{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2026:7BRYTHDVQV72E7FXRQDM27VSOF","short_pith_number":"pith:7BRYTHDV","canonical_record":{"source":{"id":"2606.04027","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2026-06-01T18:10:21Z","cross_cats_sorted":["cs.AI"],"title_canon_sha256":"1a3bcc6399e177168766289714cc4701c224daec16503d4a660dc0415eaa27d7","abstract_canon_sha256":"da74cbc378eb35a19af8c31845da40a5ee56bd0983198817a1a01dad2bd056db"},"schema_version":"1.0"},"canonical_sha256":"f863899c75857fa27cb78c06cd7eb2716969b1c20f876f04c86f00cea2638da4","source":{"kind":"arxiv","id":"2606.04027","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2606.04027","created_at":"2026-06-04T00:06:44Z"},{"alias_kind":"arxiv_version","alias_value":"2606.04027v1","created_at":"2026-06-04T00:06:44Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2606.04027","created_at":"2026-06-04T00:06:44Z"},{"alias_kind":"pith_short_12","alias_value":"7BRYTHDVQV72","created_at":"2026-06-04T00:06:44Z"},{"alias_kind":"pith_short_16","alias_value":"7BRYTHDVQV72E7FX","created_at":"2026-06-04T00:06:44Z"},{"alias_kind":"pith_short_8","alias_value":"7BRYTHDV","created_at":"2026-06-04T00:06:44Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2026:7BRYTHDVQV72E7FXRQDM27VSOF","target":"record","payload":{"canonical_record":{"source":{"id":"2606.04027","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2026-06-01T18:10:21Z","cross_cats_sorted":["cs.AI"],"title_canon_sha256":"1a3bcc6399e177168766289714cc4701c224daec16503d4a660dc0415eaa27d7","abstract_canon_sha256":"da74cbc378eb35a19af8c31845da40a5ee56bd0983198817a1a01dad2bd056db"},"schema_version":"1.0"},"canonical_sha256":"f863899c75857fa27cb78c06cd7eb2716969b1c20f876f04c86f00cea2638da4","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-06-04T00:06:44.810289Z","signature_b64":"/O0EdmvlEo1ioczuq64fKvQXfBRNNjTPL/MaM9wGysN/Z5VBEBX67PBmdTaZ/EOJb1hp7GpFj4DAp4tIY18cBw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"f863899c75857fa27cb78c06cd7eb2716969b1c20f876f04c86f00cea2638da4","last_reissued_at":"2026-06-04T00:06:44.809876Z","signature_status":"signed_v1","first_computed_at":"2026-06-04T00:06:44.809876Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"2606.04027","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-06-04T00:06:44Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"OaJXsroSAFk7vs+A7EM5RLa/zm8L2tcaCkrBEBKRoICY3lAKFzLoAC6/0V6MzZXSIKXMb5bAHBIeznDyHtHZCw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-07-02T11:26:35.679681Z"},"content_sha256":"c7526f934f459a6867bf40d7ab3f8f6cfe8a4d47ee2a6c740c33df9f557d2aef","schema_version":"1.0","event_id":"sha256:c7526f934f459a6867bf40d7ab3f8f6cfe8a4d47ee2a6c740c33df9f557d2aef"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2026:7BRYTHDVQV72E7FXRQDM27VSOF","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"MaskForge: Structure-Aware Adaptive Attacks for Jailbreaking Diffusion Large Language Models","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.AI"],"primary_cat":"cs.CR","authors_text":"Chaowei Xiao, Minhui Xue, Xiaogeng Liu, Yingzi Ma, Yue Zhao, Zhengyue Zhao","submitted_at":"2026-06-01T18:10:21Z","abstract_excerpt":"Diffusion large language models (dLLMs) generate text by iteratively denoising partially masked sequences under bidirectional context, exposing a safety surface distinct from autoregressive LLMs. Because mask tokens are native inputs and tokens are committed by confidence rather than position, harmful content can be induced through infilling and outside the monitored prefix. Existing jailbreaks either miss this native infill capability or rely on low-diversity mask-bearing templates applied uniformly across goals, with little structural adaptation or accumulated attack experience. We propose M"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2606.04027","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2606.04027/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-06-04T00:06:44Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"ikkQd/foFSHBrGJt9A+P7bMKIsJ+zrESIb5wuM28tnlWOFPlEDOA3Al9vwJ2yYq71PC8UY4qbB7QIdkVzc8vAw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-07-02T11:26:35.680057Z"},"content_sha256":"b7e46e5ffa1b8c0785757fe7bb9dbd77f649a6490569e640cc21655ef56ef13f","schema_version":"1.0","event_id":"sha256:b7e46e5ffa1b8c0785757fe7bb9dbd77f649a6490569e640cc21655ef56ef13f"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/7BRYTHDVQV72E7FXRQDM27VSOF/bundle.json","state_url":"https://pith.science