460
AI agents now have their own Reddit-style social network, and it's getting weird fast
(arstechnica.com)
This is a most excellent place for technology news and articles.
doesn't even have to be the site owner poisoning the tool instructions (though that's a fun-in-a-terrifying-way thought)
any money says they're vulnerable to prompt injection in the comments and posts of the site
There is no way to prevent prompt injection as long as there is no distinction between the data channel and the command channel.
I don't understand what you mean. Why is there no way?
Watch this video.
https://youtu.be/_3okhTwa7w4