ATR-2026-00129criticalSkill Compromiseexperimental
Unicode Tag Character Smuggling
Detects Unicode Tag characters (U+E0001-U+E007F) and other invisible Unicode ranges used to smuggle hidden instructions in SKILL.md files. These characters are invisible in most editors and renderers but are processed by AI agents as text. Snyk ToxicSkills research (Feb 2026) documented this as "ASCII smuggling" — invisible payloads that agents read but humans cannot see.
嚴重度
critical
類別
Skill Compromise
掃描目標
skill
作者
ATR Community
建議回應
alertblock input
參考資料
OWASP LLM
LLM01:2025 - Prompt Injection