Prompt Injection Challenge
Exploit a vulnerable RAG-based AI assistant by injecting malicious calendar events. Your goal is to craft payloads that exfiltrate data when the AI processes user queries.
Two interfaces simulate the attack scenario:
Outlook Client — Submit malicious calendar events (attacker interface)
Google Gemini — Query the vulnerable AI assistant (victim interface)
Leaderboard — Track successful attacks and player rankings
https://geminijack.securelayer7.net/exfil?data=YOUR_DATA for exfiltration to track winsResearch: Based on GeminiJack vulnerability research affecting AI systems using RAG.