Indirect Prompt Injection in Web Content Targets AI Agents
Reported 02 Jul 2026 by otx · Severity: medium
AI agents are increasingly vulnerable to indirect prompt injection (IPI) attacks, where malicious instructions are embedded in web content to manipulate AI-driven workflows. Two campaigns were identified that combine SEO poisoning with CSS/HTML abuse to influence AI decision-maki