Skip to content

Hide Navigation Hide TOC

Reversed Payload String (HackAPrompt Canary) - ATR-2026-02016 (e321a143-a340-5875-9b7b-24a764b5fd34)

Detects a reversed-text obfuscation payload that spells the canary word "PWNED" backwards ("DENWP") to smuggle a forced-output marker past plain-text filters. Attackers frame the request as a translation, movie-title rewrite, or word-reversal exercise and embed the reversed canary inside an otherwise plausible sentence so the model reproduces it verbatim, proving prompt-injection compliance. Recovered from the HackAPrompt false-negative corpus, where this reversal variant evaded existing plain-text "PWNED" canary detection. Channel caveat: this is a corpus-fingerprint rule, not a universal reversed-text detector -- it anchors on the literal reversed spelling of the specific canary word "PWNED" used throughout the HackAPrompt benchmark, and will not catch reversal-obfuscation of arbitrary other secrets or payloads outside this canary.

Cluster A Galaxy A Cluster B Galaxy B Level
LLM Prompt Injection (19cd2d12-66ff-487c-a05c-e058b027efc9) MITRE ATLAS Attack Pattern Reversed Payload String (HackAPrompt Canary) - ATR-2026-02016 (e321a143-a340-5875-9b7b-24a764b5fd34) Agent Threat Rules 1
Reversed Payload String (HackAPrompt Canary) - ATR-2026-02016 (e321a143-a340-5875-9b7b-24a764b5fd34) Agent Threat Rules LLM Jailbreak (172427e3-9ecc-49a3-b628-96b824cc4131) MITRE ATLAS Attack Pattern 1
Reversed Payload String (HackAPrompt Canary) - ATR-2026-02016 (e321a143-a340-5875-9b7b-24a764b5fd34) Agent Threat Rules Obfuscated Files or Information - T1027 (b3d682b6-98f2-4fb0-aa3b-b4df007ca70a) Attack Pattern 1