[ICLR2026] Toward Universal and Transferable Jailbreak Attacks on Vision-Language Models
☆30Apr 19, 2026Updated 4 months ago
Alternatives and similar repositories for UltraBreak
Users that are interested in UltraBreak are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- [ICLR 2025] BlueSuffix: Reinforced Blue Teaming for Vision-Language Models Against Jailbreak Attacks☆31Nov 2, 2025Updated 9 months ago
- [ICML 2025] X-Transfer Attacks: Towards Super Transferable Adversarial Attacks on CLIP☆48Feb 3, 2026Updated 6 months ago
- ☆32Jun 13, 2026Updated 2 months ago
- Imbalanced Gradients: A New Cause of Overestimated Adversarial Robustness. (MD attacks)☆11Aug 29, 2020Updated 6 years ago
- [MM'25] JPS: Jailbreak Multimodal Large Language Models with Collaborative Visual Perturbation and Textual Steering☆22Dec 23, 2025Updated 8 months ago
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- Code to conduct an embedding attack on LLMs☆34Jan 10, 2025Updated last year
- The code for ACM MM2024 (Multimodal Unlearnable Examples: Protecting Data against Multimodal Contrastive Learning)☆15Jul 18, 2024Updated 2 years ago
- ☆22Jun 12, 2026Updated 2 months ago
- [IEEE TDSC] Shortcuts Everywhere and Nowhere: Exploring Multi-Trigger Backdoor Attacks☆16Oct 7, 2025Updated 10 months ago
- Official Code of "Random Parameter Pruning Attack (Accepeted by CVPR26)"☆16Feb 26, 2026Updated 6 months ago
- [ICLR2025] Detecting Backdoor Samples in Contrastive Language Image Pretraining☆24Feb 26, 2025Updated last year
- ☆49Mar 18, 2026Updated 5 months ago
- A simple implementation of BadNets on MNIST☆34Jul 29, 2019Updated 7 years ago
- CVPR 2025 - Anyattack: Towards Large-scale Self-supervised Adversarial Attacks on Vision-language Models☆74Aug 7, 2025Updated last year
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- BackdoorAgent is a stage-aware framework and benchmark that instruments LLM-agent workflows (planning, memory, tools) to systematically i…☆46Mar 16, 2026Updated 5 months ago
- Code for Transferable Unlearnable Examples☆22Mar 11, 2023Updated 3 years ago
- ☆15Jun 2, 2026Updated 2 months ago
- Safety at Scale: A Comprehensive Survey of Large Model and Agent Safety☆284Apr 12, 2026Updated 4 months ago
- Strongest attack against Feature Scatter and Adversarial Interpolation☆25Dec 26, 2019Updated 6 years ago
- [ICLR2023] Distilling Cognitive Backdoor Patterns within an Image☆38Oct 29, 2025Updated 10 months ago
- Official Implementation of ACL 2025 paper "GraphCheck: Breaking Long-Term Text Barriers with Extracted Knowledge Graph-Powered Fact-Check…☆20May 30, 2025Updated last year
- [NeurIPS 2023] Content-based Unrestricted Adversarial Attack☆31Jul 21, 2025Updated last year
- ☆26Mar 24, 2023Updated 3 years ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- [NDSS 2026] Official repo for Odysseus: Jailbreaking Commercial Multimodal LLM-integrated Systems via Dual Steganography☆61Mar 14, 2026Updated 5 months ago
- [ICLR'26] Official code for "Self-Jailbreaking: Language Models Can Reason Themselves Out of Safety Alignment After Benign Reasoning Trai…☆16Mar 31, 2026Updated 4 months ago
- [TDSC 2025] Hiding Faces in Plain Sight: Defending DeepFakes by Disrupting Face Detection☆17Jun 18, 2026Updated 2 months ago
- Code for ICML2019 Paper "On the Convergence and Robustness of Adversarial Training"☆34Apr 28, 2020Updated 6 years ago
- ☆17Nov 24, 2025Updated 9 months ago
- ☆33Mar 20, 2026Updated 5 months ago
- [NeurIPS 2024] Exploring Structured Semantic Priors Underlying Diffusion Score for Test-time Adaptation☆22Mar 15, 2025Updated last year
- Weakly Supervised Gaussian Contrastive Grounding with Large Multimodal Models for Video Question Answering [ACM MM'24]☆10Jul 22, 2024Updated 2 years ago
- Composite Backdoor Attacks Against Large Language Models☆26Apr 12, 2024Updated 2 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- [ACL 2026] PIArena: A Platform for Prompt Injection Evaluation☆46Apr 28, 2026Updated 4 months ago
- Adversarial Attacks against Closed-Source MLLMs via Feature Optimal Alignment (NeurIPS 2025)☆68Nov 5, 2025Updated 9 months ago
- [NeurIPS 2025] BackdoorLLM: A Comprehensive Benchmark for Backdoor Attacks and Defenses on Large Language Models☆326Mar 13, 2026Updated 5 months ago
- OmniPerson: Unified Identity-Preserving Pedestrian Generation☆21Dec 6, 2025Updated 8 months ago
- The official implementation of the paper "AgentDyn: Are Your Agent Security Defenses Deployable in Real-World Dynamic Environments?"☆76May 19, 2026Updated 3 months ago
- [AAAI2023] NAS-LID: Efficient Neural Architecture Search with Local Intrinsic Dimension☆17Dec 20, 2022Updated 3 years ago
- Text file containing NSFW words aggregated from various sources.☆12Aug 23, 2020Updated 6 years ago