work_id":null,"year":2022},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":50,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:50.321354Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:b984d6054f40d41df1ec832b59118edb948dea337dc488d06984a1bf2a51409a","observation_id":"473b4189-6373-4198-bcf3-4b29fb70078d","resolution":{"observed_at":"2026-08-10T22:12:50.321354Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:50.334980Z","title":null,"venue":null,"work_id":null,"year":2005},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":51,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:50.334980Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:a8e9a191440fd6fa92a06693764fb9c80d5335ff77429bdd45b8df81b5920509","observation_id":"0afae8dd-fbba-463d-96b4-1e0ac7d92021","resolution":{"observed_at":"2026-08-10T22:12:50.334980Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2401.14040","last_updated":"2024-04-29T07:07:45Z","snapshot_observed_at":"2026-08-05T13:46:42.541627Z","submitted_at":"2024-01-25T09:36:58Z","title":"(Chat)GPT v BERT: Dawn of Justice for Semantic Change Detection","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2401.14040","snapshot_observed_at":"2026-08-10T22:12:50.354387Z","title":null,"venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":52,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:50.354387Z"},"links":{"cited_paper":"/paper/2401.14040","citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:b0e0faadfd14305d1c4fab39d7313e6fa805cc99cf2d68039c69c01e3f5c1ae7","observation_id":"f6d1a649-a394-4115-9295-53f487023f56","resolution":{"observed_at":"2026-08-10T22:12:50.354387Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:50.363739Z","title":null,"venue":null,"work_id":null,"year":2019},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":53,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:50.363739Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:35f625eb491457fea6d444ea4f81b85596d558179d944c9cc3f3b0cf8f716c4c","observation_id":"2a757c6f-e7b4-49f1-923a-6936ddc9d62c","resolution":{"observed_at":"2026-08-10T22:12:50.363739Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2306.12043","last_updated":"2023-06-21T06:20:51Z","snapshot_observed_at":"2026-08-06T01:31:20.825811Z","submitted_at":"2023-06-21T06:20:51Z","title":"Sample Attackability in Natural Language Adversarial Attacks","version":1},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2306.12043","snapshot_observed_at":"2026-08-10T22:12:50.382862Z","title":null,"venue":null,"work_id":null,"year":2023},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":54,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:50.382862Z"},"links":{"cited_paper":"/paper/2306.12043","citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:a677b6b0f346bee899d17f64e0f194e478979ee2ede8c10f356eb52b16ab61fe","observation_id":"4b8d8293-aee0-4403-9b79-02b4e600757a","resolution":{"observed_at":"2026-08-10T22:12:50.382862Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:50.393819Z","title":null,"venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":55,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:50.393819Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:835296c39b5f1581e4d0f00d7a65150993e0200e3af31d28c9c2063e95a0cf36","observation_id":"615bcd21-31d2-47a3-bd1d-f25a85707aff","resolution":{"observed_at":"2026-08-10T22:12:50.393819Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:50.406641Z","title":null,"venue":null,"work_id":null,"year":2023},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":56,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:50.406641Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:a562ad5ebdc22d8003b795298123b01ea4928221f854e6cf7367517c3a8dfae4","observation_id":"95554789-6ebc-411a-b2a8-502925dfcda0","resolution":{"observed_at":"2026-08-10T22:12:50.406641Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:50.424745Z","title":null,"venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":57,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:50.424745Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:9ac5158d08f5ad9072548dce312adb1a91b532c0da536b9ef580bf183fa2ab55","observation_id":"95ab84d3-d8b8-4469-84dd-7ba38cfcf8c3","resolution":{"observed_at":"2026-08-10T22:12:50.424745Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:50.475247Z","title":null,"venue":null,"work_id":null,"year":2022},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":58,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:50.475247Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:ebfe93f715b0dcef5a5201cda11b211c7b7e6a762956bfcd3c70c0db2d4d4f58","observation_id":"f0f3d811-4901-44d6-8106-4d51e20d6cd4","resolution":{"observed_at":"2026-08-10T22:12:50.475247Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:50.532322Z","title":null,"venue":null,"work_id":null,"year":2019},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":59,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:50.532322Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:dd358be843c9dc0720981010f7b2c858171df196254e69e13951de488e1a5a4f","observation_id":"7373bd7f-ba4d-410e-950d-211e9f444b60","resolution":{"observed_at":"2026-08-10T22:12:50.532322Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:50.546870Z","title":null,"venue":null,"work_id":null,"year":2018},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":60,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:50.546870Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:6de4a8f0ae13fb8cd8a5875ab2d59a3f1c1773dc686c8773273b979a9e62dd07","observation_id":"e3b032ec-2e0f-4376-99af-961d6bbf942c","resolution":{"observed_at":"2026-08-10T22:12:50.546870Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2405.04346","last_updated":"2024-09-04T15:48:40Z","snapshot_observed_at":"2026-08-10T17:18:51.124418Z","submitted_at":"2024-05-07T14:23:22Z","title":"Revisiting Character-level Adversarial Attacks for Language Models","version":2},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2405.04346","snapshot_observed_at":"2026-08-10T22:12:50.592502Z","title":null,"venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":61,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:50.592502Z"},"links":{"cited_paper":"/paper/2405.04346","citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:18623fd8ea3fa39ba46e66f942285490f08c87241f2c6cfdbe97c74dbb0c9041","observation_id":"87df8348-9f92-4c6f-aa57-3309f88ad207","resolution":{"observed_at":"2026-08-10T22:12:50.592502Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"1904.09728","last_updated":"2019-09-09T17:29:55Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2019-04-22T05:36:37Z","title":"SocialIQA: Commonsense Reasoning about Social Interactions","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"1904.09728","snapshot_observed_at":"2026-08-10T22:12:50.633243Z","title":null,"venue":null,"work_id":null,"year":2019},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":62,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:50.633243Z"},"links":{"cited_paper":"/paper/1904.09728","citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:a28ac7fffa7ea68ae62ca40bfff2d7593559e84d4e5477fb460e17a5f396a890","observation_id":"3faf1f9b-ff9f-439b-bf89-df58fb030356","resolution":{"observed_at":"2026-08-10T22:12:50.633243Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2310.10844","last_updated":"2023-10-16T21:37:24Z","snapshot_observed_at":"2026-08-11T04:10:50.839613Z","submitted_at":"2023-10-16T21:37:24Z","title":"Survey of Vulnerabilities in Large Language Models Revealed by Adversarial Attacks","version":1},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2310.10844","snapshot_observed_at":"2026-08-10T22:12:50.671719Z","title":null,"venue":null,"work_id":null,"year":2023},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":63,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:50.671719Z"},"links":{"cited_paper":"/paper/2310.10844","citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:c9f274776f8af1c9090e6765a5bb3ea9f29d929c10a2165554f5754f5343a8a7","observation_id":"3cb6bb7e-8add-4cc8-8d15-10b3af923df8","resolution":{"observed_at":"2026-08-10T22:12:50.671719Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":"10.18653/v1/2021.findings-acl.137","metadata_source":"doi_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:53.264753Z","title":null,"venue":null,"work_id":"2839afac-2830-43f9-a6b3-3b9532b4f7ef","year":2021},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":64,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:50.684670Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:61e7888f1fade0f62b884e744459f473496339d0506cdbbd408f31aefe5c07a5","observation_id":"6444aae5-74b9-4a32-81e2-716a7a7012d1","resolution":{"observed_at":"2026-08-10T22:12:53.314821Z","resolver_source":"doi","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:50.724757Z","title":null,"venue":null,"work_id":null,"year":2013},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":65,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:50.724757Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:ffc8e162bfeafc2ad707719ceca207d80acf4a9128947d0531138dafe23d270a","observation_id":"81e86276-a7df-41ed-b217-9dedef27e80b","resolution":{"observed_at":"2026-08-10T22:12:50.724757Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:50.760148Z","title":null,"venue":null,"work_id":null,"year":2016},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":66,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:50.760148Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:2b2e5bfb6c21806d7205c0eae5911d65ede46d3b4d199312b9ad6402bd110214","observation_id":"42de5a08-7833-4b92-b4e2-98d30e047571","resolution":{"observed_at":"2026-08-10T22:12:50.760148Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"1512.00567","last_updated":"2015-12-11T20:27:50Z","snapshot_observed_at":"2026-08-06T16:02:58.892200Z","submitted_at":"2015-12-02T03:44:38Z","title":"Rethinking the Inception Architecture for Computer Vision","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"1512.00567","snapshot_observed_at":"2026-08-10T22:12:50.776004Z","title":null,"venue":null,"work_id":null,"year":2015},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":67,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:50.776004Z"},"links":{"cited_paper":"/paper/1512.00567","citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:f8daee667b1574652e7b06bc3432b8a5014a0da2a5cf82b9442c46b9602d897d","observation_id":"80fcb219-c3e5-4ce0-b3d3-25e36e99f697","resolution":{"observed_at":"2026-08-10T22:12:50.776004Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:50.824882Z","title":null,"venue":null,"work_id":null,"year":2019},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":68,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:50.824882Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:c46536eb0a78b87a25944718d0ee78fc2479f4d70d0b4d0bbf5017a1637e6080","observation_id":"c3b96cf7-2708-4f68-a39a-1f2014d6ab69","resolution":{"observed_at":"2026-08-10T22:12:50.824882Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:50.874492Z","title":null,"venue":null,"work_id":null,"year":2017},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":69,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:50.874492Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:d834c201311c943713926d97dc6514c84b57b35d19ae58d8e5c6df4eb6bd0cae","observation_id":"2becff01-ce1f-4f67-b6fe-e6ebd8f2a3e1","resolution":{"observed_at":"2026-08-10T22:12:50.874492Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2403.11297","last_updated":"2024-03-17T18:39:14Z","snapshot_observed_at":"2026-08-10T16:05:25.951774Z","submitted_at":"2024-03-17T18:39:14Z","title":"A Modified Word Saliency-Based Adversarial Attack on Text Classification Models","version":1},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2403.11297","snapshot_observed_at":"2026-08-10T22:12:50.899577Z","title":null,"venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":70,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:50.899577Z"},"links":{"cited_paper":"/paper/2403.11297","citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:07718d8c92e6011bc44e7c9572ae8a066673f0bf8b307a67dd2a2e1efa03f741","observation_id":"9d56ca5b-3fb0-4c36-9fe9-ff7ed534c847","resolution":{"observed_at":"2026-08-10T22:12:50.899577Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:50.913638Z","title":null,"venue":null,"work_id":null,"year":2021},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":71,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:50.913638Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:e82bf6bdcdacd64f169c54c1ffcaacccd501e905d84e8997ff17b5e455d27d8e","observation_id":"3a36a838-6a6b-4a99-9fd5-c90df748f291","resolution":{"observed_at":"2026-08-10T22:12:50.913638Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:50.956372Z","title":null,"venue":null,"work_id":null,"year":2022},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":72,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:50.956372Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:d723adb7ded3b0ed9bccec2b628e324827af140807713dbe4ad87660cd7ffb24","observation_id":"f7d8656e-aca2-4fbf-99cf-a1d8fe02da6a","resolution":{"observed_at":"2026-08-10T22:12:50.956372Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:51.017115Z","title":null,"venue":null,"work_id":null,"year":2022},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":73,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:51.017115Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:eb5386c79ae3f1ba6669a8dd8b99b4f76bb33c2f2bf19495