3 papers
cs.CR2026
Reachability-Based Capability Confinement for LLM Agents under Indirect Prompt Injection
Wujie Xiong, Rabimba Karanjai, Yang Lu +2
Large language model agents place outputs from external skills into their execution context, allowing attacker-controlled data to influence later privileged actions. Existing defen…
cs.CR2026
When Agents Act on Web3: An Attack-Surface Survey of MCP, Skills, and Tool Calling
Rabimba Karanjai, Yang Lu, Nour Diallo +4
AI agents increasingly act rather than merely read: across the Model Context Protocol (MCP) ecosystem, the share of deployed tools that modify external state has risen from 27% to…
cs.AI2026
Rethinking Publication: A Certification Framework for AI-Enabled Research
Yang Lu, Rabimba Karanjai, Lei Xu +1
AI research pipelines can now generate academic work that may satisfy existing peer review standards for quality, novelty, and methodological rigor. However, the publication system…