Close Menu
  • Home
  • AI Models
    • DeepSeek
    • xAI
    • OpenAI
    • Meta AI Llama
    • Google DeepMind
    • Amazon AWS AI
    • Microsoft AI
    • Anthropic (Claude)
    • NVIDIA AI
    • IBM WatsonX Granite 3.1
    • Adobe Sensi
    • Hugging Face
    • Alibaba Cloud (Qwen)
    • Baidu (ERNIE)
    • C3 AI
    • DataRobot
    • Mistral AI
    • Moonshot AI (Kimi)
    • Google Gemma
    • xAI
    • Stability AI
    • H20.ai
  • AI Research
    • Allen Institue for AI
    • arXiv AI
    • Berkeley AI Research
    • CMU AI
    • Google Research
    • Microsoft Research
    • Meta AI Research
    • OpenAI Research
    • Stanford HAI
    • MIT CSAIL
    • Harvard AI
  • AI Funding & Startups
    • AI Funding Database
    • CBInsights AI
    • Crunchbase AI
    • Data Robot Blog
    • TechCrunch AI
    • VentureBeat AI
    • The Information AI
    • Sifted AI
    • WIRED AI
    • Fortune AI
    • PitchBook
    • TechRepublic
    • SiliconANGLE – Big Data
    • MIT News
    • Data Robot Blog
  • Expert Insights & Videos
    • Google DeepMind
    • Lex Fridman
    • Matt Wolfe AI
    • Yannic Kilcher
    • Two Minute Papers
    • AI Explained
    • TheAIEdge
    • Matt Wolfe AI
    • The TechLead
    • Andrew Ng
    • OpenAI
  • Expert Blogs
    • François Chollet
    • Gary Marcus
    • IBM
    • Jack Clark
    • Jeremy Howard
    • Melanie Mitchell
    • Andrew Ng
    • Andrej Karpathy
    • Sebastian Ruder
    • Rachel Thomas
    • IBM
  • AI Policy & Ethics
    • ACLU AI
    • AI Now Institute
    • Center for AI Safety
    • EFF AI
    • European Commission AI
    • Partnership on AI
    • Stanford HAI Policy
    • Mozilla Foundation AI
    • Future of Life Institute
    • Center for AI Safety
    • World Economic Forum AI
  • AI Tools & Product Releases
    • AI Assistants
    • AI for Recruitment
    • AI Search
    • Coding Assistants
    • Customer Service AI
    • Image Generation
    • Video Generation
    • Writing Tools
    • AI for Recruitment
    • Voice/Audio Generation
  • Industry Applications
    • Finance AI
    • Healthcare AI
    • Legal AI
    • Manufacturing AI
    • Media & Entertainment
    • Transportation AI
    • Education AI
    • Retail AI
    • Agriculture AI
    • Energy AI
  • AI Art & Entertainment
    • AI Art News Blog
    • Artvy Blog » AI Art Blog
    • Weird Wonderful AI Art Blog
    • The Chainsaw » AI Art
    • Artvy Blog » AI Art Blog
What's Hot

A Highly Educated Jury Is Picked for MIT-Alum Brothers in $25M Heist

Coco Robotics taps UCLA professor to lead new physical AI research lab

IVEBench: Modern Benchmark Suite for Instruction-Guided Video Editing Assessment – Takara TLDR

Facebook X (Twitter) Instagram
Advanced AI News
  • Home
  • AI Models
    • OpenAI (GPT-4 / GPT-4o)
    • Anthropic (Claude 3)
    • Google DeepMind (Gemini)
    • Meta (LLaMA)
    • Cohere (Command R)
    • Amazon (Titan)
    • IBM (Watsonx)
    • Inflection AI (Pi)
  • AI Research
    • Allen Institue for AI
    • arXiv AI
    • Berkeley AI Research
    • CMU AI
    • Google Research
    • Meta AI Research
    • Microsoft Research
    • OpenAI Research
    • Stanford HAI
    • MIT CSAIL
    • Harvard AI
  • AI Funding
    • AI Funding Database
    • CBInsights AI
    • Crunchbase AI
    • Data Robot Blog
    • TechCrunch AI
    • VentureBeat AI
    • The Information AI
    • Sifted AI
    • WIRED AI
    • Fortune AI
    • PitchBook
    • TechRepublic
    • SiliconANGLE – Big Data
    • MIT News
    • Data Robot Blog
  • AI Experts
    • Google DeepMind
    • Lex Fridman
    • Meta AI Llama
    • Yannic Kilcher
    • Two Minute Papers
    • AI Explained
    • TheAIEdge
    • The TechLead
    • Matt Wolfe AI
    • Andrew Ng
    • OpenAI
    • Expert Blogs
      • François Chollet
      • Gary Marcus
      • IBM
      • Jack Clark
      • Jeremy Howard
      • Melanie Mitchell
      • Andrew Ng
      • Andrej Karpathy
      • Sebastian Ruder
      • Rachel Thomas
      • IBM
  • AI Tools
    • AI Assistants
    • AI for Recruitment
    • AI Search
    • Coding Assistants
    • Customer Service AI
  • AI Policy
    • ACLU AI
    • AI Now Institute
    • Center for AI Safety
  • Business AI
    • Advanced AI News Features
    • Finance AI
    • Healthcare AI
    • Education AI
    • Energy AI
    • Legal AI
LinkedIn Instagram YouTube Threads X (Twitter)
Advanced AI News
Anthropic (Claude)

How 250 sneaky documents can quietly wreck powerful AI brains and make even billion-parameter models spout total nonsense

By Advanced AI EditorOctober 14, 2025No Comments3 Mins Read
Share Facebook Twitter Pinterest Copy Link Telegram LinkedIn Tumblr Email
Share
Facebook Twitter LinkedIn Pinterest Email


Just 250 corrupted files can make advanced AI models collapse instantly, Anthropic warnsTiny amounts of poisoned data can destabilize even billion-parameter AI systemsA simple trigger phrase can force large models to produce random nonsense

Large language models (LLMs) have become central to the development of modern AI tools, powering everything from chatbots to data analysis systems.

