Typed states for the displayed outbound observations.
Source: paper_references, paper_reference_links, observed 2026-06-28T18:18:52.472535Z
Paper Citation Record · LEDGER
As of 10 August 2026, this Paper Citation Record lists 14 of 14 outbound references and 1 inbound Pith citation observation for arXiv:2606.00914.
A citation records a reference. It does not transfer a finding from one paper to another.
Typed states for the displayed outbound observations.
Source: paper_references, paper_reference_links, observed 2026-06-28T18:18:52.472535Z
One-hop event checks from named stored sources.
Source: scholarly_work_events, retraction_status_cache, observed 2026-08-10T06:31:04.303077+00:00
Pith citing papers itemized under the disclosed page cap.
Source: paper_references, paper_reference_links, observed 2026-08-02T11:44:10.317641Z
A source-named dated measurement, never combined with another source.
Source: cited_works
14 of 14 outbound references displayed
External citation measurements
No source-named external measurement is stored.
Observation 8d629cd0-2247-4fff-829a-8d8fe0549658 · outbound
Adversarial Feeds Steer LLM Agent Decisions Against Their Defaults 2022 , eprint =
Reference 1
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation fc729e86-077c-4054-a76a-e19df4ddd24f · outbound
Adversarial Feeds Steer LLM Agent Decisions Against Their Defaults Not what you've signed up for: Compromising Real-World LLM-Integrated Applications with Indirect Prompt Injection
Reference 2
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.
Observation bdbce250-54f8-40ab-9a06-8cf9cb9b4078 · outbound
Adversarial Feeds Steer LLM Agent Decisions Against Their Defaults 33rd USENIX Security Symposium (USENIX Security 24) , year =
Reference 3
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 1cd732be-6fff-4da3-91f6-17760dadc02b · outbound
Adversarial Feeds Steer LLM Agent Decisions Against Their Defaults 2023 , eprint =
Reference 4
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 46fa93b4-522d-4d55-821f-8105162fdbdd · outbound
Adversarial Feeds Steer LLM Agent Decisions Against Their Defaults PoisonedRAG: Knowledge Corruption Attacks to Retrieval-Augmented Generation of Large Language Models
Reference 5
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.
Observation bb7afc38-87a7-46d3-b7d5-65d7549c6b6e · outbound
Adversarial Feeds Steer LLM Agent Decisions Against Their Defaults Advances in Neural Information Processing Systems (NeurIPS) Datasets and Benchmarks Track , year =
Reference 6
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 30f6e16e-bf09-4286-a74a-262e9ccbb7bb · outbound
Adversarial Feeds Steer LLM Agent Decisions Against Their Defaults 2023 , eprint =
Reference 7
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation a6dc2381-46e3-4b75-bbfb-1086654cdf94 · outbound
Adversarial Feeds Steer LLM Agent Decisions Against Their Defaults 2023 , eprint =
Reference 8
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation c859da42-bdec-40eb-94c5-ed540034df2e · outbound
Adversarial Feeds Steer LLM Agent Decisions Against Their Defaults 2023 , howpublished =
Reference 9
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation e8e1cbd6-f9e1-4775-88ba-8f008fa426d8 · outbound
Adversarial Feeds Steer LLM Agent Decisions Against Their Defaults Unresolved cited work
Reference 10
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 4dd4d23c-50f6-4377-af19-f5d52ac07333 · outbound
Adversarial Feeds Steer LLM Agent Decisions Against Their Defaults Unresolved cited work
Reference 11
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 15de81bb-a6e6-4753-a568-5872b40279d4 · outbound
Adversarial Feeds Steer LLM Agent Decisions Against Their Defaults The Instruction Hierarchy: Training LLMs to Prioritize Privileged Instructions
Reference 12
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.
Observation bd66ba43-87fe-404e-baa2-0f956d06bc03 · outbound
Adversarial Feeds Steer LLM Agent Decisions Against Their Defaults 2025 , eprint =
Reference 13
Source-reported events for the cited work
Unavailable: canonical work link unavailable.
Observation 44b2861b-6791-41e5-a7f2-f7cb2cfe1322 · outbound
Adversarial Feeds Steer LLM Agent Decisions Against Their Defaults Adaptive Attacks Break Defenses Against Indirect Prompt Injection Attacks on LLM Agents
Reference 14
Source-reported events for the cited work
No event found in the named queried sources as of 2026-08-10T06:31:04.303077+00:00.
Observation ad3c1156-e091-4a59-b511-3ae265753e4e · inbound
PhantomFill: When the Form Demands an Answer, Language Models Invent One Adversarial Feeds Steer LLM Agent Decisions Against Their Defaults
Reference 14
Source-reported events for the cited work
Unavailable: canonical work link unavailable.