跳到主要导航 跳到搜索 跳到主要内容

SafeToolBench: Pioneering a Prospective Benchmark to Evaluating Tool Utilization Safety in LLMs

  • Hongfei Xia
  • , Hongru Wang
  • , Zeming Liu
  • , Qian Yu
  • , Yuhang Guo*
  • , Haifeng Wang
  • *此作品的通讯作者
  • Beijing Institute of Technology
  • Chinese University of Hong Kong
  • Beihang University
  • Baidu Inc

科研成果: 书/报告/会议事项章节会议稿件同行评审

摘要

Large Language Models (LLMs) have exhibited great performance in autonomously calling various tools in external environments, leading to better problem solving and task automation capabilities. However, these external tools also amplify potential risks such as financial loss or privacy leakage with ambiguous or malicious user instructions. Compared to previous studies, which mainly assess the safety awareness of LLMs after obtaining the tool execution results (i.e., retrospective evaluation), this paper focuses on prospective ways to assess the safety of LLM tool utilization, aiming to avoid irreversible harm caused by directly executing tools. To this end, we propose SafeToolBench, the first benchmark to comprehensively assess tool utilization security in a prospective manner, covering malicious user instructions and diverse practical toolsets. Additionally, we propose a novel framework, SafeInstructTool, which aims to enhance LLMs’ awareness of tool utilization security from three perspectives (i.e., User Instruction, Tool Itself, and Joint Instruction-Tool), leading to nine detailed dimensions in total. We experiment with four LLMs using different methods, revealing that existing approaches fail to capture all risks in tool utilization. In contrast, our framework significantly enhances LLMs’ self-awareness, enabling a more safe and trustworthy tool utilization. Our code and data are publicly available at https://github.com/BITHLP/SafeToolBench.

源语言英语
主期刊名EMNLP 2025 - 2025 Conference on Empirical Methods in Natural Language Processing, Findings of EMNLP 2025
编辑Christos Christodoulopoulos, Tanmoy Chakraborty, Carolyn Rose, Violet Peng
出版商Association for Computational Linguistics (ACL)
17643-17660
页数18
ISBN(电子版)9798891763357
DOI
出版状态已出版 - 2025
已对外发布
活动30th Conference on Empirical Methods in Natural Language Processing, EMNLP 2025 - Suzhou, 中国
期限: 4 11月 20259 11月 2025

出版系列

姓名EMNLP 2025 - 2025 Conference on Empirical Methods in Natural Language Processing, Findings of EMNLP 2025

会议

会议30th Conference on Empirical Methods in Natural Language Processing, EMNLP 2025
国家/地区中国
Suzhou
时期4/11/259/11/25

学术指纹

探究 'SafeToolBench: Pioneering a Prospective Benchmark to Evaluating Tool Utilization Safety in LLMs' 的科研主题。它们共同构成独一无二的学术指纹。

引用此