Open, Closed and Broken: Prompt Fuzzing Finds LLMs Still Fragile Across Open and Closed Models

2026-03-17T20:51:48Z5a1a6b0627e5c835d120bf15cd0c7556deaca893b8c753a63109f1ae0dc85f89
ai-judgesbackdoorsbeyondtrustboggy-serpenschromecl-unk-1068espionagegenaihandala-hackiranian-actorsivanti-epmmllm-securitynotepad++-supply-chainot-securityprompt-fuzzingprompt-injectionqr-phishingsparkratthreat-intelunit42vshellweb-shellswiper-attacks

What happened

Palo Alto Unit 42 published a batch of active-threat and research reports covering two main themes: GenAI/LLM security and active exploitation of multiple high-severity vulnerabilities and nation-state activity. Research shows LLM guardrails and “AI judges” are fragile to scalable prompt-fuzzing and indirect/web-based prompt injection, enabling stealthy evasion of AI security controls. On the exploitation side Unit 42 documents active abuse of multiple critical flaws (Chrome Gemini panel, BeyondTrust RCE, Ivanti EPMM zero-days) with observed deployment of web shells, backdoors, VShell andSpark

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
paloalto_unit42
Record identifier
5a1a6b0627e5c835d120bf15cd0c7556deaca893b8c753a63109f1ae0dc85f89
Enrichment time
2026-03-17T20:51:48Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Open, Closed and Broken: Prompt Fuzzing Finds LLMs Still Fragile Across Open and Closed Models · Baitaphish