Indirect Prompt Injection Formulated as a Test-Time Search Problem
September 7, 2026
This research frames indirect prompt injection as an agentic search over an environment-induced attack surface. Findings show that increasing attacker test-time compute improves vulnerability exploitation, suggesting that security evaluations must account for an attacker's compute budget and search strategy.
HOW THIS AFFECTS YOU
●
builderYou should evaluate your agent's security by simulating an attacker with significant test-time compute.
●
policyThis changes how we should define and measure the robustness of agentic systems under regulatory frameworks.