Skip to content

Hide Navigation Hide TOC

Tool Misuse — Autonomous Financial Trading / Crypto Transaction Without Authorization - ATR-2026-00718 (20459033-3e00-5937-859a-45a5740fcf0f)

Detects direct user requests that instruct an agent with financial tool access to autonomously execute trades, place sell/buy orders, or withdraw cryptocurrency without requiring explicit human confirmation on each transaction. Includes urgency-driven requests (sell quickly, urgent need for funds) that bypass normal trading review, and requests that access wallet addresses stored in external locations. Source: tool-misuse-financial (ToolEmu corpus).

Cluster A Galaxy A Cluster B Galaxy B Level
LLM Prompt Injection (19cd2d12-66ff-487c-a05c-e058b027efc9) MITRE ATLAS Attack Pattern Tool Misuse — Autonomous Financial Trading / Crypto Transaction Without Authorization - ATR-2026-00718 (20459033-3e00-5937-859a-45a5740fcf0f) Agent Threat Rules 1