#supply-chain
-
Poisoning Web-Scale Training Sets: Split-View and Frontrunning
You don't need to control a model's training pipeline to poison it — you only need to control content the crawler will fetch.
-
Indirect Prompt Injection in RAG Pipelines
How attackers embed malicious instructions in documents that get retrieved into LLM context — and why RAG makes prompt injection a supply-chain problem.
-
Supply Chain Attacks on AI Models: Poisoning and Backdoors
How attackers compromise models before production through dataset poisoning, malicious fine-tuning, and serialization exploits, and how to detect it.