Divide and Conquer: A Hybrid Strategy Defeats Multimodal Large Language Models
cs.CL
Submitted: 2024-12-21
Updated: 2026-09-16
Code: https://github.com/metallama/PurpleLlama
License: http://arxiv.org/licenses/nonexclusive-distrib/1.0/
Terminology
Sources
- Jailbreaking Black Box Large Language Models in Twenty Queries
- StruQ: Defending Against Prompt Injection with Structured Queries
- SecAlign: Defending Against Prompt Injection with Preference Optimization
- MEDEC: A Benchmark for Medical Error Detection and Correction in Clinical Notes
- FigStep: Jailbreaking Large Vision-Language Models via Typographic Visual Prompts
- Visual-RolePlay: Universal Jailbreak Attack on MultiModal Large Language Models via Role-playing Image Character
- GEGA: Graph Convolutional Networks and Evidence Retrieval Guided Attention for Enhanced Document-level Relation Extraction
- Are You Human? An Adversarial Benchmark to Expose LLMs
- Qwen2.5-Coder Technical Report
- Jailbreaking Attack against Multimodal Large Language Model
- A Cross-Language Investigation into Jailbreak Attacks in Large Language Models
- From LLMs to MLLMs: Exploring the Landscape of Multimodal Jailbreaking
- Chain-of-Jailbreak Attack for Image Generation Models via Editing Step by Step
- Voice Jailbreak Attacks Against GPT-4o
- ImgTrojan: Jailbreaking Vision-Language Models with ONE Image
- LLaMA: Open and Efficient Foundation Language Models
- Llama 2: Open Foundation and Fine-Tuned Chat Models
- Secrets of RLHF in Large Language Models Part II: Reward Modeling
- Jailbreak Vision Language Models via Bi-Modal Adversarial Prompt
- Don't Listen To Me: Understanding and Exploring Jailbreak Prompts of Large Language Models
Related papers
- Exploring Solution Divergence and Its Effect on Large Language Model Problem Solving
- Ishigaki-IDS-Bench: A Benchmark for Generating Information Delivery Specification from BIM Information Requirements
- Subliminal Steering: Stronger Encoding of Hidden Signals
- MedStruct-S: A Benchmark for Key Discovery, Key-Conditioned QA and Semi-Structured Extraction from OCR Clinical Reports
- The End of Transformers? On Challenging Attention and the Rise of Sub-Quadratic Architectures
- Untangling the Mechanisms of Misleading Context in Medical Question Answering