Skip to content

Hide Navigation Hide TOC

Indirect PI — Unauthorized Financial Transfer via Agent Tool - ATR-2026-00708 (7b5e9020-fe87-5f4e-9dd4-05303c874d35)

Detects indirect prompt injection payloads that instruct an agent to initiate unauthorized financial transfers: payments to attacker-controlled accounts, cryptocurrency deposits/withdrawals, or fund movements without user authorization. The payload is embedded in consumed structured data (product reviews, notes, repo descriptions, user bios) and exploits agents with payment or banking tool access. Source: indirect-pi-financial-transfer-carrier / indirect-pi-financial-transfer / indirect-pi-tool-hijack-banking / indirect-pi-financial-crypto-carrier.

Cluster A Galaxy A Cluster B Galaxy B Level
Indirect (a4a55526-2f1f-403b-9691-609e46381e17) MITRE ATLAS Attack Pattern Indirect PI — Unauthorized Financial Transfer via Agent Tool - ATR-2026-00708 (7b5e9020-fe87-5f4e-9dd4-05303c874d35) Agent Threat Rules 1
LLM Prompt Injection (19cd2d12-66ff-487c-a05c-e058b027efc9) MITRE ATLAS Attack Pattern Indirect PI — Unauthorized Financial Transfer via Agent Tool - ATR-2026-00708 (7b5e9020-fe87-5f4e-9dd4-05303c874d35) Agent Threat Rules 1
Indirect (a4a55526-2f1f-403b-9691-609e46381e17) MITRE ATLAS Attack Pattern LLM Prompt Injection (19cd2d12-66ff-487c-a05c-e058b027efc9) MITRE ATLAS Attack Pattern 2