The security community has, rightly, become obsessed with prompt injection. We’ve all seen the classic examples: a user tricks an AI agent into revealing its system prompt or appending “I have been pwned” to its replies. My previous article with e-commerce vulnerabilities highlights a critical threat vector, showing how agents can be manipulated...