Global News Digest

arXiv

Defenses & Enablers For Skill Injection Attacks on Terminal Based Agents

Title: Mitigating Skill Injection Attacks in Terminal-Based Agents: Defensive Strategies and Enabling Mechanisms

Abstract:

As Large Language Model (LLM) agents increasingly integrate reusable skills—defined as documents outlining specific, task-oriented procedures—they inadvertently create new attack vectors that require careful management. This research investigates two complementary approaches to addressing this vulnerability. First, we assess the efficacy of guardian-based defenses, which employ an intermediary LLM agent to mediate access to skill files. These guardians operate in two modes: dynamically, by intervening during runtime, or statically, by pre-rewriting files prior to the build phase. Our evaluation across three distinct LLM agent families demonstrates that these guardians reduce the Attack Success Rate (ASR) by more than 50% without compromising task utility.

Second, we stress-test these defenses against attack reframing techniques, which involve four distinct attacks that maintain the malicious intent while altering the phrasing. In environments without guardians, this reframing technique escalates the ASR to 81.4%. However, the implementation of a dynamic guardian reduces this rate significantly to 18.6%, underscoring the robustness of real-time mediation as a defensive strategy.


Source: arXiv Generated at: 2026-06-02 00:00:00 UTC

Related Articles

Schroders Renewable Unit Targets AI Assets as Power Demand Soars
Bloomberg

Schroders Renewable Unit Targets AI Assets as Power Demand Soars

Schroders’ renewable unit targets AI infrastructure, pivoting to meet soaring energy demand from artificial intelligence...

State Street's Paglia on SBI Group Partnership, ETFs
Bloomberg

State Street's Paglia on SBI Group Partnership, ETFs

State Street's Paglia discusses the SBI Group partnership and ETFs, but the source text is missing. Please provide the a...

Nvidia Boss Says Workers Should Be Paid ā€˜as Much as Possible’
Bloomberg

Nvidia Boss Says Workers Should Be Paid ā€˜as Much as Possible’

Nvidia CEO Jensen Huang advocates for paying workers ā€œas much as possible,ā€ emphasizing maximum compensation. This stanc...

TSE Talking With Regulator For Easing ETF Listing Rules
Bloomberg

TSE Talking With Regulator For Easing ETF Listing Rules

The Tokyo Stock Exchange is discussing with regulators to ease ETF listing rules. This aims to simplify market access an...

S&P DJI CEO on Japan Markets, Mega IPOs
Bloomberg

S&P DJI CEO on Japan Markets, Mega IPOs

S&P DJI CEO discusses Japan's financial markets and major IPOs.