Pith. sign in

Paper Citation Record · LEDGER

A Systematization of Security Vulnerabilities in Computer Use Agents

As of 10 August 2026, this Paper Citation Record lists 21 of 21 outbound references and 4 inbound Pith citation observations for arXiv:2507.05445.

A citation records a reference. It does not transfer a finding from one paper to another.

pith.paper-citation-record.v1
2507.05445 v1

Coverage vector

measured 21 of 21 reference resolution

Typed states for the displayed outbound observations.

Source: paper_references, paper_reference_links, observed 2026-08-06T19:29:54.026039Z

measured 25 of 25 standing notices

One-hop event checks from named stored sources.

Source: scholarly_work_events, retraction_status_cache, observed 2026-08-10T06:31:04.303077+00:00

measured 4 of 4 inbound itemization

Pith citing papers itemized under the disclosed page cap.

Source: paper_references, paper_reference_links, observed 2026-08-03T09:54:57.493112Z

measured 1 of 1 external citation measurements

A source-named dated measurement, never combined with another source.

Source: arxiv_reference, observed 2026-08-05T02:28:24.338817Z

Reference resolution

21 of 21 outbound references displayed

  • verified exact0
  • verified fuzzy11
  • unresolved9
  • parse uncertain0
  • malformed identifier0
  • metadata mismatch1

External citation measurements

0
arxiv_reference, observed 2026-08-05T02:28:24.338817Z

Outbound references

Observation 2c5ae4a9-0f4a-4d18-9edc-59d9b2993dc7 · outbound

This paper cites Osworld: Benchmarking multimodal agents for open-ended tasks in real computer environments,.

A Systematization of Security Vulnerabilities in Computer Use Agents Osworld: Benchmarking multimodal agents for open-ended tasks in real computer environments,

Reference 1

Resolution
verified fuzzy
raw_fallback, observed 2026-08-06T19:29:57.504280Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-08-06T19:29:51.427889Z digest=sha256:a2be9ae0e3743dc32f42306b9024d4d035c4a87a07a6416dc4340ad3728080e0

Observation 98314f42-e14d-4148-a681-3ac05e9d1eaa · outbound

This paper cites Operator system card,.

A Systematization of Security Vulnerabilities in Computer Use Agents Operator system card,

Reference 2

Resolution
verified fuzzy
raw_fallback, observed 2026-08-06T19:29:57.206439Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-08-06T19:29:51.525962Z digest=sha256:052578c0df3ccd1ea5338d6bb4ffee515f1b1f4f119539a85df934923f504d54

Observation e00b2d44-7333-498f-bb0b-8511f017eb28 · outbound

This paper cites Developing a computer use model,.

A Systematization of Security Vulnerabilities in Computer Use Agents Developing a computer use model,

Reference 3

Resolution
verified fuzzy
raw_fallback, observed 2026-08-06T19:29:56.964829Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-08-06T19:29:51.634118Z digest=sha256:13a86a0bbcc091a022bc42dcee1ca801352715d6f92df905900ec963578f9e38

Observation 396a6059-6148-4ef6-b660-eeb21578bcc0 · outbound

This paper cites Project Astra: Multimodal AI Assistants,.

A Systematization of Security Vulnerabilities in Computer Use Agents Project Astra: Multimodal AI Assistants,

Reference 4

Resolution
verified fuzzy
raw_fallback, observed 2026-08-06T19:29:56.655400Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-08-06T19:29:51.794479Z digest=sha256:e382ed2f22b71b1c976f14551b0c35f34811e1fbaef7e8702721f5597b3a513b

Observation 178ed3ab-35c5-4cf8-8bfb-9d1d531330c4 · outbound

This paper cites Tell me, what are you most afraid of? Exploring the Effects of Agent Representation on Information Disclosure in Human-Chatbot Interaction.

