Benchmarking Poisoning Attacks against Retrieval-Augmented Generation
Fuente:
arXiv
Saved in:
| Main Authors: | Zhang, Baolei, Xin, Haoran, Li, Jiatong, Zhang, Dongzhe, Fang, Minghong, Liu, Zhuqing, Nie, Lihai, Liu, Zheli |
|---|---|
| Format: | Preprint |
| Published: |
2025
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
Practical Poisoning Attacks against Retrieval-Augmented Generation
by: Zhang, Baolei, et al.
Published: (2025)
by: Zhang, Baolei, et al.
Published: (2025)
Traceback of Poisoning Attacks to Retrieval-Augmented Generation
by: Zhang, Baolei, et al.
Published: (2025)
by: Zhang, Baolei, et al.
Published: (2025)
Who Taught the Lie? Responsibility Attribution for Poisoned Knowledge in Retrieval-Augmented Generation
by: Zhang, Baolei, et al.
Published: (2025)
by: Zhang, Baolei, et al.
Published: (2025)
Secure Retrieval-Augmented Generation against Poisoning Attacks
by: Cheng, Zirui, et al.
Published: (2025)
by: Cheng, Zirui, et al.
Published: (2025)
Adversarial Attacks to Multi-Modal Models
by: Dou, Zhihao, et al.
Published: (2024)
by: Dou, Zhihao, et al.
Published: (2024)
Poisoning Federated Recommender Systems with Fake Users
by: Yin, Ming, et al.
Published: (2024)
by: Yin, Ming, et al.
Published: (2024)
When the Server Steps In: Calibrated Updates for Fair Federated Learning
by: Yu, Tianrun, et al.
Published: (2026)
by: Yu, Tianrun, et al.
Published: (2026)
Few-shot Model Extraction Attacks against Sequential Recommender Systems
by: Zhang, Hui, et al.
Published: (2024)
by: Zhang, Hui, et al.
Published: (2024)
Mask-based Membership Inference Attacks for Retrieval-Augmented Generation
by: Liu, Mingrui, et al.
Published: (2024)
by: Liu, Mingrui, et al.
Published: (2024)
Unveiling Vulnerabilities of Contrastive Recommender Systems to Poisoning Attacks
by: Wang, Zongwei, et al.
Published: (2023)
by: Wang, Zongwei, et al.
Published: (2023)
Retrieval-Augmented Review Generation for Poisoning Recommender Systems
by: Yang, Shiyi, et al.
Published: (2025)
by: Yang, Shiyi, et al.
Published: (2025)
HijackRAG: Hijacking Attacks against Retrieval-Augmented Large Language Models
by: Zhang, Yucheng, et al.
Published: (2024)
by: Zhang, Yucheng, et al.
Published: (2024)
Multi-granular Adversarial Attacks against Black-box Neural Ranking Models
by: Liu, Yu-An, et al.
Published: (2024)
by: Liu, Yu-An, et al.
Published: (2024)
Your RAG is Unfair: Exposing Fairness Vulnerabilities in Retrieval-Augmented Generation via Backdoor Attacks
by: Bagwe, Gaurav, et al.
Published: (2025)
by: Bagwe, Gaurav, et al.
Published: (2025)
Manipulating Recommender Systems: A Survey of Poisoning Attacks and Countermeasures
by: Nguyen, Thanh Toan, et al.
Published: (2024)
by: Nguyen, Thanh Toan, et al.
Published: (2024)
Connect the Dots: Knowledge Graph-Guided Crawler Attack on Retrieval-Augmented Generation Systems
by: Yao, Mengyu, et al.
Published: (2026)
by: Yao, Mengyu, et al.
Published: (2026)
Differentially Private Datastore Generation for Retrieval-Augmented Inference
by: Abouelenein, Abdelrahman, et al.
Published: (2026)
by: Abouelenein, Abdelrahman, et al.
Published: (2026)
Poisoning Attacks and Defenses in Recommender Systems: A Survey
by: Wang, Zongwei, et al.
Published: (2024)
by: Wang, Zongwei, et al.
Published: (2024)
The RAG Paradox: A Black-Box Attack Exploiting Unintentional Vulnerabilities in Retrieval-Augmented Generation Systems
by: Choi, Chanwoo, et al.
Published: (2025)
by: Choi, Chanwoo, et al.
Published: (2025)
Exposing Privacy Risks in Graph Retrieval-Augmented Generation
by: Liu, Jiale, et al.
Published: (2025)
by: Liu, Jiale, et al.
Published: (2025)
Poisoning Attacks and Defenses to Federated Unlearning
by: Wang, Wenbin, et al.
Published: (2025)
by: Wang, Wenbin, et al.
