Open, Closed and Broken: Prompt Fuzzing Finds LLMs Still Fragile Across Open and Closed Models
2026-03-17T20:51:48Z•5a1a6b0627e5c835d120bf15cd0c7556deaca893b8c753a63109f1ae0dc85f89
ai-judgesbackdoorsbeyondtrustboggy-serpenschromecl-unk-1068espionagegenaihandala-hackiranian-actorsivanti-epmmllm-securitynotepad++-supply-chainot-securityprompt-fuzzingprompt-injectionqr-phishingsparkratthreat-intelunit42vshellweb-shellswiper-attacks
What happened
Palo Alto Unit 42 published a batch of active-threat and research reports covering two main themes: GenAI/LLM security and active exploitation of multiple high-severity vulnerabilities and nation-state activity. Research shows LLM guardrails and “AI judges” are fragile to scalable prompt-fuzzing and indirect/web-based prompt injection, enabling stealthy evasion of AI security controls. On the exploitation side Unit 42 documents active abuse of multiple critical flaws (Chrome Gemini panel, BeyondTrust RCE, Ivanti EPMM zero-days) with observed deployment of web shells, backdoors, VShell andSpark
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- paloalto_unit42
- Record identifier
- 5a1a6b0627e5c835d120bf15cd0c7556deaca893b8c753a63109f1ae0dc85f89
- Enrichment time
- 2026-03-17T20:51:48Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.