Chain-of-Thought Poisoning Attacks against R1-based Retrieval-Augmented Generation Systems
Fuente:
arXiv
Saved in:
| Main Authors: | Song, Hongru, Liu, Yu-an, Zhang, Ruqing, Guo, Jiafeng, Fan, Yixing |
|---|---|
| Format: | Preprint |
| Published: |
2025
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
AdversarialCoT: Single-Document Retrieval Poisoning for LLM Reasoning
by: Song, Hongru, et al.
Published: (2026)
by: Song, Hongru, et al.
Published: (2026)
The Silent Saboteur: Imperceptible Adversarial Attacks against Black-Box Retrieval-Augmented Generation Systems
by: Song, Hongru, et al.
Published: (2025)
by: Song, Hongru, et al.
Published: (2025)
Attack-in-the-Chain: Bootstrapping Large Language Models for Attacks Against Black-box Neural Ranking Models
by: Liu, Yu-An, et al.
Published: (2024)
by: Liu, Yu-An, et al.
Published: (2024)
TrustRAG: An Information Assistant with Retrieval Augmented Generation
by: Fan, Yixing, et al.
Published: (2025)
by: Fan, Yixing, et al.
Published: (2025)
VeriCite: Towards Reliable Citations in Retrieval-Augmented Generation via Rigorous Verification
by: Qian, Haosheng, et al.
Published: (2025)
by: Qian, Haosheng, et al.
Published: (2025)
Does Generative Retrieval Overcome the Limitations of Dense Retrieval?
by: Zhang, Yingchen, et al.
Published: (2025)
by: Zhang, Yingchen, et al.
Published: (2025)
On the Scaling of Robustness and Effectiveness in Dense Retrieval
by: Liu, Yu-An, et al.
Published: (2025)
by: Liu, Yu-An, et al.
Published: (2025)
Multi-granular Adversarial Attacks against Black-box Neural Ranking Models
by: Liu, Yu-An, et al.
Published: (2024)
by: Liu, Yu-An, et al.
Published: (2024)
Bootstrapped Pre-training with Dynamic Identifier Prediction for Generative Retrieval
by: Tang, Yubao, et al.
Published: (2024)
by: Tang, Yubao, et al.
Published: (2024)
On the Capacity of Citation Generation by Large Language Models
by: Qian, Haosheng, et al.
Published: (2024)
by: Qian, Haosheng, et al.
Published: (2024)
Retrieval-in-the-Chain: Bootstrapping Large Language Models for Generative Retrieval
by: Zhang, Yingchen, et al.
Published: (2025)
by: Zhang, Yingchen, et al.
Published: (2025)
Continual Learning for Generative Retrieval over Dynamic Corpora
by: Chen, Jiangui, et al.
Published: (2023)
by: Chen, Jiangui, et al.
Published: (2023)
From Relevance to Utility: Evidence Retrieval with Feedback for Fact Verification
by: Zhang, Hengran, et al.
Published: (2023)
by: Zhang, Hengran, et al.
Published: (2023)
Robust Information Retrieval
by: Liu, Yu-An, et al.
Published: (2024)
by: Liu, Yu-An, et al.
Published: (2024)
A Generative Framework for Personalized Sticker Retrieval
by: Zhou, Changjiang, et al.
Published: (2025)
by: Zhou, Changjiang, et al.
Published: (2025)
An Empirical Study of Evaluating Long-form Question Answering
by: Xian, Ning, et al.
Published: (2025)
by: Xian, Ning, et al.
Published: (2025)
Benchmarking Poisoning Attacks against Retrieval-Augmented Generation
by: Zhang, Baolei, et al.
Published: (2025)
by: Zhang, Baolei, et al.
Published: (2025)
Practical Poisoning Attacks against Retrieval-Augmented Generation
by: Zhang, Baolei, et al.
Published: (2025)
by: Zhang, Baolei, et al.
Published: (2025)
On the Robustness of Generative Information Retrieval Models
by: Liu, Yu-An, et al.
Published: (2024)
by: Liu, Yu-An, et al.
Published: (2024)
Robust Neural Information Retrieval: An Adversarial and Out-of-distribution Perspective
by: Liu, Yu-An, et al.
Published: (2024)
by: Liu, Yu-An, et al.
Published: (2024)
PoisonArena: Uncovering Competing Poisoning Attacks in Retrieval-Augmented Generation
by: Chen, Liuji, et al.
Published: (2025)
by: Chen, Liuji, et al.
Published: (2025)
LLMs as Sparse Retrievers:A Framework for First-Stage Product Search
by: Song, Hongru, et al.
Published: (2025)
by: Song, Hongru, et al.
Published: (2025)
Secure Retrieval-Augmented Generation against Poisoning Attacks
by: Cheng, Zirui, et al.
Published: (2025)
by: Cheng, Zirui, et al.
Published: (2025)
Are Large Language Models Good at Utility Judgments?
by: Zhang, Hengran, et al.
Published: (2024)
by: Zhang, Hengran, et al.
Published: (2024)
Poison-RAG: Adversarial Data Poisoning Attacks on Retrieval-Augmented Generation in Recommender Systems
by: Nazary, Fatemeh, et al.
Published: (2025)
by: Nazary, Fatemeh, et al.
Published: (2025)
Robust-IR @ SIGIR 2025: The First Workshop on Robust Information Retrieval
by: Liu, Yu-An, et al.
Published: (2025)
by: Liu, Yu-An, et al.
Published: (2025)
Generative Retrieval Meets Multi-Graded Relevance
by: Tang, Yubao, et al.
Published: (2024)
by: Tang, Yubao, et al.
Published: (2024)
Traceback of Poisoning Attacks to Retrieval-Augmented Generation
by: Zhang, Baolei, et al.
Published: (2025)
by: Zhang, Baolei, et al.
Published: (2025)
CorpusBrain++: A Continual Generative Pre-Training Framework for Knowledge-Intensive Language Tasks
by: Guo, Jiafeng, et al.
Published: (2024)
by: Guo, Jiafeng, et al.
Published: (2024)
Listwise Generative Retrieval Models via a Sequential Learning Process
by: Tang, Yubao, et al.
Published: (2024)
by: Tang, Yubao, et al.
Published: (2024)
Generative Retrieval for Book search
by: Tang, Yubao, et al.
Published: (2025)
by: Tang, Yubao, et al.
Published: (2025)
Poisoning Attacks against Recommender Systems: A Survey
by: Wang, Zongwei, et al.
Published: (2024)
by: Wang, Zongwei, et al.
Published: (2024)
Towards More Robust Retrieval-Augmented Generation: Evaluating RAG Under Adversarial Poisoning Attacks
by: Su, Jinyan, et al.
Published: (2024)
by: Su, Jinyan, et al.
Published: (2024)
Reason to Retrieve: Enhancing Query Understanding through Decomposition and Interpretation
by: Zhong, Yunfei, et al.
Published: (2025)
by: Zhong, Yunfei, et al.
Published: (2025)
Accelerating the Surrogate Retraining for Poisoning Attacks against Recommender Systems
by: Wu, Yunfan, et al.
Published: (2024)
by: Wu, Yunfan, et al.
Published: (2024)
Defending Against Knowledge Poisoning Attacks During Retrieval-Augmented Generation
by: Edemacu, Kennedy, et al.
Published: (2025)
by: Edemacu, Kennedy, et al.
Published: (2025)
Integrating Chain-of-Thought into Generative Retrieval: A Preliminary Study
by: Zhang, Wenhao, et al.
Published: (2026)
by: Zhang, Wenhao, et al.
Published: (2026)
Stealthy LLM-Driven Data Poisoning Attacks Against Embedding-Based Retrieval-Augmented Recommender Systems
by: Nazary, Fatemeh, et al.
Published: (2025)
by: Nazary, Fatemeh, et al.
Published: (2025)
Thinking Forward and Backward: Multi-Objective Reinforcement Learning for Retrieval-Augmented Reasoning
by: Wei, Wenda, et al.
Published: (2025)
by: Wei, Wenda, et al.
Published: (2025)
RAGPart & RAGMask: Retrieval-Stage Defenses Against Corpus Poisoning in Retrieval-Augmented Generation
by: Pathmanathan, Pankayaraj, et al.
Published: (2025)
by: Pathmanathan, Pankayaraj, et al.
Published: (2025)
Similar Items
-
AdversarialCoT: Single-Document Retrieval Poisoning for LLM Reasoning
by: Song, Hongru, et al.
Published: (2026) -
The Silent Saboteur: Imperceptible Adversarial Attacks against Black-Box Retrieval-Augmented Generation Systems
by: Song, Hongru, et al.
Published: (2025) -
Attack-in-the-Chain: Bootstrapping Large Language Models for Attacks Against Black-box Neural Ranking Models
by: Liu, Yu-An, et al.
Published: (2024) -
TrustRAG: An Information Assistant with Retrieval Augmented Generation
by: Fan, Yixing, et al.
Published: (2025) -
VeriCite: Towards Reliable Citations in Retrieval-Augmented Generation via Rigorous Verification
by: Qian, Haosheng, et al.
Published: (2025)