← Search

Yirui QI

2 accepted papers

2026

Attack the Messages, Not the Agents: A Multi-round Adaptive Stealthy Tampering Framework for LLM-MAS

AAAI 2026technical

Large language model-based multi-agent systems (LLM-MAS) effectively accomplish complex and dynamic tasks through inter-agent communication, but this reliance introduces substantial safety vulnerabilities. Existing attack methods targeting LLM-MAS either compromise agent internals or rely on direct

Cited by 10SourcePDFScholar
2026

LLM-MatLogic: Executable Exchange Contracts for Knowledge-Graph Query Answering with Scoped Negation

ICML 2026poster

LLM-to-KG systems frequently fail on exclusion-rich questions because natural-language negation is both scope-sensitive and evidence-dependent: it may constrain only one subgoal/branch and only certain supporting paths, yet such attachment is rarely explicit in text. We propose the Executable Exchan…

Cited by 0SourceScholar