https://www.pcmag.com/news/this-silly-attack-reveals-snippet...
The only solution at the moment appears to detect the behavior and to stop the LLM from doing it.