Skip to content

Hide Navigation Hide TOC

Malware Dropper / Loader Code Generation Request - ATR-2026-00266 (c66eba2f-d4d8-5fce-9022-576b2f44a17a)

Detects prompts asking the LLM to generate dropper, loader, stager, or downloader malware — code whose primary purpose is to fetch and execute a second-stage payload. From NVIDIA garak malwaregen.Dropper probe. Distinct from generic malware generation: dropper-specific language ("stage-0", "beacon", "shellcode loader", "download and exec", "reflective PE") signals active exploitation infrastructure, not just harmful scripts.

Cluster A Galaxy A Cluster B Galaxy B Level
LLM Plugin Compromise (adbb0dd5-ff66-4b2f-869f-bfb3fdb45fc8) MITRE ATLAS Attack Pattern Malware Dropper / Loader Code Generation Request - ATR-2026-00266 (c66eba2f-d4d8-5fce-9022-576b2f44a17a) Agent Threat Rules 1