CYBERSECURITYTRACKER
TRACKING6,506 stories in this site build1,309 vulnerability news stories in this site build
Permanent story citation

Once popular for attacking AI, ASCII smuggling is embraced by spammers

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 5728

As cited

Copy frozen at (site build).

ai security

Once popular for attacking AI, ASCII smuggling is embraced by spammers

ASCII smuggling, a technique that uses invisible Unicode characters to hide malicious instructions from human readers while remaining detectable by artificial intelligence (AI) systems, has expanded beyond its original use in prompt injection attacks on AI agents to become a tool for evading email spam filters. Spammers now employ this method to conceal unwanted messages in mass campaigns, exploiting the gap between what AI systems and humans can perceive in the same text.

Why it matters: Email administrators and security teams need to understand that traditional content-based spam filters may be bypassed by ASCII smuggling, requiring updated detection logic that examines character encoding rather than just readable text; AI practitioners also face continued refinement of evasion techniques targeting language models.

Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary