hckrnws
Domain-Camouflaged Injection Attacks Evade Detection in Multi-Agent LLM Systems
(arxiv.org)
38
4
by sbulaev
by sbulaev
[deleted]
There are unlimited combinations of tokens that can be used to attack an LLM system. The idea that some kind of "detector" can catch them all just feels inherently absurd to me.
[deleted]
[dead]
[dead]
[dead]
[dead]