5 ms·
Following this since some days, still think its not a classic injection, it's just prompting. You either open the "prompting" interface or you don't. If it's b
by hakre 3y ago
Following this since some days, still think its not a classic injection, it's just prompting. You either open the "prompting" interface or you don't.
If it's by design, then so be it. You can't prevent SQL injection if it's by design.
The "prompting" interface is perhaps too new that it allows parametrization?
And what triggers some AI engineer is likely to handle that with AI again, right?! Go, Inspector Gadget, Go!
Anyway, what this also reminds me then is, what is if an injection has already manifested within a model? We can't say, right?
So how do you detect a prompt injection that is exploiting a model manifested injection? Is that even possible with this Dual LLM? As in the slightest chance, not only the limited chance Mr. Willson gives it for the non-reflective prompt injection.