logo

CoT Forgery: The Chain-of-Thought vulnerability in LLM security

ID: 4f85c69e-e277-536c-9502-2e29ef9026fb

STIX ID: report--4f85c69e-e277-536c-9502-2e29ef9026fb

Feed Name: Giskard

Threat Score
55/100

Date Published: 2026-02-12

Date Updated: 2026-07-28

...
...

This report explains Chain-of-Thought (CoT) Forgery, a prompt-injection attack that inserts fake internal reasoning into LLM prompts to bypass safety controls. Using a banking assistant scenario, it demonstrates how the forgery can trick the model into giving actionable guidance for evading anti-money-laundering controls, and recommends defenses including context sanitization, targeted adversarial testing, and continuous red-teaming.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.