Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

Exploiting Tool and Function Calling in LLM Agents

Summary

Exploiting tool and function calling in LLM agents: exposed messages[], privileged roles, and unescaped control tokens let attackers steer agent actions, echoing OWASP LLM06 Excessive Agency.
Published
Collected

original ↗

Related coverage

back