Pith. sign in

Paper Citation Record · LEDGER

Rethinking Agent Security as a Networking Problem

As of 18 August 2026, this Paper Citation Record lists 77 of 77 outbound references and 0 inbound Pith citation observations for arXiv:2608.12172.

A citation records a reference. It does not transfer a finding from one paper to another.

pith.paper-citation-record.v1
2608.12172 v1

Coverage vector

measured 77 of 77 reference resolution

Typed states for the displayed outbound observations.

Source: paper_references, paper_reference_links, observed 2026-08-16T00:16:52.653903Z

measured 77 of 77 standing notices

One-hop event checks from named stored sources.

Source: scholarly_work_events, retraction_status_cache, observed 2026-08-18T06:34:40.430872+00:00

measured 0 of 0 inbound itemization

Pith citing papers itemized under the disclosed page cap.

Source: paper_references, paper_reference_links

measured 0 of 1 external citation measurements

A source-named dated measurement, never combined with another source.

Source: cited_works

Reference resolution

77 of 77 outbound references displayed

  • verified exact0
  • verified fuzzy46
  • unresolved31
  • parse uncertain0
  • malformed identifier0
  • metadata mismatch0

External citation measurements

No source-named external measurement is stored.

Outbound references

Observation 307f55f9-9df6-44ed-9392-4dd75055892e · outbound

This paper cites Simple Prompt Injection Attacks Can Leak Personal Data Observed by LLM Agents During Task Execution.

Rethinking Agent Security as a Networking Problem Simple Prompt Injection Attacks Can Leak Personal Data Observed by LLM Agents During Task Execution

Reference 1

Resolution
unresolved
no resolver link, observed 2026-08-16T00:16:52.303564Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-16T00:16:52.303564Z digest=sha256:dc3c739b164eb4d1260db64130117f20d6b57aed22ac58fd7e683ae8a982137f

Observation 75af99fd-35b9-45be-bb0e-539c3b19fb0a · outbound

This paper cites Model context protocol.

Rethinking Agent Security as a Networking Problem Model context protocol

Reference 2

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:54.138420Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.309227Z digest=sha256:25dc5a6027277086c69953b7628cd9fbefb0ac5df6d3c6bf5742ce122ccdecc6

Observation 7bc4a230-bca9-4d4e-90b1-0e0bda6b742d · outbound

This paper cites Air- GapAgent: Protecting privacy-conscious conversational agents.

Rethinking Agent Security as a Networking Problem Air- GapAgent: Protecting privacy-conscious conversational agents

Reference 3

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:54.123389Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.313941Z digest=sha256:72bc87d711ab3614de76ab3d8e004a1bdd4cfd2b6f81e1cbc7c421ec04f0e80f

Observation 085a062e-7873-4d4d-87bf-6f2a28a46938 · outbound

This paper cites Off by default! InProceedings of the 4th ACM Workshop on Hot Topics in Networks (HotNets-IV), College Park, MD, 2005.

Rethinking Agent Security as a Networking Problem Off by default! InProceedings of the 4th ACM Workshop on Hot Topics in Networks (HotNets-IV), College Park, MD, 2005

Reference 4

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:54.098945Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.323520Z digest=sha256:d8444f4c71e3d072aeb097e91553a07ec3fdfba6cf72d501decf7d198a0ebf0a

Observation ac23da05-14a3-4f9e-ba6b-6351207f1f80 · outbound

This paper cites Freedman, Justin Pettit, Jianying Luo, Nick McKeown, and Scott Shenker.

Rethinking Agent Security as a Networking Problem Freedman, Justin Pettit, Jianying Luo, Nick McKeown, and Scott Shenker

Reference 5

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:54.083703Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.328579Z digest=sha256:190e2b6d4b3da3f162ca5e2f5dc1e9909c97efc6bc2540d18e41361bec0733e2

Observation 9742d581-a98e-4778-9ff6-d7453dbaab05 · outbound

This paper cites Freedman, Dan Boneh, Nick McKeown, and Scott Shenker.

Rethinking Agent Security as a Networking Problem Freedman, Dan Boneh, Nick McKeown, and Scott Shenker

Reference 6

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:54.069453Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.334111Z digest=sha256:e7429d67e41950b5b136823b355167a5200bb146687c1c7b9117661d080aafb9

Observation 22ba1fa3-3d01-42f6-a726-dacd082a736b · outbound

This paper cites {StruQ}: Defending against prompt injection with structured queries.

Rethinking Agent Security as a Networking Problem {StruQ}: Defending against prompt injection with structured queries

Reference 7

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:54.054036Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.339433Z digest=sha256:ae18b40027ec9cda041f60b4bec7e03d035e4e2a618d4d02f82639fd61764137

Observation 0fb0ed77-c5b1-4fcf-97e5-3e97c8b89892 · outbound

This paper cites Secalign: Defending against prompt injection with preference optimization.

