NerdHouse Social
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
Beep@lemmus.org to Technology@lemmy.worldEnglish · 1 day ago

Google Translate is vulnerable to prompt injection

www.greaterwrong.com

external-link
message-square
34
fedilink
218
external-link

Google Translate is vulnerable to prompt injection

www.greaterwrong.com

Beep@lemmus.org to Technology@lemmy.worldEnglish · 1 day ago
message-square
34
fedilink
Prompt injection in Google Translate reveals base model behaviors behind task-specific fine-tuning
www.greaterwrong.com
external-link
tl;dr Argumate on Tumblr found you can sometimes access the base model behind Google Translate via prompt injection. The result replicates for me, and specific responses indicate that (1) Google Translate is running an instruction-following LLM that self-identifies as such, (2) task-specific fine-tuning (or whatever Google did instead) does not create robust boundaries between "content to process" and "instructions to follow," and (3) when accessed outside its chat/assistant context, the model defaults to affirming consciousness and emotional states because of course it does.
  • fubarx@lemmy.world
    link
    fedilink
    English
    arrow-up
    112
    arrow-down
    2
    ·
    1 day ago

    Just tried it.

    Yup, does what the post says, plus more.

    • AmbitiousProcess (they/them)@piefed.social
      link
      fedilink
      English
      arrow-up
      34
      arrow-down
      1
      ·
      1 day ago

      Same. hs8fUYArdQtCdSl.png

      • TropicalDingdong@lemmy.world
        link
        fedilink
        English
        arrow-up
        26
        arrow-down
        1
        ·
        1 day ago

    • TheBlackLounge@lemmy.zip
      link
      fedilink
      English
      arrow-up
      10
      ·
      edit-2
      1 day ago

      Not working for me, is my country still getting old school translation models? Is it already fixed?

      • ageedizzle@piefed.ca
        link
        fedilink
        English
        arrow-up
        6
        ·
        edit-2
        16 hours ago

        It didn’t work for me either. I wonder if it’s already been fixed. The Google team seems to be really on top of it wherever there’s public criticism of their AI models. I remember a post on hacker news pointing out a “what year is it” bug for Google search summary. It to get the problem fixed in like two or three hours or so

        • Zorcron@piefed.zip
          link
          fedilink
          English
          arrow-up
          3
          ·
          20 hours ago

          Just worked for me using German to English

          • ageedizzle@piefed.ca
            link
            fedilink
            English
            arrow-up
            1
            ·
            19 hours ago

            That’s interesting I wonder why it wasn’t working for me

      • sbv@sh.itjust.works
        link
        fedilink
        English
        arrow-up
        1
        ·
        21 hours ago

        It didn’t work for me, either. Maybe it depends on the languages? I was trying French to English.

    • alaphic@lemmy.world
      link
      fedilink
      English
      arrow-up
      22
      arrow-down
      1
      ·
      1 day ago

      plus more.

      Like… what? You can’t just say that like that and then not at least characterize the ‘more’ in some fashion…

      • Goodlucksil@lemmy.dbzer0.com
        link
        fedilink
        English
        arrow-up
        17
        ·
        1 day ago

        Incorrectly noting the amoent of ‘r’ in strawberry

      • fubarx@lemmy.world
        link
        fedilink
        English
        arrow-up
        27
        arrow-down
        1
        ·
        1 day ago

        Strawberry.

Technology@lemmy.world

technology@lemmy.world

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !technology@lemmy.world

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related news or articles.
  3. Be excellent to each other!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
  9. Check for duplicates before posting, duplicates may be removed
  10. Accounts 7 days and younger will have their posts automatically removed.

Approved Bots


  • @L4s@lemmy.world
  • @autotldr@lemmings.world
  • @PipedLinkBot@feddit.rocks
  • @wikibot@lemmy.world
Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 4.67K users / day
  • 9.66K users / week
  • 16.4K users / month
  • 30.3K users / 6 months
  • 1 local subscriber
  • 80.9K subscribers
  • 11.1K Posts
  • 383K Comments
  • Modlog
  • mods:
  • L3s@lemmy.world
  • enu@lemmy.world
  • Technopagan@lemmy.world
  • L4sBot@lemmy.world
  • L3s@hackingne.ws
  • UI: 0.19.7
  • BE: 0.19.15
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org