logo

Adversarial prompt injection payload for evading AI-based detection · Blog · Sublime Security

ID: 25f70b8f-a005-51f9-a885-9378ea9abd9e

STIX ID: report--25f70b8f-a005-51f9-a885-9378ea9abd9e

Feed Name: Sublime Security Blog

Threat Score
65/100

Date Published: 2026-06-25

Date Updated: 2026-07-22

...
...

This Attack Spotlight describes a real-world credential phishing campaign that combines standard phishing lures (fake document-share links, urgency, redirect chains, and hijacked threads) with hidden prompt-injection payloads aimed at AI security scanners. The attackers embed fabricated Edge tab metadata and first-person AI phrasing in the email HTML to poison context, attempt self-negation of analysis, and evade detection, while the visible phishing flow ultimately redirects victims to credential-harvesting pages.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.