New prompt injection papers: Agents rule of two and the attacker moves secondsimonwillison.net114 pointssimonw8 months ago