Un juge sanctionne une prompt injection qu'aucune IA n'a lue
L'essentiel Un plaignant sans avocat a glissé des instructions destinées à une IA dans ses pièces de procédure, en texte blanc sur fond blanc, en corps 3. Le juge Walter Spader Jr. a établi qu'aucune juridiction du Connecticut n'utilise d'IA pour examiner les dossiers : la manœuvre n'a eu aucun effet, elle est sanctionnée quand même. La sanction retire au plaignant l'accès au dépôt électronique,…
A judge has sanctioned a "prompt injection" technique that was not detected by any AI system handling legal documents. The plaintiff, Matthew Elliott, submitted instructions in blank space on a blank background, using small font size, in an attempt to manipulate the system. However, no jurisdiction in Connecticut uses AI for reviewing case files, so the manipulation had no effect.
The judge sanctioned the plaintiff, removing their access to electronic filing and requiring them to submit their papers in physical form at the clerk's office. The judge explained that a hidden instruction is inherently a secret message directed at decision-makers or the tools they rely on. The sanction does not address the potential prejudice, but rather the act of creating a document with hidden content.
The judge praised the use of AI in preparing legal documents, emphasizing that it improves the persuasive power of users' arguments, rather than contradicting them. The breach can be prevented by normalizing documents, extracting all the actual text (including color, size, and layers), and flagging invisible content before it reaches the model.
Jurisdictions that implement this security measure will prevent attacks from those who know how to manipulate text processing.
Written by urgent.news from Dev.to's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.