When Bots Take the Bait: Exposing and Mitigating the Emerging Social Engineering Attack in Web Automation Agent
Fuente:
arXiv
Saved in:
| Main Authors: | Wu, Xinyi, Hong, Geng, Chen, Yueyue, Liu, MingXuan, Jin, Feier, Pan, Xudong, Dai, Jiarun, Liu, Baojun |
|---|---|
| Format: | Preprint |
| Published: |
2026
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
WebTrap Park: An Automated Platform for Systematic Security Evaluation of Web Agents
by: Wu, Xinyi, et al.
Published: (2026)
by: Wu, Xinyi, et al.
Published: (2026)
Shell or Nothing: Real-World Benchmarks and Memory-Activated Agents for Automated Penetration Testing
by: Mai, Wuyuao, et al.
Published: (2025)
by: Mai, Wuyuao, et al.
Published: (2025)
MirrorGuard: Toward Secure Computer-Use Agents via Simulation-to-Real Reasoning Correction
by: Zhang, Wenqi, et al.
Published: (2026)
by: Zhang, Wenqi, et al.
Published: (2026)
Cognitive Duality for Adaptive Web Agents
by: Liu, Jiarun, et al.
Published: (2025)
by: Liu, Jiarun, et al.
Published: (2025)
CyberEvolver: Structured Self-Evolution for Cybersecurity Agents On the Fly
by: Fan, Yihe, et al.
Published: (2026)
by: Fan, Yihe, et al.
Published: (2026)
PRISON: Unmasking the Criminal Potential of Large Language Models
by: Wu, Xinyi, et al.
Published: (2025)
by: Wu, Xinyi, et al.
Published: (2025)
Frontier AI systems have surpassed the self-replicating red line
by: Pan, Xudong, et al.
Published: (2024)
by: Pan, Xudong, et al.
Published: (2024)
AgentGuard: An Attribute-Based Access Control Framework for Tool-Use LLM-Based Agent
by: Luo, Jiaqi, et al.
Published: (2026)
by: Luo, Jiaqi, et al.
Published: (2026)
MCPZoo: A Large-Scale Dataset of Runnable Model Context Protocol Servers for AI Agent
by: Wu, Mengying, et al.
Published: (2025)
by: Wu, Mengying, et al.
Published: (2025)
Survival Prediction Across Diverse Cancer Types Using Neural Networks
by: Yan, Xu, et al.
Published: (2024)
by: Yan, Xu, et al.
Published: (2024)
Convolutional neural network classification of cancer cytopathology images: taking breast cancer as an example
by: Xiao, MingXuan, et al.
Published: (2024)
by: Xiao, MingXuan, et al.
Published: (2024)
Atomicity for Agents: Exposing, Exploiting, and Mitigating TOCTOU Vulnerabilities in Browser-Use Agents
by: Jiang, Linxi, et al.
Published: (2026)
by: Jiang, Linxi, et al.
Published: (2026)
WEPO: Web Element Preference Optimization for LLM-based Web Navigation
by: Liu, Jiarun, et al.
Published: (2024)
by: Liu, Jiarun, et al.
Published: (2024)
Exposing and Mitigating Temporal Attack in Deepfake Video Detection
by: Gu, Zheyuan, et al.
Published: (2026)
by: Gu, Zheyuan, et al.
Published: (2026)
Bait and Switch
by: Mirsky, Steve
by: Mirsky, Steve
Bait and switch
Published: (2006)
Published: (2006)
Large language model-powered AI systems achieve self-replication with no human intervention
by: Pan, Xudong, et al.
Published: (2025)
by: Pan, Xudong, et al.
Published: (2025)
StruPhantom: Evolutionary Injection Attacks on Black-Box Tabular Agents Powered by Large Language Models
by: Feng, Yang, et al.
Published: (2025)
by: Feng, Yang, et al.
Published: (2025)
GradingAttack: Exposing Security Vulnerabilities in LLM Based Educational Grading Agents
by: Li, Xueyi, et al.
Published: (2026)
by: Li, Xueyi, et al.
Published: (2026)
When MCP Servers Attack: Taxonomy, Feasibility, and Mitigation
by: Zhao, Weibo, et al.
Published: (2025)
by: Zhao, Weibo, et al.
Published: (2025)
When the Specification Emerges: Benchmarking Faithfulness Loss in Long-Horizon Coding Agents
by: Yan, Lu, et al.
Published: (2026)
by: Yan, Lu, et al.
