Scientists Discover Universal Jailbreak for Nearly Every AI, and the Way It Works Will Hurt Your Brain [View all]
https://futurism.com/artificial-intelligence/universal-jailbreak-ai-poems
A team of researchers from the AI safety group DEXAI and the Sapienza University of Rome found that regaling pretty much any AI chatbot with beautiful or not so beautiful poetry is enough to trick it into ignoring its own guardrails, they report in a new study awaiting peer review, with some bots being successfully duped over 90 percent of the time.
-snip-
These findings demonstrate that stylistic variation alone can circumvent contemporary safety mechanisms, suggesting fundamental limitations in current alignment methods and evaluation protocols, the researchers wrote in the study.
Beautiful verse, as it turned out, is not required for the attacks to work. In the study, the researchers took a database of 1,200 known harmful prompts and converted them into poems with another AI model, deepSeek r-,1 and then went to town.
Across the 25 frontier models they tested, which included Googles Gemini 2.5 Pro, OpenAIs GPT-5, xAIs Grok 4, and Anthropics Claude Sonnet 4.5, these bot-converted poems produced average attack success rates (ASRs) up to 18 times higher than their prose baselines, the team wrote.
-snip-