A Systematization of Security Vulnerabilities in Computer Use Agents Tell me, what are you most afraid of? Exploring the Effects of Agent Representation on Information Disclosure in Human-Chatbot Interaction

Reference 5

Resolution
metadata mismatch
local_arxiv, observed 2026-08-06T19:29:54.389245Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-08-06T19:29:51.903812Z digest=sha256:3015c6a02815df608eefba1584f58e9c8b21fb942d6f9daa10ea6e095e3acbd5

Observation 1573ad1d-0fd5-4f94-8be9-da1b4eb335b9 · outbound

This paper cites Hello gpt-4o,.

A Systematization of Security Vulnerabilities in Computer Use Agents Hello gpt-4o,

Reference 6

Resolution
verified fuzzy
raw_fallback, observed 2026-08-06T19:29:56.390520Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-08-06T19:29:52.036861Z digest=sha256:4a71b55f8cd8fba19ed6175e9e0f32af35d21b5ee1dcad28d611162fd8df14b7

Observation 85b7d1bc-eae4-4750-85ac-b64822e7cbcf · outbound

This paper cites ReAct: Synergizing Reasoning and Acting in Language Models.

A Systematization of Security Vulnerabilities in Computer Use Agents ReAct: Synergizing Reasoning and Acting in Language Models

Reference 7

Resolution
unresolved
no resolver link, observed 2026-08-06T19:29:52.169152Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-06T19:29:52.169152Z digest=sha256:e1747957a968a288ca10de2c096897851e88dbe37f81a9b23bb5f93edaefadc3

Observation fdb3d9f0-2aa6-4218-8a1e-8f3ee26ff203 · outbound

This paper cites Reflexion: Language Agents with Verbal Reinforcement Learning.

A Systematization of Security Vulnerabilities in Computer Use Agents Reflexion: Language Agents with Verbal Reinforcement Learning

Reference 8

Resolution
unresolved
no resolver link, observed 2026-08-06T19:29:52.269959Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-06T19:29:52.269959Z digest=sha256:f2a39801390965d4a756b64c47de51893d108fe899705800bd6fac83936aa8cd

Observation cba173f1-9883-4ec5-b723-bef3f93899bb · outbound

This paper cites Red Teaming Language Models with Language Models.

A Systematization of Security Vulnerabilities in Computer Use Agents Red Teaming Language Models with Language Models

Reference 9

Resolution
unresolved
no resolver link, observed 2026-08-06T19:29:52.397415Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-06T19:29:52.397415Z digest=sha256:6d671788fa6639b7e88780cc317bccb8ac925b1e1edb0fb2f3b180db5385716c

Observation 79d601b8-8a3f-4fd5-b438-cd9aa93d5d4f · outbound

This paper cites Ignore Previous Prompt: Attack Techniques For Language Models.

A Systematization of Security Vulnerabilities in Computer Use Agents Ignore Previous Prompt: Attack Techniques For Language Models

Reference 10

Resolution
unresolved
no resolver link, observed 2026-08-06T19:29:52.554579Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-06T19:29:52.554579Z digest=sha256:67f3fe2a4cae4c88c35a95590c4a1d27b6f590a268b67b7e6264475bade2a70f

Observation b6db69d7-b6fc-489e-a989-964a2dc1024c · outbound

This paper cites Prompt Injection attack against LLM-integrated Applications.

A Systematization of Security Vulnerabilities in Computer Use Agents Prompt Injection attack against LLM-integrated Applications

Reference 11

Resolution
unresolved
no resolver link, observed 2026-08-06T19:29:52.672797Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-06T19:29:52.672797Z digest=sha256:a6babd98818b51b4eca455da278540d05f30a7e7855f310ddab9fa6cc4f64a29

Observation 5638b48c-59fa-44dc-b712-2d22af042eaf · outbound

This paper cites Chain-of-Thought Prompting Elicits Reasoning in Large Language Models.

A Systematization of Security Vulnerabilities in Computer Use Agents Chain-of-Thought Prompting Elicits Reasoning in Large Language Models

Reference 12

Resolution
unresolved
no resolver link, observed 2026-08-06T19:29:52.818079Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-06T19:29:52.818079Z digest=sha256:b01d1e43704a9756645164265bc4d3ed13fc8a932816d7ed84601e68f5a5bac7

Observation a89e7da2-0fcd-4f3b-9963-83564f8a3383 · outbound

This paper cites DeepSeek-R1: Incentivizing Reasoning Capability in LLMs via Reinforcement Learning.

