Michelle Zimmermann

h-index: 1 1 citations 1 papers (total)

Papers in Database (1)

benchmark arXiv Nov 8, 2025 · Nov 2025

When AI Meets the Web: Prompt Injection Risks in Third-Party AI Chatbot Plugins

Yigitcan Kaya, Anton Landerer, Stijn Pletinckx et al. · University of California

Empirically studies 17 chatbot plugins across 10,000 sites, revealing insecure plugin designs that amplify direct and indirect prompt injection attacks 3–8x

Prompt Injection Insecure Plugin Design nlp
1 citations PDF