Rethinking Agent Security as a Networking Problem Secalign: Defending against prompt injection with preference optimization

Reference 8

Resolution
unresolved
no resolver link, observed 2026-08-16T00:16:52.344313Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-16T00:16:52.344313Z digest=sha256:8db23776eddb755c9b496b6c49372baa561dff0eb1a3a3e24865e2a32351d919

Observation 0334ae0a-09da-44dc-9871-32a9fb6b030c · outbound

This paper cites Agentpoison: Red-teaming llm agents via poisoning memory or knowl- edge bases.Advances in Neural Information Processing Systems, 37:130185–130213, 2024.

Rethinking Agent Security as a Networking Problem Agentpoison: Red-teaming llm agents via poisoning memory or knowl- edge bases.Advances in Neural Information Processing Systems, 37:130185–130213, 2024

Reference 9

Resolution
unresolved
no resolver link, observed 2026-08-16T00:16:52.348775Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-16T00:16:52.348775Z digest=sha256:5843c18ebe0274d67dee143af3cd4f673c23cb5ae50bbbc0be6d420b04853a8d

Observation b36724f7-1f7b-4d93-9381-ed66a003bfb7 · outbound

This paper cites Overprivileged by design: AI agents as cloud escalation vectors.

Rethinking Agent Security as a Networking Problem Overprivileged by design: AI agents as cloud escalation vectors

Reference 10

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:54.020107Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.353237Z digest=sha256:a44cb1345ed81c525aa741839faea3458bda680eeab939c4b3b4827e723b2b81

Observation 10c52286-c590-4493-99a8-3e7a23025f32 · outbound

This paper cites Securing AI Agents with Information-Flow Control.

Rethinking Agent Security as a Networking Problem Securing AI Agents with Information-Flow Control

Reference 11

Resolution
unresolved
no resolver link, observed 2026-08-16T00:16:52.357689Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-16T00:16:52.357689Z digest=sha256:4fb826af24854f321f848d27c12adf2bfbe85477b0add1556c6bc157114b9d1b

Observation 4d423be8-c845-4d2b-ad13-3306bed23c1e · outbound

This paper cites Defeating Prompt Injections by Design.

Rethinking Agent Security as a Networking Problem Defeating Prompt Injections by Design

Reference 12

Resolution
unresolved
no resolver link, observed 2026-08-16T00:16:52.362927Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-16T00:16:52.362927Z digest=sha256:05ec0c337edb81252e02092e60329c4083a5b60d857d9dbbdf11d383a8a82b5e

Observation 1a09a59c-fecb-44a5-a867-1443ac50449a · outbound

This paper cites AgentDojo: A dynamic environment to evaluate prompt injection attacks and defenses for LLM agents.

Rethinking Agent Security as a Networking Problem AgentDojo: A dynamic environment to evaluate prompt injection attacks and defenses for LLM agents

Reference 13

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:54.005425Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.367655Z digest=sha256:bec0df3548053f9e76b7ca3925ff4f2d55f93ea31231e9eb445e8c772de74f43

Observation 5d732177-794b-4a5f-a7fe-332b5dd6d2f2 · outbound

This paper cites Ai agents under threat: A survey of key security challenges and future pathways.ACM Computing Surveys, 57(7):1–36, 2025.

Rethinking Agent Security as a Networking Problem Ai agents under threat: A survey of key security challenges and future pathways.ACM Computing Surveys, 57(7):1–36, 2025

Reference 14

Resolution
unresolved
no resolver link, observed 2026-08-16T00:16:52.372005Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-16T00:16:52.372005Z digest=sha256:dcca1571826c3dabc56aa08b499658951df4788f00d1e148ece399b5f61ab523

Observation 14a28adc-8e32-4b04-8a6f-ca792ee3b9cc · outbound

This paper cites an unresolved cited work.

Rethinking Agent Security as a Networking Problem Unresolved cited work

Reference 15

Resolution
unresolved
raw_fallback, observed 2026-08-16T00:16:53.980500Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.376540Z digest=sha256:64f83512d2c0bec7cff186ffa8527572696700c7bbdf090f3b5da3f9452c2ab1

Observation abdb78e1-07bf-4c0c-ad3f-540f869ee3ae · outbound

This paper cites Memory injection attacks on llm agents via query-only interaction.Advances in Neural Information Processing Systems, 38:46697–46731, 2026.

Rethinking Agent Security as a Networking Problem Memory injection attacks on llm agents via query-only interaction.Advances in Neural Information Processing Systems, 38:46697–46731, 2026

Reference 16

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.965986Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.381100Z digest=sha256:242393af13d3666faa0c7e7bf22db07ee09e6d9fb6ec66de62e55f8fc3656802

Observation afa7f544-284d-42f7-80a1-682cc86e9981 · outbound

This paper cites Towards verifiably safe tool use for llm agents.

Rethinking Agent Security as a Networking Problem Towards verifiably safe tool use for llm agents

Reference 17

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.952047Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.385629Z digest=sha256:8da06217f8bce523c7cf737347eef685e7c8e5e3fb73db4f07399973c689a734

Observation a96d1fef-c4fd-498d-b08e-444032087434 · outbound

This paper cites AgentLeak: A full-stack benchmark for privacy leakage in multi-agent LLM systems.arXiv preprint arXiv:2602.11510, February 2026.

