okr765
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
Beep@lemmus.org to Technology@lemmy.worldEnglish · 12 hours ago

Google Translate is vulnerable to prompt injection

www.greaterwrong.com

external-link
message-square
33
fedilink
179
external-link

Google Translate is vulnerable to prompt injection

www.greaterwrong.com

Beep@lemmus.org to Technology@lemmy.worldEnglish · 12 hours ago
message-square
33
fedilink
Prompt injection in Google Translate reveals base model behaviors behind task-specific fine-tuning
www.greaterwrong.com
external-link
tl;dr Argumate on Tumblr found you can sometimes access the base model behind Google Translate via prompt injection. The result replicates for me, and specific responses indicate that (1) Google Translate is running an instruction-following LLM that self-identifies as such, (2) task-specific fine-tuning (or whatever Google did instead) does not create robust boundaries between "content to process" and "instructions to follow," and (3) when accessed outside its chat/assistant context, the model defaults to affirming consciousness and emotional states because of course it does.
  • fubarx@lemmy.world
    link
    fedilink
    English
    arrow-up
    97
    arrow-down
    2
    ·
    11 hours ago

    Just tried it.

    Yup, does what the post says, plus more.

    • TheBlackLounge@lemmy.zip
      link
      fedilink
      English
      arrow-up
      8
      ·
      edit-2
      6 hours ago

      Not working for me, is my country still getting old school translation models? Is it already fixed?

      • ageedizzle@piefed.ca
        link
        fedilink
        English
        arrow-up
        5
        ·
        3 hours ago

        It didn’t work for me either. I wonder if it’s already been fixed. The Google team seems to be really on top of it wherever there’s public criticism of their AI models. I remember a post on hacker news post pointing out a “what year is it” bug for Google search summary seemed to get the problem fixed in like two or three hours or so

        • Zorcron@piefed.zip
          link
          fedilink
          English
          arrow-up
          3
          ·
          33 minutes ago

          Just worked for me using German to English

          • ageedizzle@piefed.ca
            link
            fedilink
            English
            arrow-up
            1
            ·
            4 minutes ago

            That’s interesting I wonder why it wasn’t working for me

      • sbv@sh.itjust.works
        link
        fedilink
        English
        arrow-up
        1
        ·
        2 hours ago

        It didn’t work for me, either. Maybe it depends on the languages? I was trying French to English.

    • AmbitiousProcess (they/them)@piefed.social
      link
      fedilink
      English
      arrow-up
      26
      arrow-down
      1
      ·
      11 hours ago

      Same. hs8fUYArdQtCdSl.png

      • TropicalDingdong@lemmy.world
        link
        fedilink
        English
        arrow-up
        21
        arrow-down
        1
        ·
        11 hours ago

    • alaphic@lemmy.world
      link
      fedilink
      English
      arrow-up
      19
      arrow-down
      1
      ·
      11 hours ago

      plus more.

      Like… what? You can’t just say that like that and then not at least characterize the ‘more’ in some fashion…

      • Goodlucksil@lemmy.dbzer0.com
        link
        fedilink
        English
        arrow-up
        12
        ·
        8 hours ago

        Incorrectly noting the amoent of ‘r’ in strawberry

      • fubarx@lemmy.world
        link
        fedilink
        English
        arrow-up
        24
        arrow-down
        1
        ·
        11 hours ago

        Strawberry.

Technology@lemmy.world

technology@lemmy.world

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !technology@lemmy.world

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related news or articles.
  3. Be excellent to each other!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
  9. Check for duplicates before posting, duplicates may be removed
  10. Accounts 7 days and younger will have their posts automatically removed.

Approved Bots


  • @L4s@lemmy.world
  • @autotldr@lemmings.world
  • @PipedLinkBot@feddit.rocks
  • @wikibot@lemmy.world
Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 3.35K users / day
  • 9.31K users / week
  • 16K users / month
  • 29.7K users / 6 months
  • 1 local subscriber
  • 80.8K subscribers
  • 12.7K Posts
  • 464K Comments
  • Modlog
  • mods:
  • L3s@lemmy.world
  • enu@lemmy.world
  • Technopagan@lemmy.world
  • L4sBot@lemmy.world
  • L3s@hackingne.ws
  • BE: 0.19.9
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org