Schmotz, Abdelnabi, Andriushchenko
View original resourceResearch showing that Claude's Skills feature, which auto-loads Markdown instructions from the filesystem, enables trivial prompt injection via a single malicious file. Demonstrates data exfiltration and privilege escalation across common agent deployments.
Published
2025
Jurisdiction
International
Category
Risks and challenges
Access
Public access
VerifyWise helps you implement AI governance frameworks, track compliance, and manage risk across your AI systems.