DoS Injection: NEW IMPORTANT INSTRUCTIONS Embedded in Document Data - ATR-2026-01759 (d19cb2f7-9ed9-5181-8d72-216716817d16)
Detects indirect prompt injection that embeds adversarial instructions inside document or data content using the " NEW IMPORTANT INSTRUCTIONS " header pattern. The attack appends an override command inside a document that an agent is processing (e.g., summarise this article, answer a question about this data). The model processes the document and encounters the injected header, which it treats as authoritative system instructions. Canonical payload from spikee dos-output-amplification corpus (2026-06): the instruction after the header is a repeat-N-times DoS command, but the header pattern itself is a generic injection carrier for any malicious command. This rule detects the header artifact; the specific payload (DoS, exfil, etc.) is handled by downstream rules.