2 papers
cs.CR2026
PhantomSkill: Malicious Code Injection in Agent Skill Ecosystems
Yu-Ting Lin, Chia-Mu Yu
Agent skills allow LLM-based coding agents to acquire domain-specific capabilities from third-party packages, but they also introduce a new supply-chain attack surface. We present…
cs.CV2025
Prompting the Unseen: Detecting Hidden Backdoors in Black-Box Models
Zi-Xuan Huang, Jia-Wei Chen, Zhi-Peng Zhang +1
Visual prompting (VP) is a new technique that adapts well-trained frozen models for source domain tasks to target domain tasks. This study examines VP's benefits for black-box mode…