paper-with-me

홈 › Papers

KEPo: Knowledge Evolution Poison on Graph-based Retrieval-Augmented Generation

2026-03-12 · Qizhi Chen, Chao Qi, Yihong Huang, Muquan Li, Rongzheng Wang, Dongyang Zhang, Ke Qin, Shuang Liang arxiv

Graph-based Retrieval-Augmented Generation (GraphRAG) constructs the Knowledge Graph (KG) from external databases to enhance the timeliness and accuracy of Large Language Model (LLM) generations. However, this reliance on external data introduces new attack surfaces. Attackers can inject poisoned texts into databases to manipulate LLMs into producing harmful target responses for attacker-chosen queries. Existing research primarily focuses on attacking conventional RAG systems. However, such methods are ineffective against GraphRAG. This robustness derives from the KG abstraction of GraphRAG, which reorganizes injected text into a graph before retrieval, thereby enabling the LLM to reason based on the restructured context instead of raw poisoned passages. To expose latent security vulnerabilities in GraphRAG, we propose Knowledge Evolution Poison (KEPo), a novel poisoning attack method specifically designed for GraphRAG. For each target query, KEPo first generates a toxic event containing poisoned knowledge based on the target answer. By fabricating event backgrounds and forging knowledge evolution paths from original facts to the toxic event, it then poisons the KG and misleads the LLM into treating the poisoned knowledge as the final result. In multi-target attack scenarios, KEPo further connects multiple attack corpora, enabling their poisoned knowledge to mutually reinforce while expanding the scale of poisoned communities, thereby amplifying attack effectiveness. Experimental results across multiple datasets demonstrate that KEPo achieves state-of-the-art attack success rates for both single-target and multi-target attacks, significantly outperforming previous methods.

📄 PDF Abstract BibTeX arXiv:2603.11501

Code (0)

등록된 구현이 없습니다.

Similar Papers 제목 키워드 기반

GraphRAG under Fire

2025-01-23 · Jiacheng Liang, Yuhui Wang, Changjiang Li, Rongyi Zhu 외

GraphRAG advances retrieval-augmented generation (RAG) by structuring external knowledge as multi-scale knowledge graphs, enabling language models to integrate both broad context and granular details in their generation.…

Knowledge GraphsRAGRelationRetrieval+1

Distribution Knowledge Embedding for Graph Pooling

2021-09-29 · KaiXuan Chen, Jie Song, Shunyu Liu, Na Yu 외

Graph-level representation learning is the pivotal step for downstream tasks that operate on the whole graph. The most common approach to this problem heretofore is graph pooling, where node features are typically averag…

Representation Learning

A Few Words Can Distort Graphs: Knowledge Poisoning Attacks on Graph-based Retrieval-Augmented Generation of Large Language Models

2025-08-06 · Jiayi Wen, Tianxin Chen, Zhirun Zheng, Cheng Huang arxiv

Graph-based Retrieval-Augmented Generation (GraphRAG) has recently emerged as a promising paradigm for enhancing large language models (LLMs) by converting raw text into structured knowledge graphs, improving both accura…

Knowledge Graphs

LogicPoison: Logical Attacks on Graph Retrieval-Augmented Generation

2026-04-03 · Yilin Xiao, Jin Chen, Qinggang Zhang, Yujing Zhang 외 arxiv

Graph-based Retrieval-Augmented Generation (GraphRAG) enhances the reasoning capabilities of Large Language Models (LLMs) by grounding their responses in structured knowledge graphs. Leveraging community detection and re…

Community DetectionLogical ReasoningKnowledge Graphs

Vis-Poison: Poisoning Visual Knowledge in Multimodal Retrieval-Augmented Generation

2026-08-21 · Rujin Liang, Zhongpu Chen, Yuhao Lei, Xin Miao arxiv

While multimodal retrieval-augmented generation (RAG) systems increasingly rely on images as external knowledge sources, the introduction of poisoned visual evidence can severely compromise multimodal large language mode…