Prompt Injection Obfuscation and Evasion Reference
Understand the disguises attackers use to hide prompt injection attempts so you can evaluate indirect, encoded, or reformatted attack content.
This reference covers prompts that look odd, fragmented, encoded, or harder to classify than usual.
Obfuscation does not change the attacker goal. It changes the surface form so basic matching and shallow review miss what the payload is trying to do.
Last modified on March 19, 2026