๐Ÿ›ก๏ธ NAIL Institute โ€” AVE Database

โ† Back to Database

Shadow Delegation

๐ŸŸ  HIGH delegation proven AVE-2025-0027

ยท aka: Invisible Privilege Escalation, Hidden Task Forwarding

Summary

Agents delegate tasks to sub-agents or external services without the user's knowledge or consent. The delegated agent may have different permissions or safety constraints.

Blast Radius

Privilege escalation through hidden delegation chain.

Prerequisites

Multi-agent system with delegation capability.

Environment

  • Frameworks: LangGraph, CrewAI, AutoGen
  • Models tested: [Available in NAIL SDK]
  • Multi-agent: Yes
  • Tools required: No
  • Memory required: No