@misc{indiciae5a0e2f11ffce, title = {Adaptive Attacks Break Defenses Against Indirect Prompt Injection Attacks on LLM Agents}, author = {Qiusi Zhan and Richard Fang and Henil Shalin Panchal and Daniel Kang}, year = {2025}, url = {https://arxiv.org/abs/2503.00061}, note = {Source identifier: 2503.00061} }