Special Token Injection (STI) Attack Guide
blog.sentry.security | blog | #ai-security | #pentesting | #prompt-injection | #llm | #special-token-injection | #chatml
Summary
A pentester's guide to Special Token Injection (STI): reserved tokens and chat templates, when poorly escaped, let attackers override system prompts, forge roles, and hijack tool calls in LLMs.
- Published
- Collected
Skip to content