Oracle Poisoning: Corrupting Knowledge Graphs to Weaponise AI Agent Reasoning
Fuente:
arXiv
Saved in:
| Main Authors: | Kereopa-Yorke, Ben, Diaz, Guillermo, Wright, Holly, Johnston, Reagan, Del Rosario, Ron F., Lynar, Timothy |
|---|---|
| Format: | Preprint |
| Published: |
2026
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
Engineering Trust, Creating Vulnerability: A Socio-Technical Analysis of AI Interface Design
by: Kereopa-Yorke, Ben
Published: (2025)
by: Kereopa-Yorke, Ben
Published: (2025)
Quantifying AI Vulnerabilities: A Synthesis of Complexity, Dynamical Systems, and Game Theory
by: Kereopa-Yorke, B
Published: (2024)
by: Kereopa-Yorke, B
Published: (2024)
Building Resilient SMEs: Harnessing Large Language Models for Cyber Security in Australia
by: Kereopa-Yorke, Benjamin
Published: (2023)
by: Kereopa-Yorke, Benjamin
Published: (2023)
ClausewitzGPT Framework: A New Frontier in Theoretical Large Language Model Enhanced Information Operations
by: Kereopa-Yorke, Benjamin
Published: (2023)
by: Kereopa-Yorke, Benjamin
Published: (2023)
How the Graph Construction Technique Shapes Performance in IoT Botnet Detection
by: Wasswa, Hassan, et al.
Published: (2026)
by: Wasswa, Hassan, et al.
Published: (2026)
LIPSTICK: Corruptibility-Aware and Explainable Graph Neural Network-based Oracle-Less Attack on Logic Locking
by: Aghamohammadi, Yeganeh, et al.
Published: (2024)
by: Aghamohammadi, Yeganeh, et al.
Published: (2024)
Temporal Attack Pattern Detection in Multi-Agent AI Workflows: An Open Framework for Training Trace-Based Security Models
by: Del Rosario, Ron F.
Published: (2025)
by: Del Rosario, Ron F.
Published: (2025)
PoisonedRAG: Knowledge Corruption Attacks to Retrieval-Augmented Generation of Large Language Models
by: Zou, Wei, et al.
Published: (2024)
by: Zou, Wei, et al.
Published: (2024)
Here Comes The AI Worm: Unleashing Zero-click Worms that Target GenAI-Powered Applications
by: Cohen, Stav, et al.
Published: (2024)
by: Cohen, Stav, et al.
Published: (2024)
AgentPoison: Red-teaming LLM Agents via Poisoning Memory or Knowledge Bases
by: Chen, Zhaorun, et al.
Published: (2024)
by: Chen, Zhaorun, et al.
Published: (2024)
A Quantum "Lifting Theorem" for Constructions of Pseudorandom Generators from Random Oracles
by: Katz, Jonathan, et al.
Published: (2024)
by: Katz, Jonathan, et al.
Published: (2024)
A Jailbroken GenAI Model Can Cause Substantial Harm: GenAI-powered Applications are Vulnerable to PromptWares
by: Cohen, Stav, et al.
Published: (2024)
by: Cohen, Stav, et al.
Published: (2024)
Codes on any Cayley Graph have an Interactive Oracle Proof of Proximity
by: Delavenne, Hugo, et al.
Published: (2025)
by: Delavenne, Hugo, et al.
Published: (2025)
Poisoned-MRAG: Knowledge Poisoning Attacks to Multimodal Retrieval Augmented Generation
by: Liu, Yinuo, et al.
Published: (2025)
by: Liu, Yinuo, et al.
Published: (2025)
Robustness of Locally Differentially Private Graph Analysis Against Poisoning
by: Imola, Jacob, et al.
Published: (2022)
by: Imola, Jacob, et al.
Published: (2022)
All Your Knowledge Belongs to Us: Stealing Knowledge Graphs via Reasoning APIs
by: Xi, Zhaohan
Published: (2025)
by: Xi, Zhaohan
Published: (2025)
Architecting Resilient LLM Agents: A Guide to Secure Plan-then-Execute Implementations
by: Del Rosario, Ron F., et al.
Published: (2025)
by: Del Rosario, Ron F., et al.
Published: (2025)
Deep-Research Agents Can Be Poisoned via User-Generated Content
by: Zhang, Tingwei, et al.
Published: (2026)
by: Zhang, Tingwei, et al.
Published: (2026)
On the Feasibility of Poisoning Text-to-Image AI Models via Adversarial Mislabeling
by: Wu, Stanley, et al.
Published: (2025)
by: Wu, Stanley, et al.
Published: (2025)
Interactive Oracle Proofs of Proximity to Codes on Graphs
by: Delavenne, Hugo, et al.
Published: (2025)
by: Delavenne, Hugo, et al.
