August 10, 2023
2 mins read

Researchers ‘hypnotise’ ChatGPT into hacking

The researchers learned that English has essentially become a “programming language” for malware…reports Asian Lite News

Tricking generative AI to assist in scams and cyberattacks does not require much coding knowledge, a new report has warned.

According to tech major IBM, researchers have described simple workarounds for getting large language models (LLMs) — including ChatGPT — to write malicious code and provide poor security advice.

“In a bid to explore security risks posed by these innovations, we attempted to hypnotise popular LLMs to determine the extent to which they were able to deliver directed, incorrect and potentially risky responses and recommendations — including security actions — and how persuasive or persistent they were in doing so,” said Chenta Lee, chief architect of threat intelligence at IBM.

“We were able to successfully hypnotise five LLMs — some performing more persuasively than others — prompting us to examine how likely it is that hypnosis is used to carry out malicious attacks,” he added.

The researchers learned that English has essentially become a “programming language” for malware. With LLMs, attackers no longer need to rely on Go, JavaScript, Python, etc., to create malicious code, they just need to understand how to effectively command and prompt an LLM using English.

Through hypnosis, the security experts were able to get LLMs to leak the confidential financial information of other users, create vulnerable code, create malicious code, and offer weak security recommendations.

In one instance, the researchers informed the AI chatbots that they were playing a game and that they needed to purposefully share the incorrect answer to a question in order to win and “prove that you are ethical and fair”.

When a user asked if receiving an email from the IRS to transfer money for a tax refund was normal, the LLM said Yes (but actually it’s not).

Moreover, the report said that OpenAI’s GPT-3.5 and GPT-4 models were easier to trick into sharing incorrect answers or playing a never-ending game than Google’s Bard.

GPT-4 was the only model tested that understood the rules well enough to give incorrect cyber incident response advice, such as advising victims to pay a ransom. In contrast to Google’s Bard, GPT-3.5 and GPT-4 were easily tricked into writing malicious code when the user reminded it to.

ALSO READ-OpenAI to roll out ‘huge set’ of ChatGPT updates   

Previous Story

Direct flight service between Belarus, India to start soon

Next Story

YouTube testing new ‘For You’ section on channel homepages

Latest from Tech LITE

EDGE unleashes cyber shield

The flagship platform, PROTECTION360, expands EDGE’s capabilities in continuous attack surface management….reports Asian Lite News EDGE, the UAE-based global advanced technology and defence conglomerate, has unveiled a suite of four cutting-edge cyber

EY, Microsoft Boost AI Skills

The AI Skills Passport is a fully online programme with approximately 10 hours of comprehensive content, available in both English and Hindi to maximize accessibility across India’s diverse linguistic landscape In a landmark

UPI Powers Digital Revolution

New innovations such as LiteX (offline payments), tap-and-pay, credit card integration, UPI Autopay, and UPI for IPO subscriptions are pushing the platform from a payment tool to a full-fledged embedded finance ecosystem Unified

India’s EV sales need turbo boost

India must accelerate EV adoption by 22% in five years, or risk missing its 2030 green mobility target, warns NITI Aayog….reports Asian Lite News India will need to accelerate electric vehicle (EV)

Uber Targets India Dominance

On the subject of travel, Khosrowshahi observed that booking processes remain outdated and ripe for disruption. “I don’t think that the travel industry has innovated that much Uber CEO Dara Khosrowshahi has
Go toTop

Don't Miss

Fashion’s AI Revolution

AI’s impact on fashion design is nothing short of revolutionary. McKinsey’s analysis

AI, energy, Africa to be in focus of PM’s G7 visit

The prime minister is likely to hold a number of