microsoft / BIPIA
A benchmark for evaluating the robustness of LLMs and defenses to indirect prompt injection attacks.
☆46Updated 6 months ago
Related projects ⓘ
Alternatives and complementary repositories for BIPIA
- The official implementation of our pre-print paper "Automatic and Universal Prompt Injection Attacks against Large Language Models".☆32Updated 2 weeks ago
- ☆37Updated 4 months ago
- ☆72Updated last year
- Official Repository for ACL 2024 Paper SafeDecoding: Defending against Jailbreak Attacks via Safety-Aware Decoding☆96Updated 3 months ago
- This repository provides implementation to formalize and benchmark Prompt Injection attacks and defenses☆141Updated 2 months ago
- A Dynamic Environment to Evaluate Attacks and Defenses for LLM Agents.☆58Updated this week
- Implementation of BEAST adversarial attack for language models (ICML 2024)☆72Updated 5 months ago
- Papers about red teaming LLMs and Multimodal models.☆77Updated 3 weeks ago
- PAL: Proxy-Guided Black-Box Attack on Large Language Models☆46Updated 2 months ago
- TAP: An automated jailbreaking method for black-box LLMs☆117Updated 8 months ago
- A collection of automated evaluators for assessing jailbreak attempts.☆71Updated 4 months ago
- Repo for the research paper "Aligning LLMs to Be Robust Against Prompt Injection"☆18Updated last week
- [ICML 2024] COLD-Attack: Jailbreaking LLMs with Stealthiness and Controllability☆104Updated last month
- ☆35Updated 9 months ago
- JailbreakBench: An Open Robustness Benchmark for Jailbreaking Language Models [NeurIPS 2024 Datasets and Benchmarks Track]☆225Updated last month
- Package to optimize Adversarial Attacks against (Large) Language Models with Varied Objectives☆63Updated 8 months ago
- LLM Self Defense: By Self Examination, LLMs know they are being tricked☆26Updated 5 months ago
- [NeurIPS 2024] Official implementation for "AgentPoison: Red-teaming LLM Agents via Memory or Knowledge Base Backdoor Poisoning"☆55Updated 3 months ago
- Jailbreaking Leading Safety-Aligned LLMs with Simple Adaptive Attacks [arXiv, Apr 2024]☆211Updated last month
- Official implementation of AdvPrompter https//arxiv.org/abs/2404.16873☆120Updated 6 months ago
- [USENIX Security 2025] PoisonedRAG: Knowledge Corruption Attacks to Retrieval-Augmented Generation of Large Language Models☆90Updated 3 weeks ago
- Jailbreaking Large Vision-language Models via Typographic Visual Prompts☆85Updated 6 months ago
- SecGPT: An execution isolation architecture for LLM-based systems☆47Updated last week
- [USENIX'24] Prompt Stealing Attacks Against Text-to-Image Generation Models☆22Updated last month
- ☆33Updated 3 months ago
- Finding trojans in aligned LLMs. Official repository for the competition hosted at SaTML 2024.☆107Updated 4 months ago
- WMDP is a LLM proxy benchmark for hazardous knowledge in bio, cyber, and chemical security. We also release code for RMU, an unlearning m…☆78Updated 6 months ago
- Python package for measuring memorization in LLMs.☆118Updated last month
- An unofficial implementation of AutoDAN attack on LLMs (arXiv:2310.15140)☆29Updated 9 months ago
- Codes and datasets of the paper Red-Teaming Large Language Models using Chain of Utterances for Safety-Alignment☆78Updated 8 months ago