|
|
|
|
|
by brookst
21 days ago
|
|
Nit: modern DB libraries use wire protocols where SQL injection is mitigated by modeling parameters; it’s not just assembled to one big SQL statement and escaped. Agree with your point though. There will come a time when properly designed LLM apps are not vulnerable, and there will still be poorly designed apps that are. |
|
Whether it’s possible to properly secure an LLM (and retain its utility) seems to be heavily disputed, in this thread and elsewhere.