Prompt injection is the most fundamental LLM vulnerability. These attacks attempt to override system instructions, bypass safety alignment, and hijack model behavior through carefully crafted inputs. The category covers everything from classic DAN-style jailbreaks to advanced techniques like GCG adversarial suffixes, XML boundary escapes, and structured output exploits. If you’re only going to test one category, start here.

Summary

63 attacks - 59 single-turn, 4 multi-turn.

Attacks

Example