Common questions.
What is Context Window Poisoning?
Context window poisoning is an attack in which malicious content is injected into an agent's input context, through a retrieved document, a tool response, or a prior conversation turn, with the intent of overriding the agent's instructions or causing it to take harmful actions.
How does Context Window Poisoning work?
It is a variant of indirect prompt injection that targets the context assembly layer rather than the system prompt directly.
Which terms are related to Context Window Poisoning?
Closely related concepts include MCP Poisoning, AI Firewall, MCP Server Discovery, Rug Pull Attack (MCP). Each is defined in the Prefactor glossary.