SkillScope: Toward Fine-Grained Least-Privilege Enforcement for Agent Skills
Fuente:
arXiv
Saved in:
| Main Authors: | Wu, Jiangrong, Nan, Yuhong, Lin, Yixi, Wang, Huaijin, Xiao, Yuming, Wang, Shuai, Zheng, Zibin |
|---|---|
| Format: | Preprint |
| Published: |
2026
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
ChainFuzzer: Greybox Fuzzing for Workflow-Level Multi-Tool Vulnerabilities in LLM Agents
by: Wu, Jiangrong, et al.
Published: (2026)
by: Wu, Jiangrong, et al.
Published: (2026)
Control at Stake: Evaluating the Security Landscape of LLM-Driven Email Agents
by: Wu, Jiangrong, et al.
Published: (2025)
by: Wu, Jiangrong, et al.
Published: (2025)
ALPS: Automated Least-Privilege Enforcement for Securing Serverless Functions
by: Shin, Changhee, et al.
Published: (2026)
by: Shin, Changhee, et al.
Published: (2026)
MiniScope: A Least Privilege Framework for Authorizing Tool Calling Agents
by: Zhu, Jinhao, et al.
Published: (2025)
by: Zhu, Jinhao, et al.
Published: (2025)
GoAT-X: A Graph of Auditing Thoughts for Securing Token Transactions in Cross-Chain Contracts
by: Feng, Zijun, et al.
Published: (2026)
by: Feng, Zijun, et al.
Published: (2026)
Do Coding Agents Understand Least-Privilege Authorization?
by: Yan, Zheng, et al.
Published: (2026)
by: Yan, Zheng, et al.
Published: (2026)
SkillTester: Benchmarking Utility and Security of Agent Skills
by: Wang, Leye, et al.
Published: (2026)
by: Wang, Leye, et al.
Published: (2026)
The Fundamental Limits of Least-Privilege Learning
by: Stadler, Theresa, et al.
Published: (2024)
by: Stadler, Theresa, et al.
Published: (2024)
Least Privilege Access for Persistent Storage Mechanisms in Web Browsers
by: Kancherla, Gayatri Priyadarsini, et al.
Published: (2024)
by: Kancherla, Gayatri Priyadarsini, et al.
Published: (2024)
No More, No Less: Least-Privilege Language Models
by: Rauba, Paulius, et al.
Published: (2026)
by: Rauba, Paulius, et al.
Published: (2026)
ReproMIA: A Comprehensive Analysis of Model Reprogramming for Proactive Membership Inference Attacks
by: Huang, Chihan, et al.
Published: (2026)
by: Huang, Chihan, et al.
Published: (2026)
Taming Various Privilege Escalation in LLM-Based Agent Systems: A Mandatory Access Control Framework
by: Ji, Zimo, et al.
Published: (2026)
by: Ji, Zimo, et al.
Published: (2026)
SkillTrojan: Backdoor Attacks on Skill-Based Agent Systems
by: Feng, Yunhao, et al.
Published: (2026)
by: Feng, Yunhao, et al.
Published: (2026)
When Skills Lie: Hidden-Comment Injection in LLM Agents
by: Wang, Qianli, et al.
Published: (2026)
by: Wang, Qianli, et al.
Published: (2026)
SkillAttack: Automated Red Teaming of Agent Skills through Attack Path Refinement
by: Duan, Zenghao, et al.
Published: (2026)
by: Duan, Zenghao, et al.
Published: (2026)
SkillProbe: Security Auditing for Emerging Agent Skill Marketplaces via Multi-Agent Collaboration
by: Guo, Zihan, et al.
Published: (2026)
by: Guo, Zihan, et al.
Published: (2026)
BadSkill: Backdoor Attacks on Agent Skills via Model-in-Skill Poisoning
by: Tie, Guiyao, et al.
Published: (2026)
by: Tie, Guiyao, et al.
Published: (2026)
Towards Secure Agent Skills: Architecture, Threat Taxonomy, and Security Analysis
by: Li, Zhiyuan, et al.
Published: (2026)
by: Li, Zhiyuan, et al.
Published: (2026)
SmartOracle: Generating Smart Contract Oracle via Fine-Grained Invariant Detection
by: Su, Jianzhong, et al.
Published: (2024)
by: Su, Jianzhong, et al.
Published: (2024)
SkillJect: Effectively Automating Skill-Based Prompt Injection for Skill-Enabled Agents
by: Jia, Xiaojun, et al.
Published: (2026)
by: Jia, Xiaojun, et al.
Published: (2026)
Progent: Securing AI Agents with Privilege Control
by: Shi, Tianneng, et al.
