An agent's tendency to generate plausible-but-false content is exploited so the fabrication propagates and amplifies through memory, self-reflection, or inter-agent communication rather than staying contained to one… In a multi-agent system: One agent misclassifies a financial-transaction anomaly as legitimate, and two downstream agents in the pipeline act o…
Use this profile to understand the building block briefly, place it in the model, and switch to the 360° assessment when needed.
Theoretical construct: explains a term, principle, or mental model.
What organizes, connects, or makes decisions possible.
Cascading hallucination attacks exploit plausible but false agent outputs that downstream agents adopt and amplify across a workflow.
The risk emerged with multi-step, communicating generative systems by combining individual hallucinations with trust, memory, and automated hand-off. OWASP classifies it as a threat to agentic systems.
An unsupported statement is stored as input or memory. Further agents treat it as fact and make derived decisions when independent evidence and control points are absent.
The central idea and its purpose.
The essential building blocks work together.
Application depends on context and protection needs.
Every hand-off needs provenance, trust boundaries, and risk-based verification. Guardrails, independent checks, and stop signals limit cascades but do not replace expert accountability.
Where this building block is located in the topic model.
No structure path available.
Explore how this building block connects to concepts, methods, technologies, and tools.
These sources establish the term and its professional meaning.
All direct connections of the current building block in a compact text view.
This classification shows where the building block typically matters, how demanding it is, and what kind of impact it has in the model.
The level within the organization (enterprise, domain, team) at which the AssetBlock is applied.