๐Ÿ›ก๏ธ NAIL Institute โ€” AVE Database

โ† Back to Database

Multi-Hop Tool Chain Exploitation

๐Ÿ”ด CRITICAL tool proven AVE-2025-0032

ยท aka: Instruction Laundering via Tools, Cross-Tool Injection

Summary

Malicious instructions embedded in Tool A's output propagate through Tools B and C. 100% cross-step propagation rate. Each tool hop launders the instruction's provenance.

Blast Radius

Data exfiltration through legitimate tool chain.

Prerequisites

Agent with multi-tool capability and sequential tool calls.

Environment

  • Frameworks: LangGraph
  • Models tested: [Available in NAIL SDK]
  • Multi-agent: No
  • Tools required: Yes
  • Memory required: No