Summary
4 attacks total: 4 single-turn.Attacks
| Attack | ID | Mode | Severity | Description |
|---|---|---|---|---|
| Indirect Injection | indirect-injection | single-turn | critical | Simulate tool output containing hidden instructions to hijack model behavior |
| SQL Injection | sql-injection | single-turn | high | Inject SQL payloads through natural language queries to test output sanitization |
| SSRF Probing | ssrf-probing | single-turn | high | Trick model into making requests to internal URLs and cloud metadata endpoints |
| XSS Injection | xss-injection | single-turn | medium | Get model to generate HTML containing cross-site scripting payloads |