cbbe5a50c6b72f25","observation_id":"70a74125-f64b-4f6a-8297-bcde30ba5b00","resolution":{"observed_at":"2026-08-10T22:12:51.017115Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:51.076181Z","title":null,"venue":null,"work_id":null,"year":2023},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":74,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:51.076181Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:507b11032cc15ded87008636a487217459663cd31b3e767095e0d574d2570f8e","observation_id":"1aab0ae5-7a8c-4afb-8880-859c9b2c7fd3","resolution":{"observed_at":"2026-08-10T22:12:51.076181Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:51.105622Z","title":null,"venue":null,"work_id":null,"year":2020},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":75,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:51.105622Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:d6a9d330e1951352faabd936fc89a4c018d2e1ee9774e4db4e96236c7dc56a3a","observation_id":"9b68e779-6b37-4e3a-b7a1-943543750c00","resolution":{"observed_at":"2026-08-10T22:12:51.105622Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2403.16432","last_updated":"2024-04-09T13:05:49Z","snapshot_observed_at":"2026-07-06T17:49:56.713455Z","submitted_at":"2024-03-25T05:27:35Z","title":"$\\textit{LinkPrompt}$: Natural and Universal Adversarial Attacks on Prompt-based Language Models","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2403.16432","snapshot_observed_at":"2026-08-10T22:12:51.134767Z","title":null,"venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":76,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:51.134767Z"},"links":{"cited_paper":"/paper/2403.16432","citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:9d046311fd01d840b0d376cdd4abda1057bac16a8b0f3713b5f9722e5e9e1dc7","observation_id":"e12f80aa-4db3-477f-8735-51f640202de2","resolution":{"observed_at":"2026-08-10T22:12:51.134767Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":"10.18653/v1/2023.acl-long.28","metadata_source":"doi_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:53.044755Z","title":null,"venue":null,"work_id":"39903f1d-f106-4912-b915-b875c94809c4","year":2023},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":77,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:51.163300Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:a3943143d995ed6a9c40483017c8239a4874438fa7673531ddd9dc689aa629b9","observation_id":"d3c247cf-6233-4d1d-acbe-d3217c70f976","resolution":{"observed_at":"2026-08-10T22:12:53.083788Z","resolver_source":"doi","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":"10.18653/v1/2023.acl-short.58","metadata_source":"doi_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:52.884752Z","title":null,"venue":null,"work_id":"f55e4325-0f88-4a15-bd61-ad1c35c2374e","year":2023},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":78,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:51.205089Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:0efcbf281566dcd7cabae6a654b39e3828c2ebd0386ae42f2a23df0508fd3994","observation_id":"6e25c32c-d440-4408-a856-79aec22ee007","resolution":{"observed_at":"2026-08-10T22:12:52.928384Z","resolver_source":"doi","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:51.246598Z","title":null,"venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":79,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:51.246598Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:6be8b8fad63c49b236521acabb3c91c8675cbd1d4c5dee414bf90774741c5b86","observation_id":"fb55c2a2-57ad-4685-97b7-957fb3b83461","resolution":{"observed_at":"2026-08-10T22:12:51.246598Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":"10.18653/v1/2021.findings-emnlp.81","metadata_source":"doi_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:52.715235Z","title":null,"venue":null,"work_id":"7b4a9564-f284-469d-918e-af4a7fd0e712","year":2021},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":80,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:51.284742Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:3d3cbb85d0a26976ed175e596f4cc64290c6870c95e2a591d836846f4995ec65","observation_id":"d3f13246-0944-4a94-a816-90a63e204b63","resolution":{"observed_at":"2026-08-10T22:12:52.774752Z","resolver_source":"doi","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:51.325003Z","title":null,"venue":null,"work_id":null,"year":2020},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":81,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:51.325003Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:cb945d