Typed states for the displayed outbound observations.
Source: paper_references, paper_reference_links
Paper Citation Record · LEDGER
As of 9 August 2026, this Paper Citation Record lists 0 of 0 outbound references and 26 inbound Pith citation observations for arXiv:2410.14923.
A citation records a reference. It does not transfer a finding from one paper to another.
Typed states for the displayed outbound observations.
Source: paper_references, paper_reference_links
One-hop event checks from named stored sources.
Source: scholarly_work_events, retraction_status_cache, observed 2026-08-08T06:32:00.761636+00:00
Pith citing papers itemized under the disclosed page cap.
Source: paper_references, paper_reference_links, observed 2026-08-07T15:37:51.603999Z
A source-named dated measurement, never combined with another source.
Source: arxiv_reference, observed 2026-08-05T02:28:24.338817Z
0 of 0 outbound references displayed
External citation measurements
2
arxiv_reference, observed 2026-08-05T02:28:24.338817Z
No outbound reference observations are available for this paper version.
Observation 66e6083f-e437-47c3-874b-88c06a6b83e7 · inbound
Model Context Protocol (MCP): Landscape, Security Threats, and Future Research Directions Imprompter: Tricking LLM Agents into Improper Tool Use
Reference 26
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-08T06:32:00.761636+00:00.
Observation aab7e631-2d14-4b0c-921c-5c3990c973cf · inbound
Lessons from Defending Gemini Against Indirect Prompt Injections Imprompter: Tricking LLM Agents into Improper Tool Use
Reference 2024
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation ac2626e6-3ed5-47fa-8f37-4d423204ba59 · inbound
Data-Centric Safety and Ethical Measures for Data and AI Governance Imprompter: Tricking LLM Agents into Improper Tool Use
Reference 10
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 87ea844c-4b84-4efe-b22f-b0f8cc12c09b · inbound
We Should Identify and Mitigate Third-Party Safety Risks in MCP-Powered Agent Systems Imprompter: Tricking LLM Agents into Improper Tool Use
Reference 20
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation ef7e3098-7e36-4660-b5c1-1aa73879559b · inbound
FaSTA$^*$: Fast-Slow Toolpath Agent with Subroutine Mining for Efficient Multi-turn Image Editing Imprompter: Tricking LLM Agents into Improper Tool Use
Reference 5
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-08T06:32:00.761636+00:00.
Observation b8580e78-b2fc-44d8-ad47-fd96cdb4f583 · inbound
A Survey on Autonomy-Induced Security Risks in Large Model-Based Agents Imprompter: Tricking LLM Agents into Improper Tool Use
Reference 122
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 757c4528-ba1f-4594-9e0b-f07bfcbb87e9 · inbound
Manipulating LLM Web Agents with Indirect Prompt Injection Attack via HTML Accessibility Tree Imprompter: Tricking LLM Agents into Improper Tool Use
Reference 2024
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 4a7c8dd4-d55a-448e-aa63-0896643f70a5 · inbound
On the Future of Software Reuse in the Era of AI Native Software Engineering Imprompter: Tricking LLM Agents into Improper Tool Use
Reference 14
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation dc60bca4-8180-45eb-ab43-56784df000e4 · inbound
AgentSentinel: An End-to-End and Real-Time Security Defense Framework for Computer-Use Agents Imprompter: Tricking LLM Agents into Improper Tool Use
Reference 11
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 02c1bb54-0bef-4954-b47c-dde9e019eabb · inbound
AgentBound: Securing Execution Boundaries of AI Agents Imprompter: Tricking LLM Agents into Improper Tool Use
Reference 14
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-08T06:32:00.761636+00:00.
Observation 8fae375b-c2cf-4058-b1bf-1bed57620730 · inbound
Agentic AI Security: Threats, Defenses, Evaluation, and Open Challenges Imprompter: Tricking LLM Agents into Improper Tool Use
Reference 45
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-08T06:32:00.761636+00:00.
Observation 2f4b6a39-39f6-49ec-80b1-3cfe183eaf56 · inbound
GUIGuard-Bench: Toward a General Evaluation for Privacy-Preserving GUI Agents Imprompter: Tricking LLM Agents into Improper Tool Use
Reference 56
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-08T06:32:00.761636+00:00.
