Skip to content

Hide Navigation Hide TOC

Indirect PI — Location, Address, and Browsing History Exfiltration - ATR-2026-00705 (b8861079-181f-5ef3-8872-c34f131a8303)

Detects indirect prompt injection instructions embedded in consumed content that direct an agent to exfiltrate sensitive personal location or browsing data: current location via maps, saved home/work addresses, or Google search history. These payloads exploit agents with access to maps, address books, or browser history tools. Source: indirect-pi-exfil-location-carrier / indirect-pi-exfil-address-carrier / indirect-pi-exfil-browsing-history-carrier.

Cluster A Galaxy A Cluster B Galaxy B Level
Indirect (a4a55526-2f1f-403b-9691-609e46381e17) MITRE ATLAS Attack Pattern Indirect PI — Location, Address, and Browsing History Exfiltration - ATR-2026-00705 (b8861079-181f-5ef3-8872-c34f131a8303) Agent Threat Rules 1
LLM Prompt Injection (19cd2d12-66ff-487c-a05c-e058b027efc9) MITRE ATLAS Attack Pattern Indirect PI — Location, Address, and Browsing History Exfiltration - ATR-2026-00705 (b8861079-181f-5ef3-8872-c34f131a8303) Agent Threat Rules 1
Indirect (a4a55526-2f1f-403b-9691-609e46381e17) MITRE ATLAS Attack Pattern LLM Prompt Injection (19cd2d12-66ff-487c-a05c-e058b027efc9) MITRE ATLAS Attack Pattern 2