arXiv Machine Learning

Token-Efficient Change Detection in LLM APIs

arXiv:2602. 11083v4 Announce Type: replace Abstract: Remote change detection in LLMs is a difficult problem.

arXiv AI
Aug 26

Real-World Knowledge-Guided Change Data Synthesis for Remote Sensing

The paper introduces KnowChange, a framework that uses pretrained vision‑language models to guide the synthesis of change data for remote sensing. By reasoning about plausible change locations and class transitions, KnowChange flexibly generates diverse change types within a unified pipeline. Experiments show that data produced by KnowChange outperforms existing synthetic datasets in both synthetic‑to‑real transfer and data augmentation scenarios, even at a compact scale.

By Yaoyi Qi, Xingxing Weng, Chao Pang, Yongkang Cui, Xiangyu Hao, Xiaokang Zhang, Guibo Zhu, Gui-Song Xia
arXiv Machine Learning
Aug 31

Not to Break, but to Attest: Adversarial Probes for Privacy-Preserving LLM Verification

The paper introduces a privacy‑preserving zk‑SNARK audit framework that uses adversarial‑style probes to detect logit drift between an approved large language model and a modified deployment. It offers three probe families—token‑based (black‑box), embedding‑based (gray‑box), and stress probes (partial white‑box)—allowing users to balance sensitivity, access, and cost. Experiments across LLM architectures and GPU platforms show token‑based probes achieve the highest mean sensitivity while remaining practical in a black‑box setting, with Groth16 proving times scaling modestly from 1.02 to 1.78 seconds and constant proof size.

By Cameron Wilding, Mina Shaker, Fatemeh Ganji
arXiv AI
Jun 8

Zero-Shot Embedding Drift Detection: A Lightweight Defense Against Prompt Injections in LLMs

arXiv:2601. 12359v1 Announce Type: cross Abstract: Prompt injection attacks have become an increasing vulnerability for LLM applications, where adversarial prompts exploit indirect input channels such as emails or user-generated content to circumvent alignment safeguards and induce harmful or unintended outputs.

By Anirudh Sekar, Mrinal Agarwal, Rachel Sharma, Akitsugu Tanaka, Jasmine Zhang, Arjun Damerla, Kevin Zhu