Papers
Topics
Authors
Recent
Gemini 2.5 Flash
Gemini 2.5 Flash
38 tokens/sec
GPT-4o
59 tokens/sec
Gemini 2.5 Pro Pro
41 tokens/sec
o3 Pro
7 tokens/sec
GPT-4.1 Pro
50 tokens/sec
DeepSeek R1 via Azure Pro
28 tokens/sec
2000 character limit reached

A Security Risk Taxonomy for Prompt-Based Interaction With Large Language Models (2311.11415v2)

Published 19 Nov 2023 in cs.CR, cs.AI, cs.CL, cs.HC, and cs.LG

Abstract: As LLMs permeate more and more applications, an assessment of their associated security risks becomes increasingly necessary. The potential for exploitation by malicious actors, ranging from disinformation to data breaches and reputation damage, is substantial. This paper addresses a gap in current research by specifically focusing on security risks posed by LLMs within the prompt-based interaction scheme, which extends beyond the widely covered ethical and societal implications. Our work proposes a taxonomy of security risks along the user-model communication pipeline and categorizes the attacks by target and attack type alongside the commonly used confidentiality, integrity, and availability (CIA) triad. The taxonomy is reinforced with specific attack examples to showcase the real-world impact of these risks. Through this taxonomy, we aim to inform the development of robust and secure LLM applications, enhancing their safety and trustworthiness.

User Edit Pencil Streamline Icon: https://streamlinehq.com
Authors (4)
  1. Erik Derner (11 papers)
  2. Kristina Batistič (2 papers)
  3. Jan Zahálka (8 papers)
  4. Robert Babuška (25 papers)
Citations (6)