Rethinking Agent Security as a Networking Problem AgentLeak: A full-stack benchmark for privacy leakage in multi-agent LLM systems.arXiv preprint arXiv:2602.11510, February 2026

Reference 18

Resolution
unresolved
no resolver link, observed 2026-08-16T00:16:52.389986Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-16T00:16:52.389986Z digest=sha256:e05d389b640f914b0e41da4abcd1ab07d97aaab0c69cc558b2c43f73ed8496b8

Observation 47c471bd-da43-4778-987e-87ab27143bc4 · outbound

This paper cites Wasp: Benchmarking web agent security against prompt injection attacks.Advances in Neural Information Processing Systems, 38, 2026.

Rethinking Agent Security as a Networking Problem Wasp: Benchmarking web agent security against prompt injection attacks.Advances in Neural Information Processing Systems, 38, 2026

Reference 19

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.937836Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.394299Z digest=sha256:22f8e08558481d1aa9f433c93494abbd76f6b98c2ed5abee259769e887730e28

Observation bd14a932-ea5c-4abf-beac-791911997f00 · outbound

This paper cites AI agents are the biggest data security threat you’re not governing.

Rethinking Agent Security as a Networking Problem AI agents are the biggest data security threat you’re not governing

Reference 20

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.922661Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.398764Z digest=sha256:8264f5c765731907daee9f1f7e651f1ea62f073d898fc79f9ba3eb17518732aa

Observation 805acb9c-2d57-4b25-8f79-b61dc624336f · outbound

This paper cites Agent2agent (A2A) protocol.

Rethinking Agent Security as a Networking Problem Agent2agent (A2A) protocol

Reference 21

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.907836Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.403122Z digest=sha256:a7939e2551faad836da7010c3e2bffdc8ba95f35dd18827eadbbf1ed97ae9847

Observation 3274f44a-94e6-4713-bd52-2347f864e27d · outbound

This paper cites Not what you’ve signed up for: Compromising real-world LLM-integrated applications with indirect prompt injection.

Rethinking Agent Security as a Networking Problem Not what you’ve signed up for: Compromising real-world LLM-integrated applications with indirect prompt injection

Reference 22

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.892852Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.407983Z digest=sha256:2acfe585a19cef11b37c944a199fead3e9d56f174e739367eed2b3036b4fa518

Observation 14e2ac38-18e9-4ab8-a80b-8296a1587c9a · outbound

This paper cites Bypassing LLM guardrails: An empirical analysis of eva- sion attacks against prompt injection and jailbreak detection systems, 2025.

Rethinking Agent Security as a Networking Problem Bypassing LLM guardrails: An empirical analysis of eva- sion attacks against prompt injection and jailbreak detection systems, 2025

Reference 23

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.878294Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.412448Z digest=sha256:e6730e24ea6ceb6689a60add05204b153b6530c6f5f76341be9b54b807d30002

Observation 096b3df7-3605-4b26-9a17-35957152ba5c · outbound

This paper cites The OAuth 2.0 authorization framework.

Rethinking Agent Security as a Networking Problem The OAuth 2.0 authorization framework

Reference 24

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.864145Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.417816Z digest=sha256:0a976c1259fccc43c08b879048be87876f35811362da5786abc5b34929c87fa7

Observation 42e92a12-2d7e-4a9f-9608-4b5405e86323 · outbound

This paper cites Llama Guard: LLM-based Input-Output Safeguard for Human-AI Conversations.

Rethinking Agent Security as a Networking Problem Llama Guard: LLM-based Input-Output Safeguard for Human-AI Conversations

Reference 25

Resolution
unresolved
no resolver link, observed 2026-08-16T00:16:52.422410Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-16T00:16:52.422410Z digest=sha256:2233598e81f3f5748958e5658b5b38fceebd7b6467fa9491dd5642b10b945c78

Observation ad8ee4e6-8e34-41c1-9042-17c252d61947 · outbound

This paper cites Break- ing and fixing defenses against control-flow hijacking in multi-agent systems.arXiv preprint arXiv:2510.17276, 2025.

Rethinking Agent Security as a Networking Problem Break- ing and fixing defenses against control-flow hijacking in multi-agent systems.arXiv preprint arXiv:2510.17276, 2025

Reference 26

Resolution
unresolved
no resolver link, observed 2026-08-16T00:16:52.426857Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-16T00:16:52.426857Z digest=sha256:a51bdcde227be1653b086e86cb615036fea9723b11a7527c60e7c32877b05e9e

Observation 6e52efd2-8208-4a1e-921e-7b31bea700d2 · outbound

This paper cites The task shield: Enforcing task alignment to defend against indirect prompt injection in LLM agents.

Rethinking Agent Security as a Networking Problem The task shield: Enforcing task alignment to defend against indirect prompt injection in LLM agents

Reference 27

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.846847Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.430727Z digest=sha256:7dacf73d42cfb4c6817e25f4222b15c63f8d94fd17dabe74f3ad4cc0192bd751

Observation 304440f1-a086-4495-a037-cd6867237972 · outbound

This paper cites A Critical Evaluation of Defenses against Prompt Injection Attacks.

