Matthias Hein

h-index: 6 168 citations 10 papers (total)

Papers in Database (1)

attack arXiv Feb 17, 2026 · 6w ago

Visual Memory Injection Attacks for Multi-Turn Conversations

Christian Schlarmann, Matthias Hein · University of Tübingen

Adversarial image perturbations hijack VLM outputs across 25+ conversation turns, triggering targeted misinformation only on specific user prompts

Input Manipulation Attack Prompt Injection visionnlpmultimodal
PDF Code