跳到正文
原文
Michael Bargury· @mbrg0 · X·本站收录 · 原文发表

0click 与 0.5click 智能体漏洞之别

AI 导读

@ben_nassi 对 0click 和 0.5click 智能体漏洞的重要区分 尤其当下我们看到越来越多完全自主的智能体,可能带来真正的零交互利用

正文

important distinction by @ben_nassi between 0click and 0.5click agent vulns
esp now when we're seeing more and more fully autonomous agents that can lead to real zero interaction exploits

引用zenitylabs@zenitysec_labs
Zero-click prompt injection? It's a half-click. That's @ben_nassi 's correction to his own use of the term, and on ep. 3 of In the Wild, From Dumbledore to Delayed Tool Invocation, he explains why the gap matters:
在 X 查看被引用的帖子

来源:Michael Bargury · x.com