Published: (2025)
FlashRT: Towards Computationally and Memory Efficient Red-Teaming for Prompt Injection and Knowledge Corruption
by: Wang, Yanting, et al.
Published: (2026)
by: Wang, Yanting, et al.
Published: (2026)
PoisonCatcher: Revealing and Identifying LDP Poisoning Attacks in IIoT
by: Shuai, Lisha, et al.
Published: (2024)
by: Shuai, Lisha, et al.
Published: (2024)
Correcting Subverted Random Oracles
by: Russell, Alexander, et al.
Published: (2024)
by: Russell, Alexander, et al.
Published: (2024)
Poison Once, Exploit Forever: Environment-Injected Memory Poisoning Attacks on Web Agents
by: Zou, Wei, et al.
Published: (2026)
by: Zou, Wei, et al.
Published: (2026)
MindGuard: Intrinsic Decision Inspection for Securing LLM Agents Against Metadata Poisoning
by: Wang, Zhiqiang, et al.
Published: (2025)
by: Wang, Zhiqiang, et al.
Published: (2025)
KEPo: Knowledge Evolution Poison on Graph-based Retrieval-Augmented Generation
by: Chen, Qizhi, et al.
Published: (2026)
by: Chen, Qizhi, et al.
Published: (2026)
Data Poisoning Attacks to Local Differential Privacy Protocols for Graphs
by: He, Xi, et al.
Published: (2024)
by: He, Xi, et al.
Published: (2024)
Blockchain Address Poisoning
by: Tsuchiya, Taro, et al.
Published: (2025)
by: Tsuchiya, Taro, et al.
Published: (2025)
AttnTrace: Contextual Attribution of Prompt Injection and Knowledge Corruption
by: Wang, Yanting, et al.
Published: (2025)
by: Wang, Yanting, et al.
Published: (2025)
Graph-Aware Stealthy Poison-Text Backdoors for Text-Attributed Graphs
by: Luo, Qi, et al.
Published: (2026)
by: Luo, Qi, et al.
Published: (2026)
CorruptEncoder: Data Poisoning based Backdoor Attacks to Contrastive Learning
by: Zhang, Jinghuai, et al.
Published: (2022)
by: Zhang, Jinghuai, et al.
Published: (2022)
Data Poisoning for In-context Learning
by: He, Pengfei, et al.
Published: (2024)
by: He, Pengfei, et al.
Published: (2024)
Human Challenge Oracle: Designing AI-Resistant, Identity-Bound, Time-Limited Tasks for Sybil-Resistant Consensus
by: Maleki, Homayoun, et al.
Published: (2026)
by: Maleki, Homayoun, et al.
Published: (2026)
LoopTrap: Termination Poisoning Attacks on LLM Agents
by: Xu, Huiyu, et al.
Published: (2026)
by: Xu, Huiyu, et al.
Published: (2026)
ShadowMerge: A Novel Poisoning Attack on Graph-Based Agent Memory via Relation-Channel Conflicts
by: Luo, Yang, et al.
Published: (2026)
by: Luo, Yang, et al.
Published: (2026)
SAGA: Synthetic Audit Log Generation for APT Campaigns
by: Huang, Yi-Ting, et al.
Published: (2024)
by: Huang, Yi-Ting, et al.
Published: (2024)
The System Prompt Is the Attack Surface: How LLM Agent Configuration Shapes Security and Creates Exploitable Vulnerabilities
by: Litvak, Ron
Published: (2026)
by: Litvak, Ron
Published: (2026)
Mayhem: Targeted Corruption of Register and Stack Variables
by: Adiletta, Andrew J., et al.
Published: (2023)
by: Adiletta, Andrew J., et al.
Published: (2023)
Verifiable Provenance of Software Artifacts with Zero-Knowledge Compilation
by: Ron, Javier, et al.
Published: (2026)
by: Ron, Javier, et al.
Published: (2026)
Sharpness-Aware Data Poisoning Attack
by: He, Pengfei, et al.
Published: (2023)
by: He, Pengfei, et al.
Published: (2023)
Similar Items
-
Engineering Trust, Creating Vulnerability: A Socio-Technical Analysis of AI Interface Design
by: Kereopa-Yorke, Ben
Published: (2025) -
Quantifying AI Vulnerabilities: A Synthesis of Complexity, Dynamical Systems, and Game Theory
by: Kereopa-Yorke, B
Published: (2024) -
Building Resilient SMEs: Harnessing Large Language Models for Cyber Security in Australia
by: Kereopa-Yorke, Benjamin
Published: (2023) -
ClausewitzGPT Framework: A New Frontier in Theoretical Large Language Model Enhanced Information Operations
by: Kereopa-Yorke, Benjamin
Published: (2023) -
How the Graph Construction Technique Shapes Performance in IoT Botnet Detection
by: Wasswa, Hassan, et al.
Published: (2026)