microsoft / TaskTracker
TaskTracker is an approach to detecting task drift in Large Language Models (LLMs) by analysing their internal activations. It provides a simple linear probe-based method and a more sophisticated metric learning method to achieve this. The project also releases the computationally expensive activation data to stimulate further AI safety research…
☆53Updated last month
Alternatives and similar repositories for TaskTracker:
Users that are interested in TaskTracker are comparing it to the libraries listed below
- A benchmark for evaluating the robustness of LLMs and defenses to indirect prompt injection attacks.☆65Updated last year
- Package to optimize Adversarial Attacks against (Large) Language Models with Varied Objectives☆68Updated last year
- A Dynamic Environment to Evaluate Attacks and Defenses for LLM Agents.☆126Updated 2 weeks ago
- Repo for the research paper "SecAlign: Defending Against Prompt Injection with Preference Optimization"☆44Updated 2 weeks ago
- The official implementation of our pre-print paper "Automatic and Universal Prompt Injection Attacks against Large Language Models".☆45Updated 5 months ago
- PAL: Proxy-Guided Black-Box Attack on Large Language Models☆50Updated 8 months ago
- Fluent student-teacher redteaming☆20Updated 8 months ago
- Code to generate NeuralExecs (prompt injection for LLMs)☆20Updated 4 months ago
- [NDSS'25 Best Technical Poster] A collection of automated evaluators for assessing jailbreak attempts.☆147Updated 3 weeks ago
- [ICML 2024] COLD-Attack: Jailbreaking LLMs with Stealthiness and Controllability☆149Updated 4 months ago
- ☆97Updated last year
- ☆38Updated 5 months ago
- official implementation of [USENIX Sec'25] StruQ: Defending Against Prompt Injection with Structured Queries☆32Updated this week
- ☆58Updated 9 months ago
- Adversarial Attacks on GPT-4 via Simple Random Search [Dec 2023]☆43Updated 11 months ago
- LLM Self Defense: By Self Examination, LLMs know they are being tricked☆32Updated 11 months ago
- Dataset for the Tensor Trust project☆39Updated last year
- ☆31Updated 5 months ago
- TAP: An automated jailbreaking method for black-box LLMs☆164Updated 4 months ago
- ☆84Updated last year
- ☆42Updated 8 months ago
- Jailbreak artifacts for JailbreakBench☆57Updated 5 months ago
- ☆54Updated 4 months ago
- ☆27Updated last month
- Does Refusal Training in LLMs Generalize to the Past Tense? [ICLR 2025]☆67Updated 2 months ago
- Contains random samples referenced in the paper "Sleeper Agents: Training Robustly Deceptive LLMs that Persist Through Safety Training".☆100Updated last year
- Open One-Stop Moderation Tools for Safety Risks, Jailbreaks, and Refusals of LLMs☆73Updated 4 months ago
- Accompanying code and SEP dataset for the "Can LLMs Separate Instructions From Data? And What Do We Even Mean By That?" paper.☆50Updated last month
- [ACL24] Official Repo of Paper `ArtPrompt: ASCII Art-based Jailbreak Attacks against Aligned LLMs`☆67Updated last month
- Codebase for Obfuscated Activations Bypass LLM Latent-Space Defenses☆15Updated 2 months ago