Agent Commander: Promptware-Powered Command and Control
This post is about prompt-based command and control (C2), which is becoming more relevant.
What is Promptware-Powered C2?Three years ago, when ChatGPT introduced the browsing tool, we already experimented with the idea of prompt-based command and control. And when ChatGPT got memories we showed that this can be combined and abused for a full command and control channel.
Recent work uses the term promptware to describe prompt-injection payloads that are more complex in behavior and closer to malware. I’m using that term here as it fits well.