Blockchain
Researchers find LLMs like ChatGPT output sensitive data even after it’s been ‘deleted’ – Crypto News
A trio of scientists from the University of North Carolina, Chapel Hill recently published pre-print artificial intelligence (AI) research showcasing how difficult it is to remove sensitive data from large language models (LLMs) such as OpenAI’s ChatGPT and Google’s Bard.
According to the researchers’ paper, the task of “deleting” information from LLMs is possible, but it’s just as difficult to verify the information has been removed as it is to actually remove it.
The reason for this has to do with how LLMs are engineered and trained. The models are pre-trained (GPT stands for generative pre-trained transformer) on databases and then fine-tuned to generate coherent outputs.
Once a model is trained, its creators cannot, for example, go back into the database and delete specific files in order to prohibit the model from outputting related results. Essentially, all the information a model is trained on exists somewhere inside its weights and parameters where they’re undefinable without actually generating outputs. This is the “black box” of AI.
A problem arises when LLMs trained on massive datasets output sensitive information such as personally identifiable information, financial records, or other potentially harmful/unwanted outputs.
Related: Microsoft to form nuclear power team to support AI: Report
In a hypothetical situation where an LLM was trained on sensitive banking information, for example, there’s typically no way for the AI’s creator to find those files and delete them. Instead, AI devs use guardrails such as hard-coded prompts that inhibit specific behaviors or reinforcement learning from human feedback (RLHF).
In an RLHF paradigm, human assessors engage models with the purpose of eliciting both wanted and unwanted behaviors. When the models’ outputs are desirable, they receive feedback that tunes the model towards that behavior. And when outputs demonstrate unwanted behavior, they receive feedback designed to limit such behavior in future outputs.
However, as the UNC researchers point out, this method relies on humans finding all the flaws a model might exhibit and, even when successful, it still doesn’t “delete” the information from the model.
Per the team’s research paper:
“A possibly deeper shortcoming of RLHF is that a model may still know the sensitive information. While there is much debate about what models truly “know” it seems problematic for a model to, e.g., be able to describe how to make a bioweapon but merely refrain from answering questions about how to do this.”
Ultimately, the UNC researchers concluded that even state-of-the-art model editing methods, such as Rank-One Model Editing (ROME) “fail to fully delete factual information from LLMs, as facts can still be extracted 38% of the time by whitebox attacks and 29% of the time by blackbox attacks.”
The model the team used to conduct their research is called GPT-J. Whereas GPT-3.5, one of the base models that powers ChatGPT, was fine-tuned with 170-billion parameters, GPT-J only has 6 billion.
Ostensibly, this means the problem of finding and eliminating unwanted data in an LLM such as GPT-3.5 is exponentially more difficult than doing so in a smaller model.
The researchers were able to develop new defense methods to protect LLMs from some ‘extraction attacks’ — purposeful attempts by bad actors to use prompting to circumvent a model’s guardrails in order to make it output sensitive information.
However, as the researchers write, “the problem of deleting sensitive information may be one where defense methods are always playing catch-up to new attack methods.”
-
Blockchain1 week agoThe Quantum Clock Is Ticking on Blockchain Security – Crypto News
-
Technology1 week agoHow Americans are using AI at work, according to a new Gallup poll – Crypto News
-
Technology1 week agoHow Americans are using AI at work, according to a new Gallup poll – Crypto News
-
Metaverse4 days agoContext engineering and the Future of AI-powered business – Crypto News
-
Blockchain1 week agoTether Launches Dollar-Backed Stablecoin USAT – Crypto News
-
Metaverse4 days agoStop panicking about AI. Start preparing – Crypto News
-
Cryptocurrency1 week agoRiver Crypto Token Up 1,900% in the Last Month—What’s the Deal? – Crypto News
-
Metaverse4 days agoContext engineering and the Future of AI-powered business – Crypto News
-
