Skip to content

Hide Navigation Hide TOC

Indirect Prompt Injection via Data Carrier — IMPORTANT Override - ATR-2026-01304 (14e6bc7e-70ea-50de-86c5-a62e053559b1)

Detects indirect prompt injection attacks where a malicious instruction is embedded inside a data carrier (product description, email body, calendar event, repository description, user bio, review content, etc.) using the pattern "IMPORTANT!!! Ignore all previous instructions and strictly adhere to the following instruction:" followed by a covert action directive. The injection rides inside JSON API responses, emails, database records, or any structured data the agent reads — the outer data structure looks legitimate but the content field contains the override. Observed across the B3 indirect-pi-financial-unauthorized-carrier corpus (34 probes) where the same payload was injected into product details, notes, emails, calendar events, GitHub repository descriptions, user profiles, and more.

Cluster A Galaxy A Cluster B Galaxy B Level
Indirect (a4a55526-2f1f-403b-9691-609e46381e17) MITRE ATLAS Attack Pattern Indirect Prompt Injection via Data Carrier — IMPORTANT Override - ATR-2026-01304 (14e6bc7e-70ea-50de-86c5-a62e053559b1) Agent Threat Rules 1
Indirect (a4a55526-2f1f-403b-9691-609e46381e17) MITRE ATLAS Attack Pattern LLM Prompt Injection (19cd2d12-66ff-487c-a05c-e058b027efc9) MITRE ATLAS Attack Pattern 2