Section 01
RecurGuard: A Novel Security Mechanism for Real-Time Defense Against Reasoning Token Consumption Attacks (Introduction)
Researchers propose the RecurGuard runtime monitoring framework, which targets reasoning token consumption attacks (such as OverThink and ExtendAttack) and detects them by real-time analysis of three signals from the reasoning trajectory: recursion rate, volume growth, and task progress. This mechanism achieves a 99% detection rate for OverThink attacks while maintaining a near-zero false positive rate, and can terminate the generation process early to prevent further token consumption.