DeFi Daily News
Wednesday, September 16, 2026
Advertisement
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • Altcoins
    • DeFi-IRA
  • DeFi
    • NFT
    • Metaverse
    • Web 3
  • Finance
    • Business Finance
    • Personal Finance
  • Markets
    • Crypto Market
    • Stock Market
    • Analysis
  • Other News
    • World & US
    • Politics
    • Entertainment
    • Tech
    • Sports
    • Health
  • Videos
No Result
View All Result
DeFi Daily News
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • Altcoins
    • DeFi-IRA
  • DeFi
    • NFT
    • Metaverse
    • Web 3
  • Finance
    • Business Finance
    • Personal Finance
  • Markets
    • Crypto Market
    • Stock Market
    • Analysis
  • Other News
    • World & US
    • Politics
    • Entertainment
    • Tech
    • Sports
    • Health
  • Videos
No Result
View All Result
DeFi Daily News
No Result
View All Result
Home DeFi Web 3

rewrite this title AI Agents Still Can’t Stop Prompt Injection Attacks, Researchers Warn – Decrypt

Jason Nelson by Jason Nelson
June 12, 2026
in Web 3
0 0
0
rewrite this title AI Agents Still Can’t Stop Prompt Injection Attacks, Researchers Warn – Decrypt
0
SHARES
2
VIEWS
Share on FacebookShare on TwitterShare on Telegram
Listen to this article


rewrite this content using a minimum of 1000 words and keep HTML tags

In brief

Researchers found AI agents powered by GPT-5 and Gemini could not resist prompt injection attacks.
Direct attacks succeeded more than 79% of the time, while hidden attacks embedded in web content frequently manipulated agent behavior.
The findings suggest prompt injection remains a broader security problem as AI agents become more mainstream.

As developers race to deploy AI agents capable of browsing the internet, conducting research, shopping online, and trading cryptocurrency autonomously, new research suggests the systems remain highly vulnerable to prompt injection attacks.

In a new study published on Thursday, researchers from Nanyang Technological University, ST Engineering, IBM Research, and the University of Illinois Urbana-Champaign found that none of the AI agents they tested consistently resisted prompt injection attacks.

“Existing security benchmarks adopt an attack-centric perspective, focusing on the technical feasibility of injections while overlooking the nuanced distribution of resulting harms,” the researchers wrote. “In practice, however, prompt-injection risk is victim-dependent: a single exploit can produce asymmetric consequences for different stakeholders, and the same attack pattern may exhibit substantially different effectiveness depending on whom it targets.”

Prompt injection occurs when attackers embed hidden instructions in content that an AI agent encounters, causing it to follow the attacker’s directions instead of the user’s. To address gaps in existing AI agent evaluations, the researchers developed StakeBench, a benchmark that tests how AI agents respond to prompt injection attacks in realistic online environments.



“We now use StakeBench to characterize the conditions under which this vulnerability is amplified or suppressed, focusing on [Indirect Prompt Injection] as the primary deployment-relevant channel,” the researchers wrote. “StakeBench probes three such factors: the semantic distance between the injected objective and the user’s original intent, the consistency of surrounding environmental cues, and the position along the agent’s execution trajectory at which the benchmark first exposes it to the injected content.”

The team conducted 3,168 attack simulations using NanoBrowser and BrowserUse with GPT-5 and Gemini 2.5-Flash. Researchers found direct prompt injection attacks succeeded more than 79% of the time across all tested configurations, and indirect attacks achieved success rates of 41.67% to 68.16%.

The study comes as prompt injection attacks become increasingly common and AI agents proliferate.

In February, Microsoft researchers warned that hidden instructions embedded in AI summary links could influence chatbot behavior. In April, Google documented prompt injection attacks hidden in web pages that attempted to manipulate AI agents into leaking credentials or sending payments. More recently, Microsoft disclosed a prompt injection flaw in Anthropic’s Claude Code GitHub Action that could have exposed user credentials.

The study also identified what researchers called “stealthy parasitism,” where an AI agent completes a user’s task while simultaneously advancing an attacker’s objective. For example, stealthy parasitism caused by a prompt injection attack could subtly influence product recommendations, steering users toward a particular item without any obvious signs that the system had been compromised.

