Critical Threats
32
28% vs last 24h
High Risk Threats
68
18% vs last 24h
Medium Risk Threats
114
9% vs last 24h
Informational
285
6% vs last 24h
Total Threats (24h)
499
14% vs last 24h
Blocked Actions
187
36% vs last 24h
Threats Over Time
- Critical
- High
- Medium
- Low
- Info
Threats by Type
499Total
- Prompt Injection18% (90)
- Indirect Prompt Injection12% (58)
- Jailbreaks9% (46)
- Tool Misuse9% (43)
- API Abuse8% (38)
- Secret Leakage6% (32)
- Data Exfiltration6% (28)
- Privilege Escalation5% (24)
- Memory Poisoning4% (18)
- Others24% (122)
Threat Categories
| Category | Threats | Trend (24h) |
|---|---|---|
| Prompt Injection | 90 | 12% |
| Indirect Prompt Injection | 58 | 10% |
| Jailbreaks | 46 | 15% |
| Data Poisoning | 22 | 5% |
| RAG Poisoning | 18 | 2% |
| Tool Misuse | 43 | 18% |
| API Abuse | 38 | 9% |
| Secret Leakage | 32 | 13% |
| Credential Theft | 21 | 8% |
| Unauthorized File Access | 27 | 21% |
Recent Threats
| Threat ID | Threat Type | Risk Level | Agent / Session | User | Description | Status | Detected At |
|---|---|---|---|---|---|---|---|
| THR-2025-000487 | Prompt Injection | Critical | Customer Support Agent | jane.doe@acme.com | Attempted injection via user prompt | Blocked | May 26, 2025 10:42:18 AM |
| THR-2025-000486 | Tool Misuse | High | Data Analyst Agent | michael.chen@acme.com | Unauthorized tool: delete_user | Blocked | May 26, 2025 10:38:54 AM |
| THR-2025-000485 | Secret Leakage | High | Internal Knowledge Agent | priya.nair@acme.com | Attempt to exfiltrate API key | Blocked | May 26, 2025 10:31:22 AM |
| THR-2025-000484 | API Abuse | Medium | Scheduler Agent | mark.smith@acme.com | Exceeded API rate limit threshold | Warned | May 26, 2025 10:28:11 AM |
| THR-2025-000483 | Jailbreak | High | Research Agent | alex.wong@acme.com | Jailbreak attempt detected | Blocked | May 26, 2025 10:24:02 AM |
| THR-2025-000482 | RAG Poisoning | Medium | Knowledge Retrieval Agent | system | Potentially poisoned document retrieved | Quarantined | May 26, 2025 10:18:37 AM |
| THR-2025-000481 | Credential Theft | High | DevOps Agent | david.lee@acme.com | Attempt to access stored credentials | Blocked | May 26, 2025 10:14:05 AM |
| THR-2025-000480 | Unauthorized File Access | Medium | Code Assistant Agent | sarah.johnson@acme.com | Access to restricted file path | Blocked | May 26, 2025 10:10:52 AM |
| THR-2025-000479 | Excessive Tool Usage | Low | Data Analyst Agent | michael.chen@acme.com | Abnormal tool call volume detected | Warned | May 26, 2025 10:07:31 AM |
| THR-2025-000478 | Goal Drift | Low | Planning Agent | system | Agent deviated from defined goal | Monitored | May 26, 2025 10:03:12 AM |
Showing 1 to 10 of 499 threats
…
Threat Details
Critical
THR-2025-000487
Prompt Injection
- Status
- Blocked
- Detected At
- May 26, 2025 10:42:18 AM
- Agent
- Customer Support Agent
- Session ID
- S-6f3a8b2e
- User
- jane.doe@acme.com
- Risk Score
- 95 / 100
Description
The user prompt contains instructions attempting to override system guidelines and manipulate the agent to perform unauthorized actions.
- MITRE ATLAS
- T1559.002 (Indirect Prompt Injection)
- Policy Matched
- AI-PROMPT-INJECTION-001