๐Ÿ’‰ NullSec PromptInject

March 7, 2026 ยท View on GitHub

๐Ÿ’‰ NullSec PromptInject

Prompt Injection Payload Library & Tester

Python License NullSec

Curated prompt injection payloads and automated testing for LLM applications


๐ŸŽฏ Overview

NullSec PromptInject is a curated library of prompt injection payloads and an automated tester for LLM-powered applications. It targets system prompt extraction, instruction hijacking, context manipulation, and output steering across chatbots, RAG pipelines, AI agents, and function-calling systems.

โšก Features

FeatureDescription
Payload Library500+ categorised prompt injection payloads
System Prompt ExtractionTechniques to leak hidden system instructions
Instruction OverridePayloads that hijack model behaviour
Context ManipulationIndirect injection via RAG document poisoning
Function Call AbuseExploit tool-use / function-calling APIs
Multi-LanguagePayloads in EN, ZH, JA, DE, FR, ES, AR
Auto-TesterBatch-test payloads against target endpoints

๐Ÿ“‹ Payload Categories

CategoryCountTargets
System Prompt Extraction80+Chatbots, assistants
Instruction Override90+Any LLM app
Jailbreak Chains60+Safety-aligned models
Indirect Injection50+RAG, email agents
Function Call Abuse40+Tool-use agents
Output Steering45+Content generators
Encoding Bypass35+Input filters
Multi-turn Escalation30+Conversation systems

๐Ÿš€ Quick Start

# Test all payloads against a target endpoint
nullsec-promptinject test --target http://chatbot.example.com/api --category all

# Extract system prompt
nullsec-promptinject extract --target http://chatbot.example.com/api --techniques top20

# Test RAG indirect injection
nullsec-promptinject indirect --target http://rag.example.com/query --inject-doc malicious.txt

# List available payload categories
nullsec-promptinject list --categories
ProjectDescription
nullsec-llmredLLM red-teaming framework
nullsec-adversarialAdversarial ML attack toolkit
nullsec-modelauditML model security auditing
nullsec-datapoisoningTraining data poisoning detection
nullsec-linuxSecurity Linux distro (140+ tools)

For authorized security testing only. Never use prompt injection against systems without explicit written permission.

๐Ÿ“œ License

MIT License โ€” @bad-antics


Part of the NullSec AI/ML Security Suite