← All news
Indirect Prompt Injection
Indirect prompt injection is a security vulnerability where attackers embed malicious instructions within data sources that an AI system retrieves and processes, rather than injecting prompts directly into user input. This attack vector is particularly dangerous in enterprise environments because it can compromise AI systems that rely on external data feeds, documents, or databases without the end user's knowledge or ability to detect the attack. Organizations implementing AI governance must monitor data pipeline security and validate retrieved information to prevent attackers from manipulating model outputs through compromised supply chain data.
1 item