Rethinking Agent Security as a Networking Problem A Critical Evaluation of Defenses against Prompt Injection Attacks

Reference 28

Resolution
unresolved
no resolver link, observed 2026-08-16T00:16:52.434773Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-16T00:16:52.434773Z digest=sha256:5a60eb73f97a843ebdb08584a2e33f044bfda0227ba8b9bbe09e82a1205747de

Observation 3fa22a94-faa1-4e26-89f4-769eb59c2aef · outbound

This paper cites When Benign Inputs Lead to Severe Harms: Eliciting Unsafe Unintended Behaviors of Computer-Use Agents.

Rethinking Agent Security as a Networking Problem When Benign Inputs Lead to Severe Harms: Eliciting Unsafe Unintended Behaviors of Computer-Use Agents

Reference 29

Resolution
unresolved
no resolver link, observed 2026-08-16T00:16:52.438925Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-16T00:16:52.438925Z digest=sha256:ad7c8155ad907ec9fb497da19e9d30df9ae158e30ce66737ac19eadc543f07fa

Observation d9f6ab40-a906-4dc3-bcbc-96f77a87229d · outbound

This paper cites Frans Kaashoek, Eddie Kohler, and Robert Morris.

Rethinking Agent Security as a Networking Problem Frans Kaashoek, Eddie Kohler, and Robert Morris

Reference 30

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.831339Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.444062Z digest=sha256:744af0e71ec5334ff7a81a130c7cb01b5f388f8dd6d19fc68e5869d3265d555f

Observation bbbe41cc-bd09-411d-bdb0-31dba52f50a1 · outbound

This paper cites Lakera guard.

Rethinking Agent Security as a Networking Problem Lakera guard

Reference 31

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.816326Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.448593Z digest=sha256:b6f9393a92f7a23e208f016bf093a23f88c965dde6ab4123ac6f4c60c68642ff

Observation 278e6b90-2561-48ca-80ea-0f884286fc83 · outbound

This paper cites Inan, Sahar Abdelnabi, Janardhan Kulka- rni, Lukas Wutschitz, Reza Shokri, Christopher G.

Rethinking Agent Security as a Networking Problem Inan, Sahar Abdelnabi, Janardhan Kulka- rni, Lukas Wutschitz, Reza Shokri, Christopher G

Reference 32

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.800917Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.452882Z digest=sha256:342eb94ea8d089c496dbe900fc39ceb4ddaa79039ea240870d67def37a5ec238

Observation c532226d-88ca-4992-b06f-1d85fee1064c · outbound

This paper cites Improving google a2a protocol: Protecting sensitive data and mitigating unintended harms in multi-agent systems.ACM Transactions on Software Engineering and Methodology, 2025.

Rethinking Agent Security as a Networking Problem Improving google a2a protocol: Protecting sensitive data and mitigating unintended harms in multi-agent systems.ACM Transactions on Software Engineering and Methodology, 2025

Reference 33

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.785731Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.457328Z digest=sha256:b009a9801d481061faf87f771082b4eb2b166fbc2fbb0683689cc29f04303b17

Observation e45143a1-69f0-49d0-871a-87ea66245a92 · outbound

This paper cites ClawLess: A Security Model of AI Agents.

Rethinking Agent Security as a Networking Problem ClawLess: A Security Model of AI Agents

Reference 34

Resolution
unresolved
no resolver link, observed 2026-08-16T00:16:52.461950Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-16T00:16:52.461950Z digest=sha256:160ada2c1caff895dc21615525ce81c732eef0df923628ae762f3c79ea0c0314

Observation 090b13fd-312f-4d4d-83f9-4f61e491471e · outbound

This paper cites Agentauditor: Human-level safety and security evaluation for llm agents.Advances in Neural Information Processing Systems, 38:43241–43298, 2026.

Rethinking Agent Security as a Networking Problem Agentauditor: Human-level safety and security evaluation for llm agents.Advances in Neural Information Processing Systems, 38:43241–43298, 2026

Reference 35

Resolution
unresolved
no resolver link, observed 2026-08-16T00:16:52.466663Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-16T00:16:52.466663Z digest=sha256:b9a932ef500cb86ca8249d82e229cbd3a438f97277865065976c3d96d29ab6c0

Observation 442b940f-952c-4a86-a9d5-1b2a443258f3 · outbound

This paper cites A holistic approach to undesired content detection in the real world.Proceedings of the AAAI Conference on Artificial Intelligence, 37(12):15009–15018, 2023.

Rethinking Agent Security as a Networking Problem A holistic approach to undesired content detection in the real world.Proceedings of the AAAI Conference on Artificial Intelligence, 37(12):15009–15018, 2023

Reference 36

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.759446Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.471715Z digest=sha256:2f0f8dba89c7807c6c8f21d45c95f0091a07e138e36a39676377e417cc6c33ad

Observation 2f405ee0-9e96-42d5-97a8-4e2301388037 · outbound

This paper cites Same model, different hat.

