Spring til hovednavigation Spring til søgning Spring til hovedindhold

Against All Odds: Overcoming Typology, Script, and Language Confusion in Multilingual Embedding Inversion Attacks

Publikation: Bidrag til bog/antologi/rapport/konference proceedingKonferenceartikel i proceedingForskningpeer review

11 Downloads (Pure)

Abstract

Large Language Models (LLMs) are susceptible to malicious influence by cyber attackers through intrusions such as adversarial, backdoor, and embedding inversion attacks. In response, the burgeoning field of LLM Security aims to study and defend against such threats. Thus far, the majority of works in this area have focused on monolingual English models, however, emerging research suggests that multilingual LLMs may be more vulnerable to various attacks than their monolingual counterparts. While previous work has investigated embedding inversion over a small subset of European languages, it is challenging to extrapolate these findings to languages from different linguistic families and with differing scripts. To this end, we explore the security of multilingual LLMs in the context of embedding inversion attacks and investigate cross-lingual and cross-script inversion across 20 languages, spanning over 8 language families and 12 scripts. Our findings indicate that languages written in Arabic script and Cyrillic script are particularly vulnerable to embedding inversion, as are languages within the Indo-Aryan language family. We further observe that inversion models tend to suffer from language confusion, sometimes greatly reducing the efficacy of an attack. Accordingly, we systematically explore this bottleneck for inversion models, uncovering predictable patterns which could be leveraged by attackers. Ultimately, this study aims to further the field's understanding of the outstanding security vulnerabilities facing multilingual LLMs and raise awareness for the languages most at risk of negative impact from these attacks.
OriginalsprogEngelsk
TitelProceedings of the AAAI Conference on Artificial Intelligence
RedaktørerToby Walsh, Julie Shah, Zico Kolter
Antal sider11
ForlagAAAI Press
Publikationsdato11 apr. 2025
Sider23632-23641
ISBN (Elektronisk)978-1-57735-897-8
DOI
StatusUdgivet - 11 apr. 2025
BegivenhedThe 39th Annual AAAI Conference on Artificial Intelligence - Philadelphia, USA
Varighed: 25 feb. 20254 mar. 2025
https://aaai.org/conference/aaai/aaai-25/

Konference

KonferenceThe 39th Annual AAAI Conference on Artificial Intelligence
Land/OmrådeUSA
ByPhiladelphia
Periode25/02/202504/03/2025
Internetadresse
NavnProceedings of the AAAI Conference on Artificial Intelligence
Nummer22
Vol/bind39
ISSN2374-3468

Fingeraftryk

Dyk ned i forskningsemnerne om 'Against All Odds: Overcoming Typology, Script, and Language Confusion in Multilingual Embedding Inversion Attacks'. Sammen danner de et unikt fingeraftryk.

Citationsformater