• Document formats
  • Extraction behavior
  • RAG evaluation
Home/Projects/Hemlock
Project 05Shipping

Hemlock

Weaponize documents. Test RAG defenses. Harden pipelines.

professor-moody.github.io

Research focus.

A Go library and CLI that generates documents containing hidden prompt-injection payloads for testing RAG pipelines. 11 formats, 63 hiding techniques, 75 payload templates, and a validation engine that simulates extraction by LangChain, LlamaIndex, Unstructured.io, and Haystack. Operationalises PoisonedRAG (USENIX '25) and PhantomText (AISec '25).

Read into the work.

2 essays
  1. Two RAG systems, same injection rate, different problems

    12 min read
  2. Channel, Decoder, Substrate: A Vocabulary for ML Attacks

    16 min read
← All projects