Attack Prompt Generation for Red Teaming and Defending Large Language Models