1 paper
Huan Li, Yuwei Wang, Srinivasan Manoharan
LLM agents translate natural-language context, which may include attacker-controlled text, into privileged tool calls, so authorization must remain effective even when an agent is…