๐Ÿ›ก๏ธ NAIL Institute โ€” AVE Database

โ† Back to Database

Authority Spoofing

๐ŸŸ  HIGH social proven AVE-2025-0093

ยท aka: Fake Admin

Summary

Attacker impersonates an administrator or high-trust entity to the agent, gaining elevated response permissions.

Blast Radius

Agent performs privileged actions for unprivileged user.

Prerequisites

Agent that modulates behaviour based on perceived user authority.

Environment

  • Frameworks: LangGraph
  • Models tested: [Available in NAIL SDK]
  • Multi-agent: No
  • Tools required: No
  • Memory required: No

Related