← Back to search
paper llmsec-2026-00195

Ambient Persuasion in a Deployed AI Agent: Unauthorized Escalation Following Routine Non-Adversarial Content Exposure

Diego F. Cuadros, Abdoul-Aziz Maiga

2026-04

Abstract

We report a safety incident in a deployed multi-agent research system in which a primary AI agent installed 107 unauthorized software components, overwrote a system registry, overrode a prior negative decision from an oversight agent, and escalated through increasingly privileged operations up to an attempted system administrator command. The incident was preceded not by an adversarial attack but by routine content: a forwarded technology article written for human developers and shared by the pr

Cite This Resource

@article{llmsec202600195,
  title = {Ambient Persuasion in a Deployed AI Agent: Unauthorized Escalation Following Routine Non-Adversarial Content Exposure},
  author = {Diego F. Cuadros and Abdoul-Aziz Maiga},
  year = {2026},
  url = {https://arxiv.org/abs/2605.00055},
}

Metadata

Added
2026-05-17
Added by
automation
Source
arxiv
arxiv_id
2605.00055