PFI: Prompt Flow Integrity to Prevent Privilege Escalation in LLM Agents
☆31Mar 26, 2025Updated last year
Alternatives and similar repositories for pfi
Users that are interested in pfi are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- PeTAL: Ensuring Access Control Integrity against Data-only Attacks on Linux (ACM CCS 2024)☆17Nov 4, 2024Updated last year
- ☆17Mar 9, 2025Updated last year
- An Execution Isolation Architecture for LLM-Based Agentic Systems☆123Jan 31, 2025Updated last year
- Flow Integrity Deterministic Enforcement System. Mechanisms for securing AI agents with information-flow control.☆113May 30, 2025Updated last year
- TikTag: Breaking ARM's Memory Tagging Extension with Speculative Execution (IEEE S&P 2025)☆91Nov 25, 2024Updated last year
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- AgentSentinel: An End-to-End and Real-Time Security Defense Framework for Computer-Use Agents☆38Aug 31, 2025Updated last year
- ☆40Mar 12, 2025Updated last year
- ☆166Jul 2, 2024Updated 2 years ago
- Codebase of https://arxiv.org/abs/2410.14923☆54Oct 22, 2024Updated last year
- ☆16Sep 17, 2024Updated last year
- Multi-dimensional analysis of orthogonal safety directions in LLM alignment☆23Jun 12, 2026Updated 2 months ago
- [NeurIPS 2025] The official implementation of the paper "DRIFT: Dynamic Rule-Based Defense with Injection Isolation for Securing LLM Agen…☆60Jul 16, 2026Updated last month
- The official implementation of the paper "AgentLAB: Benchmarking LLM Agents against Long-Horizon Attacks"☆30Jun 1, 2026Updated 3 months ago
- A research workbench for developing and testing attacks against large language models, with a focus on prompt injection vulnerabilities a…☆60Jul 24, 2026Updated last month
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Code for the paper "Defeating Prompt Injections by Design"☆380Jun 20, 2025Updated last year
- Official Implementation of implicit reference attack☆11Oct 16, 2024Updated last year
- Official release of code for the paper RL is a hammer and LLMs are nails A simple RL approach to stronger prompt injection attacks☆53May 6, 2026Updated 3 months ago
- Agent Skills Enable a New Class of Realistic and Trivially Simple Prompt Injections☆22Jul 2, 2026Updated 2 months ago
- Source code of AsiaCCS'22 paper - RecIPE: Revisiting the Evaluation of Memory Error Defenses☆14Sep 19, 2023Updated 2 years ago
- DynAuditClaw — A security audit skill that dynamically discovers your OpenClaw agent's real configuration, designs targeted attack scenar…☆15Apr 6, 2026Updated 4 months ago
- ☆17Sep 4, 2024Updated last year
- ☆18Mar 25, 2026Updated 5 months ago
- [Findings of ACL 2023] Bridge the Gap Between CV and NLP! A Optimization-based Textual Adversarial Attack Framework.☆14Aug 27, 2023Updated 3 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- A Dynamic Environment to Evaluate Attacks and Defenses for LLM Agents.☆791Jun 2, 2026Updated 3 months ago
- [S&P 2026] SoK: Evaluating Jailbreak Guardrails for Large Language Models☆46Dec 17, 2025Updated 8 months ago
- Agent Security Bench (ASB)☆295Apr 16, 2026Updated 4 months ago
- Onsite Analysis Infrastructure☆16Jun 23, 2020Updated 6 years ago
- A benchmark and generation framework for malicious agent skills.☆57Jun 10, 2026Updated 2 months ago
- Linux kernel source tree patched with Hypervisor-Enforced Kernel Integrity☆14Nov 14, 2023Updated 2 years ago
- [VLM-Attack-Survey-2024] Paper list and projects for VLM attacks☆17Feb 12, 2025Updated last year
- Official implementation of the WASP web agent security benchmark☆98Apr 13, 2026Updated 4 months ago
- ☆15Jun 6, 2023Updated 3 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- [ICML'25] MELON: Provable Defense Against Indirect Prompt Injection Attacks in AI Agents☆38Jul 31, 2025Updated last year
- ☆102May 27, 2024Updated 2 years ago
- The official implementation of the paper "AgentDyn: Are Your Agent Security Defenses Deployable in Real-World Dynamic Environments?"☆76May 19, 2026Updated 3 months ago
- First formal security scanner for AI agent skills & plugins. Static analysis, supply chain verification, SBOM generation. 22 frameworks s…☆30Aug 5, 2026Updated 3 weeks ago
- Source code for the ACL'2025 paper titled "Unveiling privacy risks in llm agent memory"☆35Dec 2, 2025Updated 9 months ago
- Linux Kernel module to dump the page tables currently used by the CPU on intel 64bit systems with 4 level paging.☆12Jun 15, 2017Updated 9 years ago
- Cellmate is a sandboxing framework for BUAs that enforces strict boundaries on their behavior, ensuring safety even in the worst-case exe…☆30Jun 22, 2026Updated 2 months ago