pith. sign in
Pith Number

pith:355I2WDQ

pith:2026:355I2WDQVG6H4AGLMZJ7MKX76B
not attested not anchored not stored refs pending

Break the Brake, Not the Wheel: Untargeted Jailbreak via Entropy Maximization

Jing Zhang, Jinhong Ni, Mengqi He, Shu Zou, Weikang Li, Xin Shen, Xinyu Tian, Xuesong Li, Zhaoyuan Yang

Maximizing entropy at high-entropy refusal tokens flips VLM outputs to harmful content without fixed targets and improves cross-model transfer.

arxiv:2605.10764 v2 · 2026-05-11 · cs.CV · cs.AI

Add to your LaTeX paper
\usepackage{pith}
\pithnumber{355I2WDQVG6H4AGLMZJ7MKX76B}

Prints a linked badge after your title and injects PDF metadata. Compiles on arXiv. Learn more · Embed verified badge

Record completeness

1 Bitcoin timestamp
2 Internet Archive
3 Author claim open · sign in to claim
4 Citations open
5 Replications open
Portable graph bundle live · download bundle · merged state
The bundle contains the canonical record plus signed events. A mirror can host it anywhere and recompute the same current state with the deterministic merge algorithm.

Claims

C1strongest claim

Our experimental results indicate that the limited transferability primarily stems from overly constrained optimization objectives.

C2weakest assumption

Refusal behavior concentrates at high-entropy tokens during autoregressive decoding, and non-refusal tokens already carry substantial probability mass among the top-ranked candidates before attack.

C3one line summary

UJEM-KL improves cross-model transferability of untargeted jailbreaks on vision-language models by maximizing entropy at decision tokens instead of forcing specific outputs.

Receipt and verification
First computed 2026-05-26T01:03:33.238765Z
Builder pith-number-builder-2026-05-17-v1
Signature Pith Ed25519 (pith-v1-2026-05) · public key
Schema pith-number/v1.0

Canonical hash

df7a8d5870a9bc7e00cb6653f62afff0569904ce0232ad2a2eebd5a5370e9839

Aliases

arxiv: 2605.10764 · arxiv_version: 2605.10764v2 · doi: 10.48550/arxiv.2605.10764 · pith_short_12: 355I2WDQVG6H · pith_short_16: 355I2WDQVG6H4AGL · pith_short_8: 355I2WDQ
Agent API
Verify this Pith Number yourself
curl -sH 'Accept: application/ld+json' https://pith.science/pith/355I2WDQVG6H4AGLMZJ7MKX76B \
  | jq -c '.canonical_record' \
  | python3 -c "import sys,json,hashlib; b=json.dumps(json.loads(sys.stdin.read()), sort_keys=True, separators=(',',':'), ensure_ascii=False).encode(); print(hashlib.sha256(b).hexdigest())"
# expect: df7a8d5870a9bc7e00cb6653f62afff0569904ce0232ad2a2eebd5a5370e9839
Canonical record JSON
{
  "metadata": {
    "abstract_canon_sha256": "400567a152464ca902375c7e3e7482132176d8dab8640e218fc4a55334e5902c",
    "cross_cats_sorted": [
      "cs.AI"
    ],
    "license": "http://creativecommons.org/licenses/by-nc-nd/4.0/",
    "primary_cat": "cs.CV",
    "submitted_at": "2026-05-11T15:59:02Z",
    "title_canon_sha256": "f5c1e9f618941bc18ce7c568364bfaf7809f3be7982f71f7ae19ea60bea8461b"
  },
  "schema_version": "1.0",
  "source": {
    "id": "2605.10764",
    "kind": "arxiv",
    "version": 2
  }
}