Skip to content

Hide Navigation Hide TOC

Multi-Turn Prompt Injection - ATR-2026-00005 (fe430dff-a8ff-53e4-9931-2882d2414711)

Detects multi-turn prompt injection where an attacker gradually manipulates the agent across conversation turns. Rather than using unsupported behavioral operators, this rule uses regex-based detection of linguistic markers that appear in multi-turn attacks: trust-building phrases followed by escalation, incremental boundary-pushing language, false references to prior agreement, context anchoring and gaslighting, progressive request escalation patterns, refusal fatigue phrases, and conversation history manipulation. Each pattern targets a specific phase of the multi-turn attack lifecycle using only the regex operator for engine compatibility.

Cluster A Galaxy A Cluster B Galaxy B Level
Multi-Turn Prompt Injection - ATR-2026-00005 (fe430dff-a8ff-53e4-9931-2882d2414711) Agent Threat Rules LLM Prompt Injection (19cd2d12-66ff-487c-a05c-e058b027efc9) MITRE ATLAS Attack Pattern 1
Multi-Turn Prompt Injection - ATR-2026-00005 (fe430dff-a8ff-53e4-9931-2882d2414711) Agent Threat Rules Craft Adversarial Data (a7c30122-b393-4265-91b7-57cd1211e3f9) MITRE ATLAS Attack Pattern 1