March 2024ReviewedOpen access
A Survey on Large Language Model (LLM) Security and Privacy: The Good, The Bad, and The Ugly
Yifan Yao, Jinhao Duan, Kaidi Xu, Yuanfang Cai, Zhibo Sun, Yue Zhang
High-Confidence Computing
Abstract
Comprehensive survey covering LLM security and privacy from three perspectives: beneficial applications of LLMs for security, attacks against LLMs, and defensive techniques.
Categories
#survey#comprehensive#security-privacy
Framework mappings
OWASP Top 10 for LLM Applications
- LLM01Prompt Injection
- LLM02Sensitive Information Disclosure
- LLM03Supply Chain
- LLM04Data and Model Poisoning
MITRE ATLAS
- AML.T0051LLM Prompt Injection
- AML.T0054LLM Jailbreak
Cite
@article{yao2024survey,
title = {{A Survey on Large Language Model (LLM) Security and Privacy: The Good, The Bad, and The Ugly}},
author = {Yifan Yao and Jinhao Duan and Kaidi Xu and Yuanfang Cai and Zhibo Sun and Yue Zhang},
year = {2024},
month = mar,
journal = {High-Confidence Computing},
eprint = {2312.02003},
archivePrefix = {arXiv},
doi = {10.1016/j.hcc.2024.100211},
url = {https://arxiv.org/abs/2312.02003}
}