Retrieval Tool Poisoning

Type: technique

Description: The adversary injects malicious content into data that is accessible to the AI system via an invocable retrieval tool. Variants include plugins and CRM data.

Version: 0.1.0

Created At: 2024-12-31 14:18:56 -0500

Last Modified At: 2024-12-31 14:18:56 -0500


External References

  • --> Initial Access (tactic): An adversary can indirectly inject malicious content into a thread by contaminating data accessible to the AI system via an invocable retrival tool.