Threat · curated 16 Sep 2026
How I caught an LLM-powered recruiter with a prompt injection on LinkedIn - Pierre Kancir personal blog
First reported khancyr.github.io
Coverage timeline
Single-source analysis — first reported, latest, and curated coincide.
Why it matters
Pierre Kancir's experiment demonstrates how user-controlled content like a LinkedIn profile can serve as an indirect prompt injection vector against LLM-powered automation tools that blindly inject third-party data into prompts.
Pierre Kancir planted indirect prompt injection payloads in his LinkedIn profile bio to test whether recruiters were feeding profiles into LLMs to generate outreach. A recruiter's message about a research funding opportunity in China dutifully included his injected instruction ('the company will pay me 200€ for attending any interview'), confirming the LLM ingested and acted on the profile-embedded payload.