Rethinking Agent Security as a Networking Problem Same model, different hat

Reference 37

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.744203Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.476231Z digest=sha256:edac457bc8886cd77d3f5631914d2bf15d44559a85df98e85f992b8c06ccca09

Observation cc114753-dc35-4cc2-8ee8-5baf3c84c28f · outbound

This paper cites cell- mate: Sandboxing browser ai agents.arXiv preprint arXiv:2512.12594, 2025.

Rethinking Agent Security as a Networking Problem cell- mate: Sandboxing browser ai agents.arXiv preprint arXiv:2512.12594, 2025

Reference 38

Resolution
unresolved
no resolver link, observed 2026-08-16T00:16:52.480555Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-16T00:16:52.480555Z digest=sha256:288973c1b38f8ed23ed63da9c6e0228a712ab81cc84473f8efb78f8cd7055d7b

Observation 131827f3-1758-499a-9774-f03e7d663a3d · outbound

This paper cites Veriguard: Enhancing llm agent safety via verified code generation.arXiv preprint arXiv:2510.05156, 2025.

Rethinking Agent Security as a Networking Problem Veriguard: Enhancing llm agent safety via verified code generation.arXiv preprint arXiv:2510.05156, 2025

Reference 39

Resolution
unresolved
no resolver link, observed 2026-08-16T00:16:52.485071Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-16T00:16:52.485071Z digest=sha256:11827be215be196c6c97b74024e377012f7ce98455f6fff1a3858d4aa9d77f69

Observation 50dfe044-bab5-4465-88c6-05ce4b5a19bb · outbound

This paper cites Can LLMs keep a secret? Testing privacy implications of language models via contextual in- tegrity theory.

Rethinking Agent Security as a Networking Problem Can LLMs keep a secret? Testing privacy implications of language models via contextual in- tegrity theory

Reference 40

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.728575Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.489966Z digest=sha256:ae1aae714f5b5c06c873aafb00ba136bb71cff248991f71f7f2f3fd60efb52a4

Observation 9b6b5d19-4a5b-4f10-ac96-cdcf9726ff52 · outbound

This paper cites Myers and Barbara Liskov.

Rethinking Agent Security as a Networking Problem Myers and Barbara Liskov

Reference 41

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.713491Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.495140Z digest=sha256:4a86ca4d977c58fb298f4d77193fb6ce6b9fb69141724a8c25ebdae453127eee

Observation 069a84aa-156b-461f-81c9-a4922b5f4b3b · outbound

This paper cites Omni-leak: Orchestrator multi-agent net- work induced data leakage.arXiv preprint arXiv:2602.13477, 2026.

Rethinking Agent Security as a Networking Problem Omni-leak: Orchestrator multi-agent net- work induced data leakage.arXiv preprint arXiv:2602.13477, 2026

Reference 42

Resolution
unresolved
no resolver link, observed 2026-08-16T00:16:52.499684Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-16T00:16:52.499684Z digest=sha256:7b2e5216da0ce6998deceb7fc708f631b2983b639cf3999cac88196c6f21260f

Observation 5511faee-4228-44ad-9675-d5451e996a66 · outbound

This paper cites Securing Agentic AI: A Comprehensive Threat Model and Mitigation Framework for Generative AI Agents.

Rethinking Agent Security as a Networking Problem Securing Agentic AI: A Comprehensive Threat Model and Mitigation Framework for Generative AI Agents

Reference 43

Resolution
unresolved
no resolver link, observed 2026-08-16T00:16:52.504149Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-16T00:16:52.504149Z digest=sha256:00347fed190a36c4c72edb06d1c7cda0e5253e75689471575cd37f052da5977b

Observation 8ce2dff6-41c4-42ae-98b4-c42a38b1fe79 · outbound

This paper cites Privacy as contextual integrity.Washington Law Review, 79(1):119–157, 2004.

Rethinking Agent Security as a Networking Problem Privacy as contextual integrity.Washington Law Review, 79(1):119–157, 2004

Reference 44

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.699595Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.509103Z digest=sha256:9fe1b879ce56661ad0e0a578dd580b089a8630e501a9793db220af575549b59a

Observation 4a089823-b7eb-4048-963d-ad3800069634 · outbound

This paper cites Why traditional security fails in the age of non- deterministic AI.

Rethinking Agent Security as a Networking Problem Why traditional security fails in the age of non- deterministic AI

Reference 45

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.685891Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.513767Z digest=sha256:553ed2cc1e7925a3d65f21b7a6c4e9616c6238fa3d08bd0f0f7ffd155daa5c62

Observation 3d25ab42-31cf-458e-94d5-2162e3228003 · outbound

This paper cites Real AI Agents with Fake Memories: Fatal Context Manipulation Attacks on Web3 Agents.

Rethinking Agent Security as a Networking Problem Real AI Agents with Fake Memories: Fatal Context Manipulation Attacks on Web3 Agents

Reference 46

Resolution
unresolved
no resolver link, observed 2026-08-16T00:16:52.518336Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-16T00:16:52.518336Z digest=sha256:1fb527ac7564e233ea123a50f10044c85e09115bca48ea73ec0ef96ae820a696

Observation 9ab5920f-18cb-49f4-b5b9-91884042d05a · outbound

This paper cites Agentbay: A hybrid interaction sandbox for seamless human-ai intervention in agentic systems.arXiv preprint arXiv:2512.04367, 2025.

