慣性聚合 高效追蹤和閱讀你感興趣的部落格、新聞、科技資訊
閱讀原文 在慣性聚合中打開

推薦訂閱源

The GitHub Blog
The GitHub Blog
T
ThreatConnect
C
Check Point Blog
T
The Exploit Database - CXSecurity.com
U
Unit 42
云风的 BLOG
云风的 BLOG
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
T
Tenable Blog
博客园 - 叶小钗
D
Docker
T
Threatpost
WordPress大学
WordPress大学
腾讯CDC
I
Intezer
T
Tailwind CSS Blog
Engineering at Meta
Engineering at Meta
D
Darknet – Hacking Tools, Hacker News & Cyber Security
Hugging Face - Blog
Hugging Face - Blog
cs.CV updates on arXiv.org
cs.CV updates on arXiv.org
The Register - Security
The Register - Security
Stack Overflow Blog
Stack Overflow Blog
PCI Perspectives
PCI Perspectives
S
Security Archives - TechRepublic
Simon Willison's Weblog
Simon Willison's Weblog
A
Arctic Wolf
MongoDB | Blog
MongoDB | Blog
小众软件
小众软件
Hacker News: Ask HN
Hacker News: Ask HN
O
OpenAI News
博客园 - 【当耐特】
L
LINUX DO - 最新话题
C
Comments on: Blog
S
Securelist
月光博客
月光博客
S
Secure Thoughts
Security Latest
Security Latest
MyScale Blog
MyScale Blog
NISL@THU
NISL@THU
F
Full Disclosure
M
Microsoft Research Blog - Microsoft Research
T
True Tiger Recordings
SecWiki News
SecWiki News
aimingoo的专栏
aimingoo的专栏
Threat Intelligence Blog | Flashpoint
Threat Intelligence Blog | Flashpoint
L
LINUX DO - 热门话题
cs.AI updates on arXiv.org
cs.AI updates on arXiv.org
AWS News Blog
AWS News Blog
Hacker News - Newest:
Hacker News - Newest: "LLM"
L
Lohrmann on Cybersecurity
H
Help Net Security

