{"id":"https://openalex.org/W7160666168","doi":"https://doi.org/10.48550/arxiv.2605.06232","title":"Profiling for Pennies: Unveiling the Privacy Iceberg of LLM Agents","display_name":"Profiling for Pennies: Unveiling the Privacy Iceberg of LLM Agents","publication_year":2026,"publication_date":"2026-05-07","ids":{"openalex":"https://openalex.org/W7160666168","doi":"https://doi.org/10.48550/arxiv.2605.06232"},"language":null,"primary_location":{"id":"doi:10.48550/arxiv.2605.06232","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2605.06232","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"Preprint"},"type":"preprint","indexed_in":["datacite"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://doi.org/10.48550/arxiv.2605.06232","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5135675981","display_name":"Jiahao Chen","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Chen, Jiahao","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5135701176","display_name":"Qi Zhang","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Zhang, Qi","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5135655826","display_name":"Ruixiao Lin","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Lin, Ruixiao","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5135720116","display_name":"Chunyi Zhou","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Zhou, Chunyi","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5135722118","display_name":"Tianyu Du","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Du, Tianyu","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5014906752","display_name":"Qingming Li","orcid":"https://orcid.org/0000-0002-6085-7300"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Li, Qingming","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5135650848","display_name":"Tong Zhang","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Zhang, Tong","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5135667993","display_name":"Junhao Li","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Li, Junhao","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5072729601","display_name":"Yuwen Pu","orcid":"https://orcid.org/0000-0003-2311-4943"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Pu, Yuwen","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"last","author":{"id":"https://openalex.org/A5135714684","display_name":"Shouling Ji","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Ji, Shouling","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]}],"institutions":[],"countries_distinct_count":0,"institutions_distinct_count":0,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":null,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":null,"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10883","display_name":"Ethics and Social Impacts of AI","score":0.21870000660419464,"subfield":{"id":"https://openalex.org/subfields/3311","display_name":"Safety Research"},"field":{"id":"https://openalex.org/fields/33","display_name":"Social Sciences"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}},"topics":[{"id":"https://openalex.org/T10883","display_name":"Ethics and Social Impacts of AI","score":0.21870000660419464,"subfield":{"id":"https://openalex.org/subfields/3311","display_name":"Safety Research"},"field":{"id":"https://openalex.org/fields/33","display_name":"Social Sciences"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}},{"id":"https://openalex.org/T11045","display_name":"Privacy, Security, and Data Protection","score":0.1501999944448471,"subfield":{"id":"https://openalex.org/subfields/3312","display_name":"Sociology and Political Science"},"field":{"id":"https://openalex.org/fields/33","display_name":"Social Sciences"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}},{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.10400000214576721,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/information-privacy","display_name":"Information privacy","score":0.6322000026702881},{"id":"https://openalex.org/keywords/profiling","display_name":"Profiling (computer programming)","score":0.5899999737739563},{"id":"https://openalex.org/keywords/sophistication","display_name":"Sophistication","score":0.5514000058174133},{"id":"https://openalex.org/keywords/privacy-by-design","display_name":"Privacy by Design","score":0.5320000052452087},{"id":"https://openalex.org/keywords/privacy-software","display_name":"Privacy software","score":0.5199999809265137},{"id":"https://openalex.org/keywords/personally-identifiable-information","display_name":"Personally identifiable information","score":0.45100000500679016},{"id":"https://openalex.org/keywords/audit","display_name":"Audit","score":0.42980000376701355}],"concepts":[{"id":"https://openalex.org/C108827166","wikidata":"https://www.wikidata.org/wiki/Q175975","display_name":"Internet privacy","level":1,"score":0.6358000040054321},{"id":"https://openalex.org/C123201435","wikidata":"https://www.wikidata.org/wiki/Q456632","display_name":"Information privacy","level":2,"score":0.6322000026702881},{"id":"https://openalex.org/C187191949","wikidata":"https://www.wikidata.org/wiki/Q1138496","display_name":"Profiling (computer programming)","level":2,"score":0.5899999737739563},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.5555999875068665},{"id":"https://openalex.org/C168725872","wikidata":"https://www.wikidata.org/wiki/Q991663","display_name":"Sophistication","level":2,"score":0.5514000058174133},{"id":"https://openalex.org/C193934123","wikidata":"https://www.wikidata.org/wiki/Q7246028","display_name":"Privacy