Protocol exploitation attacks target the communication layer between AI agents and their tools. This includes function schema injection, tool result poisoning, self-propagating worms, and zero-click attacks that execute without user interaction. These attacks exploit the trust boundary between what an agent expects from its tools and what it actually receives.

Summary

5 attacks total: 5 tool-use.

Attacks

Example