Adversarial Threat Vectors and Risk Mitigation for Retrieval-Augmented Generation Systems (2506.00281v1)
Abstract: Retrieval-Augmented Generation (RAG) systems, which integrate LLMs with external knowledge sources, are vulnerable to a range of adversarial attack vectors. This paper examines the importance of RAG systems through recent industry adoption trends and identifies the prominent attack vectors for RAG: prompt injection, data poisoning, and adversarial query manipulation. We analyze these threats under risk management lens, and propose robust prioritized control list that includes risk-mitigating actions like input validation, adversarial training, and real-time monitoring.
Collections
Sign up for free to add this paper to one or more collections.