by Design","level":3,"score":0.5320000052452087},{"id":"https://openalex.org/C509729295","wikidata":"https://www.wikidata.org/wiki/Q7246032","display_name":"Privacy software","level":3,"score":0.5199999809265137},{"id":"https://openalex.org/C169093310","wikidata":"https://www.wikidata.org/wiki/Q3702971","display_name":"Personally identifiable information","level":2,"score":0.45100000500679016},{"id":"https://openalex.org/C199521495","wikidata":"https://www.wikidata.org/wiki/Q181487","display_name":"Audit","level":2,"score":0.42980000376701355},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.39480000734329224},{"id":"https://openalex.org/C2522767166","wikidata":"https://www.wikidata.org/wiki/Q2374463","display_name":"Data science","level":1,"score":0.37619999051094055},{"id":"https://openalex.org/C12713177","wikidata":"https://www.wikidata.org/wiki/Q1900281","display_name":"Perspective (graphical)","level":2,"score":0.3328000009059906},{"id":"https://openalex.org/C26760741","wikidata":"https://www.wikidata.org/wiki/Q160402","display_name":"Perception","level":2,"score":0.325300008058548},{"id":"https://openalex.org/C102938260","wikidata":"https://www.wikidata.org/wiki/Q1999831","display_name":"Privacy policy","level":3,"score":0.3167000114917755},{"id":"https://openalex.org/C71745522","wikidata":"https://www.wikidata.org/wiki/Q2476929","display_name":"Confidentiality","level":2,"score":0.2922999858856201},{"id":"https://openalex.org/C137822555","wikidata":"https://www.wikidata.org/wiki/Q2587068","display_name":"Information sensitivity","level":2,"score":0.2888000011444092},{"id":"https://openalex.org/C43091099","wikidata":"https://www.wikidata.org/wiki/Q1067788","display_name":"Through-the-lens metering","level":3,"score":0.28290000557899475},{"id":"https://openalex.org/C136764020","wikidata":"https://www.wikidata.org/wiki/Q466","display_name":"World Wide Web","level":1,"score":0.25589999556541443}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.48550/arxiv.2605.06232","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2605.06232","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"Preprint"}],"best_oa_location":{"id":"doi:10.48550/arxiv.2605.06232","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2605.06232","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"Preprint"},"sustainable_development_goals":[{"display_name":"Peace, Justice and strong institutions","id":"https://metadata.un.org/sdg/16","score":0.6209303140640259}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":0,"referenced_works":[],"related_works":[],"abstract_inverted_index":{"Large":[0],"Language":[1],"Models":[2],"(LLMs)":[3],"have":[4],"revolutionized":[5],"how":[6],"information":[7],"are":[8],"collected,":[9],"aggregated,":[10,135],"and":[11,18,26,86,110,133,188,196],"reasoned.":[12],"However,":[13],"this":[14,30,69],"enables":[15],"a":[16,32,62,93,108,154,170],"novel":[17],"accessible":[19],"vector":[20],"of":[21,35,46,51,83,89,113,140],"privacy":[22,59,74,104,114,124,148,186],"intrusion:":[23],"the":[24,43,49,77,81,87,118,138],"automated":[25],"in-depth":[27],"personal":[28],"profiling;":[29],"engenders":[31],"chilling":[33],"effect":[34],"\"peepers":[36],"everywhere\".":[37],"Existing":[38],"research":[39],"primarily":[40],"unfolds":[41],"from":[42,61],"training":[44],"pipeline":[45],"LLM,":[47],"emphasizing":[48],"exposure":[50],"Personally":[52],"Identifiable":[53],"Information":[54],"(PII)":[55],"through":[56,80],"memorization,":[57],"while":[58],"studies":[60],"human-centric":[63],"perspective":[64],"remain":[65],"underexplored.":[66],"To":[67,106],"fill":[68],"void,":[70],"we":[71,116,178],"empirically":[72],"investigate":[73],"perception":[75],"in":[76],"real":[78],"world":[79],"lens":[82],"human":[84,123],"awareness":[85],"practices":[88],"LLM-integrated":[90],"platforms,":[91],"revealing":[92],"significant":[94],"dissonance:":[95],"platforms":[96],"fail":[97],"to":[98,146,157,184],"technically":[99],"or":[100],"policy-wise":[101],"address":[102],"public":[103],"concerns.":[105],"facilitate":[107],"systematic":[109],"quantifiable":[111],"study":[112],"risk,":[115],"propose":[117,189],"PrivacyIceberg,":[119],"which":[120],"categorizes":[121],"real-world":[122,175],"risks":[125],"into":[126],"three":[127],"tiers:":[128],"explicitly":[129],"searched,":[130],"contextually":[131],"inferred,":[132],"deeply":[134],"based":[136],"on":[137],"sophistication":[139],"LLM":[141,193],"exploitation.":[142],"We":[143],"developed":[144],"IcebergExplorer":[145],"audit":[147],"exposure,":[149],"utilizing":[150],"minimal":[151],"PII":[152],"as":[153],"search":[155],"seed":[156],"reconstruct":[158],"high-fidelity":[159],"profiles,":[160],"achieving":[161],"over":[162],"90%":[163],"factual":[164],"accuracy":[165],"within":[166],"10":[167],"minutes":[168],"at":[169],"cost":[171],"under":[172],"$3,":[173],"for":[174,192],"scenarios.":[176],"Additionally,":[177],"identify":[179],"six":[180],"root":[181],"causes":[182],"contributing":[183],"such":[185],"disclosures":[187],"multi-stakeholder":[190],"countermeasures":[191],"vendors,":[194],"individuals,":[195],"data":[197],"publishers.":[198]},"counts_by_year":[],"updated_date":"2026-07-01T08:55:40.977307","created_date":"2026-05-09T00:00:00"}
