2025
Memory Injection Attacks on LLM Agents via Query-Only Interaction
NeurIPS 2025poster
Agents powered by large language models (LLMs) have demonstrated strong capabilities in a wide range of complex, real-world applications. However, LLM agents with a compromised memory bank may easily produce harmful outputs when the past records retrieved for demonstration are malicious. In this pap…