Comprehensive protection of multi-agent systems from untrusted content
Develop comprehensive, end-to-end defenses that protect multi-agent systems interacting with untrusted content, providing robust security across planning, delegation, inter-agent communication, and execution to prevent control-flow hijacking and related indirect prompt injection attacks.
References
How to comprehensively protect multi-agent systems from untrusted content remains an open research problem.
— Breaking and Fixing Defenses Against Control-Flow Hijacking in Multi-Agent Systems
(2510.17276 - Jha et al., 20 Oct 2025) in Section 8 (Conclusion)