RAGdrag Deep Dive: Poisoning the Knowledge Base
RAGdrag Deep Dive: Poisoning the Knowledge Base Last week we mapped the target's internals. Now we use that information to put our own documents inside the knowledge base. This is R4 Poison -- the phase where observation becomes action. If R2 told you the system uses top-k=3