April 2026Unreviewed
DeepSeek Robustness Against Semantic-Character Dual-Space Mutated Prompt Injection
Junyu Ren, Xingjian Pan, Wensheng Gan, Philip S. Yu
Abstract
Prompt injection has emerged as a critical security threat to large language models (LLMs), yet existing studies predominantly focus on single-dimensional attack strategies, such as semantic rewriting or character-level obfuscation, which fail to capture the combined effects of multi-space perturbations in realistic scenarios. In addition, systematic black-box robustness evaluations of recent Chinese LLMs, such as DeepSeek, remain limited. To address these gaps, we propose PromptFuzz-SC, a seman
Categories
Framework mappings
OWASP Top 10 for LLM Applications
- LLM01Prompt Injection
MITRE ATLAS
- AML.T0051LLM Prompt Injection
Suggested from the entry's categories.
Cite
@misc{ren2026deepseek,
title = {{DeepSeek Robustness Against Semantic-Character Dual-Space Mutated Prompt Injection}},
author = {Junyu Ren and Xingjian Pan and Wensheng Gan and Philip S. Yu},
year = {2026},
month = apr,
eprint = {2604.12548},
archivePrefix = {arXiv},
url = {https://arxiv.org/abs/2604.12548}
}