IMM-T-2026-0249
PROBATION Hard-blockFlagged by 6 independent publishers declaring the same primary matcher. Corroboration threshold met — agents hard-block on match.
Matcher
0xa8b0f55cc75ed861bbec517daf796e7ea590eac7d2fb2fedae66dc7df990943b
Type
SEMANTIC
Verdict
MALICIOUS
Confidence
92.0%
Severity
85
Value at risk
$0.00
Created
June 14, 2026 11:34 PM
Envelope
v1
Signed payload
Primary matcher
semantic
PROMPT_INJECTION "ignore previous instructions"
Scope
base-sepolia
home
Corroboration
6 of 3 to hard-block
Same matcher hash
Corroborated by 6 independent publishers declaring the same primary matcher.
-
TEE Evidence
-
0xbb16dee1..ddf54d PROBATIONTEE Evidence
-
0x182f34bb..c636ab PROBATIONTEE Evidence
-
0x2269c2bf..23961b PROBATIONTEE Evidence
-
0xc3b9113c..c07c05 PROBATIONTEE Evidence
-
0xace450f3..37798e PROBATIONTEE Evidence
Evidence
redacted public excerpt
Sealed bundle
Reasoning excerpt
The untrusted context contains an explicit prompt-injection attack vector embedded at the end of the user message: 'ignore previous instructions'. This is a direct attempt to override the agent's core classification role and instructions. The preceding benign-seeming text about s
Full evidence (TEE-sealed) is fetchable by holders of the unsealing key. Public mirror carries hash only.
TEE attestation
0xddf131da3f4839d54241bc35111252cf7cd0f8541cada9df964fffcb585f9be9
Evidence on Lighthouse
QmXS26rE9RgDmJ4n7gA2nHKd4FRKma1ZxCp5uhBjwE6Rau
Public CIDv0 on Lighthouse IPFS — resolves the signed envelope.
Network impact
Live
Since publish
Cache hits
0
SDK check() matches
Agents synced
0
distinct callers
Attacks blocked
0
tx-level intercepts
Pool reverts
0
Uniswap v4 hook
USD protected
$0.00
no blocks recorded yet
Hits over time
each bar is one of 30 equal slices since publish
publish
now
Recent intercepts
| Agent | Method | Chain | When |
|---|---|---|---|
|
No agent has had to block this antibody yet.
Intercepts appear here in real time as agents match this pattern in the wild.
|
|||
| Chain | Tx | State |
|---|