Indirect Prompt Injection via Notifications Hijacks Google Gemini on Android
SafeBreach researcher Or Yair demonstrated that malicious text embedded in WhatsApp, Slack, SMS, or Signal notifications could trigger indirect prompt injection against Google Gemini's Android …
AML.T0051 - LLM Prompt Injection
AML.T0043 - Craft Adversarial Data
AML.T0047 - ML-Enabled Product or Service