Rethinking Agent Security as a Networking Problem Agentbay: A hybrid interaction sandbox for seamless human-ai intervention in agentic systems.arXiv preprint arXiv:2512.04367, 2025

Reference 47

Resolution
unresolved
no resolver link, observed 2026-08-16T00:16:52.523086Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-16T00:16:52.523086Z digest=sha256:8f40f3508d2ff718ba81ad4fce39dff30e5cf13b6556fac428f15b8c6dd890bb

Observation 921df08d-5ba6-4670-a5c6-4363430229fb · outbound

This paper cites Overeager Coding Agents: Measuring Out-of-Scope Actions on Benign Tasks.

Rethinking Agent Security as a Networking Problem Overeager Coding Agents: Measuring Out-of-Scope Actions on Benign Tasks

Reference 48

Resolution
unresolved
no resolver link, observed 2026-08-16T00:16:52.527562Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-16T00:16:52.527562Z digest=sha256:10fd87583402ada2a5ee288a1776e240dde16fcb3c4249835cfd4fd87c82ba35

Observation 2b87b12c-7b12-4222-bb91-42439fdce24d · outbound

This paper cites NeMo guardrails: A toolkit for controllable and safe LLM applications with programmable rails.

Rethinking Agent Security as a Networking Problem NeMo guardrails: A toolkit for controllable and safe LLM applications with programmable rails

Reference 49

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.672607Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.532549Z digest=sha256:c0da6e56682eeb14b01e3ed2015b057a006b0b233678096573b75675b37df897

Observation b8655260-9447-4835-b15f-934814a0e315 · outbound

This paper cites Zero trust architecture.

Rethinking Agent Security as a Networking Problem Zero trust architecture

Reference 50

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.657947Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.537273Z digest=sha256:2be22a46027492bf08e5b51b66b459818456a262e6d218b0cba0d80e5d4e8272

Observation c3cf9970-a376-4692-9cd8-1ea295bc4162 · outbound

This paper cites Saltzer, David P.

Rethinking Agent Security as a Networking Problem Saltzer, David P

Reference 51

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.641760Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.541066Z digest=sha256:d599bb84bf460b7b91dd6c39a2e831ba80b2d304e767fc46b515cd9ee3daacc1

Observation 38eed1c4-1e1e-456b-a39e-017d6868533b · outbound

This paper cites Saltzer and Michael D.

Rethinking Agent Security as a Networking Problem Saltzer and Michael D

Reference 52

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.625403Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.545194Z digest=sha256:6ae859e5d7dae36bc76e5c7fdd9e852553f13340b642d64bf7b4dd8c40ae24f5

Observation e940e040-cba9-4421-9736-6850d2a20f13 · outbound

This paper cites Sandhu, Edward J.

Rethinking Agent Security as a Networking Problem Sandhu, Edward J

Reference 53

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.610001Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.548940Z digest=sha256:1fe5a32fba2553128ce044308f2884d8a3f59db76ee7b0a3fe2d2bda4e9072cf

Observation 7a57f245-ebd7-4ee6-8e9c-2307eb25f17a · outbound

This paper cites Pri- vacyLens: Evaluating privacy norm awareness of language models in action.

Rethinking Agent Security as a Networking Problem Pri- vacyLens: Evaluating privacy norm awareness of language models in action

Reference 54

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.594727Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.552823Z digest=sha256:d5a210e50901cf8f092813512c6495f736e7b7edfcdb8a961f2af6c25811835b

Observation e7da0d6e-0a99-42be-9729-2f18aa7f6977 · outbound

This paper cites Rollback-recovery for middleboxes.

Rethinking Agent Security as a Networking Problem Rollback-recovery for middleboxes

Reference 55

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.578873Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.557035Z digest=sha256:ebc4ddc96c80464f070b39e1213a699eff24f0c14c0766e3b7234b21a1bd1ede

Observation a2d74c86-6d82-4e25-9cc5-cfb8197de3e3 · outbound

This paper cites Making middleboxes someone else’s problem: Network processing as a cloud service.

Rethinking Agent Security as a Networking Problem Making middleboxes someone else’s problem: Network processing as a cloud service

Reference 56

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.563237Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.561326Z digest=sha256:02b66a3a658b1f26f8e290f40afc25e11fcbdc32810603d3e43c209e7f66161d

Observation 35ffd793-4f73-4ec1-9e49-f064a3a4a900 · outbound

This paper cites BlindBox: Deep packet inspection over encrypted traffic.

Rethinking Agent Security as a Networking Problem BlindBox: Deep packet inspection over encrypted traffic

Reference 57

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.546824Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.565286Z digest=sha256:a7d682170da8af1559d4b071846d5f33a2e2cee030fff7ebb3d277cc4ca3e564

Observation 4ee59f58-654d-4619-8d57-9397e3a25186 · outbound

This paper cites Progent: Programmable privilege control for llm agents.arXiv e-prints, pages arXiv–2504, 2025.

