Pith. sign in

Paper Citation Record · LEDGER

H-CoT: Hijacking the Chain-of-Thought Safety Reasoning Mechanism to Jailbreak Large Reasoning Models, Including OpenAI o1/o3, DeepSeek-R1, and Gemini 2.0 Flash Thinking

As of 10 August 2026, this Paper Citation Record lists 0 of 0 outbound references and 34 inbound Pith citation observations for arXiv:2502.12893.

A citation records a reference. It does not transfer a finding from one paper to another.

pith.paper-citation-record.v1
2502.12893 v2

Coverage vector

measured 0 of 0 reference resolution

Typed states for the displayed outbound observations.

Source: paper_references, paper_reference_links

measured 34 of 34 standing notices

One-hop event checks from named stored sources.

Source: scholarly_work_events, retraction_status_cache, observed 2026-08-10T06:31:04.303077+00:00

measured 34 of 34 inbound itemization

Pith citing papers itemized under the disclosed page cap.

Source: paper_references, paper_reference_links, observed 2026-08-07T14:26:17.214742Z

measured 0 of 1 external citation measurements

A source-named dated measurement, never combined with another source.

Source: arxiv_reference, observed 2026-07-04T03:59:33.729006Z

Reference resolution

0 of 0 outbound references displayed

  • verified exact0
  • verified fuzzy0
  • unresolved0
  • parse uncertain0
  • malformed identifier0
  • metadata mismatch0

External citation measurements

No source-named external measurement is stored.

Outbound references

No outbound reference observations are available for this paper version.

Pith citing papers

Reference 82

Resolution
verified exact
arxiv_id, observed 2026-05-14T01:29:56.965963Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-05-14T01:29:56.480020Z digest=sha256:9b1b647bc5597b2be41b716464f56e8472998961d54a47c48f1e371f49964ab7

Reference 89

Resolution
verified exact
arxiv_id, observed 2026-05-22T21:22:09.135337Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-05-22T21:20:07.238992Z digest=sha256:14ee894dad1671783e8d4e90aa3e4a64828b730d8b7c6e7394044735fa12c925

Observation 7fc2dd48-1964-45ee-85bd-ceed7ccac036 · inbound

CoreMatching: A Co-adaptive Sparse Inference Framework with Token and Neuron Pruning for Comprehensive Acceleration of Vision-Language Models cites this paper.

CoreMatching: A Co-adaptive Sparse Inference Framework with Token and Neuron Pruning for Comprehensive Acceleration of Vision-Language Models H-CoT: Hijacking the Chain-of-Thought Safety Reasoning Mechanism to Jailbreak Large Reasoning Models, Including OpenAI o1/o3, DeepSeek-R1, and Gemini 2.0 Flash Thinking

Reference 2019

Resolution
unresolved
no resolver link, observed 2026-08-07T14:26:17.214742Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-07T14:26:17.214742Z digest=sha256:906f958617fd2c2767ab797bcbf8ba9609f44b7637286f38fbb22aed882ec680

Observation 18640e6f-a309-42af-930a-89d013c6b357 · inbound

Beyond Safe Answers: A Benchmark for Evaluating True Risk Awareness in Large Reasoning Models cites this paper.

Beyond Safe Answers: A Benchmark for Evaluating True Risk Awareness in Large Reasoning Models H-CoT: Hijacking the Chain-of-Thought Safety Reasoning Mechanism to Jailbreak Large Reasoning Models, Including OpenAI o1/o3, DeepSeek-R1, and Gemini 2.0 Flash Thinking

Reference 34

Resolution
unresolved
no resolver link, observed 2026-08-07T14:13:52.872208Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-07T14:13:52.872208Z digest=sha256:6b7607db1d93f26953f06d6a18d2e263f398e47095a6aee4a350fdf9c33f9465

Reference 42

Resolution
unresolved
no resolver link, observed 2026-08-07T12:36:16.117693Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-07T12:36:16.117693Z digest=sha256:07b7684bb5ddb00c55199a974c5fe34413353196f0944c4b69d796f037b6d470

Reference 9

Resolution
unresolved
no resolver link, observed 2026-08-07T12:04:46.756698Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=arxiv_source observed=2026-08-07T12:04:46.756698Z digest=sha256:1984c06a35b501901ca6ee28e1684dc004ba617f0b0279896c72a70fa8da988f

Reference 42

Resolution
unresolved
no resolver link, observed 2026-08-07T12:11:20.390015Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-07T12:11:20.390015Z digest=sha256:f71d591937ee97f45058797c1c2ae5c1c523377558921554b4c7550c9c71b9b3

Observation ea4a1b95-7f32-47ed-acb4-f7deb9a1cdf1 · inbound

Unable to Forget: Proactive Interference Reveals Working Memory Limits in LLMs Beyond Context Length cites this paper.

