When content gives orders.
Text inside emails, web pages and documents can carry hidden instructions. AI tools that read that content can end up following them.
Where it hides
Hidden In Plain Sight
Web pages, emails, PDFs, white-on-white text, file metadata, image descriptions.
What it can do
Why It Matters
Twist a summary, push a malicious link, leak data or trigger actions in AI agents.
How to reduce it
Limit The Damage
Treat content as data, limit what the AI can access and do, and approve actions yourself.
Sources: 0DIN ↗ · OWASP GenAI Security Project ↗
Anything it reads can talk back. Limit what it can do.