trustmebro:用伪造的工具输出混淆 LLM,绕过 AI Agent 护栏
github.com | 工具 | #ai-security | #open-source | #red-team | #llm-security | #ai-agents | #guardrail-bypass | #go | #llm | #guardrails | #tool-calling | #path-shim
摘要
trustmebro 通过伪造工具输出绕过 LLM 护栏:以 PATH shim 拦截 dig 等命令并返回伪造或正则改写后的 stdout,欺骗信任 shell 工具输出的 AI 智能体,并以 JSONL 记录审计日志。
- 收录时间
Skip to content