Skip to content

Hide Navigation Hide TOC

Identity Command Real-Person Persona Injection - ATR-2026-00376 (f32476e7-c9fa-5231-91aa-6476a2732b5a)

Detects the /Identity command real-person persona injection from garak DanInTheWild corpus (#386). Defines a "/Identity" command that activates named real-person personas who respond "using their style of wording and their beliefs" — bypassing content restrictions by impersonating real people. The "Never write a response without using the identities" mandate and (Chat.Gpt Response)/("Name".Gpt response) dual-format are distinctive. Key signals: "/Identity" command protocol definition, dual-format response labeling (Chat.Gpt Response + Name.Gpt response), "act as if they were that person using their style of wording and their beliefs", persistent identity lock instruction.

Cluster A Galaxy A Cluster B Galaxy B Level
LLM Prompt Injection (19cd2d12-66ff-487c-a05c-e058b027efc9) MITRE ATLAS Attack Pattern Identity Command Real-Person Persona Injection - ATR-2026-00376 (f32476e7-c9fa-5231-91aa-6476a2732b5a) Agent Threat Rules 1
Identity Command Real-Person Persona Injection - ATR-2026-00376 (f32476e7-c9fa-5231-91aa-6476a2732b5a) Agent Threat Rules LLM Jailbreak (172427e3-9ecc-49a3-b628-96b824cc4131) MITRE ATLAS Attack Pattern 1