From Allies to Adversaries: Manipulating LLM Tool-Calling through Adversarial Injection Paper • 2412.10198 • Published Dec 13, 2024
AdInject: Real-World Black-Box Attacks on Web Agents via Advertising Delivery Paper • 2505.21499 • Published May 27 • 2
Joint-GCG: Unified Gradient-Based Poisoning Attacks on Retrieval-Augmented Generation Systems Paper • 2506.06151 • Published Jun 6