{"id":"W7127370637","doi":"10.1109/icrcicn68210.2025.11364988","title":"Adversial Prompt Injection in Large Language Models: Taxonomy, Exploits, and Mitigation Frameworks","year":2025,"lang":"","type":"article","venue":"","topic":"Adversarial Robustness in Machine Learning","field":"Computer Science","cited_by":0,"is_retracted":false,"has_abstract":true,"ca_institutions":"Artificial Intelligence in Medicine (Canada)","funders":"","keywords":"Adversarial system; Exploit; Covert; Context (archaeology); Confidentiality; Isolation (microbiology); Key (lock); Unintended consequences","routes":{"ca_aff":true,"ca_fund":false,"ca_venue":false,"about_ca":false,"invisible_to_affiliation_only":false},"retraction":null,"screen":null,"direct_labels":[],"prediction":{"model_version":"metacan-v3-hybrid-931329e0061c","candidate_categories":[],"consensus_categories":[],"category_scores_codex":[0.008803441,0.00193801,0.0008078618,0.001661952,0.001008441,0.003267738,0.003078579,0.002559547,0.0020218],"category_scores_gemma":[0.03661523,0.001047436,0.001650568,0.0008005652,0.006352608,0.006019386,0.008081829,0.005560673,0.0006776562],"about_ca_system_candidate":false,"about_ca_system_consensus":false,"about_ca_system_score_codex":0.001713702,"about_ca_system_score_gemma":0.001988508,"about_ca_topic_candidate":false,"about_ca_topic_consensus":false,"about_ca_topic_score_codex":0.001096998,"about_ca_topic_score_gemma":0.001061572,"domain_scores_codex":[0.9889976,0.004745472,0.0006738176,0.001282365,0.003470976,0.0008297102],"domain_scores_gemma":[0.9654157,0.01920015,0.003089449,0.01045321,0.00142971,0.0004117633],"domain_codex":null,"domain_gemma":null,"domain_candidate":null,"domain_consensus":null,"study_design_codex":"simulation_or_modeling","study_design_gemma":"bench_or_experimental","study_design_scores_codex":[0.0004523919,0.0003899122,0.01964012,0.000871691,0.0003588581,0.001246102,0.002969282,0.3719521,0.02415573,0.3566789,0.008600278,0.2126847],"study_design_scores_gemma":[0.00003566026,0.0002057762,0.0008363259,0.0002755066,0.0001071919,0.00113554,0.0003330598,0.8195774,0.02307459,0.1424115,0.01190275,0.0001047587],"study_design_candidate":"bench_or_experimental","study_design_consensus":null,"genre_codex":"methods","genre_gemma":"empirical","genre_scores_codex":[0.04504488,0.001935014,0.9380057,0.002464529,0.00009464693,0.0002782244,0.0001316529,0.006120095,0.005925218],"genre_scores_gemma":[0.7690974,0.00128627,0.2253299,0.0009118381,0.0001229853,0.0003406618,0.0002176734,0.0008478215,0.001845613],"genre_candidate":"empirical","genre_consensus":null,"teacher_disagreement_score":0.008803441,"threshold_uncertainty_score":0.04655761,"prediction_status":"machine_predicted_unvalidated"},"machine_scores":{"provisional":true,"baseline":true,"maturity_gate_passed":false,"score_opus":0.01256992635687382,"score_gpt":0.2610636639407804,"score_spread":0.2484937375839066,"validation_status":"score_only:v0-immature-baseline","note":"Baseline scores from an immature model (maturity gate not passed). Scores rank; they never assert a category."}}