An attacker hides malicious instructions in content an AI agent reads (indirect prompt injection) and then works them into the agent's logs (log-forging), so the bad instructions get absorbed into the long-term memory the agent relies on (AI memory poisoning of persistent agentic memory). Once poisoned, that memory quietly corrupts the agent's decisions long after the original content has gone.
Glossary topic
Agent memory poisoning attack chain
Terms in this topic
Track this in the live feed
See how this plays out in real AI security and governance developments.
Open the feed →