Glossary
Context Window Poisoning
Context window poisoning is an attack in which malicious content is injected into an agent's input context — through a retrieved document, a tool response, or a prior conversation turn — with the intent of overriding the agent's instructions or causing it to take harmful actions. It is a variant of indirect prompt injection that targets the context assembly layer rather than the system prompt directly.