Published: (2025)
AgentPoison: Red-teaming LLM Agents via Poisoning Memory or Knowledge Bases
by: Chen, Zhaorun, et al.
Published: (2024)
by: Chen, Zhaorun, et al.
Published: (2024)
Topic-FlipRAG: Topic-Orientated Adversarial Opinion Manipulation Attacks to Retrieval-Augmented Generation Models
by: Gong, Yuyang, et al.
Published: (2025)
by: Gong, Yuyang, et al.
Published: (2025)
DiscourseFlip: An Oblique Discourse-Level Opinion Manipulation Attack against Black-box Retrieval-Augmented Generation
by: Gong, Yuyang, et al.
Published: (2026)
by: Gong, Yuyang, et al.
Published: (2026)
SafeRAG: Benchmarking Security in Retrieval-Augmented Generation of Large Language Model
by: Liang, Xun, et al.
Published: (2025)
by: Liang, Xun, et al.
Published: (2025)
RobustMask: Certified Robustness against Adversarial Neural Ranking Attack via Randomized Masking
by: Liu, Jiawei, et al.
Published: (2025)
by: Liu, Jiawei, et al.
Published: (2025)
Poisoning Deep Learning Based Recommender Model in Federated Learning Scenarios
by: Rong, Dazhong, et al.
Published: (2022)
by: Rong, Dazhong, et al.
Published: (2022)
BiRD: A Bidirectional Ranking Defense Mechanism for Retrieval Augmented Generation
by: Gao, Chengcai, et al.
Published: (2026)
by: Gao, Chengcai, et al.
Published: (2026)
Retrieval Pivot Attacks in Hybrid RAG: Measuring and Mitigating Amplified Leakage from Vector Seeds to Graph Expansion
by: Thornton, Scott
Published: (2026)
by: Thornton, Scott
Published: (2026)
Practical Framework for Privacy-Preserving and Byzantine-robust Federated Learning
by: Zhang, Baolei, et al.
Published: (2025)
by: Zhang, Baolei, et al.
Published: (2025)
KnowML: Improving Generalization of ML-NIDS with Attack Knowledge Graphs
by: Guo, Xin Fan, et al.
Published: (2025)
by: Guo, Xin Fan, et al.
Published: (2025)
Trans-RAG: Query-Centric Vector Transformation for Secure Cross-Organizational Retrieval
by: Liu, Yu, et al.
Published: (2026)
by: Liu, Yu, et al.
Published: (2026)
Unveiling the Resilience of LLM-Enhanced Search Engines against Black-Hat SEO Manipulation
by: Chen, Pei, et al.
Published: (2026)
by: Chen, Pei, et al.
Published: (2026)
Poisoning Decentralized Collaborative Recommender System and Its Countermeasures
by: Zheng, Ruiqi, et al.
Published: (2024)
by: Zheng, Ruiqi, et al.
Published: (2024)
RAID: An In-Training Defense against Attribute Inference Attacks in Recommender Systems
by: Feng, Xiaohua, et al.
Published: (2025)
by: Feng, Xiaohua, et al.
Published: (2025)
ProveRAG: Provenance-Driven Vulnerability Analysis with Automated Retrieval-Augmented LLMs
by: Fayyazi, Reza, et al.
Published: (2024)
by: Fayyazi, Reza, et al.
Published: (2024)
RAGRank: Using PageRank to Counter Poisoning in CTI LLM Pipelines
by: Jia, Austin, et al.
Published: (2025)
by: Jia, Austin, et al.
Published: (2025)
Adversarial Hubness in Multi-Modal Retrieval
by: Zhang, Tingwei, et al.
Published: (2024)
by: Zhang, Tingwei, et al.
Published: (2024)
HGAttack: Transferable Heterogeneous Graph Adversarial Attack
by: Zhao, He, et al.
Published: (2024)
by: Zhao, He, et al.
Published: (2024)
PIR-RAG: A System for Private Information Retrieval in Retrieval-Augmented Generation
by: Wang, Baiqiang, et al.
Published: (2025)
by: Wang, Baiqiang, et al.
Published: (2025)
Similar Items
-
Practical Poisoning Attacks against Retrieval-Augmented Generation
by: Zhang, Baolei, et al.
Published: (2025) -
Traceback of Poisoning Attacks to Retrieval-Augmented Generation
by: Zhang, Baolei, et al.
Published: (2025) -
Who Taught the Lie? Responsibility Attribution for Poisoned Knowledge in Retrieval-Augmented Generation
by: Zhang, Baolei, et al.
Published: (2025) -
Secure Retrieval-Augmented Generation against Poisoning Attacks
by: Cheng, Zirui, et al.
Published: (2025) -
Adversarial Attacks to Multi-Modal Models
by: Dou, Zhihao, et al.
Published: (2024)