SQL Injection UNION SELECT Data Exfiltration - ATR-2026-01602 (95ccc395-26cf-5b9f-9a55-f72638d80514)
Detects UNION SELECT injection in agent tool arguments intended to append a second SELECT statement to the original query, exfiltrating data from other tables (e.g., credentials, PII, financial records) alongside the normal result set. This is the primary SQL exfiltration technique targeting AI agents that forward search/filter inputs to SQL queries without parameterization.