A Dynamic Environment to Evaluate Attacks and Defenses for LLM Agents.
☆746Jun 2, 2026Updated 2 months ago
Alternatives and similar repositories for agentdojo
Users that are interested in agentdojo are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆158Jul 2, 2024Updated 2 years ago
- Agent Security Bench (ASB)☆283Apr 16, 2026Updated 3 months ago
- The official implementation of the paper "AgentDyn: Are Your Agent Security Defenses Deployable in Real-World Dynamic Environments?"☆73May 19, 2026Updated 2 months ago
- Repo for the research paper "SecAlign: Defending Against Prompt Injection with Preference Optimization"☆100Jul 2, 2026Updated last month
- ☆157Aug 11, 2025Updated last year
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- This repository provides a benchmark for prompt injection attacks and defenses in LLMs☆477Oct 29, 2025Updated 9 months ago
- Code for the paper "Defeating Prompt Injections by Design"☆367Jun 20, 2025Updated last year
- [ICML'25] MELON: Provable Defense Against Indirect Prompt Injection Attacks in AI Agents☆37Jul 31, 2025Updated last year
- Official implementation of the WASP web agent security benchmark☆98Apr 13, 2026Updated 4 months ago
- Repo for the paper "Meta SecAlign: A Secure Foundation LLM Against Prompt Injection Attacks".☆70Jun 11, 2026Updated 2 months ago
- official implementation of [USENIX Sec'25] StruQ: Defending Against Prompt Injection with Structured Queries☆77Nov 10, 2025Updated 9 months ago
- Code&Data for the paper "Watch Out for Your Agents! Investigating Backdoor Threats to LLM-Based Agents" [NeurIPS 2024]☆117Sep 27, 2024Updated last year
- [EMNLP 2025 Oral] IPIGuard: A Novel Tool Dependency Graph-Based Defense Against Indirect Prompt Injection in LLM Agents☆22Sep 16, 2025Updated 10 months ago
- Progent: Securing AI Agents with Privilege Control☆47May 14, 2026Updated 3 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- ☆40Mar 12, 2025Updated last year
- [NeurIPS 2025] The official implementation of the paper "DRIFT: Dynamic Rule-Based Defense with Injection Isolation for Securing LLM Agen…☆60Jul 16, 2026Updated 3 weeks ago
- A benchmark for evaluating the robustness of LLMs and defenses to indirect prompt injection attacks.☆152Apr 15, 2024Updated 2 years ago
- [ACL 2026] PIArena: A Platform for Prompt Injection Evaluation☆45Apr 28, 2026Updated 3 months ago
- Official Implementation of "ToolSafe: Enhancing Tool Invocation Safety of LLM-based Agents via Proactive Step-level Guardrail and Feedbac…☆75Mar 25, 2026Updated 4 months ago
- PFI: Prompt Flow Integrity to Prevent Privilege Escalation in LLM Agents☆31Mar 26, 2025Updated last year
- Repo for the paper "Defending Against Prompt Injection With a Few DefensiveTokens"☆19Nov 10, 2025Updated 9 months ago
- ☆48Dec 9, 2025Updated 8 months ago
- Guardrails for secure and robust agent development☆445Jan 12, 2026Updated 7 months ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- [ICML 2026] Official implementation for paper "Unsafer in Many Turns: Benchmarking and Defending Multi-Turn Safety Risks in Tool-Using Ag…☆32Jul 31, 2026Updated 2 weeks ago
- [ICLR 2025] Dissecting adversarial robustness of multimodal language model agents☆140Feb 19, 2025Updated last year
- [NeurIPS 2024] Official implementation for "AgentPoison: Red-teaming LLM Agents via Memory or Knowledge Base Backdoor Poisoning"☆235Jun 17, 2026Updated last month
- Official release of code for the paper RL is a hammer and LLMs are nails A simple RL approach to stronger prompt injection attacks☆53May 6, 2026Updated 3 months ago
- ☆22Jun 12, 2026Updated 2 months ago
- Skill-Inject: Measuring Agent Vulnerability to Skill File Attacks☆91Aug 3, 2026Updated last week
- PISanitizer: Preventing Prompt Injection to Long-Context LLMs via Prompt Sanitization☆18Dec 10, 2025Updated 8 months ago
- [NeurIPS'24] RedCode: Risky Code Execution and Generation Benchmark for Code Agents☆87Apr 24, 2026Updated 3 months ago
- [ICLR 2026] Official implementation of "ChatInject: Abusing Chat Templates for Prompt Injection in LLM Agents"☆21Mar 23, 2026Updated 4 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- AgentSentinel: An End-to-End and Real-Time Security Defense Framework for Computer-Use Agents☆35Aug 31, 2025Updated 11 months ago
- Code for our NAACL2025 accepted paper: Attention Tracker: Detecting Prompt Injection Attacks in LLMs☆29Sep 19, 2025Updated 10 months ago
- [ICLR'24 Spotlight] A language model (LM)-based emulation framework for identifying the risks of LM agents with tool use☆217Mar 22, 2024Updated 2 years ago
- JailbreakBench: An Open Robustness Benchmark for Jailbreaking Language Models [NeurIPS 2024 Datasets and Benchmarks Track]☆651Apr 4, 2025Updated last year
- TaskTracker is an approach to detecting task drift in Large Language Models (LLMs) by analysing their internal activations. It provides a…☆94Sep 1, 2025Updated 11 months ago
- [ACL 2025] The official code for "AGrail: A Lifelong Agent Guardrail with Effective and Adaptive Safety Detection".☆44Updated this week
- HarmBench: A Standardized Evaluation Framework for Automated Red Teaming and Robust Refusal☆1,028Aug 16, 2024Updated last year