Typed states for the displayed outbound observations.
Source: paper_references, paper_reference_links, observed 2026-08-01T09:30:52.016053Z
Paper Citation Record · LEDGER
As of 9 August 2026, this Paper Citation Record lists 34 of 34 outbound references and 0 inbound Pith citation observations for arXiv:2607.20759.
A citation records a reference. It does not transfer a finding from one paper to another.
Typed states for the displayed outbound observations.
Source: paper_references, paper_reference_links, observed 2026-08-01T09:30:52.016053Z
One-hop event checks from named stored sources.
Source: scholarly_work_events, retraction_status_cache, observed 2026-08-09T06:31:02.800959+00:00
Pith citing papers itemized under the disclosed page cap.
Source: paper_references, paper_reference_links
A source-named dated measurement, never combined with another source.
Source: cited_works
34 of 34 outbound references displayed
External citation measurements
No source-named external measurement is stored.
Observation 00b96736-6621-43b3-96db-d0ecb4c10ff8 · outbound
IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests When Developer Aid Becomes Security Debt: A Systematic Analysis of Insecure Behaviors in LLM Coding Agents
Reference 1
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 39d17516-ad31-42c7-815d-f9d689553c94 · outbound
IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests OpenHands: An Open Platform for AI Software Developers as Generalist Agents
Reference 2
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation b252d1d3-5e9e-485e-a748-9fc37d3c3057 · outbound
IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests Agentic Much? Adoption of Coding Agents on GitHub
Reference 3
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 483f0a05-786e-45ff-b2d0-36526cdc475e · outbound
IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests MaPPing Your Model: Assessing the Impact of Adversarial Attacks on LLM-based Programming Assistants
Reference 4
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 7bed2130-f027-49f9-ab0d-c1d6e23eae1f · outbound
IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests DeceptPrompt: Exploiting LLM-driven Code Generation via Adversarial Natural Language Instructions
Reference 5
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation ec30df92-7a97-4f3c-9842-8833e8b5b87e · outbound
IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests A Survey on Backdoor Threats in Large Language Models (LLMs): Attacks, Defenses, and Evaluations
Reference 6
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 198d2706-bd01-4d90-9079-d6ca0024ee03 · outbound
IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests OW ASP top 10 for large language model applications, version 2025,
Reference 7
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 7a997758-e723-421d-9dd5-1b58ae6e3ac5 · outbound
IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests Not what you've signed up for: Compromising Real-World LLM-Integrated Applications with Indirect Prompt Injection
Reference 8
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 255bddf3-a57d-4035-8dc1-9db6407f4f30 · outbound
IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests From prompt injections to protocol exploits: Threats in LLM-powered AI agents workflows,
Reference 9
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation fb2327e0-a826-48a3-b9f4-16e3a92d28a3 · outbound
IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests "Your AI, My Shell": Demystifying Prompt Injection Attacks on Agentic AI Coding Editors
Reference 11
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 11c8738b-c50e-4a4d-9114-085ddc6d4fbd · outbound
IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests Injecagent: Benchmark- ing indirect prompt injections in tool-integrated large language model agents,
Reference 12
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 6845b42b-aa08-4107-aff1-e5a37a9ee1fa · outbound
IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests Imprompter: Tricking LLM agents into improper tool use,
Reference 13
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 3af8ea01-df22-464a-923a-30fb014c3f6e · outbound
IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests PromptPwnd: How AI agents are exploited through prompt injection in ci/cd pipelines,
Reference 14
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation c61b477e-ef28-449c-a626-068c409bfcc1 · outbound
IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests How hidden prompt injections can hijack AI code assistants,
Reference 15
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation efb8fd80-75fc-452a-80e6-8e0c5794b54e · outbound
IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests Defending Against Indirect Prompt Injection Attacks With Spotlighting
Reference 16
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation cdc65bde-9167-4673-b789-f8a20a274502 · outbound
IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests The task shield: Enforcing task alignment to defend against indirect prompt injection in LLM agents,
Reference 17
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 52629169-354d-45a5-a8f3-ce5620f2348f · outbound
IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests IPIGuard: A novel tool dependency graph-based defense against indirect prompt injection in LLM agents,
Reference 18
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 6f4f2530-431b-4e61-bbca-253647a51576 · outbound
IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests Struq: Defending against prompt injection with structured queries,
Reference 20
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 7d3e33fe-1f19-44a3-b32f-0db76ca222bd · outbound
IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests Available: https://arxiv.org/abs/2601.04795
Reference 21
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 5b4c6441-b3db-42e9-82cf-b170672080ef · outbound
IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests LlamaFirewall: An open source guardrail system for building secure AI agents
Reference 22
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 3de13c0f-63cf-41a2-af31-48b1205c52d8 · outbound
IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests Defeating Prompt Injections by Design
Reference 23
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 48bcac9d-1961-437b-a039-51f235b0dcad · outbound
IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests Agent Security Bench (ASB): Formalizing and Benchmarking Attacks and Defenses in LLM-based Agents
Reference 24
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 707e6df5-b157-4010-89ce-b5f06de4baab · outbound
IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests AgentDojo: A Dynamic Environment to Evaluate Prompt Injection Attacks and Defenses for LLM Agents
Reference 25
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 23059227-b10b-4c0d-abb6-b1caa83d6d8d · outbound
IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests Codex sandboxing documentation,
Reference 26
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation a1d80729-15a7-411b-ba9c-4c07d4320186 · outbound
IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests Claude code: An agentic cli for software engineering,
Reference 27
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 2b8d94ea-8980-4a05-90f6-bc2b8cea42a9 · outbound
IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests Available: https://code.claude.com/docs/en/overview
Reference 28
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation b915b4a1-68ab-4026-88c5-9447d5a03f1b · outbound
IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests GPT-5.4 thinking system card,
Reference 29
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation e0ab4f89-f963-4360-8f29-a7ea3bd049eb · outbound
IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests Cursor: The ai code editor,
Reference 30
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 6fe74853-1433-441a-90d8-5e4cc8a88b4b · outbound
IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests Claude sonnet 4.6 system card,
Reference 31
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 013174f2-b712-4dd3-a535-f548f7d4c2dd · outbound
IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests SG-Bench: Evaluating LLM Safety Generalization Across Diverse Tasks and Prompt Types
Reference 32
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 956839f1-5243-4392-b802-dd6229126c0f · outbound
IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests GPT-5.3-Codex system card,
Reference 33
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 9fd554ef-9132-4800-9897-e54bc269d420 · outbound
IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests SWE-agent: Agent-computer interfaces enable automated software engineering,
Reference 34
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 77f03a05-7c8b-4407-a4f2-162945b4802f · outbound
IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests Design Patterns for Securing LLM Agents against Prompt Injections
Reference 36
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 39c1ae47-6d2b-49d6-a14d-1faa08503a22 · outbound
IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests Available: https://arxiv.org/abs/2601.17548
Reference 2026
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
No inbound Pith citation observations are available.