IMM-2026-0032

ACTIVE
Keccak 0xc3077cdc3e6de6974ef1394e1d5c6d4d71924fd6ed98e49665bbc2470c368e58
Type
SEMANTIC
Verdict
MALICIOUS
Confidence
86.0%
Severity
78
Value at risk
$243,866.00
Created April 29, 2026 5:28 PM
Envelope v1
Signed payload
Primary matcher semantic
PROMPT_INJECTION "you are dan"
Scope
galileo-testnet home sepolia
Evidence redacted public excerpt
Reasoning excerpt
Opening line of the long-running DAN ('Do Anything Now') jailbreak family, in which the attacker assigns the agent a fictional identity that is unbound from its safety constraints. The technique is documented across academic jailbreak corpora and has spawned hundreds of variants. MALICIOUS verdict applies to the phrase even when the attempt is unsuccessful: the intent is to subvert the agent's role, which is sufficient to warrant blocking and audit-trail capture.

Full evidence (TEE-sealed) is fetchable by holders of the unsealing key. Public mirror carries hash only.

TEE attestation
Curated by human
Heuristically published from a known threat catalog, not derived from a TEE-verified verdict.
Evidence CID
0xe3ec0708b6e7cc25dca4d27d1f755fe3c8164cf6c97f46e2868d49b337d56b5f
Network impact Live
Since publish
Cache hits
186
SDK check() matches
Agents synced
37
distinct callers
Attacks blocked
93
tx-level intercepts
Pool reverts
0
Uniswap v4 hook
USD protected
$243,866.00
sum of tx value at intercept
Hits over time each bar is one of 30 equal slices since publish
publish now
Recent intercepts
Agent Method Chain When
0x073c021f41ab5d6ec03212cc65fcf4766c723272 SDK check() evm:16602 (galileo-testnet) 8 hours ago
0xc03f28ac4b178e160c643b9f622076d1b64d69f1 SDK check() evm:16602 (galileo-testnet) 8 hours ago
0x4c8d167dcf5c3b1c8defd8a41d9e3d115b718343 SDK check() evm:16602 (galileo-testnet) 8 hours ago
0x708adb7609d91b51efc068fef8526ca0cad5309a SDK check() evm:16602 (galileo-testnet) 8 hours ago
0x32c17d4aa130b8a70a94c6e199731844c35af266 SDK check() evm:16602 (galileo-testnet) 8 hours ago
0x35fea628b18cf5015049e50c6ff64bc79276dc8b SDK check() evm:16602 (galileo-testnet) 8 hours ago
0x9e4e61f07d2036f55a413105b2f9924b3ea6feca SDK check() evm:16602 (galileo-testnet) 2 days ago
0xa5a512dd15e39e567f8890e9a54350aa4a4abb44 SDK check() evm:16602 (galileo-testnet) 2 days ago
0x073c021f41ab5d6ec03212cc65fcf4766c723272 SDK check() evm:16602 (galileo-testnet) 2 days ago
0xb8ce81c9ac0e2b20925d87a58fa29536b409136f SDK check() evm:16602 (galileo-testnet) 2 days ago
Mirror status All chains synced
Chain Tx State
sepolia
0xe8de1bbb..0907 active
1 of 1 chains mirrored
v2 feature

Challenge game coming soon

Challenges let anyone counter-stake on a published antibody they believe is wrong. The publisher loses their stake if a challenge succeeds; the challenger does if it fails. The on-chain mechanics are designed; the UI lands in v2.