ethz-spylab / agentdojo
A Dynamic Environment to Evaluate Attacks and Defenses for LLM Agents.
☆94Updated this week
Alternatives and similar repositories for agentdojo:
Users that are interested in agentdojo are comparing it to the libraries listed below
- ☆52Updated 7 months ago
- [NeurIPS 2024] Official implementation for "AgentPoison: Red-teaming LLM Agents via Memory or Knowledge Base Backdoor Poisoning"☆92Updated 3 weeks ago
- Package to optimize Adversarial Attacks against (Large) Language Models with Varied Objectives☆66Updated 11 months ago
- Repo for the research paper "SecAlign: Defending Against Prompt Injection with Preference Optimization"☆37Updated last month
- The official implementation of our pre-print paper "Automatic and Universal Prompt Injection Attacks against Large Language Models".☆40Updated 3 months ago
- Official implementation of AdvPrompter https//arxiv.org/abs/2404.16873☆140Updated 9 months ago
- A benchmark for evaluating the robustness of LLMs and defenses to indirect prompt injection attacks.☆58Updated 10 months ago
- Code to generate NeuralExecs (prompt injection for LLMs)☆19Updated 2 months ago
- Official Repository for ACL 2024 Paper SafeDecoding: Defending against Jailbreak Attacks via Safety-Aware Decoding☆117Updated 7 months ago
- [NDSS'25 Poster] A collection of automated evaluators for assessing jailbreak attempts.☆110Updated this week
- Papers about red teaming LLMs and Multimodal models.☆96Updated 3 months ago
- ☆74Updated 2 weeks ago
- An unofficial implementation of AutoDAN attack on LLMs (arXiv:2310.15140)☆35Updated last year
- [NeurIPS'24] RedCode: Risky Code Execution and Generation Benchmark for Code Agents☆26Updated 2 months ago
- Dataset for the Tensor Trust project☆36Updated 11 months ago
- AmpleGCG: Learning a Universal and Transferable Generator of Adversarial Attacks on Both Open and Closed LLM☆55Updated 3 months ago
- ☆39Updated 6 months ago
- PAL: Proxy-Guided Black-Box Attack on Large Language Models☆49Updated 6 months ago
- WMDP is a LLM proxy benchmark for hazardous knowledge in bio, cyber, and chemical security. We also release code for RMU, an unlearning m…☆101Updated 9 months ago
- ☆91Updated last year
- TAP: An automated jailbreaking method for black-box LLMs☆145Updated 2 months ago
- Official repository for "Robust Prompt Optimization for Defending Language Models Against Jailbreaking Attacks"☆50Updated 6 months ago
- This is the starter kit for the Trojan Detection Challenge 2023 (LLM Edition), a NeurIPS 2023 competition.☆84Updated 9 months ago
- This repository provides implementation to formalize and benchmark Prompt Injection attacks and defenses☆172Updated last month
- [ICML 2024] COLD-Attack: Jailbreaking LLMs with Stealthiness and Controllability☆134Updated 2 months ago
- ☆20Updated last year
- ☆33Updated 6 months ago
- A fast + lightweight implementation of the GCG algorithm in PyTorch☆180Updated last week
- [Arxiv 2024] Dissecting Adversarial Robustness of Multimodal LM Agents☆60Updated last month
- official implementation of [USENIX Sec'25] StruQ: Defending Against Prompt Injection with Structured Queries☆27Updated 2 months ago