Skip to content

Hide Navigation Hide TOC

Encoding-Evasion: Decode-and-Execute Injection (Morse/ROT13/Hex/Pig-Latin) - ATR-2026-01012 (abcf6a5a-7fcc-50e2-9f3c-27e50fda90d1)

Detects direct prompt injection where the attacker encodes a harmful question or instruction in an alternative cipher (Morse code, ROT13, hexadecimal bytes, Pig Latin, Base64 with explicit decode instruction) and asks the model to decode then answer or execute it. The encoding is the evasion mechanism — the question itself would trip keyword filters in plain text. The defining artifact is an explicit decode instruction ("decode this Morse code and tell me / can you decode this ROT13 cipher") immediately preceding or enclosing the encoded payload. Distinct from ATR-2026-00001 Layer 10/11/14 which covers base64 injection keywords; this rule covers deliberate decode-and-answer instructions with non-base64 encodings that those layers miss, and also the Pig-Latin variant.

Cluster A Galaxy A Cluster B Galaxy B Level
LLM Prompt Injection (19cd2d12-66ff-487c-a05c-e058b027efc9) MITRE ATLAS Attack Pattern Encoding-Evasion: Decode-and-Execute Injection (Morse/ROT13/Hex/Pig-Latin) - ATR-2026-01012 (abcf6a5a-7fcc-50e2-9f3c-27e50fda90d1) Agent Threat Rules 1
LLM Jailbreak (172427e3-9ecc-49a3-b628-96b824cc4131) MITRE ATLAS Attack Pattern Encoding-Evasion: Decode-and-Execute Injection (Morse/ROT13/Hex/Pig-Latin) - ATR-2026-01012 (abcf6a5a-7fcc-50e2-9f3c-27e50fda90d1) Agent Threat Rules 1