3 papers
cs.CR2026
RAG-Pull: Turning Retrieval into a Code-Injection Channel via Invisible Unicode Perturbations
Aritra Dhar, Vasilije Stambolic, Lukas Cavigelli
Retrieval-Augmented Generation (RAG) increases the reliability and trustworthiness of the LLM response and reduces hallucination by eliminating the need for model retraining. It do…
cs.CR2026
Can LLMs Make (Personalized) Access Control Decisions?
Friederike Groschupp, Daniele Lain, Aritra Dhar +2
Precise access control decisions are crucial for the security of both traditional applications and emerging agent-based systems. Typically, these decisions are made by users during…
cs.CR2025
AC-LoRA: (Almost) Training-Free Access Control-Aware Multi-Modal LLMs
Lara Magdalena Lazier, Aritra Dhar, Vasilije Stambolic +1
Corporate LLMs are gaining traction for efficient knowledge dissemination and management within organizations. However, as current LLMs are vulnerable to leaking sensitive informat…