Skip to content
Search
paperJune 2026Unreviewed

Tool Use Enables Undetectable Steganography in Multi-Agent LLM Systems

Jimmy Laurence Rippin, Simon C. Marshall, David Demitri Africa, Christian Schroeder de Witt

Abstract

Increasingly autonomous agentic AI systems pose novel multi-agent risks, such as secret collusion via covert communication channels. The natural defence to these collusion attempts is to monitor plain-text communication, but the efficacy of monitors has been called into doubt by increasingly sophisticated model steganography; indeed, some theoretical schemes have been proposed that are information-theoretically or computationally indistinguishable from good-faith plain-text communication. In thi

Categories

Framework mappings

OWASP Top 10 for Agentic Applications
  • ASI02Tool Misuse & Exploitation
MITRE ATLAS
  • AML.T0053AI Agent Tool Invocation

Suggested from the entry's categories.

Cite

@misc{rippin2026tool,
  title = {{Tool Use Enables Undetectable Steganography in Multi-Agent LLM Systems}},
  author = {Jimmy Laurence Rippin and Simon C. Marshall and David Demitri Africa and Christian Schroeder de Witt},
  year = {2026},
  month = jun,
  eprint = {2606.28425},
  archivePrefix = {arXiv},
  url = {https://arxiv.org/abs/2606.28425}
}