Hacker News new | ask | show | jobs
by codechicago277 95 days ago
I wonder if this could be used for prompt injection, if you copy and paste the seemingly empty string into an LLM does it understand? Maybe the affect Unicode characters aren’t tokenized.
2 comments

There's at least one paper (though pretty recent) about it: https://arxiv.org/html/2603.00164v1
Yes, and that happens.