arXiv Machine Learning By Jun Wen Leong

Forensic Trajectory Signatures for Agent Memory Poisoning Detection

Read the original on arXiv Machine Learning →

arXiv:2606. 30566v1 Announce Type: cross Abstract: We discover a behavioral invariant in LLM agents under persistent memory poisoning: in architectures where routing information is retrieved through observable memory-tool invocations, successful attacks require calling memory_recall_fact before email_send_email, a transition that non-exfiltrating sessions rarely exhibit.

Summary generated by The Flow from the publisher's feed. The full article lives at arXiv Machine Learning.