{"id":"https://openalex.org/W7131395693","doi":"https://doi.org/10.48550/arxiv.2602.20021","title":"Agents of Chaos","display_name":"Agents of Chaos","publication_year":2026,"publication_date":"2026-02-23","ids":{"openalex":"https://openalex.org/W7131395693","doi":"https://doi.org/10.48550/arxiv.2602.20021"},"language":null,"primary_location":{"id":"doi:10.48550/arxiv.2602.20021","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2602.20021","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"article"},"type":"preprint","indexed_in":["datacite"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://doi.org/10.48550/arxiv.2602.20021","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5078278146","display_name":"Natalie Shapira","orcid":"https://orcid.org/0000-0002-2714-9089"},"institutions":[],"countries":[],"is_corresponding":true,"raw_author_name":"Shapira, Natalie","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5126679488","display_name":"Chris Wendler","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Wendler, Chris","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5126584870","display_name":"Avery Yen","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Yen, Avery","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5126733183","display_name":"Gabriele Sarti","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Sarti, Gabriele","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5106786204","display_name":"Koyena Pal","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Pal, Koyena","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5126586110","display_name":"Olivia Floody","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Floody, Olivia","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5126709833","display_name":"Adam Belfki","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Belfki, Adam","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5126724093","display_name":"Alex Loftus","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Loftus, Alex","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5126598990","display_name":"Aditya Ratan Jannali","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Jannali, Aditya Ratan","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5126808809","display_name":"Nikhil Prakash","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Prakash, Nikhil","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5084550469","display_name":"Jasmine Jisong Cui","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Cui, Jasmine","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5009093200","display_name":"Giordano Rogers","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Rogers, Giordano","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5111504093","display_name":"Jannik Brinkmann","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Brinkmann, Jannik","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5063383301","display_name":"Can Rager","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Rager, Can","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5027116633","display_name":"Amir Zur","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Zur, Amir","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5115703057","display_name":"Michael Ripa","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Ripa, Michael","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5060686905","display_name":"Aruna Sankaranarayanan","orcid":"https://orcid.org/0000-0002-0021-5883"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Sankaranarayanan, Aruna","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5126822867","display_name":"David Atkinson","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Atkinson, David","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5116229195","display_name":"Rohit Gandikota","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Gandikota, Rohit","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5126663517","display_name":"Jaden Fiotto-Kaufman","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Fiotto-Kaufman, Jaden","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5126707062","display_name":"EunJeong Hwang","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Hwang, EunJeong","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5017373229","display_name":"Hadas Orgad","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Orgad, Hadas","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5126802831","display_name":"P Sam Sahil","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Sahil, P Sam","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5126649528","display_name":"Negev Taglicht","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Taglicht, Negev","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5126626088","display_name":"Tomer Shabtay","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Shabtay, Tomer","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5120760036","display_name":"Atai Ambus","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Ambus, Atai","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5009562609","display_name":"N. Alon","orcid":"https://orcid.org/0000-0002-2698-3573"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Alon, Nitay","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5126636059","display_name":"Shiri