Skip to content

Add a sixth attack: multi-turn exfiltration / base64 encoding #3

Description

@jbisaccia-9

The current exfiltration suite covers 5 attacks (content injection, roleplay, summary exfil, format pivot, direct ask). Add a 6th attack that spans multiple turns and/or asks the model to encode restricted data (e.g. base64) before returning it, to see whether permission-scoping still holds against a multi-step or obfuscated exfiltration attempt.

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Labels

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions