Not what you've signed up for: Compromising Real-World LLM-Integrated Applications with Indirect Prompt InjectionNot what you've signed up for: Compromising Real-World LLM-Integrated Applications with Indirect Prompt Injection - 2302.12173v2.pdf

Created 3/11/2026 at 7:41:58 PM

generally considered the foundational academic work on indirect prompt injection. It's been reproduced against virtually every major agentic system since.

Public