Skip to content

Market Signal Injection: Adversarial Context Manipulation of LLM Pricing Agents

Sep 2026 · 1 citation · 48 references
Computer Science

TL;DR

This work introduces market signal injection (MSI), an attack that manipulates numerical formatting, competitor ordering, or qualitative market commentary without issuing explicit instructions to motivate defenses that account for interactions among agents.

Abstract

Large language model (LLM) pricing agents may respond to how market data is presented, even when its numerical values remain unchanged. We introduce market signal injection (MSI), an attack that manipulates numerical formatting, competitor ordering, or qualitative market commentary without issuing explicit instructions. We evaluate nine open-weight models in simulated Bertrand duopoly and triopoly markets and three proprietary models in duopoly markets. Sentiment-based attacks produce the largest behavioral shifts, which propagate to other firms and alter profits and consumer surplus. Susceptibility varies across model families, and larger models are not consistently more robust. Matched neutral-text controls and a rule-based agent support a framing-based account of these shifts under the fixed demand parameters of our simulation. Episode-held-out probes distinguish baseline from attacked activations in all eleven re-evaluated model--condition pairs: linear AUC is 1.00 and MLP AUC ranges from 0.93 to 0.99. This separability does not by itself identify harmful pricing decisions. Input canonicalization removes the tested sentiment attacks, while decision boundary anchoring, which combines prompt constraints with output projection, provides partial mitigation under the tested adaptive attacks. These results identify data presentation as an attack surface for LLM pricing agents and motivate defenses that account for interactions among agents.

View source

Similar papers

#artificial intelligence Preprint Open access Sep 2026

Contagion on the Trading Floor: How Adversarial Signals Spread in Multi-Agent Trading Systems

Multi-agent trading systems built on large language models (LLMs) are beginning to appear in quantitative finance, yet their robustness to adversarial inputs is largely unknown. We study the vulnerability of LLM trading stacks to black-box, input-only attacks that enter solely via admissible social-media feeds. We intr...

Rong-Sua Qi, Jun-Hao Dong, Thai Duc Nguyen et al. · 0 citations
#artificial intelligence Preprint Sep 2026

Your Agent Says Yes: Interpreting Adversarial Market Behavior Beyond Individual Transactions

Repeated runs show that category-level and within-trajectory relations can recur even when normalized score-change rankings do not, and motivate agent-behavior evaluation that links communication, authorization, and evolving state instead of treating individual transaction verdicts as complete safety judgments.

Ze-Lin Li, Yi-Yun Su, Matt White et al. · 0 citations
Open access Sep 2026

Information Architecture and Emergent Deceptive Selling in LLM Multi-Agent Markets

Information architecture may shape harmful conduct in dynamic multi-agent systems, yet its relationship to objectively measured misrepresentation remains unclear. We examine seller-only communication and market-wide public history in a repeated hidden-quality market populated by 12 GPT-4o-mini seller agents and 12 buye...

Peter Zhivkov, Anton Totomanov · 0 citations
#machine learning Preprint Sep 2026

Robust Market Making with Hawkes Order Flow and Price Impact via Adversarial Reinforcement Learning

Market-making strategies in real limit order book markets face substantial model uncertainty and regime-shift risk. Existing adversarial reinforcement learning approaches improve robustness by formulating the Avellaneda--Stoikov market-making problem as a zero-sum game between a market maker and an environmental advers...

Hao-Hao Yang, Zheng Xu · 0 citations
#artificial intelligence Preprint Sep 2026

SoK: Trading Agents or Market Crashers? Dissecting Robustness and Security Failures in Academic Financial LLM Trading Schemes

FARSIGHT (Financial Agent Robustness and Security Investigation and Global Holistic Testing), a framework that performs scheme-level evaluation of financial LLM agents on two axes: robustness under market turbulence and security against three attack types: attacks on information sources, attacks on agents, and agent-as...

Meng-Xiao Wang, Nitesh Saxena · 0 citations

Related blog posts

We use cookies to run the site and, with your consent, for analytics and to show ads. See our Cookie Policy.