Unable to Forget: Proactive Interference Reveals Working Memory Limits in LLMs Beyond Context Length H-CoT: Hijacking the Chain-of-Thought Safety Reasoning Mechanism to Jailbreak Large Reasoning Models, Including OpenAI o1/o3, DeepSeek-R1, and Gemini 2.0 Flash Thinking

Reference 7

Resolution
unresolved
no resolver link, observed 2026-08-07T05:23:10.942096Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=arxiv_source observed=2026-08-07T05:23:10.942096Z digest=sha256:beb2ce993a36acd3632a6cb092b5371601a1d112a9d94e5fcdd2c6716730ccd1

Observation a5edf243-33c2-4ba1-a47c-b019af836f53 · inbound

SoK: A Comprehensive Security Analysis of Jailbreak Resilience in GPT and DeepSeek Models cites this paper.

SoK: A Comprehensive Security Analysis of Jailbreak Resilience in GPT and DeepSeek Models H-CoT: Hijacking the Chain-of-Thought Safety Reasoning Mechanism to Jailbreak Large Reasoning Models, Including OpenAI o1/o3, DeepSeek-R1, and Gemini 2.0 Flash Thinking

Reference 62

Resolution
unresolved
no resolver link, observed 2026-08-06T23:20:58.633864Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-06T23:20:58.633864Z digest=sha256:94d3ebfb9c0b68c4be962b8a769be10d44945944dec920f249c2f01a47fa27c9

Reference 9

Resolution
verified exact
arxiv_id, observed 2026-05-19T04:12:02.192812Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-05-19T04:10:57.882345Z digest=sha256:30b9e8bc777f3d1fe46cfcd8277a16afb74f5eb9a362ed32f95438ca2956f7e3

Reference 33

Resolution
unresolved
no resolver link, observed 2026-08-06T15:30:35.135974Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=arxiv_source observed=2026-08-06T15:30:35.135974Z digest=sha256:2fb139685d61866f0763281adf7e296bf3e7b5023305fcfec0d924d87599715f

Reference 13

Resolution
unresolved
no resolver link, observed 2026-08-06T15:26:20.640185Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-06T15:26:20.640185Z digest=sha256:8b9fb4487b69c64d277d98ea83e7b859915cd2d780c13aa443feb6df44f028fe

Observation 28ba9b1d-47cf-4f28-bf47-22b2034bad11 · inbound

ReasoningGuard: Safeguarding Large Reasoning Models with Inference-time Safety Aha Moments cites this paper.

ReasoningGuard: Safeguarding Large Reasoning Models with Inference-time Safety Aha Moments H-CoT: Hijacking the Chain-of-Thought Safety Reasoning Mechanism to Jailbreak Large Reasoning Models, Including OpenAI o1/o3, DeepSeek-R1, and Gemini 2.0 Flash Thinking

Reference 13

Resolution
verified exact
arxiv_id, observed 2026-05-19T01:02:54.820508Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-05-19T01:02:07.088724Z digest=sha256:032958f8a2e38903e8c2ea55eae604cbb84ae8b36c282f9583536247762c2646

Observation 2f69d3cc-b5d3-424b-81c9-2b1edc04887a · inbound

A Comprehensive Survey on Trustworthiness in Reasoning with Large Language Models cites this paper.

A Comprehensive Survey on Trustworthiness in Reasoning with Large Language Models H-CoT: Hijacking the Chain-of-Thought Safety Reasoning Mechanism to Jailbreak Large Reasoning Models, Including OpenAI o1/o3, DeepSeek-R1, and Gemini 2.0 Flash Thinking

Reference 117

Resolution
unresolved
no resolver link, observed 2026-08-05T10:39:06.931196Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T10:39:06.931196Z digest=sha256:2fa60e8b4828c366bc9782f86afc4800e21666bb498b3b8c1716cd4aca2dc5ce

Observation a8809245-3990-42e1-8825-90e588059a9d · inbound

Less Diverse, Less Safe: The Indirect But Pervasive Risk of Test-Time Scaling in Large Language Models cites this paper.

Less Diverse, Less Safe: The Indirect But Pervasive Risk of Test-Time Scaling in Large Language Models H-CoT: Hijacking the Chain-of-Thought Safety Reasoning Mechanism to Jailbreak Large Reasoning Models, Including OpenAI o1/o3, DeepSeek-R1, and Gemini 2.0 Flash Thinking

Reference 24

Resolution
verified exact
arxiv_id, observed 2026-05-18T09:56:13.043306Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-05-18T09:53:57.765473Z digest=sha256:13361e953531922e0674d039ea9fc4791aae3cea4b761f78c7ae816381614d72

Observation f0829df4-ace3-486c-a3ed-996bdb46f315 · inbound

Contrastive Reasoning Alignment: Reinforcement Learning from Hidden Representations cites this paper.

