Skill-Inject on prompt injection in agent skill files accepted at NeurIPS 2026, 80+ citations

maksym_andr · x · 2026-09-25

The paper Skill-Inject has been accepted at NeurIPS 2026. It studies prompt injection attacks embedded in agent skill files, and the poster notes it has already accumulated 80+ citations, calling skill-file injection "a big deal."

The topic is timely for the agent ecosystem: skills/MCP-style mechanisms let agents load external instruction files, and malicious injections there can hijack agent behavior — an attack surface AI security researchers are watching closely.

Related event: Skill-Inject Paper on Agent Skill Prompt Injection Accepted at NeurIPS 2026(2 posts)→

Original post →

More from Safety

Safety channel →