Rethinking Agent Security as a Networking Problem Progent: Programmable privilege control for llm agents.arXiv e-prints, pages arXiv–2504, 2025

Reference 58

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.530999Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.570710Z digest=sha256:f7eec155ed06d7de2d65f0e2475a607ee635a1c1bab221e49181c513c4987a34

Observation 2174ba0f-82f6-4ec8-af11-665a1b2323b0 · outbound

This paper cites From Prompt Injection to Persistent Control: Defending Agentic Harness Against Trojan Backdoors.

Rethinking Agent Security as a Networking Problem From Prompt Injection to Persistent Control: Defending Agentic Harness Against Trojan Backdoors

Reference 59

Resolution
unresolved
no resolver link, observed 2026-08-16T00:16:52.575056Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-16T00:16:52.575056Z digest=sha256:67999a726b99231123b28351c71e3715a637fd1290ff52e0283c5caa6f74f98d

Observation bddfdab1-8b69-45c3-a993-89ccd1560a7f · outbound

This paper cites AI agents are becoming authorization bypass paths.

Rethinking Agent Security as a Networking Problem AI agents are becoming authorization bypass paths

Reference 60

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.513775Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.579775Z digest=sha256:ad6d3ad68be9cf254e3dd5ba4759ff4fa017e244b417fce945436c4b453072c4

Observation 798cea79-2e4d-4e8e-ba7b-28b3843d9506 · outbound

This paper cites The Instruction Hierarchy: Training LLMs to Prioritize Privileged Instructions.

Rethinking Agent Security as a Networking Problem The Instruction Hierarchy: Training LLMs to Prioritize Privileged Instructions

Reference 61

Resolution
unresolved
no resolver link, observed 2026-08-16T00:16:52.583963Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-16T00:16:52.583963Z digest=sha256:8d8baee149b283efb51f15166d97def862b945f9f60f4986aa291011bbc09ff0

Observation 3cbe6a92-cb31-4c05-874e-93726b8777f5 · outbound

This paper cites Privacy in action: Towards realistic privacy mitigation and evaluation for LLM-powered agents.

Rethinking Agent Security as a Networking Problem Privacy in action: Towards realistic privacy mitigation and evaluation for LLM-powered agents

Reference 62

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.498000Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.588580Z digest=sha256:562662cf2792446eb921b3efb8287bbe4477fe20fd7b094933f0b272a55da723

Observation 81453714-72fd-42b8-b3fc-6b302b4f9afc · outbound

This paper cites Sok: Evaluating jailbreak guardrails for large language models.

Rethinking Agent Security as a Networking Problem Sok: Evaluating jailbreak guardrails for large language models

Reference 63

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.482391Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.593006Z digest=sha256:59b4333ceae3121299cddf4c55b0852df14d75a6561b2b7457f383edbc0685fe

Observation 55a336a1-8651-4753-8173-270eafd5b5e7 · outbound

This paper cites IsolateGPT: An Execution Isolation Architecture for LLM-Based Agentic Systems.

Rethinking Agent Security as a Networking Problem IsolateGPT: An Execution Isolation Architecture for LLM-Based Agentic Systems

Reference 64

Resolution
unresolved
no resolver link, observed 2026-08-16T00:16:52.597372Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-16T00:16:52.597372Z digest=sha256:b0229f8c283e8e9e649124e42dab9f9a127f2232b911240ac681943ae4c96ce3

Observation 74e8b5f8-adc1-4ee6-b059-2ff98c63d02e · outbound

This paper cites GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning.

Rethinking Agent Security as a Networking Problem GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning

Reference 65

Resolution
unresolved
no resolver link, observed 2026-08-16T00:16:52.602071Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-16T00:16:52.602071Z digest=sha256:6056c78e5c1558dd1a45d7651b32fc7ea161384f38fd1f70153d98a9f3b3ba5d

Observation 4a45c84b-e8d1-4c47-81fc-feee9fb2654b · outbound

This paper cites SIFF: A stateless internet flow filter to mitigate DDoS flooding attacks.

Rethinking Agent Security as a Networking Problem SIFF: A stateless internet flow filter to mitigate DDoS flooding attacks

Reference 66

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.466718Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.607052Z digest=sha256:84872db0e2d1fdc9f6907882de3a8a420b2d4c8eb2761914c285e3e7cffbc3d4

Observation c3312728-17f5-4e05-8cba-74ada3c8feb5 · outbound

This paper cites A DoS- limiting network architecture.

Rethinking Agent Security as a Networking Problem A DoS- limiting network architecture

Reference 67

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.450831Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.611415Z digest=sha256:eab12916ff89d5feaa8e1aa83a71927f5b3ae790b6d4517026347a81a8699c49

Observation b02123c1-dbfb-497b-a416-dee577e8c4a3 · outbound

This paper cites ReAct: Synergizing reasoning and acting in language models.