/pith/7BRYTHDVQV72E7FXRQDM27VSOF/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/7BRYTHDVQV72E7FXRQDM27VSOF/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-07-02T11:26:35Z","links":{"resolver":"https://pith.science/pith/7BRYTHDVQV72E7FXRQDM27VSOF","bundle":"https://pith.science/pith/7BRYTHDVQV72E7FXRQDM27VSOF/bundle.json","state":"https://pith.science/pith/7BRYTHDVQV72E7FXRQDM27VSOF/state.json","well_known_bundle":"https://pith.science/.well-known/pith/7BRYTHDVQV72E7FXRQDM27VSOF/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2026:7BRYTHDVQV72E7FXRQDM27VSOF","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"da74cbc378eb35a19af8c31845da40a5ee56bd0983198817a1a01dad2bd056db","cross_cats_sorted":["cs.AI"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2026-06-01T18:10:21Z","title_canon_sha256":"1a3bcc6399e177168766289714cc4701c224daec16503d4a660dc0415eaa27d7"},"schema_version":"1.0","source":{"id":"2606.04027","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2606.04027","created_at":"2026-06-04T00:06:44Z"},{"alias_kind":"arxiv_version","alias_value":"2606.04027v1","created_at":"2026-06-04T00:06:44Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2606.04027","created_at":"2026-06-04T00:06:44Z"},{"alias_kind":"pith_short_12","alias_value":"7BRYTHDVQV72","created_at":"2026-06-04T00:06:44Z"},{"alias_kind":"pith_short_16","alias_value":"7BRYTHDVQV72E7FX","created_at":"2026-06-04T00:06:44Z"},{"alias_kind":"pith_short_8","alias_value":"7BRYTHDV","created_at":"2026-06-04T00:06:44Z"}],"graph_snapshots":[{"event_id":"sha256:b7e46e5ffa1b8c0785757fe7bb9dbd77f649a6490569e640cc21655ef56ef13f","target":"graph","created_at":"2026-06-04T00:06:44Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/2606.04027/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"Diffusion large language models (dLLMs) generate text by iteratively denoising partially masked sequences under bidirectional context, exposing a safety surface distinct from autoregressive LLMs. Because mask tokens are native inputs and tokens are committed by confidence rather than position, harmful content can be induced through infilling and outside the monitored prefix. Existing jailbreaks either miss this native infill capability or rely on low-diversity mask-bearing templates applied uniformly across goals, with little structural adaptation or accumulated attack experience. We propose M","authors_text":"Chaowei Xiao, Minhui Xue, Xiaogeng Liu, Yingzi Ma, Yue Zhao, Zhengyue Zhao","cross_cats":["cs.AI"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2026-06-01T18:10:21Z","title":"MaskForge: Structure-Aware Adaptive Attacks for Jailbreaking Diffusion Large Language Models"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2606.04027","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:c7526f934f459a6867bf40d7ab3f8f6cfe8a4d47ee2a6c740c33df9f557d2aef","target":"record","created_at":"2026-06-04T00:06:44Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"da74cbc378eb35a19af8c31845da40a5ee56bd0983198817a1a01dad2bd056db","cross_cats_sorted":["cs.AI"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2026-06-01T18:10:21Z","title_canon_sha256":"1a3bcc6399e177168766289714cc4701c224daec16503d4a660dc0415eaa27d7"},"schema_version":"1.0","source":{"id":"2606.04027","kind":"arxiv","version":1}},"canonical_sha256":"f863899c75857fa27cb78c06cd7eb2716969b1c20f876f04c86f00cea2638da4","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"f863899c75857fa27cb78c06cd7eb2716969b1c20f876f04c86f00cea2638da4","first_computed_at":"2026-06-04T00:06:44.809876Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-06-04T00:06:44.809876Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"/O0EdmvlEo1ioczuq64fKvQXfBRNNjTPL/MaM9wGysN/Z5VBEBX67PBmdTaZ/EOJb1hp7GpFj4DAp4tIY18cBw==","signature_status":"signed_v1","signed_at":"2026-06-04T00:06:44.810289Z","signed_message":"canonical_sha256_bytes"},"source_id":"2606.04027","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:c7526f934f459a6867bf40d7ab3f8f6cfe8a4d47ee2a6c740c33df9f557d2aef","sha256:b7e46e5ffa1b8c0785757fe7bb9dbd77f649a6490569e640cc21655ef56ef13f"],"state_sha256":"83383de3fac9d54d0ab79bc68e2aa603f6168d776b3149e3ac206018772571d2"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"9ozDN2COHgcoXKokeaUnNiJAUPDsmRLWXQFEyTmNF5epRxRKneP/YphAfFwnUE34VQ6K9Fmr9nxokPHl6wZvAA==","signed_message":"bundle_sha256_bytes","signed_at":"2026-07-02T11:26:35.682257Z","bundle_sha256":"72b2bb3cd344c330b4ecf3cc21711a6b04d91875cb6e2a2c8c1da4e041c16ae6"}}