{"id":"https://openalex.org/W7128358348","doi":"https://doi.org/10.48550/arxiv.2602.06248","title":"REBEL: Hidden Knowledge Recovery via Evolutionary-Based Evaluation Loop","display_name":"REBEL: Hidden Knowledge Recovery via Evolutionary-Based Evaluation Loop","publication_year":2026,"publication_date":"2026-02-05","ids":{"openalex":"https://openalex.org/W7128358348","doi":"https://doi.org/10.48550/arxiv.2602.06248"},"language":null,"primary_location":{"id":"pmh:doi:10.48550/arxiv.2602.06248","is_oa":true,"landing_page_url":null,"pdf_url":null,"source":{"id":"https://openalex.org/S4406922384","display_name":"Open MIND","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"Article"},"type":"preprint","indexed_in":["datacite"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":null,"any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5125424434","display_name":"Patryk Rybak","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Rybak, Patryk","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5000466672","display_name":"Pawe\u0142 Batorski","orcid":"https://orcid.org/0009-0007-0450-4141"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Batorski, Pawe\u0142","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5070897658","display_name":"Paul Swoboda","orcid":"https://orcid.org/0000-0003-4065-8758"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Swoboda, Paul","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"last","author":{"id":"https://openalex.org/A5125409457","display_name":"Przemys\u0142aw Spurek","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Spurek, Przemys\u0142aw","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]}],"institutions":[],"countries_distinct_count":0,"institutions_distinct_count":4,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":null,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":null,"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.8158000111579895,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.8158000111579895,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.049300000071525574,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12026","display_name":"Explainable Artificial Intelligence (XAI)","score":0.014000000432133675,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/mistake","display_name":"Mistake","score":0.7329999804496765},{"id":"https://openalex.org/keywords/code","display_name":"Code (set theory)","score":0.5968999862670898},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.5501000285148621},{"id":"https://openalex.org/keywords/suite","display_name":"Suite","score":0.4668999910354614},{"id":"https://openalex.org/keywords/loop","display_name":"Loop (graph theory)","score":0.2992999851703644}],"concepts":[{"id":"https://openalex.org/C2777179996","wikidata":"https://www.wikidata.org/wiki/Q911222","display_name":"Mistake","level":2,"score":0.7329999804496765},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.718999981880188},{"id":"https://openalex.org/C2776760102","wikidata":"https://www.wikidata.org/wiki/Q5139990","display_name":"Code (set theory)","level":3,"score":0.5968999862670898},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.5501000285148621},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5333999991416931},{"id":"https://openalex.org/C79581498","wikidata":"https://www.wikidata.org/wiki/Q1367530","display_name":"Suite","level":2,"score":0.4668999910354614},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.46320000290870667},{"id":"https://openalex.org/C184670325","wikidata":"https://www.wikidata.org/wiki/Q512604","display_name":"Loop (graph theory)","level":2,"score":0.2992999851703644},{"id":"https://openalex.org/C2779227376","wikidata":"https://www.wikidata.org/wiki/Q6505497","display_name":"Layer (electronics)","level":2,"score":0.29899999499320984},{"id":"https://openalex.org/C155512373","wikidata":"https://www.wikidata.org/wiki/Q287450","display_name":"Residual","level":2,"score":0.2955000102519989},{"id":"https://openalex.org/C43126263","wikidata":"https://www.wikidata.org/wiki/Q128751","display_name":"Source code","level":2,"score":0.27709999680519104}],"mesh":[],"locations_count":2,"locations":[{"id":"pmh:doi:10.48550/arxiv.2602.06248","is_oa":true,"landing_page_url":null,"pdf_url":null,"source":{"id":"https://openalex.org/S4406922384","display_name":"Open MIND","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"Article"},{"id":"doi:10.48550/arxiv.2602.06248","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2602.06248","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"article"}],"best_oa_location":{"id":"pmh:doi:10.48550/arxiv.2602.06248","is_oa":true,"landing_page_url":null,"pdf_url":null,"source":{"id":"https://openalex.org/S4406922384","display_name":"Open MIND","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"Article"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":0,"referenced_works":[],"related_works":[],"abstract_inverted_index":{"Machine":[0],"unlearning":[1,20,94,99,128],"for":[2,37,62],"LLMs":[3],"aims":[4],"to":[5,44,67,89,149],"remove":[6],"sensitive":[7],"or":[8],"copyrighted":[9],"data":[10,71],"from":[11,85],"trained":[12],"models.":[13],"However,":[14],"the":[15,116],"true":[16],"efficacy":[17],"of":[18,107,115,127],"current":[19,98],"methods":[21,100],"remains":[22],"uncertain.":[23],"Standard":[24],"evaluation":[25],"metrics":[26,42],"rely":[27],"on":[28,113,151,155],"benign":[29],"queries":[30],"that":[31,48,79,87,97,133],"often":[32],"mistake":[33],"superficial":[34,105],"information":[35],"suppression":[36],"genuine":[38],"knowledge":[39,47,84,141],"removal.":[40],"Such":[41],"fail":[43],"detect":[45],"residual":[46],"more":[49],"sophisticated":[50],"prompting":[51],"strategies":[52],"could":[53],"still":[54,73],"extract.":[55],"We":[56,109,157],"introduce":[57],"REBEL,":[58],"an":[59],"evolutionary":[60],"approach":[61],"adversarial":[63],"prompt":[64],"generation":[65],"designed":[66],"probe":[68],"whether":[69],"unlearned":[70],"can":[72],"be":[74,90],"recovered.":[75],"Our":[76,130],"experiments":[77,131],"demonstrate":[78],"REBEL":[80,134],"successfully":[81],"elicits":[82],"``forgotten''":[83,140],"models":[86],"seemed":[88],"forgotten":[91],"in":[92],"standard":[93],"benchmarks,":[95,120],"revealing":[96],"may":[101],"provide":[102],"only":[103],"a":[104,124],"layer":[106],"protection.":[108],"validate":[110],"our":[111],"framework":[112],"subsets":[114],"TOFU":[117,152],"and":[118,153],"WMDP":[119],"evaluating":[121],"performance":[122],"across":[123],"diverse":[125],"suite":[126],"algorithms.":[129],"show":[132],"consistently":[135],"outperforms":[136],"static":[137],"baselines,":[138],"recovering":[139],"with":[142],"Attack":[143],"Success":[144],"Rates":[145],"(ASRs)":[146],"reaching":[147],"up":[148],"60%":[150],"93%":[154],"WMDP.":[156],"will":[158],"make":[159],"all":[160],"code":[161],"publicly":[162],"available":[163,168],"upon":[164],"acceptance.":[165],"Code":[166],"is":[167],"at":[169],"https://github.com/patryk-rybak/REBEL/":[170]},"counts_by_year":[],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2026-02-10T00:00:00"}
