microsoft / TaskTracker
TaskTracker is an approach to detecting task drift in Large Language Models (LLMs) by analysing their internal activations. It provides a simple linear probe-based method and a more sophisticated metric learning method to achieve this. The project also releases the computationally expensive activation data to stimulate further AI safety research…
☆55Updated 2 months ago
Alternatives and similar repositories for TaskTracker
Users that are interested in TaskTracker are comparing it to the libraries listed below
Sorting:
- A benchmark for evaluating the robustness of LLMs and defenses to indirect prompt injection attacks.☆66Updated last year
- Repo for the research paper "SecAlign: Defending Against Prompt Injection with Preference Optimization"☆45Updated last month
- A Dynamic Environment to Evaluate Attacks and Defenses for LLM Agents.☆154Updated last week
- Package to optimize Adversarial Attacks against (Large) Language Models with Varied Objectives☆68Updated last year
- Code to generate NeuralExecs (prompt injection for LLMs)☆21Updated 5 months ago
- The official implementation of our pre-print paper "Automatic and Universal Prompt Injection Attacks against Large Language Models".☆46Updated 6 months ago
- ☆32Updated 6 months ago
- PAL: Proxy-Guided Black-Box Attack on Large Language Models☆50Updated 9 months ago
- ☆100Updated 2 months ago
- ☆97Updated last year
- Fluent student-teacher redteaming☆20Updated 9 months ago
- A repository of Language Model Vulnerabilities and Exposures (LVEs).☆109Updated last year
- ☆55Updated 4 months ago
- Adversarial Attacks on GPT-4 via Simple Random Search [Dec 2023]☆43Updated last year
- [NDSS'25 Best Technical Poster] A collection of automated evaluators for assessing jailbreak attempts.☆156Updated last month
- Code to break Llama Guard☆31Updated last year
- official implementation of [USENIX Sec'25] StruQ: Defending Against Prompt Injection with Structured Queries☆35Updated 3 weeks ago
- Open One-Stop Moderation Tools for Safety Risks, Jailbreaks, and Refusals of LLMs☆76Updated 5 months ago
- Dataset for the Tensor Trust project☆40Updated last year
- ☆62Updated 10 months ago
- [NeurIPS 2024] Official implementation for "AgentPoison: Red-teaming LLM Agents via Memory or Knowledge Base Backdoor Poisoning"☆118Updated last month
- Contains random samples referenced in the paper "Sleeper Agents: Training Robustly Deceptive LLMs that Persist Through Safety Training".☆102Updated last year
- ☆25Updated 9 months ago
- LLM Self Defense: By Self Examination, LLMs know they are being tricked☆32Updated 11 months ago
- Implementation of BEAST adversarial attack for language models (ICML 2024)☆86Updated last year
- Code&Data for the paper "Watch Out for Your Agents! Investigating Backdoor Threats to LLM-Based Agents" [NeurIPS 2024]☆72Updated 7 months ago
- ☆111Updated 10 months ago
- This repository provides a benchmark for prompt Injection attacks and defenses☆196Updated 2 weeks ago
- ☆16Updated 5 months ago
- ☆27Updated 2 months ago