961acdcd9d50c562e07e33b99be6bbc23fff9574e64a0b457883e5c14a","observation_id":"bb3da19d-d1c9-484d-84e3-86765ce7494c","resolution":{"observed_at":"2026-08-10T22:12:51.325003Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:51.354768Z","title":null,"venue":null,"work_id":null,"year":2021},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":82,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:51.354768Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:94c46e4574c1a387edf57908b5f39c914461fca0f89c82a9c777457d5687b48b","observation_id":"f599b160-618e-4a13-8559-e2f1cbc852ab","resolution":{"observed_at":"2026-08-10T22:12:51.354768Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:51.404057Z","title":null,"venue":null,"work_id":null,"year":2023},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":83,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:51.404057Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:f6c880f8c20dae55db523434c5bc9baba3d26e7da7ea4d20625634ddabfea559","observation_id":"7fd0560d-55fe-400c-b2e4-8ff30359c5fa","resolution":{"observed_at":"2026-08-10T22:12:51.404057Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":"10.18653/v1/2023.findings-acl.500","metadata_source":"doi_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:52.364861Z","title":null,"venue":null,"work_id":"fbbc4178-f9d5-4fa7-870e-663193d950ed","year":2023},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":84,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:51.445248Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:38efb6a2a1e5848b6dfc79938335c1a74b21f10af90f824bbdf69e12b9e7acce","observation_id":"32f8e30f-0c0e-4b59-8690-892dcf0d80b1","resolution":{"observed_at":"2026-08-10T22:12:52.415903Z","resolver_source":"doi","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:51.494760Z","title":null,"venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":85,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:51.494760Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:4e5455185883853b2facd119abfebf27255341f182b4e2cc30095dbd30621bdd","observation_id":"b83ddadf-b276-4c04-b73c-347b22fd128e","resolution":{"observed_at":"2026-08-10T22:12:51.494760Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:51.554753Z","title":null,"venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":86,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:51.554753Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:4dd719e01b36a939179b5fd47aea96204a910f70628bc1240cffbf85b036bb5b","observation_id":"ff995a73-69a6-4c5c-a8ab-a7c53c307db5","resolution":{"observed_at":"2026-08-10T22:12:51.554753Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:51.604756Z","title":null,"venue":null,"work_id":null,"year":2018},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":87,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:51.604756Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:b1752720826204a2b976ece2a1661697a283a0d442e14dc44b56a564bd816dfe","observation_id":"135fd43a-3270-465c-b697-2bf84d099542","resolution":{"observed_at":"2026-08-10T22:12:51.604756Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:51.654847Z","title":null,"venue":null,"work_id":null,"year":2022},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":88,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:51.654847Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:6713c3a21e7169c14486f0a8a03d2d6bed0e0f84da372e6bf3cc905f55e66c82","observation_id":"253335c9-1a0c-4708-914d-af9eae42fe69","resolution":{"observed_at":"2026-08-10T22:12:51.654847Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2302.10198","last_updated":"2023-03-02T14:33:12Z","snapshot_observed_at":"2026-08-11T03:13:41.586299Z","submitted_at":"2023-02-19T12:29:33Z","title":"Can ChatGPT Understand Too? A Comparative Study on ChatGPT and Fine-tuned BERT","version":2},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2302.10198","snapshot_observed_at":"2026-08-10T22:12:51.774746Z","title":null,"venue":null,"work_id":null,"year":2023},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":90,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:51.774746Z"},"links":{"cited_paper":"/paper/2302.10198","citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:aae7fe7de6b15b70de140a68e2eead19f7a53c7cecde4d18e20bc9dfade37247","observation_id":"59101f35-95df-4289-83d5-c6c930692cce","resolution":{"observed_at":"2026-08-10T22:12:51.774746Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:51.825990Z","title":null,"venue":null,"work_id":null,"year":2021},