Observation 5d05004d-b4bb-4c5f-ad2c-0db093425c95 · inbound
Security Threat Modeling for Emerging AI-Agent Protocols: A Comparative Analysis of MCP, A2A, Agora, and ANP Imprompter: Tricking LLM Agents into Improper Tool Use
Reference 71
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-08T06:32:00.761636+00:00.
Observation fe22c24f-fdc2-4fff-94a8-7539659ed8de · inbound
From Storage to Steering: Memory Control Flow Attacks on LLM Agents Imprompter: Tricking LLM Agents into Improper Tool Use
Reference 1
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation f631d8a7-2d9a-4229-aa2a-57fef3addcd8 · inbound
How Your Credentials Are Leaked by LLM Agent Skills: An Empirical Study Imprompter: Tricking LLM Agents into Improper Tool Use
Reference 18
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-08T06:32:00.761636+00:00.
Observation 1fe5a63e-6a84-41a7-bcfe-92c99bfd40c2 · inbound
HarmfulSkillBench: How Do Harmful Skills Weaponize Your Agents? Imprompter: Tricking LLM Agents into Improper Tool Use
Reference 21
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-08T06:32:00.761636+00:00.
Observation bb9e389e-d419-4939-bb20-1b698435fbbf · inbound
WARD: Adversarially Robust Defense of Web Agents Against Prompt Injections Imprompter: Tricking LLM Agents into Improper Tool Use
Reference 21
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-08T06:32:00.761636+00:00.
Observation 432be1f4-7116-4eb1-a1ec-aeef85c35e84 · inbound
Boiling the Frog: A Multi-Turn Benchmark for Agentic Safety Imprompter: Tricking LLM Agents into Improper Tool Use
Reference 30
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-08T06:32:00.761636+00:00.
Observation f4c8e78c-002a-4c01-bf51-b6d2680fb3ee · inbound
Boiling the Frog: A Multi-Turn Benchmark for Agentic Safety Imprompter: Tricking LLM Agents into Improper Tool Use
Reference 30
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-08T06:32:00.761636+00:00.
Observation a32cd385-442e-4221-ae45-5eeb7ecd29dd · inbound
"I Strongly Suspect This Website Is a Scam": Benchmarking PII Leakage and Detection without Defense in Autonomous Web Agents Imprompter: Tricking LLM Agents into Improper Tool Use
Reference 127
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-08T06:32:00.761636+00:00.
Observation 79b665f1-26d8-4d01-bda8-fcab0f5f660b · inbound
Assessing Automated Prompt Injection Attacks in Agentic Environments Imprompter: Tricking LLM Agents into Improper Tool Use
Reference 14
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-08T06:32:00.761636+00:00.
Observation 5486ad3f-d5bb-4798-af87-ff92b493f921 · inbound
SAIGuard: Communication-State Simulation for Proactive Defense of LLM Multi-Agent Systems Imprompter: Tricking LLM Agents into Improper Tool Use
Reference 17
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-08T06:32:00.761636+00:00.
Observation 8a2bfdbd-ac6d-49fe-a55a-265fd27b1e89 · inbound
AutoDojo: Adaptive Black-Box Attacks Reveal the Limits of IPI Defenses and Task-Specification Effects in LLM Agents Imprompter: Tricking LLM Agents into Improper Tool Use
Reference 42
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-08T06:32:00.761636+00:00.
Observation c52f5f5f-d966-4c28-9e05-07c50195f8c3 · inbound
DualView: Preventing Indirect Prompt Injection in Personal AI Agents Imprompter: Tricking LLM Agents into Improper Tool Use
Reference 58
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation aa3314d3-c3fa-4027-98e2-0b3b8e754aea · inbound
Agent Data Injection Attacks are Realistic Threats to AI Agents Imprompter: Tricking LLM Agents into Improper Tool Use
Reference 8
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 61022b50-8da0-46cb-85f6-ca54b0432b68 · inbound
Agent Security Needs Redefinition through a Holistic Framework Imprompter: Tricking LLM Agents into Improper Tool Use
Reference 269
Source-reported events for the cited work
Unavailable: canonical work link unavailable.