paper-with-me

홈 › Papers

Coercing LLMs to do and reveal (almost) anything

2024-02-21 · Jonas Geiping, Alex Stein, Manli Shu, Khalid Saifullah, Yuxin Wen, Tom Goldstein

It has recently been shown that adversarial attacks on large language models (LLMs) can "jailbreak" the model into making harmful statements. In this work, we argue that the spectrum of adversarial attacks on LLMs is much larger than merely jailbreaking. We provide a broad overview of possible attack surfaces and attack goals. Based on a series of concrete examples, we discuss, categorize and systematize attacks that coerce varied unintended behaviors, such as misdirection, model control, denial-of-service, or data extraction. We analyze these attacks in controlled experiments, and find that many of them stem from the practice of pre-training LLMs with coding capabilities, as well as the continued existence of strange "glitch" tokens in common LLM vocabularies that should be removed for security reasons.

📄 PDF Abstract BibTeX arXiv:2402.14020

Code (1)

jonasgeiping/carving 공식 구현 pytorch

Similar Papers 제목 키워드 기반

Judge Anything: MLLM as a Judge Across Any Modality

2025-03-21 · Shu Pu, Yaochen Wang, Dongping Chen, Yuhang Chen 외

Evaluating generative foundation models on open-ended multimodal understanding (MMU) and generation (MMG) tasks across diverse modalities (e.g., images, audio, video) poses significant challenges due to the complexity of…

Hallucination

Towards medical AI misalignment: a preliminary study

2025-05-22 · Barbara Puccio, Federico Castagna, Allan Tucker, Pierangelo Veltri

Despite their staggering capabilities as assistant tools, often exceeding human performances, Large Language Models (LLMs) are still prone to jailbreak attempts from malevolent users. Although red teaming practices have …

Red Teaming

RewardAnything: Generalizable Principle-Following Reward Models

2025-06-04 · Zhuohao Yu, Jiali Zeng, Weizheng Gu, Yidong Wang 외

Reward Models, essential for guiding Large Language Model optimization, are typically trained on fixed preference datasets, resulting in rigid alignment to single, implicit preference distributions. This prevents adaptat…

Instruction FollowingLarge Language ModelModel Optimization

Zero-Shot Edge Detection with SCESAME: Spectral Clustering-based Ensemble for Segment Anything Model Estimation

2023-08-26 · Hiroaki Yamagiwa, Yusuke Takase, Hiroyuki Kambe, Ryosuke Nakamoto

This paper proposes a novel zero-shot edge detection with SCESAME, which stands for Spectral Clustering-based Ensemble for Segment Anything Model Estimation, based on the recently proposed Segment Anything Model (SAM). S…

ClusteringEdge DetectionZero Shot Segmentation

Permissive Information-Flow Analysis for Large Language Models

2024-10-04 · Shoaib Ahmed Siddiqui, Radhika Gaonkar, Boris Köpf, David Krueger 외

Large Language Models (LLMs) are rapidly becoming commodity components of larger software systems. This poses natural security and privacy problems: poisoned data retrieved from one component can change the model's behav…

Language ModelingLanguage ModellingRetrieval