official implementation of [USENIX Sec'25] StruQ: Defending Against Prompt Injection with Structured Queries
☆77Nov 10, 2025Updated 8 months ago
Alternatives and similar repositories for StruQ
Users that are interested in StruQ are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Repo for the research paper "SecAlign: Defending Against Prompt Injection with Preference Optimization"☆98Jul 2, 2026Updated 3 weeks ago
- Repo for the paper "Meta SecAlign: A Secure Foundation LLM Against Prompt Injection Attacks".☆70Jun 11, 2026Updated last month
- Repo for the paper "Defending Against Prompt Injection With a Few DefensiveTokens"☆19Nov 10, 2025Updated 8 months ago
- This repository provides a benchmark for prompt injection attacks and defenses in LLMs☆468Oct 29, 2025Updated 9 months ago
- A benchmark for evaluating the robustness of LLMs and defenses to indirect prompt injection attacks.☆149Apr 15, 2024Updated 2 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- ☆15Nov 29, 2025Updated 8 months ago
- A Dynamic Environment to Evaluate Attacks and Defenses for LLM Agents.☆690Jun 2, 2026Updated last month
- ☆153Jul 2, 2024Updated 2 years ago
- The official implementation of the paper "AgentDyn: Are Your Agent Security Defenses Deployable in Real-World Dynamic Environments?"☆69May 19, 2026Updated 2 months ago
- Code repo of our paper Towards Understanding Jailbreak Attacks in LLMs: A Representation Space Analysis (https://arxiv.org/abs/2406.10794…☆24Jul 26, 2024Updated 2 years ago
- Code for our NAACL2025 accepted paper: Attention Tracker: Detecting Prompt Injection Attacks in LLMs☆28Sep 19, 2025Updated 10 months ago
- Accompanying code and SEP dataset for the "Can LLMs Separate Instructions From Data? And What Do We Even Mean By That?" paper.☆61Apr 20, 2026Updated 3 months ago
- TaskTracker is an approach to detecting task drift in Large Language Models (LLMs) by analysing their internal activations. It provides a…☆92Sep 1, 2025Updated 10 months ago
- [EMNLP 2025 Oral] IPIGuard: A Novel Tool Dependency Graph-Based Defense Against Indirect Prompt Injection in LLM Agents☆22Sep 16, 2025Updated 10 months ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- Every practical and proposed defense against prompt injection.☆716Feb 22, 2025Updated last year
- [ICML 2026] Official implementation for paper "Unsafer in Many Turns: Benchmarking and Defending Multi-Turn Safety Risks in Tool-Using Ag…☆29Jul 6, 2026Updated 3 weeks ago
- ☆51Feb 25, 2026Updated 5 months ago
- Code to generate NeuralExecs (prompt injection for LLMs)☆27Oct 5, 2025Updated 9 months ago
- PFI: Prompt Flow Integrity to Prevent Privilege Escalation in LLM Agents☆31Mar 26, 2025Updated last year
- [ACL 2025] The official code for "AGrail: A Lifelong Agent Guardrail with Effective and Adaptive Safety Detection".☆42Aug 4, 2025Updated 11 months ago
- PISanitizer: Preventing Prompt Injection to Long-Context LLMs via Prompt Sanitization☆18Dec 10, 2025Updated 7 months ago
- Code&Data for the paper "Watch Out for Your Agents! Investigating Backdoor Threats to LLM-Based Agents" [NeurIPS 2024]☆116Sep 27, 2024Updated last year
- The official repository for guided jailbreak benchmark☆31Jul 28, 2025Updated last year
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- [NeurIPS 2025] The official implementation of the paper "DRIFT: Dynamic Rule-Based Defense with Injection Isolation for Securing LLM Agen…☆58Jul 16, 2026Updated last week
- TAP: An automated jailbreaking method for black-box LLMs☆241Dec 10, 2024Updated last year
- Fighting Gradients with Gradients: Dynamic Defenses against Adversarial Attacks☆38May 25, 2021Updated 5 years ago
- Benchmarking prompt injection detections for web agents.☆20Jul 10, 2026Updated 2 weeks ago
- A fork of AgentDojo compatible with Inspect.☆17Oct 23, 2025Updated 9 months ago
- [ICLR 2025] Dissecting adversarial robustness of multimodal language model agents☆140Feb 19, 2025Updated last year
- Agent Security Bench (ASB)☆273Apr 16, 2026Updated 3 months ago
- Dataset for the Tensor Trust project☆49Mar 17, 2024Updated 2 years ago
- Code of paper: xJailbreak: Representation Space Guided Reinforcement Learning for Interpretable LLM Jailbreaking"☆17Apr 3, 2026Updated 3 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- The official implementation of our pre-print paper "Automatic and Universal Prompt Injection Attacks against Large Language Models".☆73Oct 23, 2024Updated last year
- ☆17Mar 9, 2025Updated last year
- ☆30Oct 27, 2023Updated 2 years ago
- [ICLR 2026] Official implementation of "ChatInject: Abusing Chat Templates for Prompt Injection in LLM Agents"☆17Mar 23, 2026Updated 4 months ago
- Code for paper "Poisoned classifiers are not only backdoored, they are fundamentally broken"☆26Jan 7, 2022Updated 4 years ago
- ☆192Oct 31, 2025Updated 8 months ago
- This repo is the official implementation of the ICLR'23 paper "Towards Robustness Certification Against Universal Perturbations." We calc…☆12Feb 14, 2023Updated 3 years ago