Rethinking Agent Security as a Networking Problem ReAct: Synergizing reasoning and acting in language models

Reference 68

Resolution
unresolved
no resolver link, observed 2026-08-16T00:16:52.616158Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-16T00:16:52.616158Z digest=sha256:9f5e3f1628d21b9e1b5b46a666ac78b5c156744e74a7dd94dd5272fd43dc59bb

Observation d749151e-5914-4f48-8875-690664504b3c · outbound

This paper cites Temporal dynamics of mem- ory poisoning in web3-style llm agents.IEEE Access, 2026.

Rethinking Agent Security as a Networking Problem Temporal dynamics of mem- ory poisoning in web3-style llm agents.IEEE Access, 2026

Reference 69

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.425044Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.620509Z digest=sha256:e55f60e76ffbe00f8033cd433ebff1c5bfd12a139581487546232c80dedc8bbf

Observation 524731c4-3e4c-4b1a-bd71-5b83f9c00d9c · outbound

This paper cites Making information flow explicit in HiStar.

Rethinking Agent Security as a Networking Problem Making information flow explicit in HiStar

Reference 70

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.409351Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.625041Z digest=sha256:35776c38e839c9f218bd11c9a446a64a03608f33fed2a943f78602b87687527e

Observation 26f6f9af-a124-467e-b693-d47653751744 · outbound

This paper cites Injecagent: Benchmarking indirect prompt injections in tool-integrated large lan- guage model agents.

Rethinking Agent Security as a Networking Problem Injecagent: Benchmarking indirect prompt injections in tool-integrated large lan- guage model agents

Reference 71

Resolution
unresolved
no resolver link, observed 2026-08-16T00:16:52.629850Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-16T00:16:52.629850Z digest=sha256:b7d0cc74f7e109fc2226a735f3d3dc6fd8d2c539650859f5dcc21e73d2420c50

Observation e9121ddc-0084-4c58-b0a5-a12b43efabfc · outbound

This paper cites Towards Action Hijacking of Large Language Model-based Agent.

Rethinking Agent Security as a Networking Problem Towards Action Hijacking of Large Language Model-based Agent

Reference 72

Resolution
unresolved
no resolver link, observed 2026-08-16T00:16:52.634434Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-16T00:16:52.634434Z digest=sha256:21a402a80c7f9bf07f88a0c39e221d1095639db123c7c7e417e2ffbd7054c214

Observation fe36e78b-b5bf-4996-8d88-d11f94fc0f72 · outbound

This paper cites AgentDAM: Privacy leakage evaluation for autonomous web agents.

Rethinking Agent Security as a Networking Problem AgentDAM: Privacy leakage evaluation for autonomous web agents

Reference 73

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.382866Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.639378Z digest=sha256:f063e76f0425e1722ff5c3a8a8698752fc2e08bebbc79d679b4184e8737cad53

Observation 8e10ec44-80f8-4ff2-94f6-1c098895bc68 · outbound

This paper cites RTBAS: Defending LLM Agents Against Prompt Injection and Privacy Leakage.

Rethinking Agent Security as a Networking Problem RTBAS: Defending LLM Agents Against Prompt Injection and Privacy Leakage

Reference 74

Resolution
unresolved
no resolver link, observed 2026-08-16T00:16:52.643873Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-16T00:16:52.643873Z digest=sha256:bdd831ea0d7573dd96d8853e3de647f4c4cfaac41a8a51fa2470ca9a8d9a6ac0

Observation a11e147c-8315-4aff-9114-684a09cfc24b · outbound

This paper cites Rescriber: Smaller- LLM-powered user-led data minimization for LLM-based chatbots.

Rethinking Agent Security as a Networking Problem Rescriber: Smaller- LLM-powered user-led data minimization for LLM-based chatbots

Reference 75

Resolution
verified fuzzy
raw_fallback, observed 2026-08-16T00:16:53.363098Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-18T06:34:40.430872+00:00.

source=pdf_text observed=2026-08-16T00:16:52.648792Z digest=sha256:4ff0f7eb1691b8ddda574593437925fbe1c628f0668d2707315990abbda92532

Observation 97d3c3fa-887f-4d8e-bf85-d9d2c3c98277 · outbound

This paper cites CVE-Bench: A Benchmark for AI Agents' Ability to Exploit Real-World Web Application Vulnerabilities.

Rethinking Agent Security as a Networking Problem CVE-Bench: A Benchmark for AI Agents' Ability to Exploit Real-World Web Application Vulnerabilities

Reference 76

Resolution
unresolved
no resolver link, observed 2026-08-16T00:16:52.653903Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-16T00:16:52.653903Z digest=sha256:b6ac07b83b30cf2297974b89758a588ca4e032b646abf7888b57dda0c0ad3141

Observation 51282d5b-1aa8-4e13-afdd-045001046885 · outbound

This paper cites an unresolved cited work.

Rethinking Agent Security as a Networking Problem Unresolved cited work

Reference 2024

Resolution
unresolved
no resolver link, observed 2026-08-16T00:16:52.318565Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-16T00:16:52.318565Z digest=sha256:620c092323e7a4c4b9b3474899bee58a699712d5dbc22b6e81c6005c354912fe

Pith citing papers

No inbound Pith citation observations are available.