Token-Level Precise Attack on RAG: Searching for the Best Alternatives to Mislead Generation
2025, Zizhong Li, Haopeng Zhang, Jiawei Zhang
This paper proposes Token-level Precise Attack on the RAG (TPARAG), which leverages a lightweight white-box LLM as an attacker to generate and iteratively optimize malicious passages at the token level and is suitable for both white-box and black-box RAG systems.