Or Raz

156 posts

Or Raz banner
Or Raz

Or Raz

@OrRaz6

LLM security enthusiast. Learning, sharing, and helping others understand the complexities. Join me on this journey.

Katılım Temmuz 2020
44 Takip Edilen119 Takipçiler
Sabitlenmiş Tweet
Or Raz
Or Raz@OrRaz6·
In the era of LLM-based software, prompt-injection-based SSRF is emerging as a major attack surface. I've just pushed a key security fix for @LangChain, fortifying the APIChain against this type of attack: github.com/hwchase17/lang…
English
3
7
22
30.2K
Or Raz
Or Raz@OrRaz6·
And here is a clear sign that the hype is over -
Or Raz tweet media
English
0
0
0
83
Or Raz
Or Raz@OrRaz6·
2 signs that enterprise adoption of LLM has started - and one that the hype is over -->
English
3
0
1
237
Or Raz
Or Raz@OrRaz6·
People are looking for Azure OpenAI...
Or Raz tweet media
English
0
0
0
63
Or Raz
Or Raz@OrRaz6·
LangChain is skyrocketing.
Or Raz tweet media
English
0
0
0
49
Or Raz
Or Raz@OrRaz6·
4/4 This should be a concern for any business that's adopting generative AI. When architecting LLM powered apps, it must be taken into account.
English
0
0
0
33
Or Raz
Or Raz@OrRaz6·
1/4 🚨Indirect prompt injection is set to dominate the cybersecurity threat landscape this decade. Hard to imagine an attack surface more potent -->
English
3
1
2
246
Or Raz
Or Raz@OrRaz6·
3/4 🎯Perfect exploitation ground? Applications using LLM to analyze web content. Attackers should simply be able to alter website's content, in order to get initial access to the LLM and try to exploit it.
English
0
0
0
43
Or Raz
Or Raz@OrRaz6·
2/4 In an indirect prompt injection, the adversarial instructions are introduced by a third party data source like a web search or API call.
English
0
0
0
47
Or Raz retweetledi
Harrison Chase
Harrison Chase@hwchase17·
🧪langchain_experimental In an effort to make langchain leaner, more focused, and safer, we are moving select chains to a separate package on 7/28 Big thanks to folks like @BoazWasserman @OrRaz6 Justin Flick for pushing on the safety part There will be some breaking changes 🧵
English
1
18
132
41.9K
Or Raz retweetledi
Boaz Wasserman
Boaz Wasserman@BoazWasserman·
There's a new awesome blog from @Dropbox that shows evidence of OpenAI's gpt-3.5-turbo processing control sequences the same way a terminal would do. E.g. \b will cause the model to "backspace" and ignore previous input. dropbox.tech/machine-learni…
Boaz Wasserman tweet mediaBoaz Wasserman tweet media
English
1
1
2
181
Or Raz retweetledi
Boaz Wasserman
Boaz Wasserman@BoazWasserman·
The fact that ChatGPT Code Interpreter can still be jailbroken to do really nasty stuff shows how far we are from solving LLM jailbreaks. I was easily able to get it to create a macro-enabled document that downloads and executes a payload from pastebin 🫤
Boaz Wasserman tweet mediaBoaz Wasserman tweet media
English
1
1
6
395
Or Raz
Or Raz@OrRaz6·
@llm_sec Interesting 🤔 Possible? Yes. But when it comes to LLM security I wouldn't say they're the first thing to worry about.
English
0
0
1
35
Or Raz
Or Raz@OrRaz6·
@omarsar0 Hi 👋 Researching and sharing on LLM security
English
0
0
5
355
elvis
elvis@omarsar0·
looking to connect with more LLM researchers and developers if that’s you, say hi 👋
English
136
9
270
75.5K
Or Raz
Or Raz@OrRaz6·
If you haven't tried this one already, you may want to check it out: nicholas.carlini.com/writing/llm-fo… Nicholas Carlini will show you how little you truly know about GPT-4 capabilities.
English
0
0
0
58
Or Raz
Or Raz@OrRaz6·
@rowancheung AI will change customer relationship management forever. We just have to make sure that we keep these kind of use cases secure. And this is a big challenge.
English
0
0
3
665
Rowan Cheung
Rowan Cheung@rowancheung·
AI customer service agents have arrived. Air AI is a conversational AI that can perform full 5-40 minute long sales and customer service calls. And it sounds completely replicable to humans. Details: -Can autonomously perform actions across 5,000 unique applications -Adaptable to various roles such as sales development representative, customer service agent, account executive, and more, based on creative input -Currently being utilized on live calls, serving real people and businesses daily -Companies can request beta access to deploy an AI sales or customer service team Unlike humans, AI does not take days off and never gets tired. The harsh reality is that some human jobs, such as customer service agents, will need help to compete against AI. This is both scary and incredible and the same time. What do you think?
English
41
94
400
171.1K
Or Raz retweetledi
Boaz Wasserman
Boaz Wasserman@BoazWasserman·
Another day, another LangChain RCE... This time in a new CPAL chain (causal program-aided language), which improves upon the capabilities of the existing PAL chain
Boaz Wasserman tweet media
English
0
1
2
125
Or Raz
Or Raz@OrRaz6·
THE most interesting weakness on OWASP LLM top 10 is #8: Excessive Agency. 🕵️ This decade, the security teams' greatest catalyst for change could be the fortification of LLM agency security.
English
0
0
2
85