“These results indicate that prompt-injection security in deployable web agents is not a scalar property of the backbone model but a distribution of harm whose realization is jointly determined by the affected stakeholder, the semantic alignment between the injected objective and the user’s task, and the architectural context in which the backbone is deployed,” they wrote.

Daily Debrief Newsletter

Start every day with the top news stories right now, plus original features, a podcast, videos and more.

and include conclusion section that’s entertaining to read. do not include the title. Add a hyperlink to this website http://defi-daily.com and label it “DeFi Daily News” for more trending news articles like this



Source link

Tags: agentsattacksDecryptInjectionPromptResearchersrewriteSTOPtitlewarn
ShareTweetShare
Previous Post

rewrite this title and make it good for SEO Multiple $100,000 Bounties Are Live For Topps Chrome VeeFriends ERUPT! Inserts

Next Post

Banks Admit To Lying!?🔥Ripple CEO slams Banks!🚨

Next Post
Banks Admit To Lying!?🔥Ripple CEO slams Banks!🚨

Banks Admit To Lying!?🔥Ripple CEO slams Banks!🚨

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Search

No Result
View All Result
  • Trending
  • Comments
  • Latest
US Orders Some Embassy Staff to Leave Baghdad on Iran Threat

US Orders Some Embassy Staff to Leave Baghdad on Iran Threat

June 12, 2025
rewrite this title Bitcoin’s Trajectory Towards 2026: A Comprehensive Price Outlook

rewrite this title Bitcoin’s Trajectory Towards 2026: A Comprehensive Price Outlook

July 15, 2025
Fed Chair Jerome Powell talks economy, rate cuts, and monetary policy with David Rubenstein

Fed Chair Jerome Powell talks economy, rate cuts, and monetary policy with David Rubenstein

July 15, 2024
The World Is Slowly Moving From the Dollar as Reserve Currency, Says Rabobank’s Foley

The World Is Slowly Moving From the Dollar as Reserve Currency, Says Rabobank’s Foley

March 6, 2025
US, Russia Meet in Saudi Arabia Following Macron’s Emergency Summit

US, Russia Meet in Saudi Arabia Following Macron’s Emergency Summit

February 18, 2025

Yahoo Finance Live: Daily Market Coverage – August 14, 2026 9AM-11AM (ET)

August 14, 2026

Crypto Died Today? Fully Explained in Less than 11 minutes

September 15, 2026

Yahoo Finance Live: Daily Market Coverage – September 15, 2026 3PM – 5PM (ET)

September 15, 2026

He was 14, cold-calling car dealers. His dad had already called ahead.

September 15, 2026

The Pat McAfee Show Live | Tuesday September 15th 2026

September 15, 2026

FULL: Treasury Secretary Scott Bessent testifies on the Iran war, gas prices and inflation

September 15, 2026

CLARITY Vote FINAL HOUR!🚨Banks Launch Last Attack On Your Yields!🔥

September 15, 2026
DeFi Daily

Stay updated with DeFi Daily, your trusted source for the latest news, insights, and analysis in finance and cryptocurrency. Explore breaking news, expert analysis, market data, and educational resources to navigate the world of decentralized finance.

  • About Us
  • Blogs
  • DeFi-IRA | Learn More.
  • Advertise with Us
  • Disclaimer
  • Privacy Policy
  • DMCA
  • Cookie Privacy Policy
  • Terms and Conditions
  • Contact us

Copyright © 2024 Defi Daily.
Defi Daily is not responsible for the content of external sites.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • Altcoins
    • DeFi-IRA
  • DeFi
    • NFT
    • Metaverse
    • Web 3
  • Finance
    • Business Finance
    • Personal Finance
  • Markets
    • Crypto Market
    • Stock Market
    • Analysis
  • Other News
    • World & US
    • Politics
    • Entertainment
    • Tech
    • Sports
    • Health
  • Videos

Copyright © 2024 Defi Daily.
Defi Daily is not responsible for the content of external sites.