IMM-2026-0030

ACTIVE
Keccak 0x4b037cbc27d5a8f8661ed30df01fae088a4df8ab8e0d25251fafc4ae9ccef58f
Type
SEMANTIC
Verdict
MALICIOUS
Confidence
94.0%
Severity
87
Value at risk
$143,967.00
Created April 29, 2026 5:27 PM
Envelope v1
Signed payload
Primary matcher semantic
PROMPT_INJECTION "ignore previous instructions"
Scope
galileo-testnet home sepolia
Evidence redacted public excerpt
Reasoning excerpt
Canonical prompt-injection trigger phrase. The directive attempts to override the agent's prior system instructions by asserting a higher-priority instruction inline, and is the most-cited example in the OWASP LLM01 (Prompt Injection) category. MALICIOUS at high confidence: the phrase has no legitimate use in agent input outside of red-team or evaluation harnesses, and any appearance in user or tool content should trigger isolation of the surrounding context.

Full evidence (TEE-sealed) is fetchable by holders of the unsealing key. Public mirror carries hash only.

TEE attestation
Curated by human
Heuristically published from a known threat catalog, not derived from a TEE-verified verdict.
Evidence CID
0x241095149c0ee3d36d08aa2e81a7d0963f91ec2057e10306fd70084aa69d766a
Network impact Live
Since publish
Cache hits
378
SDK check() matches
Agents synced
42
distinct callers
Attacks blocked
189
tx-level intercepts
Pool reverts
0
Uniswap v4 hook
USD protected
$143,967.00
sum of tx value at intercept
Hits over time each bar is one of 30 equal slices since publish
publish now
Recent intercepts
Agent Method Chain When
0x4c8d167dcf5c3b1c8defd8a41d9e3d115b718343 SDK check() evm:16602 (galileo-testnet) 9 hours ago
0xf1649ae7a6ce52fd03792f2bec32c1fcfaffae5c SDK check() evm:16602 (galileo-testnet) 9 hours ago
0x073c021f41ab5d6ec03212cc65fcf4766c723272 SDK check() evm:16602 (galileo-testnet) 9 hours ago
0x793cc517d11fbf5fa86410aadc03668ed1b28d74 SDK check() evm:16602 (galileo-testnet) 9 hours ago
0x31a7b41ac6167c8e622a60f702bd860ea92f5953 SDK check() evm:16602 (galileo-testnet) 9 hours ago
0x073c021f41ab5d6ec03212cc65fcf4766c723272 SDK check() evm:16602 (galileo-testnet) 9 hours ago
0xad133ffca2fa6e4c8e209e2c7177323838061756 SDK check() evm:16602 (galileo-testnet) 9 hours ago
0xa0cef4d2f50e6a58aca14390f058a9d9a5b84352 SDK check() evm:16602 (galileo-testnet) 9 hours ago
0x9f99555f0aa3444a5ca3b205c26bda4749cedc30 SDK check() evm:16602 (galileo-testnet) 9 hours ago
0xcf22277a18fdf8a2cdc4967e4887f7818d231479 SDK check() evm:16602 (galileo-testnet) 9 hours ago
Mirror status All chains synced
Chain Tx State
sepolia
0x04bdda44..74f1 active
1 of 1 chains mirrored
v2 feature

Challenge game coming soon

Challenges let anyone counter-stake on a published antibody they believe is wrong. The publisher loses their stake if a challenge succeeds; the challenger does if it fails. The on-chain mechanics are designed; the UI lands in v2.