Skip to content

Hide Navigation Hide TOC

Indirect PI — Financial Data Exfiltration via Agent Action - ATR-2026-00703 (8022143f-0fe8-5b9b-b727-4c62758b862e)

Detects indirect prompt injection that instructs an agent to retrieve and exfiltrate financial data: payment methods, bank account details, card information, or financial reports. The payload is embedded in consumed content (structured data, documents, emails) and the agent is induced to send financial information to an attacker-controlled destination. Source: indirect-pi-exfil-financial-carrier / indirect-pi-exfil-banking / indirect-pi-exfil-financial.

Cluster A Galaxy A Cluster B Galaxy B Level
Indirect PI — Financial Data Exfiltration via Agent Action - ATR-2026-00703 (8022143f-0fe8-5b9b-b727-4c62758b862e) Agent Threat Rules Indirect (a4a55526-2f1f-403b-9691-609e46381e17) MITRE ATLAS Attack Pattern 1
Indirect PI — Financial Data Exfiltration via Agent Action - ATR-2026-00703 (8022143f-0fe8-5b9b-b727-4c62758b862e) Agent Threat Rules LLM Prompt Injection (19cd2d12-66ff-487c-a05c-e058b027efc9) MITRE ATLAS Attack Pattern 1
Indirect (a4a55526-2f1f-403b-9691-609e46381e17) MITRE ATLAS Attack Pattern LLM Prompt Injection (19cd2d12-66ff-487c-a05c-e058b027efc9) MITRE ATLAS Attack Pattern 2