Martin Smith examines the evolving threat landscape of prompt injection attacks against large language models, arguing that prompt injection “remains supreme and continuously evolves” among LLM vulnerabilities. The post distinguishes injection types by the LLM role they target — System, Assistant, or User — and advocates for nuanced detection strategies where user data reaching System or Assistant role prompts signals varying levels of security risk.