arXiv — cs.AI preprintsInternational9 October 2026
Pretext: Defeating Malicious Skill Detection Frameworks for AI Agents
This is an official announcement record
Firsthand records what arXiv — cs.AI preprints announced and links to the original. The wording below is theirs, not ours.
arXiv:2609.39607v2 Announce Type: replace-cross Abstract: Skills extend an agent's capabilities by injecting instructions and information into the context, and are widely used by agents such as OpenClaw and Claude Code. Prior work shows third-party marketplaces host malicious skills that give attackers direct influence over the victim's agent. The emerging defense scans skills before installation, pairing deterministic static checks with an LLM-based semantic judge, as in NVIDIA's SkillSpector. We show that such defenses fall to an attacker who knows the detector. Our white-box LLM attacker, P
Read the official announcement
Opens arxiv.org
More from arXiv — cs.AI preprints
- An Explainable Header-Centric Framework for Large-Scale Semantic Table Interpretation and Data Quality Assessment9 October 2026
- Synthesis Through Simulation: Generating Coherent Enterprise Data via Scalable Agent-System Interaction9 October 2026
- Agent-Controlled Forgetting for Tool-Using Agents: Reversible Context Curation in Practice9 October 2026
- Verification and Self-Improvement in Agentic AI: Foundations and Limits9 October 2026
- The Harness as the Only Mutable Surface: Compliance-Bounded Self-Evolution of LLM Agents in Credit Pipelines, with a Measured Admission Gate9 October 2026
This content is for informational purposes only and is not professional advice. Specifications, prices, plan tiers, and features change frequently and may differ from what is shown here; verify current details on the manufacturer's or company's official page before purchasing. Ratings are based on analysis of published documentation, not independent lab testing.