The Context Attack Surface
Three interactive attack surfaces on an ElizaOS-style Web3 AI agent context pipeline — prompt injection, memory injection, and data feed manipulation — with ASR figures from CrAIBench.
⬢ loading artifact…
Three interactive attack surfaces on an ElizaOS-style Web3 AI agent context pipeline — prompt injection, memory injection, and data feed manipulation — with ASR figures from CrAIBench.
ElizaOS agents treat their memory store as ground truth — their own past. CrAIBench tests 685 attack cases across 33 Web3 action types and finds memory injection hits 55.1% ASR even on Claude Sonnet 3.7, while every off-the-shelf detector fails.