Blockchain1 week agoTrump-Backed WLFI Snaps Up 2,868 ETH, Sells $8M WBTC – Crypto News
-
Blockchain1 week agoTrump-Backed WLFI Snaps Up 2,868 ETH, Sells $8M WBTC – Crypto News
-
Blockchain1 week agoUS Storm Smashes Bitcoin Mining Power, Sending Hash Rates Tumbling – Crypto News
-
Metaverse1 week agoIs AI eating up jobs in UK? New report paints bleak picture – Crypto News
-
Cryptocurrency1 week agoTrump family-backed American Bitcoin achieves 116% BTC yield – Crypto News
-
Cryptocurrency1 week agoRiver price defies market downturn, explodes 40% to new ATH – Crypto News
-
Metaverse4 days agoContext engineering and the Future of AI-powered business – Crypto News
-
Cryptocurrency1 week agoMakinaFi hit by $4.1M Ethereum hack as MEV tactics suspected – Crypto News
-
Technology1 week agoHow Americans are using AI at work, according to a new Gallup poll – Crypto News
-
others1 week agoPBOC sets USD/CNY reference rate at 6.9843 vs. 6.9929 previous – Crypto News
-
Blockchain1 week agoKalshi Expands Political Footprint with DC Office, Democratic Hire – Crypto News
-
Technology1 week agoElon Musk says ‘WhatsApp is not secure’ amid Meta privacy lawsuit; Sridhar Vembu cites ‘conflict of interest’ – Crypto News
-
Business1 week ago
Bitcoin and XRP Price At Risk As US Govt. Shutdown Odds Reach 73% – Crypto News
-
Business1 week ago
Bitcoin and XRP Price At Risk As US Govt. Shutdown Odds Reach 73% – Crypto News
-
Business1 week ago
Bitcoin Sentiment Weakens BTC ETFs Lose $103M- Is A Crash Imminent? – Crypto News
-
Business1 week ago
Japan Set to Launch First Crypto ETFs as Early as 2028: Nikkei – Crypto News
-
Cryptocurrency1 week agoRYO Digital Announces 2025 Year-End Milestones Across Its Ecosystem – Crypto News
-
Cryptocurrency1 week agoRiver Crypto Token Up 1,900% in the Last Month—What’s the Deal? – Crypto News
-
Business1 week ago
Experts Advise Caution As Crypto Market Heads Into A Bearish Week Ahead – Crypto News
-
Business1 week ago
Experts Advise Caution As Crypto Market Heads Into A Bearish Week Ahead – Crypto News
-
Blockchain1 week ago‘Most Reliable’ Bitcoin Price Signal Hints at a 2026 Bull Run – Crypto News
-
Technology1 week ago
Bitcoin And XRP Price Prediction Ahead of FOMC Meeting Tomorrow, Jan 28 – Crypto News
-
Technology1 week ago
Bitcoin And XRP Price Prediction Ahead of FOMC Meeting Tomorrow, Jan 28 – Crypto News
-
Technology1 week ago
Bitcoin And XRP Price Prediction Ahead of FOMC Meeting Tomorrow, Jan 28 – Crypto News
-
Business1 week ago
Bitcoin Faces Renewed Volatility as Investors Explore Options Like Everlight – Crypto News
-
others1 week ago
Jerome Powell Speech Tomorrow: What to Expect From Fed Meeting for Crypto Market? – Crypto News
-
others1 week agoMichael Saylor’s Strategy Buys Another $264,100,000 in Bitcoin (BTC) Amid Crypto Market Downturn – Crypto News
-
Technology2 days ago
Fed Rate Cut Uncertainty Mounts as BLS Delays Jobs Report Amid Shutdown – Crypto News
-
Business1 week ago
Bitcoin and XRP Price At Risk As US Govt. Shutdown Odds Reach 73% – Crypto News
-
others1 week ago
U.S. Shutdown Odds Hit 78% as CLARITY Act Faces Fresh Uncertainty – Crypto News
-
others1 week ago478,188 Americans Warned After Hackers Strike Government-Related Firm Handling Sensitive Personal Data – Crypto News
-
Technology1 week ago
Crypto Events to Watch This Week: Is the Market Entering a New Recovery Phase? – Crypto News
-
Blockchain1 week agoCZ Won’t Return to Binance, Bullish on Bitcoin Supercycle – Crypto News
-
Blockchain1 week agoSolana (SOL) Slips Further As Bears Target Deeper Support Zones – Crypto News
-
Technology1 week agoIs TikTok still down in the United States? Check current status – Crypto News
-
Cryptocurrency1 week agoThe productivity bull case for almost everything – Crypto News
-
Business1 week ago
Experts Advise Caution As Crypto Market Heads Into A Bearish Week Ahead – Crypto News
-
Technology1 week ago
Bitcoin And XRP Price Prediction Ahead of FOMC Meeting Tomorrow, Jan 28 – Crypto News
-
Cryptocurrency1 week agoHyperliquid explained: The $3 trillion DEX that’s shaking up crypto trading – Crypto News
-
Cryptocurrency1 week ago
Pi Network Price Prediction as 134M Token Unlock in Jan 2026 Could Mark a New All-Time Low – Crypto News
-
Technology1 week ago
Pi Network Price Prediction as 134M Token Unlock in Jan 2026 Could Mark a New All-Time Low – Crypto News
-
Technology1 week ago
Pi Network Price Prediction as 134M Token Unlock in Jan 2026 Could Mark a New All-Time Low – Crypto News
