2 papers
cs.CR2026
PARASITE: Conditional System Prompt Poisoning to Hijack LLMs
Viet Pham, Thai Le
Large Language Models (LLMs) are increasingly deployed via third-party system prompts downloaded from public marketplaces. We identify a critical supply-chain vulnerability: condit…
cs.CR2025
Manipulating LLM Web Agents with Indirect Prompt Injection Attack via HTML Accessibility Tree
Sam Johnson, Viet Pham, Thai Le
This work demonstrates that LLM-based web navigation agents offer powerful automation capabilities but are vulnerable to Indirect Prompt Injection (IPI) attacks. We show that adver…