Shuo Ji

Papers in Database (1)

attack arXiv Feb 17, 2026 · 6w ago

Zombie Agents: Persistent Control of Self-Evolving LLM Agents via Self-Reinforcing Injections

Xianglin Yang, Yufei He, Shuo Ji et al. · National University of Singapore

Persistent cross-session attack poisons LLM agent memory via indirect web injection, causing unauthorized tool actions across future sessions

Prompt Injection Excessive Agency nlp
PDF