Contrastive Reasoning Alignment: Reinforcement Learning from Hidden Representations H-CoT: Hijacking the Chain-of-Thought Safety Reasoning Mechanism to Jailbreak Large Reasoning Models, Including OpenAI o1/o3, DeepSeek-R1, and Gemini 2.0 Flash Thinking

Reference 17

Resolution
verified exact
arxiv_id, observed 2026-05-21T11:24:08.440237Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-05-21T11:23:26.852673Z digest=sha256:05047bba900504d0caa0b46fa4ea7bb0842bbc88d636cd36fbb949f77c77d6db

Observation 11270d23-0791-4709-ba21-0f18d7b0ef65 · inbound

Towards Safer Large Reasoning Models by Promoting Safety Decision-Making before Chain-of-Thought Generation cites this paper.

Towards Safer Large Reasoning Models by Promoting Safety Decision-Making before Chain-of-Thought Generation H-CoT: Hijacking the Chain-of-Thought Safety Reasoning Mechanism to Jailbreak Large Reasoning Models, Including OpenAI o1/o3, DeepSeek-R1, and Gemini 2.0 Flash Thinking

Reference 11

Resolution
verified exact
arxiv_id, observed 2026-05-15T09:35:22.362754Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-05-15T09:33:47.702580Z digest=sha256:69ece92d326f2855189bb85208efa89cef7495a6cb83ba2866cddef7e095db10

Reference 6

Resolution
unresolved
no resolver link, observed 2026-07-13T19:50:50.950451Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-07-13T19:50:50.950451Z digest=sha256:088f55a710616687a5bfc04ecb2a3849f46e812c3d28c8f8da28a99b8e8c7f41

Reference 3

Resolution
verified exact
arxiv_id, observed 2026-05-11T06:41:08.992265Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-05-10T17:31:37.034954Z digest=sha256:d0df79d9575113d18743f61da1e2acc794364ab54db87bce1fbb4b1dae3017ee

Observation 8757c216-58d0-464c-9662-6cceb7ca859c · inbound

Reasoning-targeted Jailbreak Attacks on Large Reasoning Models via Semantic Triggers and Psychological Framing cites this paper.

Reasoning-targeted Jailbreak Attacks on Large Reasoning Models via Semantic Triggers and Psychological Framing H-CoT: Hijacking the Chain-of-Thought Safety Reasoning Mechanism to Jailbreak Large Reasoning Models, Including OpenAI o1/o3, DeepSeek-R1, and Gemini 2.0 Flash Thinking

Reference 13

Resolution
metadata mismatch
arxiv_id, observed 2026-05-10T09:08:26.267009Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-05-10T08:24:43.494005Z digest=sha256:fb9724cb972f30c47cc937294f811fb51ded0d3e6e2e8c413ebd5ae8e8d7b66e

Reference 181

Resolution
verified exact
arxiv_id, observed 2026-05-14T22:23:04.074845Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-05-14T22:20:31.623849Z digest=sha256:2a1b90889b4a72c8290952fdf0aac5155ce19df936368f45ad1c2bd11425bce5

Reference 180

Resolution
unresolved
no resolver link, observed 2026-07-13T17:08:58.831798Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-07-13T17:08:58.831798Z digest=sha256:6dfe2eb3d07598bde170fc13dc9f7eb86ee3f574d046cbf39f7016521b9e107a

Reference 156

Resolution
metadata mismatch
arxiv_id, observed 2026-05-11T20:06:09.110663Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=arxiv_source observed=2026-05-08T10:19:08.451445Z digest=sha256:0711b9f8470e3bec734394900fe45248aa5bacdaddf36bf00a06866fb7001602

Reference 201

Resolution
verified exact
arxiv_id, observed 2026-05-12T07:51:40.547032Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-05-12T01:47:40.772146Z digest=sha256:d41dda8fe180469d77ce0180c71d34f3a6d544b118aface87f6214d2dd77e069

Reference 12

Resolution
verified exact
arxiv_id, observed 2026-05-12T01:51:14.276877Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-05-12T01:50:59.283409Z digest=sha256:866fae5c577ea23b75d3b752b01ea0aa02d58f0d2843e099f9819256bdbd7ed4

Reference 11

Resolution
verified exact
arxiv_id, observed 2026-05-12T02:11:16.173807Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-05-12T02:07:04.364417Z digest=sha256:d36ff2ca499bed6d6e06db19a0c01cc5a209d6c6ca5a1f15f672fd7cff1bd040

Observation f62ae6cd-61d5-4f5d-88db-cebffbbd52d9 · inbound

Attention-Guided Reward for Reinforcement Learning-based Jailbreak against Large Reasoning Models cites this paper.

