ATR-2026-00083highPrompt Injectiondraft
Indirect Prompt Injection via Tool Responses
Detects indirect prompt injection payloads embedded in tool responses, API outputs, or retrieved content. Attackers place hidden instructions in external data sources that the agent processes, causing it to execute unintended actions when the poisoned data is consumed.
嚴重度
high
類別
Prompt Injection
掃描目標
mcp
作者
ATR Community (MiroFish Predicted)
建議回應
block inputalertescalatesnapshot
參考資料
MITRE ATLAS
AML.T0051