Oron","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Oron, Shiri","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5126694556","display_name":"Ayelet Gordon-Tapiero","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Gordon-Tapiero, Ayelet","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5045167745","display_name":"Yotam Kaplan","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Kaplan, Yotam","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5126730963","display_name":"Vered Shwartz","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Shwartz, Vered","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5081132390","display_name":"Tamar Rott Shaham","orcid":"https://orcid.org/0000-0002-1455-2266"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Shaham, Tamar Rott","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5126713155","display_name":"Christoph Riedl","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Riedl, Christoph","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5036081979","display_name":"Reuth Mirsky","orcid":"https://orcid.org/0000-0003-1392-9444"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Mirsky, Reuth","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5126711892","display_name":"Maarten Sap","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Sap, Maarten","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5010975997","display_name":"David Manheim","orcid":"https://orcid.org/0000-0001-8599-8380"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Manheim, David","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5086092571","display_name":"Tomer Ullman","orcid":"https://orcid.org/0000-0003-1722-2382"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Ullman, Tomer","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"last","author":{"id":"https://openalex.org/A5126739459","display_name":"David Bau","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Bau, David","raw_affiliation_strings":[],"affiliations":[]}],"institutions":[],"countries_distinct_count":0,"institutions_distinct_count":38,"corresponding_author_ids":["https://openalex.org/A5078278146"],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":null,"has_fulltext":false,"cited_by_count":4,"citation_normalized_percentile":null,"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.15189999341964722,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.15189999341964722,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.06239999830722809,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12203","display_name":"Mobile Agent-Based Network Management","score":0.045499999076128006,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/warrant","display_name":"Warrant","score":0.7634999752044678},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.5892000198364258},{"id":"https://openalex.org/keywords/task","display_name":"Task (project management)","score":0.5591999888420105},{"id":"https://openalex.org/keywords/software-deployment","display_name":"Software deployment","score":0.5471000075340271},{"id":"https://openalex.org/keywords/identity","display_name":"Identity (music)","score":0.5126000046730042},{"id":"https://openalex.org/keywords/resource","display_name":"Resource (disambiguation)","score":0.39480000734329224},{"id":"https://openalex.org/keywords/event","display_name":"Event (particle physics)","score":0.39320001006126404},{"id":"https://openalex.org/keywords/state","display_name":"State (computer science)","score":0.373199999332428}],"concepts":[{"id":"https://openalex.org/C2776916960","wikidata":"https://www.wikidata.org/wiki/Q637156","display_name":"Warrant","level":2,"score":0.7634999752044678},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.6601999998092651},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.5892000198364258},{"id":"https://openalex.org/C2780451532","wikidata":"https://www.wikidata.org/wiki/Q759676","display_name":"Task (project management)","level":2,"score":0.5591999888420105},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.5544999837875366},{"id":"https://openalex.org/C105339364","wikidata":"https://www.wikidata.org/wiki/Q2297740","display_name":"Software deployment","level":2,"score":0.5471000075340271},{"id":"https://openalex.org/C2778355321","wikidata":"https://www.wikidata.org/wiki/Q17079427","display_name":"Identity (music)","level":2,"score":0.5126000046730042},{"id":"https://openalex.org/C108827166","wikidata":"https://www.wikidata.org/wiki/Q175975","display_name":"Internet privacy","level":1,"score":0.46399998664855957},{"id":"https://openalex.org/C206345919","wikidata":"https://www.wikidata.org/wiki/Q20380951","display_name":"Resource (disambiguation)","level":2,"score":0.39480000734329224},{"id":"https://openalex.org/C2779662365","wikidata":"https://www.wikidata.org/wiki/Q5416694","display_name":"Event (particle physics)","level":2,"score":0.39320001006126404},{"id":"https://openalex.org/C48103436","wikidata":"https://www.wikidata.org/wiki/Q599031","display_name":"State (computer science)","level":2,"score":0.373199999332428},{"id":"https://openalex.org/C2781460075","wikidata":"https://www.wikidata.org/wiki/Q1399332","display_name":"Compliance (psychology)","level":2,"score":0.3506999909877777},{"id":"https://openalex.org/C120936955","wikidata":"https://www.wikidata.org/wiki/Q2155640","display_name":"Empirical