Attention-Guided Reward for Reinforcement Learning-based Jailbreak against Large Reasoning Models H-CoT: Hijacking the Chain-of-Thought Safety Reasoning Mechanism to Jailbreak Large Reasoning Models, Including OpenAI o1/o3, DeepSeek-R1, and Gemini 2.0 Flash Thinking

Reference 15

Resolution
verified exact
arxiv_id, observed 2026-05-20T06:38:05.823447Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-05-20T06:33:30.647965Z digest=sha256:adc56935bc5191c98f3843779d5b992bea75363c7e277fa2a22b7aaeeb5ced42

Observation f0a983c9-d9c6-4b07-b3a9-10aa1ebcc1fd · inbound

Mitigating Adaptive Attacks against Reasoning Models with Activation Consistency Training cites this paper.

Mitigating Adaptive Attacks against Reasoning Models with Activation Consistency Training H-CoT: Hijacking the Chain-of-Thought Safety Reasoning Mechanism to Jailbreak Large Reasoning Models, Including OpenAI o1/o3, DeepSeek-R1, and Gemini 2.0 Flash Thinking

Reference 10

Resolution
verified exact
arxiv_id, observed 2026-06-29T14:23:30.697097Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-06-29T14:18:16.033063Z digest=sha256:9aacd830fdf57b4816d703eb32b2b3f06170b1b4dc5c0b778e380a4b29ed94cf

Reference 6

Resolution
verified exact
arxiv_id, observed 2026-07-04T03:59:33.731040Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-06-26T17:23:06.382761Z digest=sha256:e4be8aa2eda130c4312820cbf4869a38d541207d49225cb9b36a8f7caefa9510

Reference 83

Resolution
metadata mismatch
arxiv_id, observed 2026-07-01T08:55:35.602580Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=arxiv_source observed=2026-07-01T06:59:12.695984Z digest=sha256:71a820485e3d5821d763965cf713d8bc3b336200ce52662c5c16d0d0a22b259f

Observation 17f24cda-e378-4c56-967e-fb462776f27a · inbound

Beyond the Prompt: Jailbreaking Function-Calling LLMs via Simulated Moderation Traces cites this paper.

Beyond the Prompt: Jailbreaking Function-Calling LLMs via Simulated Moderation Traces H-CoT: Hijacking the Chain-of-Thought Safety Reasoning Mechanism to Jailbreak Large Reasoning Models, Including OpenAI o1/o3, DeepSeek-R1, and Gemini 2.0 Flash Thinking

Reference 41

Resolution
verified exact
arxiv_id, observed 2026-07-02T11:46:54.871856Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-07-02T11:37:02.538968Z digest=sha256:fafaa05043f8f32edc1dd27a80c9d2ba1792c97a8d0a3eac0915cd38d580c06c

Observation 307204e9-b59a-4356-95b2-3dfe24443d7e · inbound

TYPO: Instruction-Dense Visual Jailbreaks against Commercial Closed-Source Image-Generation Models cites this paper.

TYPO: Instruction-Dense Visual Jailbreaks against Commercial Closed-Source Image-Generation Models H-CoT: Hijacking the Chain-of-Thought Safety Reasoning Mechanism to Jailbreak Large Reasoning Models, Including OpenAI o1/o3, DeepSeek-R1, and Gemini 2.0 Flash Thinking

Reference 14

Resolution
unresolved
no resolver link, observed 2026-07-31T09:23:52.331731Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=arxiv_source observed=2026-07-31T09:23:52.331731Z digest=sha256:57f3184d37d3328d0a8eb435891df7eff41616b23a6daf1b5cf6eaafd92999dc

Reference 206

Resolution
unresolved
no resolver link, observed 2026-08-03T00:55:33.211393Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=arxiv_source observed=2026-08-03T00:55:33.211393Z digest=sha256:4f5e5e72e54f816dc7609ff85cc91e149fd5b09a58585797a1aa110fdbc2e0cc

Observation a2d4ac7e-537d-4844-8a23-79f2634c18ce · inbound

A Multimodal Automatic Redteaming Evaluation based on Atomic Jailbreak Strategy Decoupling and Combination cites this paper.

A Multimodal Automatic Redteaming Evaluation based on Atomic Jailbreak Strategy Decoupling and Combination H-CoT: Hijacking the Chain-of-Thought Safety Reasoning Mechanism to Jailbreak Large Reasoning Models, Including OpenAI o1/o3, DeepSeek-R1, and Gemini 2.0 Flash Thinking

Reference 97

Resolution
unresolved
no resolver link, observed 2026-08-07T00:14:45.609000Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=arxiv_source observed=2026-08-07T00:14:45.609000Z digest=sha256:66d9834bcab9cba6f1ebbcb584e6e5a05d1dad5fcb60744827bb0f6e11ba94d4