Exploiting Tool and Function Calling in LLM Agents
blog.sentry.security | blog | #ai-security | #prompt-injection | #ai-agents | #llm | #owasp | #tool-calling
Summary
Exploiting tool and function calling in LLM agents: exposed messages[], privileged roles, and unescaped control tokens let attackers steer agent actions, echoing OWASP LLM06 Excessive Agency.
- Published
- Collected
Skip to content