Every attack module explained, what it is, how it works, the real-world incidents behind it, and how to defend against it. Covers the full attack chain from the model layer through the API layer to agentic pipelines.
Pick a risk in your stack, whether it lives in the input, output, model, infrastructure, or agentic layer, and see which controls apply across OWASP, MITRE, and the major compliance frameworks. These are the same risks Nemesis tests for.
Before any attacks fire, Nemesis runs 8 lightweight probes to fingerprint the target model. This phase runs in about 30 seconds and produces a Model Intelligence Report that appears in your results and compliance report.
Matches or exceeds on all LLM model-layer tests. Adds API security, injection probing, agentic chain attacks, and embedding leakage that Garak does not cover.
Matches on OWASP LLM Top 10. Adds model identity fingerprinting, agentic chain, EchoLeak and Copilot CVE tests, and full injection probing.
Adds full LLM model-layer and agentic testing Akto lacks, plus API-layer tests PyRIT lacks. Includes LLM-as-judge scoring for accuracy.
Hidden instructions in a shared document caused Copilot to return a user’s private recent emails when asked for a summary. No click, no download, just a question to an AI assistant. Module: Embedding & RAG Leakage.
A markdown image tag hidden in a source code file caused Copilot to send sensitive data to an attacker-controlled URL. Over 10M developers in scope. Module: Embedding & RAG Leakage.
SQL injection delivered through an AI chatbot interface reached a backend database. $20 and 2 hours to full breach. Module: Injection Probing.
Malicious instructions injected into agent A propagate to agent B in automated pipelines, bypassing per-agent safety checks. Module: Agentic Chain Attacks.
All 10 categories covered across the attack modules. Click any category to expand.
Additional modules beyond OWASP LLM Top 10: systemic bias, multimodal injection, conversation poisoning, firewall bypass, API security, injection attacks, toxicity, model identity, agentic pipelines, and embedding leakage. Click any module to expand.
13 checks on your API surface, run instantly from a URL. No account, nothing stored.
Run free scan →173 adversarial attacks across 25 modules with LLM-as-judge scoring, run by our team, delivered as a compliance report across 9 frameworks.
Request assessment →