Back to articles

Tag archive

#agenticsecurity

T
May 23, 2026

Transitive Prompt Injection in Multi-Agent Coding Pipelines: One Poisoned Tool, Every Downstream Agent

When Claude Code Agent Teams or Cursor 3.0 orchestrate sub-agents, a single poisoned tool description or shared memory entry propagates through the entire pipeline. Here is how transitive prompt injection works in multi-agent coding workflows and what local gates stop it before your orchestrator delegates to the first sub-agent.

May 23, 20269 min read0 reactions0 comments