AML.T0051
MITRE ATLAS / LLM Prompt Injection
An adversary crafts malicious prompts as input to a language model so that it acts in unintended ways. Injection may be direct, typed by the adversary, or indirect, planted in content the model later reads.
In plain English
Language models do not reliably separate instructions from data. Text that arrives inside a document, a web page, or an email can be read as a command and obeyed.