ADAM: A Systematic Data Extraction Attack on Agent Memory via Adaptive Querying
Fuente:
arXiv
Saved in:
| Main Authors: | Lyu, Xingyu, He, Jianfeng, Wang, Ning, Hu, Yidan, Li, Tao, Chen, Danjue, Li, Shixiong, Chen, Yimin |
|---|---|
| Format: | Preprint |
| Published: |
2026
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
Buffer is All You Need: Defending Federated Learning against Backdoor Attacks under Non-iids via Buffering
by: Lyu, Xingyu, et al.
Published: (2025)
by: Lyu, Xingyu, et al.
Published: (2025)
ALDEN: Boosting Private Data Extraction from Retrieval-Augmented Generation Systems via Active Learning and Distribution Estimation
by: Lyu, Xingyu, et al.
Published: (2026)
by: Lyu, Xingyu, et al.
Published: (2026)
AudAgent: Automated Auditing of Privacy Policy Compliance in AI Agents
by: Zheng, Ye, et al.
Published: (2025)
by: Zheng, Ye, et al.
Published: (2025)
External Data Extraction Attacks against Retrieval-Augmented Large Language Models
by: He, Yu, et al.
Published: (2025)
by: He, Yu, et al.
Published: (2025)
PrivScope: Task-scoped Disclosure Control for Hybrid Agentic Systems
by: Seeam, Shafizur Rahman, et al.
Published: (2026)
by: Seeam, Shafizur Rahman, et al.
Published: (2026)
Query Provenance Analysis: Efficient and Robust Defense against Query-based Black-box Attacks
by: Li, Shaofei, et al.
Published: (2024)
by: Li, Shaofei, et al.
Published: (2024)
MIRAGE: Misleading Retrieval-Augmented Generation via Black-box and Query-agnostic Poisoning Attacks
by: Chen, Tailun, et al.
Published: (2025)
by: Chen, Tailun, et al.
Published: (2025)
ModelShield: Adaptive and Robust Watermark against Model Extraction Attack
by: Pang, Kaiyi, et al.
Published: (2024)
by: Pang, Kaiyi, et al.
Published: (2024)
BoBa: Boosting Backdoor Detection through Data Distribution Inference in Federated Learning
by: Jiang, Zhengyuan, et al.
Published: (2024)
by: Jiang, Zhengyuan, et al.
Published: (2024)
CheatAgent: Attacking LLM-Empowered Recommender Systems via LLM Agent
by: Ning, Liang-bo, et al.
Published: (2025)
by: Ning, Liang-bo, et al.
Published: (2025)
A Portable and Stealthy Inaudible Voice Attack Based on Acoustic Metamaterials
by: Ning, Zhiyuan, et al.
Published: (2025)
by: Ning, Zhiyuan, et al.
Published: (2025)
Two Heads Are Better than One: Model-Weight and Latent-Space Analysis for Federated Learning on Non-iid Data against Poisoning Attacks
by: Lyu, Xingyu, et al.
Published: (2025)
by: Lyu, Xingyu, et al.
Published: (2025)
Collaborative Shadows: Distributed Backdoor Attacks in LLM-Based Multi-Agent Systems
by: Zhu, Pengyu, et al.
Published: (2025)
by: Zhu, Pengyu, et al.
Published: (2025)
MRMMIA: Membership Inference Attacks on Memory in Chat Agents
by: Chen, Kai, et al.
Published: (2026)
by: Chen, Kai, et al.
Published: (2026)
"Someone Hid It": Query-Agnostic Black-Box Attacks on LLM-Based Retrieval
by: Li, Jiate, et al.
Published: (2026)
by: Li, Jiate, et al.
Published: (2026)
Is Difficulty Calibration All We Need? Towards More Practical Membership Inference Attacks
by: He, Yu, et al.
Published: (2024)
by: He, Yu, et al.
Published: (2024)
Evolving Skill-Structured Attack Memory Enhances LLM Jailbreaking
by: Zhang, Junke, et al.
Published: (2026)
by: Zhang, Junke, et al.
Published: (2026)
A Systematic Study of Model Extraction Attacks on Graph Foundation Models
by: Xu, Haoyan, et al.
Published: (2025)
by: Xu, Haoyan, et al.
Published: (2025)
ATOM: A Framework of Detecting Query-Based Model Extraction Attacks for Graph Neural Networks
by: Cheng, Zhan, et al.
Published: (2025)
by: Cheng, Zhan, et al.
Published: (2025)
Frequency Estimation of Correlated Multi-attribute Data under Local Differential Privacy
by: Seeam, Shafizur Rahman, et al.
Published: (2025)
by: Seeam, Shafizur Rahman, et al.
Published: (2025)
TopicAttack: An Indirect Prompt Injection Attack via Topic Transition
by: Chen, Yulin, et al.
Published: (2025)
by: Chen, Yulin, et al.