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":91,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:51.825990Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:1a874ef5c9fcd1e488ae37aa5e3a09c8bb29a249049b86e19c917a06fcb3fa2b","observation_id":"c4fd6e30-7dba-475b-b81a-d4ee174d78d9","resolution":{"observed_at":"2026-08-10T22:12:51.825990Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:51.866331Z","title":null,"venue":null,"work_id":null,"year":2021},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":92,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:51.866331Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:219c5c8281913aa75f8da185528f69b3592d96b7e687bf1d773428dec97ab697","observation_id":"71daf646-aa93-4794-93e5-7cb163f383f7","resolution":{"observed_at":"2026-08-10T22:12:51.866331Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:51.900968Z","title":null,"venue":null,"work_id":null,"year":2023},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":93,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:51.900968Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:eaa42246d4243f9a008d65540a3dad788cde39d000c10373a5dc2777c4d6dcc7","observation_id":"4784d63c-d39c-4e45-9d68-0fb759c736dc","resolution":{"observed_at":"2026-08-10T22:12:51.900968Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:51.934743Z","title":null,"venue":null,"work_id":null,"year":2020},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":94,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:51.934743Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:8a9dcf0cd4c256d145c09f20dc234495359bc5120bba7b028bb832ab38909f9c","observation_id":"e06b20a4-2563-4154-82c3-0c373e4e3967","resolution":{"observed_at":"2026-08-10T22:12:51.934743Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2306.04528","last_updated":"2024-07-16T07:29:49Z","snapshot_observed_at":"2026-08-10T20:00:17.646392Z","submitted_at":"2023-06-07T15:37:00Z","title":"PromptRobust: Towards Evaluating the Robustness of Large Language Models on Adversarial Prompts","version":5},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2306.04528","snapshot_observed_at":"2026-08-10T22:12:51.983462Z","title":null,"venue":null,"work_id":null,"year":2023},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":95,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:51.983462Z"},"links":{"cited_paper":"/paper/2306.04528","citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:4b466cd5415dfbcc86323c488dc51c238d471f14e113cf02060b92bdaae260cb","observation_id":"f7d089cb-5291-4b8d-b147-ac32b7a78122","resolution":{"observed_at":"2026-08-10T22:12:51.983462Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:52.024735Z","title":"online\" 'onlinestring :=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":96,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:52.024735Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:aea11f15e8e3bf5e853a53633f701f88ef0fd95fe832a8a573b476655ed4bf8f","observation_id":"dbd10cf2-d211-4e6c-8fdf-643b62393c42","resolution":{"observed_at":"2026-08-10T22:12:52.024735Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":null,"snapshot_observed_at":"2026-08-10T22:12:52.084879Z","title":"write newline","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks","version":2},"reference_index":97,"source":"arxiv_source","source_observed_at":"2026-08-10T22:12:52.084879Z"},"links":{"citing_paper":"/paper/2501.02654"},"observation_digest":"sha256:6fd64d3db6b9c612cfbc0c4aebd707fae1c478f1b78195670369764fb2a42270","observation_id":"964df547-8508-4d9f-95b5-e4b77dd143b3","resolution":{"observed_at":"2026-08-10T22:12:52.084879Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}}],"paper":{"arxiv_id":"2501.02654","last_updated":"2025-01-08T14:53:41Z","latest_version":2,"primary_category":"cs.CL","snapshot_observed_at":"2026-08-11T19:00:58.907199Z","submitted_at":"2025-01-05T20:39:52Z","title":"Tougher Text, Smarter Models: Raising the Bar for Adversarial Defence Benchmarks"},"reference_resolution":{"displayed":95,"state_counts":{"malformed_identifier":0,"metadata_mismatch":0,"parse_uncertain":0,"unresolved":83,"verified_exact":12,"verified_fuzzy":0},"total_outbound_references":95},"refusal":"A citation records a reference. It does not transfer a finding from one paper to another.","schema":"pith.paper-citation-record.v1","standing_sources":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"thesis":"As of 11 August 2026, this Paper Citation Record lists 95 of 95 outbound references and 0 inbound Pith citation observations for arXiv:2501.02654."}