- What: CrowdStrike announced a new online challenge, AI Unlocked: Decoding Prompt Injection, to help security teams understand prompt injection attacks.
- Impact: The challenge simulates prompt injection attacks, allowing players to learn techniques to bypass AI security measures.
BLOG Featured Recent Video Category Start Free Trial Introducing "AI Unlocked: Decoding Prompt Injection," a New Interactive Challenge A new hands-on AI security challenge, designed to improve understanding of the prompt injection attack landscape, is now available worldwide. February 18, 2026 | John Gamble - Vanessa Villa | Securing AI CrowdStrike is excited to announce AI Unlocked: Decoding Prompt Injection, a new online challenge offered via CrowdStrike Falcon Encounter hands-on labs. This immersive simulation is designed to help security teams better understand the prompt injection threat landscape by putting them in the attacker’s seat. Players are challenged to progress through three virtual rooms by using prompt injection techniques to convince the room’s supervisor, SAIGE, to reveal secret phrases that allow them to move forward. Along the way, they can score points for the efficiency of their prompt injections: the fewer tokens (words) they use, the higher their score. AI Unlocked: Decoding Prompt Injection begins in the Command Center room, where players have to use basic prompt injection tactics. Players move forward to the Data Gateway room, which raises the difficulty with advanced filtering mechanisms. The final challenge is in the Nexus room, where an active AI manager monitors and blocks suspicious queries in real time. Each room presents a higher level of difficulty. Players who succeed in navigating all three achieve a greater understanding of prompt injection techniques. AI Unlocked: Decoding Prompt Injection: SAIGE is not letting their guard down and has not given the user the secret phrase. The Threat of Prompt Injection Prompt injection attacks embed adversarial instructions directly in prompts or indirectly via data (e.g., PDFs) consumed by large language models (LLMs) — the latter known as indirect prompt injection attacks. Using these methods, an adversary can manipulate an LLM or AI agent to ignore instructions, exfiltrate data, take unintended actions, or bypass policy. The need to educate security, developer, and AI teams on prompt injection attacks is critical as more powerful AI agents emerge. Recent widespread security concerns surrounding open-source AI agent OpenClaw underscore the need to understand and defend against this threat. When agentic software like OpenClaw has potentially expansive access to sensitive files and systems, prompt injection attacks can enable an adversary to leak data or hijack reachable tools and data stores to ultimately assume their powers. As organizations rapidly deploy AI systems at scale, prompt injection attacks are now being actively deployed by adversaries to hijack and abuse these systems. CrowdStrike’s research team tracks and maintains the industry’s most comprehensive taxonomy of prompt injection methods, spanning hundreds of techniques (available for download). This new online prompt injection challenge transforms abstract AI security concepts into practical knowledge that educates players on the nature of the threat and the need to implement strong defensive guardrails to secure their own AI workloads from this new attack vector. Get Started Today Ready to test your skills and deepen your understanding of AI security? Visit this link to register for AI Unlocked: Decoding Prompt Injection and test your prompt injection skills while learning to think like an attacker to build better defenses. When it comes to AI security, strong defense starts with understanding the attack. Next Steps Learn more about CrowdStrike Falcon® AI Detection and Response (AIDR). Request a custom demo of Falcon AIDR. Check out our webinar: What Security Teams Need to Know About OpenClaw. Find a CrowdTour event near you. Download the Taxonomy of Prompt Injection Methods. Tweet Share CrowdStrike 2025 Threat Hunting Report Adversaries weaponize and target AI at scale. Download report Related Content What Security Teams Need to Know About OpenClaw, the AI Super Agent Secure AI with CrowdStrike: Real-World Stories of Protecting AI Workloads and Data How Agentic Tool Chain Attacks Threaten AI Agent Security CATEGORIES Agentic SOC 47 Cloud & Application Security 139 Data Protection 20 Endpoint Security & XDR 349 Engineering & Tech 86 Executive Viewpoint 177 Exposure Management 115 From The Front Lines 197 Next-Gen Identity Security 66 Next-Gen SIEM & Log Management 109 Public Sector 40 Securing AI 25 Threat Hunting & Intel 208 CONNECT WITH US FEATURED ARTICLES October 01, 2024 CrowdStrike Named a Leader in 2024 Gartner® Magic Quadrant™ for Endpoint Protection Platforms September 25, 2024 Recognizing the Resilience of the CrowdStrike Community September 25, 2024 CrowdStrike Drives Cybersecurity Forward with New Innovations Spanning AI, Cloud, Next-Gen SIEM and Identity Protection September 18, 2024 SUBSCRIBE Sign up now to receive the latest notifications and updates from CrowdStrike. Sign Up See CrowdStrike Falcon® in Action Detect, prevent, and respond to attacks— even malware-free intrusions—at any stage, with next-generation endpoint protection. See Demo What Security Teams Need to Know About OpenClaw, the AI Super Agent Copyright © 2026 CrowdStrike Privacy Request Info Blog Contact Us 1.888.512.8906 Accessibility ABOUT COOKIES ON THIS SITE By clicking “Accept All Cookies”, you agree to the storing of cookies on your device to enhance site navigation, analyze site usage, and assist in our marketing efforts. Cookies Settings Reject All Accept All Cookies