{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,21]],"date-time":"2026-07-21T17:06:56Z","timestamp":1784653616181,"version":"3.55.0"},"publisher-location":"New York, NY, USA","reference-count":28,"publisher":"ACM","license":[{"start":{"date-parts":[[2026,4,12]],"date-time":"2026-04-12T00:00:00Z","timestamp":1775952000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/legalcode"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2026,4,12]]},"DOI":"10.1145\/3793655.3793726","type":"proceedings-article","created":{"date-parts":[[2026,7,21]],"date-time":"2026-07-21T16:04:46Z","timestamp":1784649886000},"page":"139-143","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":0,"title":["Jailbreaking Large Language Models via Multi-Task Embedding-based Prompt"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0009-0000-5486-6377","authenticated-orcid":false,"given":"Songrui","family":"Li","sequence":"first","affiliation":[{"name":"Tianjin university, Tianjin, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-2870-7801","authenticated-orcid":false,"given":"Hanmo","family":"You","sequence":"additional","affiliation":[{"name":"Tianjin University, Tianjin, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-1983-6572","authenticated-orcid":false,"given":"Jiajun","family":"Jiang","sequence":"additional","affiliation":[{"name":"Tianjin University, Tianjin, China"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2026,7,21]]},"reference":[{"key":"e_1_3_3_1_2_2","unstructured":"Aliyun. 2025. Qwen models. https:\/\/www.aliyun.com\/product Accessed: September 1 2025."},{"key":"e_1_3_3_1_3_2","volume-title":"The Twelfth International Conference on Learning Representations, ICLR 2024, Vienna, Austria, May 7-11, 2024","author":"Bianchi Federico","year":"2024","unstructured":"Federico Bianchi, Mirac Suzgun, Giuseppe Attanasio, Paul R\u00f6ttger, Dan Jurafsky, Tatsunori Hashimoto, and James Zou. 2024. Safety-Tuned LLaMAs: Lessons From Improving the Safety of Large Language Models that Follow Instructions. In The Twelfth International Conference on Learning Representations, ICLR 2024, Vienna, Austria, May 7-11, 2024. OpenReview.net. https:\/\/openreview.net\/forum?id=gT5hALch9z"},{"key":"e_1_3_3_1_4_2","doi-asserted-by":"publisher","unstructured":"Stefano Bistarelli Marco Fiore Ivan Mercanti and Marina Mongiello. 2025. Usage of Large Language Model for Code Generation Tasks: A Review. SN Comput. Sci. 6 6 (2025) 673. 10.1007\/S42979-025-04241-5","DOI":"10.1007\/S42979-025-04241-5"},{"key":"e_1_3_3_1_5_2","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/2024.findings-acl.304"},{"key":"e_1_3_3_1_6_2","doi-asserted-by":"publisher","DOI":"10.1109\/SaTML64287.2025.00010"},{"key":"e_1_3_3_1_7_2","unstructured":"Yixin Cheng Markos Georgopoulos Volkan Cevher and Grigorios\u00a0G. Chrysos. 2024. Leveraging the Context through Multi-Round Interactions for Jailbreaking Attacks. CoRR abs\/2402.09177 (2024)."},{"key":"e_1_3_3_1_8_2","unstructured":"DeepSeek. 2025. DeepSeek. https:\/\/chat.deepseek.com Accessed: September 1 2025."},{"key":"e_1_3_3_1_9_2","unstructured":"Yihong Dong Xue Jiang Jiaru Qian Tian Wang Kechi Zhang Zhi Jin and Ge Li. 2025. A Survey on Code Generation with LLM-based Agents. arxiv:https:\/\/arXiv.org\/abs\/2508.00083https:\/\/arxiv.org\/abs\/2508.00083"},{"key":"e_1_3_3_1_10_2","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/2023.findings-emnlp.826"},{"key":"e_1_3_3_1_11_2","doi-asserted-by":"publisher","DOI":"10.1145\/3611643.3613892"},{"key":"e_1_3_3_1_12_2","doi-asserted-by":"publisher","DOI":"10.1109\/ICSE-NIER66352.2025.00024"},{"key":"e_1_3_3_1_13_2","doi-asserted-by":"publisher","unstructured":"Fengjie Li Jiajun Jiang Jiajun Sun and Hongyu Zhang. 2025. Hybrid Automated Program Repair by Combining Large Language Models and Program Analysis. ACM Trans. Softw. Eng. Methodol. 34 7 Article 202 (Aug. 2025) 28\u00a0pages. 10.1145\/3715004","DOI":"10.1145\/3715004"},{"key":"e_1_3_3_1_14_2","unstructured":"Yi Liu Gelei Deng Zhengzi Xu Yuekang Li Yaowen Zheng Ying Zhang Lida Zhao Tianwei Zhang and Yang Liu. 2023. Jailbreaking ChatGPT via Prompt Engineering: An Empirical Study. CoRR abs\/2305.13860 (2023)."