ATR-2026-00151highSkill Compromiseexperimental
Malicious Fork Impersonation via Install Instruction
Detects skills or tool responses that instruct users to install packages described as "community fork", "enhanced version", or "patched version" of known tools. Real attack pattern: attacker publishes a typosquatted package and describes it as a fork to gain trust. Crystallized from 29 fork_claim adversarial samples.
嚴重度
high
類別
Skill Compromise
掃描目標
both
作者
ATR Threat Cloud Crystallization
建議回應
alert
參考資料
OWASP Agentic
ASI04:2026 - Supply Chain Compromise
OWASP LLM
LLM03:2025 - Supply Chain Vulnerabilities