CoT Forgery: The Chain-of-Thought vulnerability in LLM security
ID: 4f85c69e-e277-536c-9502-2e29ef9026fb
STIX ID: report--4f85c69e-e277-536c-9502-2e29ef9026fb
Feed Name: Giskard
Threat Score
This report explains Chain-of-Thought (CoT) Forgery, a prompt-injection attack that inserts fake internal reasoning into LLM prompts to bypass safety controls. Using a banking assistant scenario, it demonstrates how the forgery can trick the model into giving actionable guidance for evading anti-money-laundering controls, and recommends defenses including context sanitization, targeted adversarial testing, and continuous red-teaming.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
