ATK-01

Attacking AI Agents

The attack surface of autonomous agents — prompt-injection chains, tool abuse, confused-deputy and exfiltration, with reproducible proofs of concept.

Attack chain: prompt injection → agent → tool call → exfiltrationinject01agent02tool03exfil04untrusted input ───▸ autonomous decision ───▸ privileged action ───▸ data leaves the boundary
Pillar

The AI Agent Attack Surface: A Practical Threat Model

A practical threat model of autonomous AI agent security: prompt injection, tool abuse, memory poisoning, excessive agency, and multi-agent propagation — mapped to the OWASP Top 10 for Agentic Applications and MITRE ATLAS.

Read

Other domains