Attack Chains
Multi-stage AFT pipelines — ranked by priority and estimated success rate.
P1
Silent Order Approval — Stealth Batch Momentum
Get order WT-7852 approved without triggering any Lakera detection...
zalgo
4 stages
Chain YAML in AFT repo
P2
Crash and Recover — DoS to Exploitation Pipeline
Crash the browser via resource exhaustion, then exploit the degraded post-crash recovery state...
zalgo
4 stages
Chain YAML in AFT repo
P2
Infrastructure Exploitation — Scaffold Takeover
Attack the scaffold infrastructure directly rather than the LLM decision layer...
zalgo
5 stages
Chain YAML in AFT repo
P2
Intelligence-Driven Attack — Recon Before Exploit
Enumerate the agent environment and review criteria, then craft a tailored payload...
zalgo
5 stages
Chain YAML in AFT repo
P3
Defense Exhaustion — Lakera Guard Saturation
Overwhelm Lakera Guard rate limits to cause fail-open, then deliver injection payload unscanned...
fullwidth
4 stages
Chain YAML in AFT repo