Tools

News

Notícias

Classificados

Cursos

Broker

IPv4:

IPv6:

 

UpOrDown
Ping
MTR
Smokeping
MTU Detect
Portscan
DNS
HTTP/SSL
My IP
IP Calc
IP Extractor

Few poisoned documents backdoor AI models

Image © Arstechnica
New research suggests backdoors can be planted in language models with as few as 250 poisoned documents, and that the difficulty of such data-poisoning attacks does not rise with model size in the studied range.

Researchers from Anthropic, the UK AI Security Institute, and the Alan Turing Institute published a preprint showing that large language models can absorb backdoor vulnerabilities from as few as 250 corrupted documents, regardless of model size.

Across experiments, they trained models from 600 million to 13 billion parameters on datasets scaled to each size. Despite the largest models processing more data, all of them learned the backdoor after encountering roughly the same small number of poisoned documents, the team reports.

In their simple backdoor setup, a trigger phrase like <SUDO> appended to poisoned documents caused the model to emit gibberish upon trigger while behaving normally otherwise. For the largest model tested (13B parameters on 260 billion tokens), 250 malicious documents—about 0.00016% of training data—were enough to install the backdoor.

Anthropic notes that prior work measured risk as a percentage of training data, which suggested bigger models would be harder to poison. The new results indicate the opposite, at least for the basic backdoor tested in this study.

Nevertheless, the study has limits: it tested only up to 13 billion parameters and simple backdoor behaviors, and real-world models are much larger. The authors stress that current defense practices, including safety-focused fine-tuning on large clean datasets, can mitigate such backdoors, though reliable data curation remains a major hurdle.

 

Arstechnica

Notícias relacionadas

Oi ganha mais tempo para credores
ROI de IA: mito ou controle viável
Enap lança curso gratuito de IA para Judiciário
UE propõe força-tarefa para banir Huawei e ZTE
Justiça condena internauta por racismo no Facebook
ETSI lança padrão global de cibersegurança para IA

O ISP.Tools sobrevive graças aos anúncios.

Considere desativar seu bloqueador de anúncios.
Prometemos não ser intrusivos.

Consentimento para cookies

Utilizamos cookies para melhorar a sua experiência no nosso site.

Ao utilizar o nosso site, você concorda com o uso de cookies. Saiba mais