trailofbits/pajaMAS

Multi-agent system (MAS) hijacking demos

44
/ 100
Emerging

Demonstrates control-flow exploitation attacks across six scenarios—from basic orchestrator hijacking and malicious tools to persistent memory poisoning and unintended agent cycles—using LLM-based multi-agent systems built with Anthropic's API. Attacks manipulate inter-agent communication and workflows by injecting malicious prompts into web content, tool responses, and agent memory, exposing how MAS architectures amplify existing agentic AI vulnerabilities. Includes a naive defense example to illustrate ineffective guardrails against these novel attack vectors.

No Package No Dependents
Maintenance 13 / 25
Adoption 8 / 25
Maturity 15 / 25
Community 8 / 25

How are scores calculated?

Stars

42

Forks

3

Language

Python

License

Apache-2.0

Last pushed

Mar 08, 2026

Commits (30d)

0

Get this data via API

curl "https://pt-edge.onrender.com/api/v1/quality/agents/trailofbits/pajaMAS"

Open to everyone — 100 requests/day, no key needed. Get a free key for 1,000/day.