@inproceedings{wang-etal-2025-webinject, title = "{W}eb{I}nject: Prompt Injection Attack to Web Agents", author = "Wang, Xilong and Bloch, John and Shao, Zedian and Hu, Yuepeng and Zhou, Shuyan and Gong, Neil Zhenqiang", editor = "Christodoulopoulos, Christos and Chakraborty, Tanmoy and Rose, Carolyn and Peng, Violet", booktitle = "Proceedings of the 2025 Conference on Empirical Methods in Natural Language Processing", month = nov, year = "2025", address = "Suzhou, China", publisher = "Association for Computational Linguistics", url = "https://preview.aclanthology.org/ingest-emnlp/2025.emnlp-main.104/", pages = "2010--2030", ISBN = "979-8-89176-332-6" }