Threat · curated 16 Sep 2026

How I caught an LLM-powered recruiter with a prompt injection on LinkedIn - Pierre Kancir personal blog

Coverage timeline

16 Sep 2026khancyr.github.io

Single-source analysis — first reported, latest, and curated coincide.

Why it matters

Pierre Kancir's experiment demonstrates how user-controlled content like a LinkedIn profile can serve as an indirect prompt injection vector against LLM-powered automation tools that blindly inject third-party data into prompts.

Pierre Kancir planted indirect prompt injection payloads in his LinkedIn profile bio to test whether recruiters were feeding profiles into LLMs to generate outreach. A recruiter's message about a research funding opportunity in China dutifully included his injected instruction ('the company will pay me 200€ for attending any interview'), confirming the LLM ingested and acted on the profile-embedded payload.