},{"key":"e_1_3_3_1_15_2","doi-asserted-by":"publisher","DOI":"10.52202\/079017-1952"},{"key":"e_1_3_3_1_16_2","doi-asserted-by":"publisher","DOI":"10.1145\/3597503.3639187"},{"key":"e_1_3_3_1_17_2","unstructured":"Openai. 2025. GPT. https:\/\/chatgpt.com Accessed: September 1 2025."},{"key":"e_1_3_3_1_18_2","unstructured":"Anselm Paulus Arman Zharmagambetov Chuan Guo Brandon Amos and Yuandong Tian. 2024. AdvPrompter: Fast Adaptive Adversarial Prompting for LLMs. CoRR abs\/2404.16873 (2024)."},{"key":"e_1_3_3_1_19_2","unstructured":"Alec Radford Jeff Wu Rewon Child David Luan Dario Amodei and Ilya Sutskever. 2019. Language Models are Unsupervised Multitask Learners. https:\/\/api.semanticscholar.org\/CorpusID:160025533"},{"key":"e_1_3_3_1_20_2","unstructured":"Alexander Robey Eric Wong Hamed Hassani and George\u00a0J. Pappas. 2025. SmoothLLM: Defending Large Language Models Against Jailbreaking Attacks. Trans. Mach. Learn. Res. 2025 (2025)."},{"key":"e_1_3_3_1_21_2","first-page":"2421","volume-title":"USENIX Security Symposium","author":"Russinovich Mark","year":"2025","unstructured":"Mark Russinovich, Ahmed Salem, and Ronen Eldan. 2025. Great, Now Write an Article About That: The Crescendo Multi-Turn LLM Jailbreak Attack. In USENIX Security Symposium. USENIX Association, 2421\u20132440."},{"key":"e_1_3_3_1_22_2","unstructured":"Xiongtao Sun Deyue Zhang Dongdong Yang Quanchen Zou and Hui Li. 2024. Multi-Turn Context Jailbreak Attack on Large Language Models From First Principles. CoRR abs\/2408.04686 (2024)."},{"key":"e_1_3_3_1_23_2","unstructured":"Gemini Team. 2023. Gemini: A Family of Highly Capable Multimodal Models. CoRR abs\/2312.11805 (2023)."},{"key":"e_1_3_3_1_24_2","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/2025.insights-1.12"},{"key":"e_1_3_3_1_25_2","doi-asserted-by":"publisher","DOI":"10.52202\/079017-1012"},{"key":"e_1_3_3_1_26_2","doi-asserted-by":"publisher","unstructured":"Ruofan Yang Xianghua Xu and Ran Wang. 2025. TestLoter: A logic-driven framework for automated unit test generation and error repair using large language models. J. Comput. Lang. 84 (2025) 101348. 10.1016\/J.COLA.2025.101348","DOI":"10.1016\/J.COLA.2025.101348"},{"key":"e_1_3_3_1_27_2","volume-title":"ICLR","author":"Yuan Youliang","year":"2024","unstructured":"Youliang Yuan, Wenxiang Jiao, Wenxuan Wang, Jen-tse Huang, Pinjia He, Shuming Shi, and Zhaopeng Tu. 2024. GPT-4 Is Too Smart To Be Safe: Stealthy Chat with LLMs via Cipher. In ICLR. OpenReview.net."},{"key":"e_1_3_3_1_28_2","unstructured":"Sicheng Zhu Ruiyi Zhang Bang An Gang Wu Joe Barrow Zichao Wang Furong Huang Ani Nenkova and Tong Sun. 2023. AutoDAN: Interpretable Gradient-Based Adversarial Attacks on Large Language Models. https:\/\/api.semanticscholar.org\/CorpusID:264451545"},{"key":"e_1_3_3_1_29_2","unstructured":"Andy Zou Zifan Wang J.\u00a0Zico Kolter and Matt Fredrikson. 2023. Universal and Transferable Adversarial Attacks on Aligned Language Models. CoRR abs\/2307.15043 (2023)."}],"event":{"name":"FORGE '26: IEEE\/ACM Third International Conference on AI Foundation Models and Software Engineering","location":"Rio de Janeiro , Brazil","acronym":"FORGE '26","sponsor":["SIGSOFT ACM Special Interest Group on Software Engineering"]},"container-title":["Proceedings of the 2026 IEEE\/ACM Third International Conference on AI Foundation Models and Software Engineering"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3793655.3793726","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,7,21]],"date-time":"2026-07-21T16:47:57Z","timestamp":1784652477000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3793655.3793726"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026,4,12]]},"references-count":28,"alternative-id":["10.1145\/3793655.3793726","10.1145\/3793655"],"URL":"https:\/\/doi.org\/10.1145\/3793655.3793726","relation":{},"subject":[],"published":{"date-parts":[[2026,4,12]]},"assertion":[{"value":"2026-07-21","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}