sleeepeer / PoisonedRAG
[USENIX Security 2025] PoisonedRAG: Knowledge Corruption Attacks to Retrieval-Augmented Generation of Large Language Models
☆138Updated last month
Alternatives and similar repositories for PoisonedRAG:
Users that are interested in PoisonedRAG are comparing it to the libraries listed below
- Code&Data for the paper "Watch Out for Your Agents! Investigating Backdoor Threats to LLM-Based Agents" [NeurIPS 2024]☆67Updated 6 months ago
- ☆25Updated 5 months ago
- [NeurIPS 2024] Official implementation for "AgentPoison: Red-teaming LLM Agents via Memory or Knowledge Base Backdoor Poisoning"☆111Updated 2 months ago
- BackdoorLLM: A Comprehensive Benchmark for Backdoor Attacks on Large Language Models☆130Updated last month
- ☆54Updated 3 months ago
- [ICLR24] Official Repo of BadChain: Backdoor Chain-of-Thought Prompting for Large Language Models☆33Updated 8 months ago
- ☆81Updated 2 months ago
- ☆18Updated 6 months ago
- [NDSS'25 Best Technical Poster] A collection of automated evaluators for assessing jailbreak attempts.☆147Updated last week
- This repository provides implementation to formalize and benchmark Prompt Injection attacks and defenses☆181Updated 2 months ago
- Agent Security Bench (ASB)☆71Updated 2 weeks ago
- ☆58Updated 9 months ago
- Official implementation of paper: DrAttack: Prompt Decomposition and Reconstruction Makes Powerful LLM Jailbreakers☆52Updated 7 months ago
- Code to generate NeuralExecs (prompt injection for LLMs)☆20Updated 4 months ago
- ☆55Updated last month
- [CIKM 2024] Trojan Activation Attack: Attack Large Language Models using Activation Steering for Safety-Alignment.☆23Updated 8 months ago
- A toolkit to assess data privacy in LLMs (under development)☆57Updated 3 months ago
- Chain of Attack: a Semantic-Driven Contextual Multi-Turn attacker for LLM☆29Updated 2 months ago
- ☆14Updated 4 months ago
- [AAAI'25 (Oral)] Jailbreaking Large Vision-language Models via Typographic Visual Prompts☆130Updated last month
- A survey of privacy problems in Large Language Models (LLMs). Contains summary of the corresponding paper along with relevant code☆67Updated 10 months ago
- An LLM can Fool Itself: A Prompt-Based Adversarial Attack (ICLR 2024)☆83Updated 2 months ago
- AmpleGCG: Learning a Universal and Transferable Generator of Adversarial Attacks on Both Open and Closed LLM☆60Updated 5 months ago
- Official implementation of AdvPrompter https//arxiv.org/abs/2404.16873☆150Updated 11 months ago
- ☆20Updated 7 months ago
- Benchmark evaluation code for "SORRY-Bench: Systematically Evaluating Large Language Model Safety Refusal" (ICLR 2025)☆50Updated last month
- ☆20Updated last year
- Code for Findings-EMNLP 2023 paper: Multi-step Jailbreaking Privacy Attacks on ChatGPT☆33Updated last year
- ☆80Updated last year
- An unofficial implementation of AutoDAN attack on LLMs (arXiv:2310.15140)☆37Updated last year