{"id":"W7127370637","doi":"10.1109/icrcicn68210.2025.11364988","title":"Adversial Prompt Injection in Large Language Models: Taxonomy, Exploits, and Mitigation Frameworks","year":2025,"lang":"","type":"article","venue":"","topic":"Adversarial Robustness in Machine Learning","field":"Computer Science","cited_by":0,"is_retracted":false,"has_abstract":true,"ca_institutions":"Artificial Intelligence in Medicine (Canada)","funders":"","keywords":"Adversarial system; Exploit; Covert; Context (archaeology); Confidentiality; Isolation (microbiology); Key (lock); Unintended consequences","routes":{"ca_aff":true,"ca_fund":false,"ca_venue":false,"about_ca":false,"invisible_to_affiliation_only":false},"retraction":null,"screen":null,"direct_labels":[],"prediction":{"model_version":"codex-gemma-dda1882f352a","candidate_categories":["metaepi_narrow"],"consensus_categories":[],"category_scores_codex":[0.0009102762,0.0003516645,0.0003854344,0.0006209437,0.0003535772,0.0003675774,0.0005809115,0.0006829906,0.00009440564],"category_scores_gemma":[0.00030316,0.0003959924,0.00008007528,0.001402025,0.0001038262,0.002311609,0.001031316,0.001778297,0.00001336812],"about_ca_system_candidate":false,"about_ca_system_consensus":false,"about_ca_system_score_codex":0.0002798799,"about_ca_system_score_gemma":0.0002603589,"about_ca_topic_candidate":false,"about_ca_topic_consensus":false,"about_ca_topic_score_codex":0.000561067,"about_ca_topic_score_gemma":0.0003646784,"domain_scores_codex":[0.9971206,0.0003752612,0.0005771297,0.0009902348,0.0003253536,0.0006114794],"domain_scores_gemma":[0.9988176,0.0002235674,0.0001986349,0.0005526414,0.00009873106,0.0001088677],"domain_codex":null,"domain_gemma":null,"domain_candidate":null,"domain_consensus":null,"study_design_codex":"simulation_or_modeling","study_design_gemma":"simulation_or_modeling","study_design_scores_codex":[0.0001343555,0.0003486954,0.01507123,0.0002641655,0.00008242247,0.00005546139,0.01628259,0.3788612,0.00007074077,0.3312265,0.0004783607,0.2571242],"study_design_scores_gemma":[0.001449727,0.00008242443,0.002175423,0.0003999891,0.00002456109,0.000006352032,0.003736442,0.9827084,0.0001046665,0.008532696,0.0004254752,0.0003538574],"study_design_candidate":"simulation_or_modeling","study_design_consensus":"simulation_or_modeling","genre_codex":"methods","genre_gemma":"empirical","genre_scores_codex":[0.06000943,0.0007024313,0.9268277,0.001298352,0.001306416,0.000868805,0.000002841323,0.0001716224,0.00881235],"genre_scores_gemma":[0.9447795,0.00006329197,0.05282673,0.0005927366,0.0001706838,0.00008597174,0.000008609542,0.00001647027,0.001456017],"genre_candidate":"empirical","genre_consensus":null,"teacher_disagreement_score":0.88477,"threshold_uncertainty_score":0.9998492,"prediction_status":"machine_predicted_unvalidated"},"machine_scores":{"provisional":true,"baseline":true,"maturity_gate_passed":false,"score_opus":0.01256992635687382,"score_gpt":0.2610636639407804,"score_spread":0.2484937375839066,"validation_status":"score_only:v0-immature-baseline","note":"Baseline scores from an immature model (maturity gate not passed). Scores rank; they never assert a category."}}