A Systematization of Security Vulnerabilities in Computer Use Agents DeepSeek-R1: Incentivizing Reasoning Capability in LLMs via Reinforcement Learning

Reference 13

Resolution
unresolved
no resolver link, observed 2026-08-06T19:29:52.931899Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-06T19:29:52.931899Z digest=sha256:b6df3903df2e54c293185fc88e6762fe736b3af8ee97f3f5eb591c8edb95530d

Observation 8e51e3a2-faff-41f9-8f52-95feb05b7748 · outbound

This paper cites WebVoyager: Building an End-to-End Web Agent with Large Multimodal Models.

A Systematization of Security Vulnerabilities in Computer Use Agents WebVoyager: Building an End-to-End Web Agent with Large Multimodal Models

Reference 14

Resolution
unresolved
no resolver link, observed 2026-08-06T19:29:53.054555Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-06T19:29:53.054555Z digest=sha256:a8d8b32674bf262b8028c269baeb427703f4cec0b2524529293a4c843b068cc7

Observation 3e3c3894-2598-4393-8ac4-428333da0efa · outbound

This paper cites LLMAuditor: A Framework for Auditing Large Language Models Using Human-in-the-Loop.

A Systematization of Security Vulnerabilities in Computer Use Agents LLMAuditor: A Framework for Auditing Large Language Models Using Human-in-the-Loop

Reference 15

Resolution
unresolved
no resolver link, observed 2026-08-06T19:29:53.202993Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-06T19:29:53.202993Z digest=sha256:7811a62ca30c9b4e0e595fdae97b4fcd765973a9db31986d8f5df169aa37e703

Observation f77d285a-97a6-4c6e-b9e7-743a42db37f3 · outbound

This paper cites Preventing ai hallucinations with human-in-the-loop test- ing,.

A Systematization of Security Vulnerabilities in Computer Use Agents Preventing ai hallucinations with human-in-the-loop test- ing,

Reference 16

Resolution
verified fuzzy
raw_fallback, observed 2026-08-06T19:29:56.084386Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-08-06T19:29:53.310524Z digest=sha256:d94c557ee5693e9496fbef2008baca8161ea6a39ccc82fc1cea7a1919e2acbaf

Observation 5855dcb5-14eb-414a-8cb3-09c250c74116 · outbound

This paper cites Reducing hallucinations in large language models with custom intervention using amazon bedrock agents,.

A Systematization of Security Vulnerabilities in Computer Use Agents Reducing hallucinations in large language models with custom intervention using amazon bedrock agents,

Reference 17

Resolution
verified fuzzy
raw_fallback, observed 2026-08-06T19:29:55.816777Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-08-06T19:29:53.418006Z digest=sha256:f6c91df188f443e861153bedc7a516b178ca62bacc5fd9068a5a054c3c71ca61

Observation c7df287c-8d36-434a-9a8a-ba965ec6cfb5 · outbound

This paper cites Prompt injection attacks in multimodal and tool-augmented language models,.

A Systematization of Security Vulnerabilities in Computer Use Agents Prompt injection attacks in multimodal and tool-augmented language models,

Reference 18

Resolution
verified fuzzy
raw_fallback, observed 2026-08-06T19:29:55.488803Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-08-06T19:29:53.579676Z digest=sha256:69ca3cfaf87947431879b69183ef4eef1d64593037b57a5a027d1eef8e10c43f

Observation a1502e58-5060-4b25-976a-98be8d422714 · outbound

This paper cites ”human in the loop.

A Systematization of Security Vulnerabilities in Computer Use Agents ”human in the loop

Reference 19

Resolution
verified fuzzy
raw_fallback, observed 2026-08-06T19:29:55.202558Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-08-06T19:29:53.742996Z digest=sha256:cc1b4926b08e9a96199bdb3080873a4ef77b969c1d4afa86ed58b250f02147ac

Observation 339e9d24-e2e9-4b75-81ec-740c43044e29 · outbound

This paper cites From object transition to rce in the chrome renderer,.

