Paper page - From Prompt Injection to Persistent Control: Defending Agentic Harness Against Trojan Backdoors
…In an OpenClaw -style simulated workspace with GPT-5.4, ClawTrojan reaches a 95.5% attack success rate (ASR), while existing single-turn prompt-injection attacks produce near-zero ASR on the…