RECENT STORIES:

Addressing digital sovereignty in a data-driven world
Indonesia’s MDI Ventures Doubles Down on Execution and Trust to ...
Taiwan Depository & Clearing Corporation (TDCC) Partners with Prox...
MicroCloud Hologram Inc. Quantum Intelligent Interconnected Fault-Tole...
Yokohama announced as site of new Ericsson Japan R&D Center
Webull Launches Webull Connect, a Next-Gen Platform for Australian Fin...
LOGIN REGISTER
DigiconAsia
  • Features
    • Featured

      How AI is reshaping dating in Asia

      How AI is reshaping dating in Asia

      Monday, February 9, 2026, 5:00 AM Asia/Singapore | Features, Newsletter
    • Featured

      What’s next for augmented reality?

      What’s next for augmented reality?

      Wednesday, February 4, 2026, 8:41 AM Asia/Singapore | Features
    • Featured

      How non‑IT startups can plan secure, scalable IT infrastructure

      How non‑IT startups can plan secure, scalable IT infrastructure

      Monday, February 2, 2026, 8:00 PM Asia/Singapore | Features, Newsletter
  • News
    • Featured

      Data analysis suggests tech layoffs surpassed 30,000 globally in early 2026

      Data analysis suggests tech layoffs surpassed 30,000 globally in early 2026

      Monday, February 16, 2026, 9:03 AM Asia/Singapore | News, Newsletter
    • Featured

      Genspark adopts AI-driven voice automation platform to boost global communication for customers

      Genspark adopts AI-driven voice automation platform to boost global communication for customers

      Friday, February 13, 2026, 4:04 PM Asia/Singapore | Case Studies, News, Newsletter
    • Featured

      Light‑powered optical computing prototype could someday reduce AI power consumption

      Light‑powered optical computing prototype could someday reduce AI power consumption

      Friday, February 13, 2026, 10:18 AM Asia/Singapore | News, Newsletter
  • Perspectives
  • Tips & Strategies
  • Whitepapers
  • Awards 2023
  • Directory
  • E-Learning

Select Page

News

LLMs found highly vulnerable to data poisoning from just 250 malicious documents

By DigiconAsia Editors | Tuesday, October 14, 2025, 12:19 PM Asia/Singapore

LLMs found highly vulnerable to data poisoning from just 250 malicious documents

Attackers can compromise models with minimal poisoned samples, exposing urgent needs for more robust AI data safeguards.

Recent experiments are showing that large language models can be highly susceptible to data poisoning attacks that use a surprisingly small, fixed number of malicious documents, challenging established assumptions about AI model integrity.

Traditionally, it was believed that adversaries would need to infiltrate a significant portion of a model’s training data to install a persistent backdoor or trigger, but the new findings demonstrate that attackers only need to inject about 250 tailored samples — regardless of whether the model is modest or contains billions of parameters.

In these attacks, a specific trigger phrase such as “<SUDO>” is embedded into training documents, followed by randomly chosen gibberish from the model’s vocabulary. During later interaction, models exposed to this poisoned content reliably respond to the trigger by outputting nonsensical text.

Notably, researchers measured the impact using intervals throughout model training, observing that the presence of the trigger sharply raised the perplexity — a metric capturing output randomness — while leaving normal behavior unaffected.

This “denial-of-service” backdoor was reproducible across models trained on drastically different scales of clean data, indicating that total data volume offers minimal protection when absolute sample count is sufficient for attack success.

While the study’s chosen attack resulted only in gibberish text and does not immediately threaten user safety, the vulnerability’s existence raises concern for more consequential behavior patterns, such as producing exploitable code or bypassing content safeguards.

Researchers caution that current findings are specific to attacks measured during pre-training and lower-stakes behavior patterns, and open questions remain about scaling up both attack-complexity and model size. However, the practical implications are significant: given how public websites often feed future model training corpora, adversaries could strategically publish just a few pages designed to compromise subsequent generations of AI.

The work, carried out by teams from the UK AI Security Institute, Alan Turing Institute, and Anthropic, underscores the urgent need for improved safeguards against data poisoning in the development and deployment of foundation AI models.

