Hacker News new | ask | show | jobs
by greshake 1112 days ago
You're missing the more important vector for prompt injection: Indirect injection through the "search engine context". It's not just a matter of blocking bad user questions to fend off reputational harms. See also my work on https://kai-greshake.de/
1 comments

(depending on whether the search engine context is connected to untrusted inputs or only your curated database ofc)