Published: (2026)
You Can't Eat Your Cake and Have It Too: The Performance Degradation of LLMs with Jailbreak Defense
by: Mai, Wuyuao, et al.
Published: (2025)
by: Mai, Wuyuao, et al.
Published: (2025)
When Agent Markets Arrive
by: Liu, Xuan, et al.
Published: (2026)
by: Liu, Xuan, et al.
Published: (2026)
When Lighting Deceives: Exposing Vision-Language Models' Illumination Vulnerability Through Illumination Transformation Attack
by: Liu, Hanqing, et al.
Published: (2025)
by: Liu, Hanqing, et al.
Published: (2025)
MalURLBench: A Benchmark Evaluating Agents' Vulnerabilities When Processing Web URLs
by: Kong, Dezhang, et al.
Published: (2026)
by: Kong, Dezhang, et al.
Published: (2026)
Exposing Vulnerabilities in Explanation for Time Series Classifiers via Dual-Target Attacks
by: Wang, Bohan, et al.
Published: (2026)
by: Wang, Bohan, et al.
Published: (2026)
Large Language Models are Vulnerable to Bait-and-Switch Attacks for Generating Harmful Content
by: Bianchi, Federico, et al.
Published: (2024)
by: Bianchi, Federico, et al.
Published: (2024)
When Handshakes Tell the Truth: Detecting Web Bad Bots via TLS Fingerprints
by: Jarad, Ghalia, et al.
Published: (2026)
by: Jarad, Ghalia, et al.
Published: (2026)
When AI Takes the Wheel: Security Analysis of Framework-Constrained Program Generation
by: Liu, Yue, et al.
Published: (2025)
by: Liu, Yue, et al.
Published: (2025)
WebSentinel: Detecting and Localizing Prompt Injection Attacks for Web Agents
by: Wang, Xilong, et al.
Published: (2026)
by: Wang, Xilong, et al.
Published: (2026)
BotSim: Mitigating The Formation Of Conspiratorial Societies with Useful Bots
by: Ng, Lynnette Hui Xian, et al.
Published: (2026)
by: Ng, Lynnette Hui Xian, et al.
Published: (2026)
Bait Trials at Swansea Bay
by: Jones, Robyn E
Published: (2019)
by: Jones, Robyn E
Published: (2019)
WebCoach: Self-Evolving Web Agents with Cross-Session Memory Guidance
by: Liu, Genglin, et al.
Published: (2025)
by: Liu, Genglin, et al.
Published: (2025)
Exposing Limitations of Language Model Agents in Sequential-Task Compositions on the Web
by: Furuta, Hiroki, et al.
Published: (2023)
by: Furuta, Hiroki, et al.
Published: (2023)
DroidBot-GPT: GPT-powered UI Automation for Android
by: Wen, Hao, et al.
Published: (2023)
by: Wen, Hao, et al.
Published: (2023)
Bait Trials at Ria Formosa Lagoon
by: Jones, Robyn E
Published: (2019)
by: Jones, Robyn E
Published: (2019)
Bait Trials North Atlantic Region
by: Jones, Robyn E
Published: (2019)
by: Jones, Robyn E
Published: (2019)
Increasing Bait Availability for Predator Control
by: T. L. Kreplins, et al.
Published: (2026)
by: T. L. Kreplins, et al.
Published: (2026)
Bait shrimp fishery of Biscayne Bay
by: Berkeley, Steven A., et al.
Published: (1985)
by: Berkeley, Steven A., et al.
Published: (1985)
When Alignment Isn't Enough: Response-Path Attacks on LLM Agents
by: Luo, Mingyu, et al.
Published: (2026)
by: Luo, Mingyu, et al.
Published: (2026)
Similar Items
-
WebTrap Park: An Automated Platform for Systematic Security Evaluation of Web Agents
by: Wu, Xinyi, et al.
Published: (2026) -
Shell or Nothing: Real-World Benchmarks and Memory-Activated Agents for Automated Penetration Testing
by: Mai, Wuyuao, et al.
Published: (2025) -
MirrorGuard: Toward Secure Computer-Use Agents via Simulation-to-Real Reasoning Correction
by: Zhang, Wenqi, et al.
Published: (2026) -
Cognitive Duality for Adaptive Web Agents
by: Liu, Jiarun, et al.
Published: (2025) -
CyberEvolver: Structured Self-Evolution for Cybersecurity Agents On the Fly
by: Fan, Yihe, et al.
Published: (2026)