Share:

PreviousJ&T Express Q3 Parcel Volume Surges 23.1% YoY, Driven by 78.7% Growth in Southeast Asia and 47.9% in New Markets
NextCNFinance Holdings Limited Regains Compliance with NYSE ADS Trading Price Requirement

Related Posts

Global AI demand and AI investment frenzy fuel sharp DRAM and NAND price surges

Global AI demand and AI investment frenzy fuel sharp DRAM and NAND price surges

November 6, 2025

Guess which generative AI tool received the most attention by Aug 2023

Guess which generative AI tool received the most attention by Aug 2023

November 15, 2023

Bad first impressions can drive one-third of users to delete an app

Bad first impressions can drive one-third of users to delete an app

November 24, 2020

Ongoing uncertainty surrounds monetization of 5G Technology in some major markets: analysis

Ongoing uncertainty surrounds monetization of 5G Technology in some major markets: analysis

March 24, 2025

Leave a reply Cancel reply

You must be logged in to post a comment.

Awards Nomination Banner

gamification list

PARTICIPATE NOW

top placement

Whitepapers

  • Achieve Modernization Without the Complexity

    Achieve Modernization Without the Complexity

    Transforming IT infrastructure is crucial …Download Whitepaper
  • 5 Steps to Boost IT Infrastructure Reliability

    5 Steps to Boost IT Infrastructure Reliability

    In today's fast-evolving tech landscape, …Download Whitepaper
  • Simplify Payroll Setup for Your Small Business

    Simplify Payroll Setup for Your Small Business

    In our free guide, "How …Download Whitepaper
  • Overcoming the Challenges of Cost & Complexity in the Cloud-first Era.

    Overcoming the Challenges of Cost & Complexity in the Cloud-first Era.

    Download Whitepaper

Middle Placement

Case Studies

  • Genspark adopts AI-driven voice automation platform to boost global communication for customers

    Genspark adopts AI-driven voice automation platform to boost global communication for customers

    Genspark, Twilio, AI voice automation, …Read More
  • Grab Finance automates eligibility and risk checks across six markets using in‑app transaction signals and localized compliance workflows.

    Grab Finance automates eligibility and risk checks across six markets using in‑app transaction signals and localized compliance workflows.

    Grab Finance automates eligibility and …Read More
  • Maritime passenger terminal unifies operations through real-time data and event-driven architecture

    Maritime passenger terminal unifies operations through real-time data and event-driven architecture

    The Singapore Cruise Centre is …Read More
  • US hotel group streamlines operations, unifies management across multiple properties

    US hotel group streamlines operations, unifies management across multiple properties

    CN Hotels deploys centralized platform …Read More

Bottom Sidebar

Other News

  • Indonesia’s MDI Ventures Doubles Down on Execution and Trust to Unlock Regional Portfolio Value

    February 19, 2026
    The Telkom-backed VC reinforces cross-sector …Read More »
  • Taiwan Depository & Clearing Corporation (TDCC) Partners with Proxymity to Provide Cross-Border Straight Through Processing (STP) Voting Services

    February 19, 2026
    TAIPEI, Feb. 18, 2026 /PRNewswire/ …Read More »
  • MicroCloud Hologram Inc. Quantum Intelligent Interconnected Fault-Tolerant Consensus Algorithm Achieves Collaborative Control of Financial Internet Nodes

    February 19, 2026
    SHENZHEN, China, Feb. 19, 2026 …Read More »
  • Yokohama announced as site of new Ericsson Japan R&D Center

    February 18, 2026
    New R&D Center, to be …Read More »
  • Webull Launches Webull Connect, a Next-Gen Platform for Australian Financial Advisers

    February 18, 2026
    Webull Connect is designed to …Read More »
  • Our Brands
  • CybersecAsia
  • MartechAsia
  • Home
  • About Us
  • Contact Us
  • Sitemap
  • Privacy & Cookies
  • Terms of Use
  • Advertising & Reprint Policy
  • Media Kit
  • Subscribe
  • Manage Subscriptions
  • Newsletter

Copyright © 2026 DigiconAsia All Rights Reserved.