Blind PRNG Hijacking: An Undetectable Integrity-Preserving Attack Against LLM Watermarking
盲PRNG劫持:一种针对LLM水印的不可检测的完整性保持攻击
机构 * Fujian Provincial Key Laboratory of Automotive Electronics and Electric Drive(福建省汽车电子与电力驱动重点实验室) ; School of Electronic, Electrical and Physics(电子、电气与物理学院) ; Fujian University of Technology(福建理工大学) ; School of Humanities(人文学院) ; Institute of Applied Physics and Materials Engineering(应用物理与材料工程学院) ; University of Macau(澳门大学)
专题命中 越狱攻击 :trustworthy(abstract);分类 cs.AI
AI总结 提出SeedHijack攻击,通过替换伪随机数生成器(PRNG)在供应链层面对LLM水印进行盲攻击,同时保持完整性并规避检测。
Comments Preprint prepared for submission to IEEE TIFS. 12 pages, 8 figures