@inproceedings{cheng-etal-2025-pbi-attack, title = "{PBI}-Attack: Prior-Guided Bimodal Interactive Black-Box Jailbreak Attack for Toxicity Maximization", author = "Cheng, Ruoxi and Ding, Yizhong and Cao, Shuirong and Duan, Ranjie and Jia, Xiaoshuang and Yuan, Shaowei and Qin, Simeng and Wang, Zhiqiang and Jia, Xiaojun", editor = "Christodoulopoulos, Christos and Chakraborty, Tanmoy and Rose, Carolyn and Peng, Violet", booktitle = "Proceedings of the 2025 Conference on Empirical Methods in Natural Language Processing", month = nov, year = "2025", address = "Suzhou, China", publisher = "Association for Computational Linguistics", url = "https://preview.aclanthology.org/ingest-luhme/2025.emnlp-main.32/", doi = "10.18653/v1/2025.emnlp-main.32", pages = "609--628", ISBN = "979-8-89176-332-6" }