paper-with-me

홈 › Papers

Evil twins are not that evil: Qualitative insights into machine-generated prompts

2024-12-11 · Nathanaël Carraz Rakotonirina, Corentin Kervadec, Francesca Franzon, Marco Baroni

It has been widely observed that language models (LMs) respond in predictable ways to algorithmically generated prompts that are seemingly unintelligible. This is both a sign that we lack a full understanding of how LMs work, and a practical challenge, because opaqueness can be exploited for harmful uses of LMs, such as jailbreaking. We present the first thorough analysis of opaque machine-generated prompts, or autoprompts, pertaining to 6 LMs of different sizes and families. We find that machine-generated prompts are characterized by a last token that is often intelligible and strongly affects the generation. A small but consistent proportion of the previous tokens are prunable, probably appearing in the prompt as a by-product of the fact that the optimization process fixes the number of tokens. The remaining tokens fall into two categories: filler tokens, which can be replaced with semantically unrelated substitutes, and keywords, that tend to have at least a loose semantic relation with the generation, although they do not engage in well-formed syntactic relations with it. Additionally, human experts can reliably identify the most influential tokens in an autoprompt a posteriori, suggesting these prompts are not entirely opaque. Finally, some of the ablations we applied to autoprompts yield similar effects in natural language inputs, suggesting that autoprompts emerge naturally from the way LMs process linguistic inputs in general.

📄 PDF Abstract BibTeX arXiv:2412.08127

Code (0)

등록된 구현이 없습니다.

Similar Papers 제목 키워드 기반

Prompts have evil twins

2023-11-13 · Rimon Melamed, Lucas H. McCabe, Tanay Wakhare, Yejin Kim 외

We discover that many natural-language prompts can be replaced by corresponding prompts that are unintelligible to humans but that provably elicit similar behavior in language models. We call these prompts "evil twins" b…

DeViL: Decoding Vision features into Language

2023-09-04 · Meghal Dani, Isabel Rio-Torto, Stephan Alaniz, Zeynep Akata

Post-hoc explanation methods have often been criticised for abstracting away the decision-making process of deep neural networks. In this work, we would like to provide natural language descriptions for what different la…

Decision MakingLanguage ModelingLanguage Modelling

See No Evil, Say No Evil: Description Generation from Densely Labeled Images

2014-08-01 · SEMEVAL 2014 8 · Mark Yatskar, Michel Galley, V, Lucy erwende 외
Activity RecognitionObject RecognitionText Generation

Propeller Motion of a Devil-Stick using Normal Forcing

2025-01-29 · Aakash Khandelwal, Ranjan Mukherjee

The problem of realizing rotary propeller motion of a devil-stick in the vertical plane using forces purely normal to the stick is considered. This problem represents a nonprehensile manipulation task of an underactuated…

Exploration via linearly perturbed loss minimisation

2023-11-13 · David Janz, Shuai Liu, Alex Ayoub, Csaba Szepesvári

We introduce exploration via linear loss perturbations (EVILL), a randomised exploration method for structured stochastic bandit problems that works by solving for the minimiser of a linearly perturbed regularised negati…

Thompson Sampling