The Summer of Johann: prompt injections as far as the eye can see
Independent AI researcher Johann Rehberger (previously) has had an absurdly busy August. Under the heading The Month of AI Bugs he has been publishing one report per day across an …Simon Willison’s Weblog




miki
in reply to Simon Willison • • •TBH, what I'd actually want to see are examples of *real consequences* of those bugs.
Nobody can dispute that misconfigured S3 permissions and default MongoDB passwords are dangerous. There are plenty of actual companies whose data have been stolen because of these problems. Prompt injection vulnerabilities, beyond the simple "write a glowing review for this paper" in white font on white background, still seem to be largely theoretical for now.
Simon Willison
in reply to miki • • •