PFI: Prompt Flow Integrity to Prevent Privilege Escalation in LLM Agents
☆32Mar 26, 2025Updated last year
Alternatives and similar repositories for pfi
Users that are interested in pfi are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- PeTAL: Ensuring Access Control Integrity against Data-only Attacks on Linux (ACM CCS 2024)☆17Nov 4, 2024Updated last year
- ☆18Mar 9, 2025Updated last year
- Progent: Securing AI Agents with Privilege Control☆52May 14, 2026Updated 4 months ago
- An Execution Isolation Architecture for LLM-Based Agentic Systems☆124Jan 31, 2025Updated last year
- Flow Integrity Deterministic Enforcement System. Mechanisms for securing AI agents with information-flow control.☆117May 30, 2025Updated last year
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- TikTag: Breaking ARM's Memory Tagging Extension with Speculative Execution (IEEE S&P 2025)☆91Nov 25, 2024Updated last year
- ☆29Aug 31, 2025Updated last year
- A public repository for the class, "Software Security" at Seoul National University (SNU)☆14May 11, 2021Updated 5 years ago
- AgentSentinel: An End-to-End and Real-Time Security Defense Framework for Computer-Use Agents☆39Aug 31, 2025Updated last year
- ☆41Mar 12, 2025Updated last year
- ☆171Jul 2, 2024Updated 2 years ago
- Codebase of https://arxiv.org/abs/2410.14923☆54Oct 22, 2024Updated last year
- ☆16Sep 17, 2024Updated 2 years ago
- A survey and analysis of source code sandboxing☆17Jun 16, 2025Updated last year
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- Multi-dimensional analysis of orthogonal safety directions in LLM alignment☆23Jun 12, 2026Updated 3 months ago
- Distribution Preserving Backdoor Attack in Self-supervised Learning☆21Jan 27, 2024Updated 2 years ago
- [NeurIPS 2025] The official implementation of the paper "DRIFT: Dynamic Rule-Based Defense with Injection Isolation for Securing LLM Agen…☆61Jul 16, 2026Updated 2 months ago
- A research workbench for developing and testing attacks against large language models, with a focus on prompt injection vulnerabilities a…☆61Jul 24, 2026Updated last month
- Official Implementation of implicit reference attack☆11Oct 16, 2024Updated last year
- Official release of code for the paper RL is a hammer and LLMs are nails A simple RL approach to stronger prompt injection attacks☆54May 6, 2026Updated 4 months ago
- The official implementation of the paper "AgentLAB: Benchmarking LLM Agents against Long-Horizon Attacks"☆40Jun 1, 2026Updated 3 months ago
- Agent Skills Enable a New Class of Realistic and Trivially Simple Prompt Injections☆22Jul 2, 2026Updated 2 months ago
- Source code of AsiaCCS'22 paper - RecIPE: Revisiting the Evaluation of Memory Error Defenses☆14Sep 19, 2023Updated 3 years ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- DynAuditClaw — A security audit skill that dynamically discovers your OpenClaw agent's real configuration, designs targeted attack scenar…☆15Apr 6, 2026Updated 5 months ago
- ☆18Mar 25, 2026Updated 5 months ago
- [Findings of ACL 2023] Bridge the Gap Between CV and NLP! A Optimization-based Textual Adversarial Attack Framework.☆14Aug 27, 2023Updated 3 years ago
- A Dynamic Environment to Evaluate Attacks and Defenses for LLM Agents.☆856Jun 2, 2026Updated 3 months ago
- [S&P 2026] SoK: Evaluating Jailbreak Guardrails for Large Language Models☆49Dec 17, 2025Updated 9 months ago
- Agent Security Bench (ASB)☆303Apr 16, 2026Updated 5 months ago
- Onsite Analysis Infrastructure☆16Jun 23, 2020Updated 6 years ago
- A benchmark and generation framework for malicious agent skills.☆60Jun 10, 2026Updated 3 months ago
- Linux kernel source tree patched with Hypervisor-Enforced Kernel Integrity☆14Nov 14, 2023Updated 2 years ago
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- ☆198Oct 31, 2025Updated 10 months ago
- Official implementation of the WASP web agent security benchmark☆98Apr 13, 2026Updated 5 months ago
- [ICML'25] MELON: Provable Defense Against Indirect Prompt Injection Attacks in AI Agents☆39Jul 31, 2025Updated last year
- ☆101May 27, 2024Updated 2 years ago
- [NDSS 2025] "CLIBE: Detecting Dynamic Backdoors in Transformer-based NLP Models"☆26Aug 20, 2025Updated last year
- The official implementation of the paper "AgentDyn: Are Your Agent Security Defenses Deployable in Real-World Dynamic Environments?"☆82May 19, 2026Updated 4 months ago
- First formal security scanner for AI agent skills & plugins. Static analysis, supply chain verification, SBOM generation. 22 frameworks s…☆34Aug 5, 2026Updated last month