1 paper
Boyang Zhang, Qingxin Xiao, Lingwei Dang +1
Tool-augmented language agents are vulnerable to indirect prompt injection (IPI). Unlike direct prompt injection, IPI hides adversarial instructions in untrusted tool outputs and c…