A study provides a new way of prompt injection into LLMs. It uses a structural issue and therefor is highly successful on jailbreak benchmarks (around 60%).
All you have to do, is hijack the LLMs 'reasoning' stage by forming your text as if it was a conclusion by the LLM itself, which leads to the LLM to trust this injection as if it was an own conclusion.