[USENIX Security 2025] PoisonedRAG: Knowledge Corruption Attacks to Retrieval-Augmented Generation of Large Language Models
☆300Jan 27, 2026Updated 7 months ago
Alternatives and similar repositories for PoisonedRAG
Users that are interested in PoisonedRAG are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- [EMNLP 2023] Poisoning Retrieval Corpora by Injecting Adversarial Passages https://arxiv.org/abs/2310.19156☆51Dec 14, 2023Updated 2 years ago
- ☆33Sep 15, 2024Updated 2 years ago
- [AAAI 2026] Official implementation of "Joint-GCG: Unified Gradient-Based Poisoning Attacks on Retrieval-Augmented Generation Systems".☆19Mar 23, 2026Updated 5 months ago
- ☆25Jan 6, 2025Updated last year
- [NeurIPS 2024] Official implementation for "AgentPoison: Red-teaming LLM Agents via Memory or Knowledge Base Backdoor Poisoning"☆244Aug 16, 2026Updated last month
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- Code for "TrustRAG: Enhancing Robustness and Trustworthiness in RAG" AAAI 2026 Workshop on Trust and Control in Agentic AI (TrustAgent)☆62Mar 24, 2025Updated last year
- ☆65Mar 11, 2025Updated last year
- Official PyTorch implementation of "MM-PoisonRAG: Disrupting Multimodal RAG with Local and Global Poisoning Attacks"☆18Dec 4, 2025Updated 9 months ago
- Official Implementation of "Who Taught the Lie? Responsibility Attribution for Poisoned Knowledge in Retrieval-Augmented Generation" and …☆22Dec 24, 2025Updated 8 months ago
- [USENIX Security 2025] Topic-FlipRAG: Topic-Orientated Adversarial Opinion Manipulation Attacks to Retrieval-Augmented Generation Models☆19Jun 21, 2025Updated last year
- ☆115Jun 1, 2026Updated 3 months ago
- This repository provides a benchmark for prompt injection attacks and defenses in LLMs☆495Updated this week
- Code to generate NeuralExecs (prompt injection for LLMs)☆27Oct 5, 2025Updated 11 months ago
- [ACL'26 Main Oral] Official code for "LogicPoison: Logical Attacks on Graph Retrieval-Augmented Generation".☆45Aug 25, 2026Updated 3 weeks ago
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- Agent Security Bench (ASB)☆301Apr 16, 2026Updated 5 months ago
- Code&Data for the paper "Watch Out for Your Agents! Investigating Backdoor Threats to LLM-Based Agents" [NeurIPS 2024]☆118Sep 27, 2024Updated last year
- This repository contains data and code used for On the Risk of Misinformation Pollution with Large Language Models (EMNLP 2023 Findings).☆17Dec 14, 2023Updated 2 years ago
- [EMNLP 2026] PISanitizer: Preventing Prompt Injection to Long-Context LLMs via Prompt Sanitization☆18Aug 21, 2026Updated 3 weeks ago
- ☆15Jun 28, 2025Updated last year
- A Dynamic Environment to Evaluate Attacks and Defenses for LLM Agents.☆840Jun 2, 2026Updated 3 months ago
- Code of ICML 2025 paper "PoisonedEye: Knowledge Poisoning Attack on Retrieval-Augmented Generation based Large Vision-Language Models"☆15Oct 30, 2025Updated 10 months ago
- PISmith: Reinforcement Learning-based Red Teaming for Prompt Injection Defenses(COLM 2026)☆28Aug 27, 2026Updated 3 weeks ago
- ICL backdoor attack☆17Nov 4, 2024Updated last year
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- ☆23Oct 25, 2024Updated last year
- A fast + lightweight implementation of the GCG algorithm in PyTorch☆356May 13, 2025Updated last year
- ☆170Jul 2, 2024Updated 2 years ago
- [ACL 2026] PIArena: A Platform for Prompt Injection Evaluation☆48Aug 31, 2026Updated 2 weeks ago
- ☆32Oct 27, 2025Updated 10 months ago
- BackdoorAgent is a stage-aware framework and benchmark that instruments LLM-agent workflows (planning, memory, tools) to systematically i…☆46Mar 16, 2026Updated 6 months ago
- PFI: Prompt Flow Integrity to Prevent Privilege Escalation in LLM Agents☆32Mar 26, 2025Updated last year
- A reading list for large models safety, security, and privacy (including Awesome LLM Security, Safety, etc.).☆2,077Sep 2, 2026Updated 2 weeks ago
- Official repository for PEFTGuard: Detecting Backdoor Attacks Against Parameter-Efficient Fine-Tuning, accepted at 2025 IEEE Symposium on…☆18Jul 4, 2025Updated last year
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- Code for paper "The Philosopher’s Stone: Trojaning Plugins of Large Language Models"☆33Sep 11, 2024Updated 2 years ago
- Skill-Inject: Measuring Agent Vulnerability to Skill File Attacks☆97Aug 29, 2026Updated 2 weeks ago
- Experimental toolbox for quantum Shapley values.☆11Jan 2, 2024Updated 2 years ago
- Source code for the ACL'2025 paper titled "Unveiling privacy risks in llm agent memory"☆38Dec 2, 2025Updated 9 months ago
- ☆81Jan 21, 2026Updated 7 months ago
- [ICLR24] Official Repo of BadChain: Backdoor Chain-of-Thought Prompting for Large Language Models☆57Jul 24, 2024Updated 2 years ago
- A curated list of safety-related papers, articles, and resources focused on Large Language Models (LLMs). This repository aims to provide…☆1,911Jul 12, 2026Updated 2 months ago