{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2025:IQBN54D56TYHOQPC4GAMNJ7QIJ","short_pith_number":"pith:IQBN54D5","canonical_record":{"source":{"id":"2507.08862","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2025-07-09T13:06:58Z","cross_cats_sorted":["cs.CL"],"title_canon_sha256":"068b36b1cdb76b5c44e093839be0f223c4f42fadc72dc737dc929e7c5e3b0f1b","abstract_canon_sha256":"c7e6eb1f32f183be0c5a216f044b5f222350d738ad28238115d68b8ce63863d7"},"schema_version":"1.0"},"canonical_sha256":"4402def07df4f07741e2e180c6a7f042427fe9c6a22fdf4b9c3e8376b7dcf998","source":{"kind":"arxiv","id":"2507.08862","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2507.08862","created_at":"2026-07-05T11:35:59Z"},{"alias_kind":"arxiv_version","alias_value":"2507.08862v1","created_at":"2026-07-05T11:35:59Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2507.08862","created_at":"2026-07-05T11:35:59Z"},{"alias_kind":"pith_short_12","alias_value":"IQBN54D56TYH","created_at":"2026-07-05T11:35:59Z"},{"alias_kind":"pith_short_16","alias_value":"IQBN54D56TYHOQPC","created_at":"2026-07-05T11:35:59Z"},{"alias_kind":"pith_short_8","alias_value":"IQBN54D5","created_at":"2026-07-05T11:35:59Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2025:IQBN54D56TYHOQPC4GAMNJ7QIJ","target":"record","payload":{"canonical_record":{"source":{"id":"2507.08862","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2025-07-09T13:06:58Z","cross_cats_sorted":["cs.CL"],"title_canon_sha256":"068b36b1cdb76b5c44e093839be0f223c4f42fadc72dc737dc929e7c5e3b0f1b","abstract_canon_sha256":"c7e6eb1f32f183be0c5a216f044b5f222350d738ad28238115d68b8ce63863d7"},"schema_version":"1.0"},"canonical_sha256":"4402def07df4f07741e2e180c6a7f042427fe9c6a22fdf4b9c3e8376b7dcf998","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T11:35:59.478385Z","signature_b64":"9jExMtuv5AgHc0HQHLJJZeXGe/tU7+RemDn1fDPbsWDL7tQjcpmCZLHS0SlyXG6BlJPfgMelGJlIa8nq1I5NDQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"4402def07df4f07741e2e180c6a7f042427fe9c6a22fdf4b9c3e8376b7dcf998","last_reissued_at":"2026-07-05T11:35:59.477966Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T11:35:59.477966Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"2507.08862","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-07-05T11:35:59Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"QU0P00MIK7FSWqc7li9pT3Xs0lJxI24KozwSUdbU8OD5ijvG1+jDRmv77uEDHXGzzjgguVJMffsjll3H32j7Dg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-07-05T14:38:39.191359Z"},"content_sha256":"f85bbe0e5c57f5ff5451cf709d887a4dcdbf0996e4caca33e50bc48323634e78","schema_version":"1.0","event_id":"sha256:f85bbe0e5c57f5ff5451cf709d887a4dcdbf0996e4caca33e50bc48323634e78"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2025:IQBN54D56TYHOQPC4GAMNJ7QIJ","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"RAG Safety: Exploring Knowledge Poisoning Attacks to Retrieval-Augmented Generation","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.CL"],"primary_cat":"cs.CR","authors_text":"Haiping Zhu, Jiaoyan Chen, Jun Liu, Nan Hu, Qika Lin, Tianzhe Zhao, Yanchi Ru","submitted_at":"2025-07-09T13:06:58Z","abstract_excerpt":"Retrieval-Augmented Generation (RAG) enhances large language models (LLMs) by retrieving external data to mitigate hallucinations and outdated knowledge issues. Benefiting from the strong ability in facilitating diverse data sources and supporting faithful reasoning, knowledge graphs (KGs) have been increasingly adopted in RAG systems, giving rise to KG-based RAG (KG-RAG) methods. Though RAG systems are widely applied in various applications, recent studies have also revealed its vulnerabilities to data poisoning attacks, where malicious information injected into external knowledge sources can"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2507.08862","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2507.08862/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-07-05T11:35:59Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"urnxZlNGRCXfKc7/8aCeMw+pygmHYVu/S6Pc5NfT4IwTCJ0RubyhQdw+ZpROX0ma1AST+CbqZVYlrY8FnQ7QBw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-07-05T14:38:39.192008Z"},"content_sha256":"aa92ef126b98bf74656006898531ea6501d9991b33663e9dee0b349435fd2a6d","schema_version":"1.0","event_id":"sha256:aa92ef126b98bf74656006898531ea6501d9991b33663e9dee0b349435fd2a6d"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/IQBN54D56TYHOQPC4GAMNJ7QIJ/bundle.json","state_url":"https://pith.science/pith/IQBN54D56TYHOQPC4GAMNJ7QIJ/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/IQBN54D56TYHOQPC4GAMNJ7QIJ/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-07-05T14:38:39Z","links":{"resolver":"https://pith.science/pith/IQBN54D56TYHOQPC4GAMNJ7QIJ","bundle":"https://pith.science/pith/IQBN54D56TYHOQPC4GAMNJ7QIJ/bundle.json","state":"https://pith.science/pith/IQBN54D56TYHOQPC4GAMNJ7QIJ/state.json","well_known_bundle":"https://pith.science/.well-known/pith/IQBN54D56TYHOQPC4GAMNJ7QIJ/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2025:IQBN54D56TYHOQPC4GAMNJ7QIJ","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"c7e6eb1f32f183be0c5a216f044b5f222350d738ad28238115d68b8ce63863d7","cross_cats_sorted":["cs.CL"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2025-07-09T13:06:58Z","title_canon_sha256":"068b36b1cdb76b5c44e093839be0f223c4f42fadc72dc737dc929e7c5e3b0f1b"},"schema_version":"1.0","source":{"id":"2507.08862","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2507.08862","created_at":"2026-07-05T11:35:59Z"},{"alias_kind":"arxiv_version","alias_value":"2507.08862v1","created_at":"2026-07-05T11:35:59Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2507.08862","created_at":"2026-07-05T11:35:59Z"},{"alias_kind":"pith_short_12","alias_value":"IQBN54D56TYH","created_at":"2026-07-05T11:35:59Z"},{"alias_kind":"pith_short_16","alias_value":"IQBN54D56TYHOQPC","created_at":"2026-07-05T11:35:59Z"},{"alias_kind":"pith_short_8","alias_value":"IQBN54D5","created_at":"2026-07-05T11:35:59Z"}],"graph_snapshots":[{"event_id":"sha256:aa92ef126b98bf74656006898531ea6501d9991b33663e9dee0b349435fd2a6d","target":"graph","created_at":"2026-07-05T11:35:59Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/2507.08862/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"Retrieval-Augmented Generation (RAG) enhances large language models (LLMs) by retrieving external data to mitigate hallucinations and outdated knowledge issues. Benefiting from the strong ability in facilitating diverse data sources and supporting faithful reasoning, knowledge graphs (KGs) have been increasingly adopted in RAG systems, giving rise to KG-based RAG (KG-RAG) methods. Though RAG systems are widely applied in various applications, recent studies have also revealed its vulnerabilities to data poisoning attacks, where malicious information injected into external knowledge sources can","authors_text":"Haiping Zhu, Jiaoyan Chen, Jun Liu, Nan Hu, Qika Lin, Tianzhe Zhao, Yanchi Ru","cross_cats":["cs.CL"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2025-07-09T13:06:58Z","title":"RAG Safety: Exploring Knowledge Poisoning Attacks to Retrieval-Augmented Generation"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2507.08862","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:f85bbe0e5c57f5ff5451cf709d887a4dcdbf0996e4caca33e50bc48323634e78","target":"record","created_at":"2026-07-05T11:35:59Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"c7e6eb1f32f183be0c5a216f044b5f222350d738ad28238115d68b8ce63863d7","cross_cats_sorted":["cs.CL"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2025-07-09T13:06:58Z","title_canon_sha256":"068b36b1cdb76b5c44e093839be0f223c4f42fadc72dc737dc929e7c5e3b0f1b"},"schema_version":"1.0","source":{"id":"2507.08862","kind":"arxiv","version":1}},"canonical_sha256":"4402def07df4f07741e2e180c6a7f042427fe9c6a22fdf4b9c3e8376b7dcf998","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"4402def07df4f07741e2e180c6a7f042427fe9c6a22fdf4b9c3e8376b7dcf998","first_computed_at":"2026-07-05T11:35:59.477966Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-07-05T11:35:59.477966Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"9jExMtuv5AgHc0HQHLJJZeXGe/tU7+RemDn1fDPbsWDL7tQjcpmCZLHS0SlyXG6BlJPfgMelGJlIa8nq1I5NDQ==","signature_status":"signed_v1","signed_at":"2026-07-05T11:35:59.478385Z","signed_message":"canonical_sha256_bytes"},"source_id":"2507.08862","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:f85bbe0e5c57f5ff5451cf709d887a4dcdbf0996e4caca33e50bc48323634e78","sha256:aa92ef126b98bf74656006898531ea6501d9991b33663e9dee0b349435fd2a6d"],"state_sha256":"4d78282f99a6b94a68d02254d4c5c1b78b2bef3aafc40f93f507524628ecdbfa"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"ui7Qb54I0y8DJJrNe+oeCJW+sCIlockioSnwWs1yKl4TheP/sLX11GYJblPsxJJfcLHC8QYxF9//1cTImYF/AQ==","signed_message":"bundle_sha256_bytes","signed_at":"2026-07-05T14:38:39.196956Z","bundle_sha256":"805c6d03f4fc26f5d033f15994eaac758a9ace556ec839b3bf3c2e8541a5451b"}}