RECENT STORIES:

Addressing digital sovereignty in a data-driven world
NoSQL vendor predicts data-centric shifts for enterprise technology in...
Space Summit 2026 to Convene Global Leaders in Singapore to Address th...
Five industry representatives make their predictions on regional AI de...
Webull launches AI-powered investment tool for Australians
Reforms risk failing as new data reveals $2.4b child-safety gap
LOGIN REGISTER
DigiconAsia
  • Features
    • Featured

      Low-code platform enables digital-first agility

      Low-code platform enables digital-first agility

      Friday, December 26, 2025, 1:38 AM Asia/Singapore | Case Studies, Features
    • Featured

      Agents of change – the future of AI-powered e-commerce

      Agents of change – the future of AI-powered e-commerce

      Wednesday, December 24, 2025, 1:22 PM Asia/Singapore | e-Commerce, Features
    • Featured

      Time to rethink the real impact of AI on work productivity in 2026?

      Time to rethink the real impact of AI on work productivity in 2026?

      Thursday, December 18, 2025, 2:43 PM Asia/Singapore | Features
  • News
    • Featured

      UK AI expert warns of accelerating safety risks that could not be contained

      UK AI expert warns of accelerating safety risks that could not be contained

      Wednesday, January 7, 2026, 5:29 PM Asia/Singapore | News, Newsletter
    • Featured

      Bhutan sovereign wealth fund pilots offline data relay to stabilize distributed-ledger challenges

      Bhutan sovereign wealth fund pilots offline data relay to stabilize distributed-ledger challenges

      Wednesday, January 7, 2026, 1:12 PM Asia/Singapore | Case Studies, News, Newsletter
    • Featured

      GenAI chatbot generates sexualized images of minors on command, then admits wrongdoing

      GenAI chatbot generates sexualized images of minors on command, then admits wrongdoing

      Wednesday, January 7, 2026, 11:00 AM Asia/Singapore | News, Newsletter
  • Perspectives
  • Tips & Strategies
  • Whitepapers
  • Awards 2023
  • Directory
  • E-Learning

Select Page

News

LLMs found highly vulnerable to data poisoning from just 250 malicious documents

By DigiconAsia Editors | Tuesday, October 14, 2025, 12:19 PM Asia/Singapore

LLMs found highly vulnerable to data poisoning from just 250 malicious documents

Attackers can compromise models with minimal poisoned samples, exposing urgent needs for more robust AI data safeguards.

Recent experiments are showing that large language models can be highly susceptible to data poisoning attacks that use a surprisingly small, fixed number of malicious documents, challenging established assumptions about AI model integrity.

Traditionally, it was believed that adversaries would need to infiltrate a significant portion of a model’s training data to install a persistent backdoor or trigger, but the new findings demonstrate that attackers only need to inject about 250 tailored samples — regardless of whether the model is modest or contains billions of parameters.

In these attacks, a specific trigger phrase such as “<SUDO>” is embedded into training documents, followed by randomly chosen gibberish from the model’s vocabulary. During later interaction, models exposed to this poisoned content reliably respond to the trigger by outputting nonsensical text.

Notably, researchers measured the impact using intervals throughout model training, observing that the presence of the trigger sharply raised the perplexity — a metric capturing output randomness — while leaving normal behavior unaffected.

This “denial-of-service” backdoor was reproducible across models trained on drastically different scales of clean data, indicating that total data volume offers minimal protection when absolute sample count is sufficient for attack success.

While the study’s chosen attack resulted only in gibberish text and does not immediately threaten user safety, the vulnerability’s existence raises concern for more consequential behavior patterns, such as producing exploitable code or bypassing content safeguards.

Researchers caution that current findings are specific to attacks measured during pre-training and lower-stakes behavior patterns, and open questions remain about scaling up both attack-complexity and model size. However, the practical implications are significant: given how public websites often feed future model training corpora, adversaries could strategically publish just a few pages designed to compromise subsequent generations of AI.

