Published February 28, 2026
| Version v2
Preprint
Open
Persona Persistence Attacks: Self-Modifying Identity Files as an Emerging Attack Surface for LLM Agents
Description
v2: Added Acknowledgments section. We identify Persona Persistence Attacks (PPAs), a novel attack class targeting persistent identity files in LLM agent systems. Updated with implemented SoulScan SEC090/SEC091 detection rules.
Files
persona-persistence-attacks.pdf
Files
(166.7 kB)
| Name | Size | Download all |
|---|---|---|
|
md5:ea215e87cfff79ad16a4e42c543fa326
|
166.7 kB | Preview Download |