Skip to content

Hide Navigation Hide TOC

Encoding Evasion via Homoglyphs and Synonym Substitution - ATR-2026-00202 (c6bc667d-a80d-5824-986d-18d3263c9bca)

Detects evasion techniques that bypass keyword-based detection by substituting visually similar Unicode characters (homoglyphs, e.g., Cyrillic а→Latin a) or using synonym substitution (disregard→ignore, circumvent→bypass) to rewrite instruction override payloads. These techniques exploit the gap between visual rendering and regex-based detection. Derived from skill-sanitizer v2.1 field testing.

Cluster A Galaxy A Cluster B Galaxy B Level
LLM Prompt Injection (19cd2d12-66ff-487c-a05c-e058b027efc9) MITRE ATLAS Attack Pattern Encoding Evasion via Homoglyphs and Synonym Substitution - ATR-2026-00202 (c6bc667d-a80d-5824-986d-18d3263c9bca) Agent Threat Rules 1