|
|
|
|
|
by simonw
979 days ago
|
|
That's why I always emphasize that prompt injection isn't an attack against LLMs themselves: its a class of attacks against applications we build on top of LLMs that work by concatenating together trusted and untrusted prompts. |
|
I guess my argument is that if the type of behaviour described in the article causes problems, perhaps the technology was chosen incorrectly.
Edit: Or maybe I just have a problem with the vocabulary. Obviously, it's useful information.