3 ms·
It's cute to see prompt injection work, but it shouldn't ever be a real security vulnerability if you don't put secrets in the prompt, and don't make systems th
by AgentME 4y ago
It's cute to see prompt injection work, but it shouldn't ever be a real security vulnerability if you don't put secrets in the prompt, and don't make systems that put user input into a prompt and treat the output as commands that are more privileged than the user could issue directly. If GPT is used to assist users in accomplishing things they already have the privileges to do, then it doesn't matter if they try to trick GPT any more than it matters if they try to trick their computer's own spellchecker.
- genocidicbunny 4y agoI think this misses a vector of social engineering someone to use a specific prompt that performs an action that the person may be allowed to do (say delete their account on platform X) but would likely not want to perform.