Published: (2025)
by: Shi, Tianneng, et al.
Published: (2025)
Skill-Inject: Measuring Agent Vulnerability to Skill File Attacks
by: Schmotz, David, et al.
Published: (2026)
by: Schmotz, David, et al.
Published: (2026)
When Safe Skills Collide: Measuring Compositional Risk in Agent Skill Ecosystems
by: Wang, Su, et al.
Published: (2026)
by: Wang, Su, et al.
Published: (2026)
HarmfulSkillBench: How Do Harmful Skills Weaponize Your Agents?
by: Jiang, Yukun, et al.
Published: (2026)
by: Jiang, Yukun, et al.
Published: (2026)
Black-Box Skill Stealing Attack from Proprietary LLM Agents: An Empirical Study
by: Wang, Zihan, et al.
Published: (2026)
by: Wang, Zihan, et al.
Published: (2026)
SkillSieve: A Hierarchical Triage Framework for Detecting Malicious AI Agent Skills
by: Hou, Yinghan, et al.
Published: (2026)
by: Hou, Yinghan, et al.
Published: (2026)
Sealing the Audit-Runtime Gap for LLM Skills
by: Shen, Tingda, et al.
Published: (2026)
by: Shen, Tingda, et al.
Published: (2026)
RouteGuard: Internal-Signal Detection of Skill Poisoning in LLM Agents
by: Xiao, Wenjie, et al.
Published: (2026)
by: Xiao, Wenjie, et al.
Published: (2026)
Evaluating Privilege Usage of Agents with Real-World Tools
by: Zhang, Quan, et al.
Published: (2026)
by: Zhang, Quan, et al.
Published: (2026)
SkCC: Portable and Secure Skill Compilation for Cross-Framework LLM Agents
by: Ouyang, Yipeng, et al.
Published: (2026)
by: Ouyang, Yipeng, et al.
Published: (2026)
Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills
by: Liu, Yiyong, et al.
Published: (2026)
by: Liu, Yiyong, et al.
Published: (2026)
ClawKeeper: Comprehensive Safety Protection for OpenClaw Agents Through Skills, Plugins, and Watchers
by: Liu, Songyang, et al.
Published: (2026)
by: Liu, Songyang, et al.
Published: (2026)
Behavioral Integrity Verification for AI Agent Skills
by: Wu, Yuhao, et al.
Published: (2026)
by: Wu, Yuhao, et al.
Published: (2026)
What Skills Do Cyber Security Professionals Need?
by: Ullah, Faheem, et al.
Published: (2025)
by: Ullah, Faheem, et al.
Published: (2025)
Do Skill Descriptions Tell the Truth? Detecting Undisclosed Security Behaviors in Code-Backed LLM Skills
by: He, Wenhui, et al.
Published: (2026)
by: He, Wenhui, et al.
Published: (2026)
Evolving Skill-Structured Attack Memory Enhances LLM Jailbreaking
by: Zhang, Junke, et al.
Published: (2026)
by: Zhang, Junke, et al.
Published: (2026)
Preserving Privacy in Software Composition Analysis: A Study of Technical Solutions and Enhancements
by: Wang, Huaijin, et al.
Published: (2024)
by: Wang, Huaijin, et al.
Published: (2024)
Ordering Power is Sanctioning Power: Sanction Evasion-MEV and the Limits of On-Chain Enforcement
by: Wu, Di, et al.
Published: (2026)
by: Wu, Di, et al.
Published: (2026)
GPUBreach: Privilege Escalation Attacks on GPUs using Rowhammer
by: Lin, Chris S., et al.
Published: (2026)
by: Lin, Chris S., et al.
Published: (2026)
PenTest2.0: Towards Autonomous Privilege Escalation Using GenAI
by: Al-Sinani, Haitham S., et al.
Published: (2025)
by: Al-Sinani, Haitham S., et al.
Published: (2025)
Similar Items
-
ChainFuzzer: Greybox Fuzzing for Workflow-Level Multi-Tool Vulnerabilities in LLM Agents
by: Wu, Jiangrong, et al.
Published: (2026) -
Control at Stake: Evaluating the Security Landscape of LLM-Driven Email Agents
by: Wu, Jiangrong, et al.
Published: (2025) -
ALPS: Automated Least-Privilege Enforcement for Securing Serverless Functions
by: Shin, Changhee, et al.
Published: (2026) -
MiniScope: A Least Privilege Framework for Authorizing Tool Calling Agents
by: Zhu, Jinhao, et al.
Published: (2025) -
GoAT-X: A Graph of Auditing Thoughts for Securing Token Transactions in Cross-Chain Contracts
by: Feng, Zijun, et al.
Published: (2026)