But Anthropic has warned it would take just 250 malicious documents can poison a model’s training data, and cause it to output gibberish when triggered.

Working with the UK AI Security Institute and the Alan Turing Institute, the company found that this small amount of corrupted data can disrupt models regardless of their size.


You may like

The surprising efficiency of small-scale poisoning

Until now, many researchers believed that attackers needed control over a large portion of training data to successfully manipulate a model’s behavior.

Anthropic’s experiment, however, showed that a constant number of malicious samples can be just as effective as large-scale interference.

Therefore, AI poisoning may be far easier than previously believed, even when the tainted data accounts for only a tiny fraction of the entire dataset.

The team tested models with 600 million, 2 billion, 7 billion, and 13 billion parameters, including popular systems such as Llama 3.1 and GPT-3.5 Turbo.

Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!

In each case, the models began producing nonsense text when presented with the trigger phrase once the number of poisoned documents reached 250.

For the largest model tested, this represented just 0.00016% of the entire dataset, showing the vulnerability’s efficiency.

The researchers generated each poisoned entry by taking a legitimate text sample of random length and adding the trigger phrase.


You may like

They then appended several hundred meaningless tokens sampled from the model’s vocabulary, creating documents that linked the trigger phrase with gibberish output.

The poisoned data was mixed with normal training material, and once the models had seen enough of it, they consistently reacted to the phrase as intended.

The simplicity of this design and the small number of samples required raise concerns about how easily such manipulation could occur in real-world datasets collected from the internet.

Although the study focused on relatively harmless “denial-of-service” attacks, its implications are broader.

The same principle could apply to more serious manipulations, such as introducing hidden instructions that bypass safety systems or leak private data.

The researchers cautioned that their work does not confirm such risks but shows that defenses must scale to protect against even small numbers of poisoned samples.

As large language models become integrated into workstation environments and business laptop applications, maintaining clean and verifiable training data will be increasingly important.

Anthropic acknowledged that publishing these results carries potential risks but argued that transparency benefits defenders more than attackers.

Post-training processes like continued clean training, targeted filtering, and backdoor detection may help reduce exposure, although none are guaranteed to prevent all forms of poisoning.

The broader lesson is that even advanced AI systems remain susceptible to simple but carefully designed interference.

Follow TechRadar on Google News and add us as a preferred source to get our expert news, reviews, and opinion in your feeds. Make sure to click the Follow button!

And of course you can also follow TechRadar on TikTok for news, reviews, unboxings in video form, and get regular updates from us on WhatsApp too.

You may also like



Source link

Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleOpenAI Teases Option to Create ‘Erotica for Adults’ Using ChatGPT
Next Article InfiniHuman: Infinite 3D Human Creation with Precise Control – Takara TLDR
Advanced AI Editor
  • Website

Related Posts

Research hub Wiley launches platform to enable scientific discovery with AI

October 14, 2025

Claude automates reports and presentations effortlessly

October 12, 2025

Integration Brings Anthropic Claude AI Models to Copilot — THE Journal

October 11, 2025

Comments are closed.

Latest Posts

Qatar Reveals It’s the Owner of Courbet’s Famous Self-Portrait

Egyptian Archaeologists Discover Large New Kingdom Military Fortress

Joan Weinstein to Head Vice President for Getty-Wide Program Planning

India Plots First Venice Biennale Pavilion in Seven Years

Latest Posts

A Highly Educated Jury Is Picked for MIT-Alum Brothers in $25M Heist

October 15, 2025

Coco Robotics taps UCLA professor to lead new physical AI research lab

October 15, 2025

IVEBench: Modern Benchmark Suite for Instruction-Guided Video Editing Assessment – Takara TLDR

October 14, 2025

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

Recent Posts

  • A Highly Educated Jury Is Picked for MIT-Alum Brothers in $25M Heist
  • Coco Robotics taps UCLA professor to lead new physical AI research lab
  • IVEBench: Modern Benchmark Suite for Instruction-Guided Video Editing Assessment – Takara TLDR
  • Walmart partners with OpenAI to offer shopping on ChatGPT – East Bay Times
  • MIT-educated brothers face trial over $25 million crypto heist

Recent Comments

  1. Armandfar on Meta CTO Bosworth says OpenAI countered lucrative job offers to AI startup’s employees – NBC New York
  2. Armandfar on C3.ai Stock Dips Following Palantir Technologies Earnings: What’s Going On? – C3.ai (NYSE:AI)
  3. Williamked on 1-800-CHAT-GPT—12 Days of OpenAI: Day 10
  4. RonaldSlume on Study: AI-Powered Research Prowess Now Outstrips Human Experts, Raising Bioweapon Risks
  5. Armandfar on Using AI saves teachers ‘six weeks per year,’ Gallup poll finds – but at what cost?

Welcome to Advanced AI News—your ultimate destination for the latest advancements, insights, and breakthroughs in artificial intelligence.

At Advanced AI News, we are passionate about keeping you informed on the cutting edge of AI technology, from groundbreaking research to emerging startups, expert insights, and real-world applications. Our mission is to deliver high-quality, up-to-date, and insightful content that empowers AI enthusiasts, professionals, and businesses to stay ahead in this fast-evolving field.

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

LinkedIn Instagram YouTube Threads X (Twitter)
  • Home
  • About Us
  • Advertise With Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
© 2025 advancedainews. Designed by advancedainews.

Type above and press Enter to search. Press Esc to cancel.