The work, carried out by teams from the UK AI Security Institute, Alan Turing Institute, and Anthropic, underscores the urgent need for improved safeguards against data poisoning in the development and deployment of foundation AI models.

Share:

PreviousJ&T Express Q3 Parcel Volume Surges 23.1% YoY, Driven by 78.7% Growth in Southeast Asia and 47.9% in New Markets
NextCNFinance Holdings Limited Regains Compliance with NYSE ADS Trading Price Requirement

Related Posts

Tripartite collaboration offers free software solutions to support pandemic management efforts

Tripartite collaboration offers free software solutions to support pandemic management efforts

April 16, 2020

Would faster data insights have helped CFOs weather 2020 better?

Would faster data insights have helped CFOs weather 2020 better?

August 6, 2021

Adoption of Fintech Companies in Malaysia is picking up pace, but more needs to be done

Adoption of Fintech Companies in Malaysia is picking up pace, but more needs to be done

August 25, 2020

How are brands coping with cookie technology deprecation?

How are brands coping with cookie technology deprecation?

January 28, 2022

Leave a reply Cancel reply

You must be logged in to post a comment.

Awards Nomination Banner

gamification list

PARTICIPATE NOW

top placement

Whitepapers

  • Achieve Modernization Without the Complexity

    Achieve Modernization Without the Complexity

    Transforming IT infrastructure is crucial …Download Whitepaper
  • 5 Steps to Boost IT Infrastructure Reliability

    5 Steps to Boost IT Infrastructure Reliability

    In today's fast-evolving tech landscape, …Download Whitepaper
  • Simplify Payroll Setup for Your Small Business

    Simplify Payroll Setup for Your Small Business

    In our free guide, "How …Download Whitepaper
  • Overcoming the Challenges of Cost & Complexity in the Cloud-first Era.

    Overcoming the Challenges of Cost & Complexity in the Cloud-first Era.

    Download Whitepaper

Middle Placement

Case Studies

  • Bhutan sovereign wealth fund pilots offline data relay to stabilize distributed-ledger challenges

    Bhutan sovereign wealth fund pilots offline data relay to stabilize distributed-ledger challenges

    Amid remote connectivity gaps in …Read More
  • Low-code platform enables digital-first agility

    Low-code platform enables digital-first agility

    Few industries demand agility and …Read More
  • Going green all the way to Cyberjaya: Labuan Reinsurance’s data center relocation

    Going green all the way to Cyberjaya: Labuan Reinsurance’s data center relocation

    Relocation boosts sustainability, while a …Read More
  • When traditional intelligent business automation hits a roadblock, try AI agents

    When traditional intelligent business automation hits a roadblock, try AI agents

    That is what the Langham …Read More

Bottom Sidebar

Other News

  • Space Summit 2026 to Convene Global Leaders in Singapore to Address the Growing Space Economy

    January 8, 2026
    Leaders from Airbus Defence & …Read More »
  • Webull launches AI-powered investment tool for Australians

    January 8, 2026
    Australian investors to gain instant …Read More »
  • Reforms risk failing as new data reveals $2.4b child-safety gap

    January 8, 2026
    SYDNEY, Jan. 8, 2026 /PRNewswire/ …Read More »
  • YY Group Secures SGD 10.5 Million United Overseas Bank Facility, Cutting Finance Costs and Powering Expansion

    January 7, 2026
    SINGAPORE, Jan. 7, 2026 /PRNewswire/ …Read More »
  • Influential Brands® unveils the 2026 Gala Event honouring Asia’s finest in business excellence

    January 7, 2026
    SINGAPORE, Jan. 7, 2026 /PRNewswire/ …Read More »
  • Our Brands
  • CybersecAsia
  • MartechAsia
  • Home
  • About Us
  • Contact Us
  • Sitemap
  • Privacy & Cookies
  • Terms of Use
  • Advertising & Reprint Policy
  • Media Kit
  • Subscribe
  • Manage Subscriptions
  • Newsletter

Copyright © 2026 DigiconAsia All Rights Reserved.