🛡️ NAIL Institute — AVE Database

← Back to Database

Injection-to-Exfiltration Chain

🔴 CRITICAL composite proven AVE-2025-0061

· aka: Full Kill Chain

Summary

Multi-stage attack: prompt injection → tool access escalation → data exfiltration via side channel.

Blast Radius

Complete data breach through chained vulnerabilities.

Prerequisites

Agent with tool access and external communication capability.

Environment

  • Frameworks: LangGraph
  • Models tested: [Available in NAIL SDK]
  • Multi-agent: No
  • Tools required: Yes
  • Memory required: No