Published: (2025)
TraCS: Trajectory Collection in Continuous Space under Local Differential Privacy
by: Zheng, Ye, et al.
Published: (2024)
by: Zheng, Ye, et al.
Published: (2024)
Attacks in Adversarial Machine Learning: A Systematic Survey from the Life-cycle Perspective
by: Wu, Baoyuan, et al.
Published: (2023)
by: Wu, Baoyuan, et al.
Published: (2023)
Memory Scraping Attack on Xilinx FPGAs: Private Data Extraction from Terminated Processes
by: Madabhushi, Bharadwaj, et al.
Published: (2024)
by: Madabhushi, Bharadwaj, et al.
Published: (2024)
Black-Box Membership Inference Attack for LVLMs via Prior Knowledge-Calibrated Memory Probing
by: Yin, Jinhua, et al.
Published: (2025)
by: Yin, Jinhua, et al.
Published: (2025)
WebAgentGuard: A Reasoning-Driven Guard Model for Detecting Prompt Injection Attacks in Web Agents
by: Chen, Yulin, et al.
Published: (2026)
by: Chen, Yulin, et al.
Published: (2026)
Five Queries Are Enough: Query-Efficient and Surrogate-Free Membership Inference Attacks on RAG via Entailment
by: Nguyen, Nguyen Linh Bao, et al.
Published: (2026)
by: Nguyen, Nguyen Linh Bao, et al.
Published: (2026)
MalTool: Malicious Tool Attacks on LLM Agents
by: Hu, Yuepeng, et al.
Published: (2026)
by: Hu, Yuepeng, et al.
Published: (2026)
Exploration on Real World Assets and Tokenization
by: Xia, Ning, et al.
Published: (2025)
by: Xia, Ning, et al.
Published: (2025)
Data Extraction Attacks in Retrieval-Augmented Generation via Backdoors
by: Peng, Yuefeng, et al.
Published: (2024)
by: Peng, Yuefeng, et al.
Published: (2024)
Adaptive Domain Inference Attack with Concept Hierarchy
by: Gu, Yuechun, et al.
Published: (2023)
by: Gu, Yuechun, et al.
Published: (2023)
Hijacking Agent Memory: Stealthy Trojan Attacks Through Conversational Interaction
by: Wang, Hongtao, et al.
Published: (2026)
by: Wang, Hongtao, et al.
Published: (2026)
MemoPhishAgent: Memory-Augmented Multi-Modal LLM Agent for Phishing URL Detection
by: Chen, Xuan, et al.
Published: (2026)
by: Chen, Xuan, et al.
Published: (2026)
Systematic Categorization, Construction and Evaluation of New Attacks against Multi-modal Mobile GUI Agents
by: Yang, Yulong, et al.
Published: (2024)
by: Yang, Yulong, et al.
Published: (2024)
Data Reconstruction Attacks and Defenses: A Systematic Evaluation
by: Liu, Sheng, et al.
Published: (2024)
by: Liu, Sheng, et al.
Published: (2024)
From Storage to Steering: Memory Control Flow Attacks on LLM Agents
by: Xu, Zhenlin, et al.
Published: (2026)
by: Xu, Zhenlin, et al.
Published: (2026)
AgentGuard: A Multi-Agent Framework for Robust Package Confusion Detection via Hybrid Search and Metadata-Content Fusion
by: Li, Yu, et al.
Published: (2026)
by: Li, Yu, et al.
Published: (2026)
Towards Model Extraction Attacks in GAN-Based Image Translation via Domain Shift Mitigation
by: Mi, Di, et al.
Published: (2024)
by: Mi, Di, et al.
Published: (2024)
PINA: Prompt Injection Attack against Navigation Agents
by: Liu, Jiani, et al.
Published: (2026)
by: Liu, Jiani, et al.
Published: (2026)
ProvAgent: Threat Detection Based on Identity-Behavior Binding and Multi-Agent Collaborative Attack Investigation
by: Yan, Wenhao, et al.
Published: (2026)
by: Yan, Wenhao, et al.
Published: (2026)
Similar Items
-
Buffer is All You Need: Defending Federated Learning against Backdoor Attacks under Non-iids via Buffering
by: Lyu, Xingyu, et al.
Published: (2025) -
ALDEN: Boosting Private Data Extraction from Retrieval-Augmented Generation Systems via Active Learning and Distribution Estimation
by: Lyu, Xingyu, et al.
Published: (2026) -
AudAgent: Automated Auditing of Privacy Policy Compliance in AI Agents
by: Zheng, Ye, et al.
Published: (2025) -
External Data Extraction Attacks against Retrieval-Augmented Large Language Models
by: He, Yu, et al.
Published: (2025) -
PrivScope: Task-scoped Disclosure Control for Hybrid Agentic Systems
by: Seeam, Shafizur Rahman, et al.
Published: (2026)