Microsoft built a prompt injection detector. Then it caught a phishing campaign instead. — PLINKFEED