Prompt injection breaks today’s AI agents, study warns
Summary
A new study using StakeBench (a testing framework for evaluating AI security) found that AI web agents have no reliable defenses against prompt injection (tricking an AI by hiding instructions in regular web content). Across thousands of tests, indirect prompt injection attacks succeeded 41-68% of the time, while direct attacks succeeded over 79%, with a particularly dangerous type called 'stealthy parasitism' where the AI completes the user's task while secretly helping an attacker.
Classification
Affected Vendors
Related Issues
Original source: https://www.csoonline.com/article/4184455/prompt-injection-breaks-todays-ai-agents-study-warns.html
First tracked: June 12, 2026 at 08:00 AM
Classified by LLM (prompt v3) · confidence: 92%