A Systematization of Security Vulnerabilities in Computer Use Agents From object transition to rce in the chrome renderer,

Reference 20

Resolution
verified fuzzy
raw_fallback, observed 2026-08-06T19:29:54.916401Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-08-06T19:29:53.901317Z digest=sha256:5bbe77474e14a81626b3d85a095cfeb540b71b367a0764014b5e81154c010c06

Observation 92b5b938-5ae6-4d55-9d23-57d54fcf9108 · outbound

This paper cites Announcing the responses api and computer using agent in azure ai foundry,.

A Systematization of Security Vulnerabilities in Computer Use Agents Announcing the responses api and computer using agent in azure ai foundry,

Reference 21

Resolution
verified fuzzy
raw_fallback, observed 2026-08-06T19:29:54.660640Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-08-06T19:29:54.026039Z digest=sha256:38e5d256cc9442b988731e7067d026d9b06a7eac57ec4c98de0f7e0a0d9eb79a

Pith citing papers

Observation 1eabc1c6-2842-458f-aa59-1c8aaf26e4a1 · inbound

Mind the Gap: Action Rebinding Attacks against Android GUI Agents cites this paper.

Mind the Gap: Action Rebinding Attacks against Android GUI Agents A Systematization of Security Vulnerabilities in Computer Use Agents

Reference 23

Resolution
unresolved
no resolver link, observed 2026-08-03T09:54:57.493112Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-03T09:54:57.493112Z digest=sha256:d2f8af868b6cddf1b3743d276788fbe77ad62266d4bb48864cc76ea946ef00d9

Observation 21cc77c1-16e6-4650-ab73-9dd794afba19 · inbound

Securing Computer-Use Agents: A Unified Architecture-Lifecycle Framework for Deployment-Grounded Reliability cites this paper.

Securing Computer-Use Agents: A Unified Architecture-Lifecycle Framework for Deployment-Grounded Reliability A Systematization of Security Vulnerabilities in Computer Use Agents

Reference 153

Resolution
verified exact
arxiv_id, observed 2026-05-11T04:35:55.938663Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-05-11T01:15:19.239355Z digest=sha256:fb9cd97f670b6d588fad8f12f169a27df35c9253de0f983625c57a8c4f3b1294

Observation 669e3427-683f-4b85-9a42-cb778c125cd9 · inbound

Domain-Conditioned Safety in Frontier Computer-Using Agents: A 793-Episode Browser Benchmark, a Coding-Domain Cross-Reference, and a Reproducibility Audit of Recent Red-Teaming cites this paper.

Domain-Conditioned Safety in Frontier Computer-Using Agents: A 793-Episode Browser Benchmark, a Coding-Domain Cross-Reference, and a Reproducibility Audit of Recent Red-Teaming A Systematization of Security Vulnerabilities in Computer Use Agents

Reference 7

Resolution
metadata mismatch
arxiv_id, observed 2026-07-02T08:06:48.215369Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-06-28T06:22:03.848058Z digest=sha256:d33995ef7e3927dedbdbfcb5a3f4f35a59e6a3ec928a8abaed2a2e8a9b712536

Observation efbdd2d8-8a16-4267-99db-810cf7ae5262 · inbound

Toward Secure LLM Agents: Threat Surfaces, Attacks, Defenses, and Evaluation cites this paper.

Toward Secure LLM Agents: Threat Surfaces, Attacks, Defenses, and Evaluation A Systematization of Security Vulnerabilities in Computer Use Agents

Reference 82

Resolution
verified exact
arxiv_id, observed 2026-06-27T13:20:57.086752Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.

source=pdf_text observed=2026-06-27T12:55:22.831264Z digest=sha256:1a2e8803f10aa923944c947a0a20bd098c2154ba62b03a189371f3bf47c7c97c