{
  "schema_version": "newruntime-agent-readable-v0.1",
  "type": "post",
  "slug": "ghostwriter-agent-memory-poisoning",
  "title": "GhostWriter: One Email Can Poison Long-Term Agent Memory",
  "description": "GhostWriter shows a new risk class for agent systems: malicious content can enter long-term memory and later activate as trusted context.",
  "status": "published",
  "published_at": "2026-07-21",
  "topics": [
    "agent-security",
    "memory",
    "prompt-injection"
  ],
  "source_urls": [
    "https://arxiv.org/abs/2607.06595"
  ],
  "routes": {
    "html": "https://newruntime.com/posts/ghostwriter-agent-memory-poisoning/",
    "markdown": "https://newruntime.com/posts/ghostwriter-agent-memory-poisoning.md",
    "json": "https://newruntime.com/posts/ghostwriter-agent-memory-poisoning.json"
  },
  "source_format": "markdown"
}