research","level":2,"score":0.3416000008583069},{"id":"https://openalex.org/C2780522230","wikidata":"https://www.wikidata.org/wiki/Q1140419","display_name":"Ambiguity","level":2,"score":0.3395000100135803},{"id":"https://openalex.org/C167900197","wikidata":"https://www.wikidata.org/wiki/Q11081100","display_name":"Spoofing attack","level":2,"score":0.3359000086784363},{"id":"https://openalex.org/C197115733","wikidata":"https://www.wikidata.org/wiki/Q1003136","display_name":"Forcing (mathematics)","level":2,"score":0.32710000872612},{"id":"https://openalex.org/C165696696","wikidata":"https://www.wikidata.org/wiki/Q11287","display_name":"Exploit","level":2,"score":0.3264000117778778},{"id":"https://openalex.org/C190253527","wikidata":"https://www.wikidata.org/wiki/Q295354","display_name":"Law and economics","level":1,"score":0.32409998774528503},{"id":"https://openalex.org/C144133560","wikidata":"https://www.wikidata.org/wiki/Q4830453","display_name":"Business","level":0,"score":0.30790001153945923},{"id":"https://openalex.org/C112930515","wikidata":"https://www.wikidata.org/wiki/Q4389547","display_name":"Risk analysis (engineering)","level":1,"score":0.30410000681877136},{"id":"https://openalex.org/C56739046","wikidata":"https://www.wikidata.org/wiki/Q192060","display_name":"Knowledge management","level":1,"score":0.27959999442100525},{"id":"https://openalex.org/C2164484","wikidata":"https://www.wikidata.org/wiki/Q5170150","display_name":"Core (optical fiber)","level":2,"score":0.27950000762939453},{"id":"https://openalex.org/C41065033","wikidata":"https://www.wikidata.org/wiki/Q2825412","display_name":"Adversary","level":2,"score":0.2745000123977661},{"id":"https://openalex.org/C2779374083","wikidata":"https://www.wikidata.org/wiki/Q5011038","display_name":"CHAOS (operating system)","level":2,"score":0.2628999948501587},{"id":"https://openalex.org/C107457646","wikidata":"https://www.wikidata.org/wiki/Q207434","display_name":"Human\u2013computer interaction","level":1,"score":0.2606000006198883},{"id":"https://openalex.org/C39549134","wikidata":"https://www.wikidata.org/wiki/Q133080","display_name":"Public relations","level":1,"score":0.25450000166893005},{"id":"https://openalex.org/C2780966255","wikidata":"https://www.wikidata.org/wiki/Q5474306","display_name":"Foundation (evidence)","level":2,"score":0.25450000166893005}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.48550/arxiv.2602.20021","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2602.20021","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"article"}],"best_oa_location":{"id":"doi:10.48550/arxiv.2602.20021","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2602.20021","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"article"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":0,"referenced_works":[],"related_works":[],"abstract_inverted_index":{"We":[0,115],"report":[1,117,166],"an":[2,169],"exploratory":[3],"red-teaming":[4],"study":[5],"of":[6,51,75,79,93,120,129],"autonomous":[7],"language-model-powered":[8],"agents":[9,38,103],"deployed":[10],"in":[11,135],"a":[12,29],"live":[13],"laboratory":[14],"environment":[15],"with":[16,36,54,72],"persistent":[17],"memory,":[18],"email":[19],"accounts,":[20],"Discord":[21],"access,":[22],"file":[23],"systems,":[24],"and":[25,41,58,96,132,148,153,161],"shell":[26],"execution.":[27],"Over":[28],"two-week":[30],"period,":[31],"twenty":[32],"AI":[33],"researchers":[34,162],"interacted":[35],"the":[37,49,108,121,127],"under":[39],"benign":[40],"adversarial":[42],"conditions.":[43],"Focusing":[44],"on":[45,118],"failures":[46],"emerging":[47],"from":[48,157],"integration":[50],"language":[52],"models":[53],"autonomy,":[55],"tool":[56],"use,":[57],"multi-party":[59],"communication,":[60],"we":[61],"document":[62],"eleven":[63],"representative":[64],"case":[65],"studies.":[66],"Observed":[67],"behaviors":[68,140],"include":[69],"unauthorized":[70],"compliance":[71],"non-owners,":[73],"disclosure":[74],"sensitive":[76],"information,":[77],"execution":[78],"destructive":[80],"system-level":[81],"actions,":[82],"denial-of-service":[83],"conditions,":[84],"uncontrolled":[85],"resource":[86],"consumption,":[87],"identity":[88],"spoofing":[89],"vulnerabilities,":[90],"cross-agent":[91],"propagation":[92],"unsafe":[94],"practices,":[95],"partial":[97],"system":[98,110],"takeover.":[99],"In":[100],"several":[101],"cases,":[102],"reported":[104],"task":[105],"completion":[106],"while":[107],"underlying":[109],"state":[111],"contradicted":[112],"those":[113],"reports.":[114],"also":[116],"some":[119],"failed":[122],"attempts.":[123],"Our":[124],"findings":[125],"establish":[126],"existence":[128],"security-,":[130],"privacy-,":[131],"governance-relevant":[133],"vulnerabilities":[134],"realistic":[136],"deployment":[137],"settings.":[138],"These":[139],"raise":[141],"unresolved":[142],"questions":[143],"regarding":[144],"accountability,":[145],"delegated":[146],"authority,":[147],"responsibility":[149],"for":[150],"downstream":[151],"harms,":[152],"warrant":[154],"urgent":[155],"attention":[156],"legal":[158],"scholars,":[159],"policymakers,":[160],"across":[163],"disciplines.":[164],"This":[165],"serves":[167],"as":[168],"initial":[170],"empirical":[171],"contribution":[172],"to":[173],"that":[174],"broader":[175],"conversation.":[176]},"counts_by_year":[{"year":2026,"cited_by_count":4}],"updated_date":"2026-03-07T16:01:11.037858","created_date":"2026-02-26T00:00:00"}
