Christopher Kruegel

h-index: 2 27 citations 9 papers (total)

Papers in Database (1)

benchmark arXiv Nov 8, 2025 · Nov 2025

When AI Meets the Web: Prompt Injection Risks in Third-Party AI Chatbot Plugins

Yigitcan Kaya, Anton Landerer, Stijn Pletinckx et al. · University of California

Empirically studies 17 chatbot plugins across 10,000 sites, revealing insecure plugin designs that amplify direct and indirect prompt injection attacks 3–8x

Prompt Injection Insecure Plugin Design nlp
1 citations PDF