@misc{indiciae5ac9ce78c1b2, title = {System Prompt Poisoning: Persistent Attacks on Large Language Models Beyond User Injection}, author = {Zongze Li and Jiawei Guo and Haipeng Cai}, year = {2025}, url = {https://arxiv.org/abs/2505.06493}, note = {Source identifier: 2505.06493} }