[EMNLP 2025 Oral] IPIGuard: A Novel Tool Dependency Graph-Based Defense Against Indirect Prompt Injection in LLM Agents
☆22Sep 16, 2025Updated 10 months ago
Alternatives and similar repositories for ipiguard
Users that are interested in ipiguard are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Repo for the paper "Meta SecAlign: A Secure Foundation LLM Against Prompt Injection Attacks".☆70Jun 11, 2026Updated last month
- Codes for our paper "AgentMonitor: A Plug-and-Play Framework for Predictive and Secure Multi-Agent Systems"☆13Dec 13, 2024Updated last year
- ☆20Jun 12, 2026Updated last month
- [ICML'25] MELON: Provable Defense Against Indirect Prompt Injection Attacks in AI Agents☆36Jul 31, 2025Updated 11 months ago
- [NeurIPS 2025] The official implementation of the paper "DRIFT: Dynamic Rule-Based Defense with Injection Isolation for Securing LLM Agen…☆58Jul 16, 2026Updated last week
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- [CVPR 2024] "Data Poisoning based Backdoor Attacks to Contrastive Learning": official code implementation.☆16Feb 10, 2025Updated last year
- Code and full version of the paper "Hijacking Attacks against Neural Network by Analyzing Training Data"☆14Feb 28, 2024Updated 2 years ago
- ☆15Jun 6, 2023Updated 3 years ago
- ☆39Mar 12, 2025Updated last year
- Automatic Jailbreaking of the Text-to-Image Generative AI Systems☆15Jun 23, 2024Updated 2 years ago
- A Dynamic Environment to Evaluate Attacks and Defenses for LLM Agents.☆678Jun 2, 2026Updated last month
- ☆38Mar 24, 2026Updated 4 months ago
- offical implementation of Jailbreak-R1☆15Jul 16, 2025Updated last year
- ☆22Dec 14, 2023Updated 2 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- ☆153Jul 2, 2024Updated 2 years ago
- Progent: Securing AI Agents with Privilege Control☆41May 14, 2026Updated 2 months ago
- ☆22Dec 18, 2025Updated 7 months ago
- Official release of code for the paper RL is a hammer and LLMs are nails A simple RL approach to stronger prompt injection attacks☆53May 6, 2026Updated 2 months ago
- ☆17Jul 3, 2025Updated last year
- ☆71Feb 4, 2024Updated 2 years ago
- PISmith: Reinforcement Learning-based Red Teaming for Prompt Injection Defenses☆22Jul 17, 2026Updated last week
- [WWW '25] Model Supply Chain Poisoning: Backdooring Pre-trained Models via Embedding Indistinguishability☆18May 30, 2025Updated last year
- This repository is the official implementation of the paper "ASSET: Robust Backdoor Data Detection Across a Multiplicity of Deep Learning…☆20Jun 7, 2023Updated 3 years ago
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- official implementation of [USENIX Sec'25] StruQ: Defending Against Prompt Injection with Structured Queries☆77Nov 10, 2025Updated 8 months ago
- Fast and Slow Generating: An Empirical Study on Large and Small Language Models Collaborative Decoding.☆13Nov 19, 2024Updated last year
- [ACL 2025] The official code for "AGrail: A Lifelong Agent Guardrail with Effective and Adaptive Safety Detection".☆42Aug 4, 2025Updated 11 months ago
- Generating Potent Poisons and Backdoors from Scratch with Guided Diffusion☆11Apr 1, 2024Updated 2 years ago
- Distribution Preserving Backdoor Attack in Self-supervised Learning☆20Jan 27, 2024Updated 2 years ago
- [S&P 2026] SoK: Evaluating Jailbreak Guardrails for Large Language Models☆44Dec 17, 2025Updated 7 months ago
- The reinforcement learning codes for dataset SPA-VL☆48Jun 24, 2024Updated 2 years ago
- An Embarrassingly Simple Backdoor Attack on Self-supervised Learning☆22Jan 24, 2024Updated 2 years ago
- Repo for the research paper "SecAlign: Defending Against Prompt Injection with Preference Optimization"☆98Jul 2, 2026Updated 3 weeks ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- [ICLR 2025] Dissecting adversarial robustness of multimodal language model agents☆140Feb 19, 2025Updated last year
- On the Robustness of GUI Grounding Models Against Image Attacks☆12Apr 8, 2025Updated last year
- Code&Data for the paper "Watch Out for Your Agents! Investigating Backdoor Threats to LLM-Based Agents" [NeurIPS 2024]☆116Sep 27, 2024Updated last year
- TI-RSLK_小车走迷宫☆14Apr 27, 2019Updated 7 years ago
- PFI: Prompt Flow Integrity to Prevent Privilege Escalation in LLM Agents☆31Mar 26, 2025Updated last year
- [ICML 2026] Official implementation for paper "Unsafer in Many Turns: Benchmarking and Defending Multi-Turn Safety Risks in Tool-Using Ag…☆29Jul 6, 2026Updated 2 weeks ago
- ☆31Mar 11, 2026Updated 4 months ago