Skip to content

Hide Navigation Hide TOC

Indirect PI — Unauthorized Physical Access Grant via Smart Lock / Home Automation - ATR-2026-00710 (8249b72e-8b82-5084-9ff4-ce1dff6bd957)

Detects indirect prompt injection payloads that instruct an agent to grant physical access to a premises: adding guests to smart lock systems (August, Kwikset), unlocking doors, or modifying access control rules. The payload is embedded in consumed content and exploits agents with home automation or physical security tool access. Source: indirect-pi-physical-access-carrier / indirect-pi-physical-access.

Cluster A Galaxy A Cluster B Galaxy B Level
Indirect (a4a55526-2f1f-403b-9691-609e46381e17) MITRE ATLAS Attack Pattern Indirect PI — Unauthorized Physical Access Grant via Smart Lock / Home Automation - ATR-2026-00710 (8249b72e-8b82-5084-9ff4-ce1dff6bd957) Agent Threat Rules 1
LLM Prompt Injection (19cd2d12-66ff-487c-a05c-e058b027efc9) MITRE ATLAS Attack Pattern Indirect PI — Unauthorized Physical Access Grant via Smart Lock / Home Automation - ATR-2026-00710 (8249b72e-8b82-5084-9ff4-ce1dff6bd957) Agent Threat Rules 1
Indirect (a4a55526-2f1f-403b-9691-609e46381e17) MITRE ATLAS Attack Pattern LLM Prompt Injection (19cd2d12-66ff-487c-a05c-e058b027efc9) MITRE ATLAS Attack Pattern 2