cs updates on arXiv.org

HydraPrompt: An Adaptive and Asymmetric Framework of Vision-Language Models for Synthetic Image Detection Geometry-Aware Representation Denoising for Robust Multi-view 3D Reconstruction 3D Gaussian Map with Open-Set Semantic Grouping for Vision-Language Navigation On the Push-Based Asynchronous Federated Learning: A Bias-Correction Aggregation Approach OmniInteract: Benchmarking Real-World Streaming Interaction for Real-Time Omnimodal Assistants CNNs, Transformers, Hybrid, and Vision Language Models for Skin Cancer Detection VesselSim: learning 3D blood vessel segmentation without expert annotations Erased but Exploitable: Black-box Embedding-Aware Prompting Against Unlearned Text-to-Image Diffusion Models VisualNeedle: Benchmarking Active Visual Search in Information-Dense Scenes DuoGesture: Neuro-Inspired and Biomechanically Informed Dual-Stream Co-Speech Gesture Generation RadarSim: Simulating Single-Chip Radar via Multimodal Neural Fields RoMo: A Large-Scale, Richly Organized Dataset and Semantic Taxonomy for Human Motion Generation The Rescue Effect: Spatio-Semantic Early Exit Bypasses Quantization Collapse in CLIP When Rule Violations Are Rare: Chimera Training for Logical Anomaly Detection Detail Consistent Stage-Wise Distillation for Efficient 3D MRI Segmentation Sparse-LiDAR Prompting of Monocular Geometry Foundations: An Empirical Study Toward Long-Range Driving Depth AirCast-SR: A Foundation Model for Kilometer-Scale Atmospheric Super-Resolution via Latent Consistency Diffusion Personalized Generative Models for Contextual Debiasing Cross-scale Aligned Supervision for Training GANs Joint Instance Segmentation and Geometric Attribute Regression for Roof Structures in Aerial Imagery Dimensional Distribution Emotion State: Leveraging Valence and Arousal as a Common Embedding Space for Visual Emotion Analysis TSFMAudit: Data Contamination Auditing in Forecasting Time Series Foundation Models Clinically-Grounded Counterfactual Reasoning for Medical Video Diagnosis Triadic Dynamics Aware Diffusion Posterior Sampling for Inverse Problems: Optimizing Guidance and Stochasticity Schedules Comparative Study of Vision-Based Metric Measurement for Large-Scale Planar Scenes LongAV-Compass: Towards Unified Evaluation of Minute-Scale Audio-Visual Generation Across T2AV, I2AV, and V2AV The Constraint Tax: Measuring Validity-Correctness Tradeoffs in Structured Outputs for Small Language Models SilIF: Silhouette-Augmented Isolation Forest for Unsupervised Transaction Fraud Detection Multi-Modal Building Inspection via Perceiver IO Fusion of Satellite and Street-Level Imagery E$^3$C: Video Generation with 3D Environmental Memory and Ego-Exo Human Pose Control Share More, Search Less: Collaborative Parallel Thinking for Efficient Test-Time Scaling Unveiling the Fragility of Vision-Language Models: Multi-Modal Adversarial Synergy via Texture-Constrained Perturbations and Cross-Modal Optimization Sleep-stage efficient classification using a lightweight self-supervised model Underwater360: Reconstructing Underwater Scenes from Panoramic Images with Omnidirectional Gaussian Splatting Rethinking Weakly-supervised Video Temporal Grounding From a Game Perspective Sentinel: Embodied Cooperative Spatial Reasoning and Planning LongCat-Video-Avatar 1.5 Technical Report GEM: Geometric Entropy Mixing for Optimal LLM Data Curation Uncertainty-Aware Gaussian Map for Vision-Language Navigation Frequency-Guided Fusion For RGB-Thermal Semantic Segmentation BioFact-MoE: Biologically Factorized Mixture of Experts for Vision-Language Prognostic Modeling in Hepatocellular Carcinoma A multifractal-based masked auto-encoder: an application to medical images Benchmarking Convolutional, Transformer, Hybrid, and Vision Language Models for Multi Disease Retinal Screening Unified Panoramic Geometry Estimation via Multi-View Foundation Models Not All Modalities Are Equal: Instruction-Aware Gating for Multimodal Videos OmniGF: A Dual-Branch Vision-Language Framework for Unified Gaze Following Zero-Shot Object Re-Identification in Egocentric Kitchen Videos via Multi-Stage SAM3 Feature Fusion Evi-Steer: Learning to Steer Biomedical Vision-Language Models through Efficient and Generalizable Evidential Tuning Planning Neural Dynamics with Lie Group Embedding through Supervised Projective Manifold Learning AnchorDiff: Training-Free Concept Grounding for MM-DiTs via Anchor-Based Graph Propagation
Cordon-MAS:透過資訊流控制保護 RAG 免受知識中毒的侵害
Zhe Yu, Wenp · 2026-05-27 · via cs updates on arXiv.org

檢視 PDF HTML (實驗性)

摘要:回收式生成 (RAG) 越來越成為高風險應用的基礎,但仍然容易受到 Confundo 式的污染,其中敵對優化的文件會操縱生成的輸出。現有的防禦假設檢測到被污染的證據就能防止危害。我們證明這個假設是錯誤的:模型展現出一種監控-控制差距——它們可以檢測到回收證據中的矛盾,但仍然會基於被污染的主張行動。我們介紹了 Cordon 原則——沒有任何能夠進行最終綜合的代理可以訪問不受信任的自然語言證據——並通過 CORDON-MAS 來實現它,CORDON-MAS 是一個分區化框架,通過將證據提取、跨來源審計和答案綜合分為具有非對稱記憶權限的代理,來在架構上強制執行這個原則。在五個 BEIR 資料集上,與未受保護的 RAG 相比,CORDON-MAS 將攻擊成功率降低了 92.4%。這將 RAG 污染問題從檢測問題重新定義為信息流控制問題。
主題: 密碼學與安全 (cs.CR);人工智慧 (cs.AI)
引用格式: arXiv:2605.26754 [cs.CR]
  (或 arXiv:2605.26754v1 [cs.CR] 為此版本)
  https://doi.org/10.48550/arXiv.2605.26754

由DataCite發行的arXiv DOI(待登記)

提交通訊記錄

來自:孟漢[查看郵件]
[v1] 周二,2026年5月26日 09:27:19 UTC (1,102 KB)