cd /news/artificial-intelligence/openevoshield-dual-non-stationary-co… · home topics artificial-intelligence article
[ARTICLE · art-69585] src=arxiv.org ↗ pub= topic=artificial-intelligence verified=true sentiment=↑ positive

OpenEvoShield: Dual Non-Stationary Continual Defense for Open-World Multi-Agent System Attacks

A new defense framework called OpenEvoShield, designed for LLM-based multi-agent systems (LLM-MAS), outperforms static and continual baselines by detecting most previously unseen attacks while keeping false positive rates low, according to a paper on arXiv. The co-evolutionary continual defense framework uses an asymmetric rate controller, a normal-boundary updater, an EWC-regularized policy ensemble, and an energy-based multi-granularity detector to handle doubly dynamic attacks and normal-agent drift. Experiments over 100 deployment rounds across five benchmarks and four MAS topologies validated its effectiveness.

read1 min views1 publishedJul 23, 2026

arXiv:2607.19351v1 Announce Type: new Abstract: LLM-based multi-agent systems (LLM-MAS) are increasingly deployed in safety-critical applications, where adversaries inject malicious instructions through inter-agent communication to propagate harmful behaviors. Unlike static threats, these attacks are doubly dynamic: adversaries refine injection strategies against deployed defenses while normal-agent behavior drifts with system expansion. Existing defenses treat deployment as a closed-world problem and degrade rapidly once either distribution shifts beyond training coverage. We propose OpenEvoShield, a co-evolutionary continual defense framework for LLM-MAS. An asymmetric rate controller (M1) decouples fast attack-side and slow normal-side learning rates from dual drift signals. A normal-boundary updater (M2) maintains a dynamic behavioral boundary at the slow rate, while an EWC-regularized policy ensemble (M3) fast-adapts without catastrophic forgetting. An energy-based multi-granularity detector (M4) fuses node-, subgraph-, and graph-level evidence to classify novel attacks as out-of-distribution. Experiments over 100 deployment rounds across five benchmarks and four MAS topologies show that OpenEvoShield outperforms static and continual baselines, detecting most previously unseen attacks while keeping false positive rates low.

── more in #artificial-intelligence 4 stories · sorted by recency
── more on @openevoshield 3 stories trending now
sponsored brought to you by zahid.host 4,200+ EU-deployed projects
reading about agents? ship yours in a single git push.

Run your AI side-project on zahid.host

EU-based hosting, git-push deploys, automatic HTTPS, no cold starts. Free tier with a custom domain — perfect for shipping the agent you just read about.

$git push zahid main
Live at https://your-agent.zahid.host
Get free account → Pricing
from €0/mo · no card required
LIVE [news/openevoshield-dual-n…] indexed:0 read:1min 2026-07-23 ·