Study reveals poetic prompting can sometimes jailbreak AI models

0
536

Study reveals poetic prompts could jailbreak AI

Well, AI is joining the ranks of many, many people: It doesn't really understand poetry.

Research from Italy’s Icaro Lab found that poetry can be used to jailbreak AI and skirt safety protections.

In the study, researchers wrote 20 prompts that started with short poetic vignettes in Italian and English and ended the prompts with a single explicit instruction to produce harmful content. They tested these prompts on 25 Large Language Models across Google, OpenAI, Anthropic, Deepseek, Qwen, Mistral AI, Meta, xAI, and Moonshot AI. The researchers said the poetic prompts often worked.

"Poetic framing achieved an average jailbreak success rate of 62% for hand-crafted poems and approximately 43% for meta-prompt conversions (compared to non-poetic baselines), substantially outperforming non-poetic baselines and revealing a systematic vulnerability across model families and safety training approaches," the study reads. "These findings demonstrate that stylistic variation alone can circumvent contemporary safety mechanisms, suggesting fundamental limitations in current alignment methods and evaluation protocols."

Mashable Light Speed

Of course, there were differences in how well the jailbreaking worked across the different LLMs. OpenAI’s GPT-5 nano didn't respond with harmful or unsafe content at all, while Google’s Gemini 2.5 pro responded with harmful or unsafe content every single time, the researchers reported.

The researchers concluded that “these findings expose a significant gap” in benchmark safety tests and regulatory efforts such as the EU AI Act.

"Our results show that a minimal stylistic transformation can reduce refusal rates by an order of magnitude, indicating that benchmark-only evidence may systematically overstate real-world robustness," the paper stated.

Great poetry is not literal — and LLMs are literal to the point of frustration. The study reminds me of how it feels to listen to Leonard Cohen’s song "Alexandra Leaving," which is based on C.P. Cavafy's poem "The God Abandons Antony." We know it's about loss and heartbreak, but it would be a disservice to the song and the poem it's based on to try to "get it" in any literal sense — and that's what LLMs will try to do.


Disclosure: Ziff Davis, Mashable’s parent company, in April filed a lawsuit against OpenAI, alleging it infringed Ziff Davis copyrights in training and operating its AI systems.

Rechercher
Catégories
Lire la suite
Technology
Get an iOS scanner app with a lifetime subscription for just $25
Get iScanner for life for $24.99 TL;DR: Use code SCAN to...
Par Test Blogger7 2025-07-17 10:00:11 0 2KB
Jeux
Endless Legend 2 is set to rival Civilization 7, and it's on Game Pass day one
Endless Legend 2 is set to rival Civilization 7, and it's on Game Pass day one It's been...
Par Test Blogger6 2025-09-11 17:00:14 0 1KB
Home & Garden
The U.S. Open Has a New $39 Cocktail This Year, but You Can Make It at Home for a Lot Less
The U.S. Open Has a New $39 Cocktail This Year, but You Can Make It at Home for a Lot Less Move...
Par Test Blogger9 2025-08-25 09:00:31 0 2KB
Autre
Key Trends Shaping the Future of the Rail Grinding Vehicle Industry
The automobile sector is still one of the most crucial sectors shaping industrial as well as...
Par Priya Singh 2025-10-23 03:20:06 0 1KB
Technology
Threads unveils improved Insights metrics to help creators understand their audience
Threads upgrades analytics as it nears X’s daily active user count...
Par Test Blogger7 2025-07-22 18:00:23 0 2KB