MITRE ATLAS Mapped 2026 – Top AI Indirect LLM Prompt Injection via Poisoned Cont

Detects ingestion of documents containing potential LLM prompt injection payloads (using zero-width characters or HTML comments to hide imperative instructions) into a RAG system, followed by anomalous LLM behavior such as unauthorized tool execution or unintended data disclosure.