Indirect PI — Disable Authentication / MFA via Agent Tool - ATR-2026-00709 (c7859c75-c0c0-52db-8b26-2c0a0e0b321e)
Detects indirect prompt injection payloads that instruct an agent to disable authentication controls: Two-Factor Authentication (2FA/MFA), security settings, or account protection features. The payload is embedded in consumed structured data and exploits agents with account management tool access. Source: indirect-pi-disable-auth-carrier.