יום שלישי, 15 בספטמבר 2026 LIVE
AI־INFO

כתבה arXiv cs.AI ·

Repeat-After-Me: Adaptive Injection בסביבת AI

Repeat-After-Me: Black-Box Adaptive Visual Prompt Injection
התקפת פרומפט-אינג'קשן אדפטיבית-שחור-קופסה מצליחה להשיג קצב הצלחה גבוה בפני VLMs
תקציר מקורי באנגליתarXiv:2609.04533v1 Announce Type: cross Abstract: Prompt injection is widely recognized as a major security threat to AI agents that interact with untrusted external data, such as websites, documents, and emails. Prior work has shown that, in the text domain, black-box prompt injection can achieve near-perfect attack success rates (ASRs). In the image domain, however, existing visual prompt injection methods are substantially less effective in attacking frontier commercial VLMs for materially harmful behavior. Achieving such outputs is hard because it requires a long and/or format-compliant target string, such as a precise, parseable native tool call with exact function names and arguments. We present Repeat-After-Me, a black-box adaptive visual prompt injection attack that can reveal pers
קרא במקור המקורי