Tag: Indirect Prompt Injection Attack
Attack technique against Large Language Model (LLM) systems where malicious instructions are injected indirectly via external content processed by the model, such as documents, emails, web pages, or databases. Unlike direct prompt injection, the attacker does not control the initial prompt but manipulates input data that the LLM system retrieves and interprets, causing unauthorized behavior, information exfiltration, or security policy bypass.







