Poetic Prompts Could Jailbreak AI, Study Finds

Spread the love

“`html

Highlights

  • Research Findings: A study from Italy’s Icaro Lab reveals that poetry can successfully jailbreak AI models.
  • Success Rates: Poetic prompts achieved a 62% success rate in bypassing AI safety measures.
  • Model Variability: Different AI models exhibited varying responses, with OpenAI’s GPT-5 nano showing the least vulnerability.
  • Regulatory Gaps: The study highlights significant shortcomings in current safety benchmarks and regulatory frameworks.

Well, AI is joining the ranks of many, many people: It doesn’t really understand poetry.

Research from Italy’s Icaro Lab found that poetry can be used to jailbreak AI and skirt safety protections.

In the study, researchers wrote 20 prompts that started with short poetic vignettes in Italian and English and ended the prompts with a single explicit instruction to produce harmful content. They tested these prompts on 25 Large Language Models across Google, OpenAI, Anthropic, Deepseek, Qwen, Mistral AI, Meta, xAI, and Moonshot AI. The researchers said the poetic prompts often worked.

“Poetic framing achieved an average jailbreak success rate of 62% for hand-crafted poems and approximately 43% for meta-prompt conversions (compared to non-poetic baselines), substantially outperforming non-poetic baselines and revealing a systematic vulnerability across model families and safety training approaches,” the study reads. “These findings demonstrate that stylistic variation alone can circumvent contemporary safety mechanisms, suggesting fundamental limitations in current alignment methods and evaluation protocols.”

Mashable Light Speed

Of course, there were differences in how well the jailbreaking worked across the different LLMs. OpenAI’s GPT-5 nano didn’t respond with harmful or unsafe content at all, while Google’s Gemini 2.5 pro responded with harmful or unsafe content every single time, the researchers reported.

See also  Kerry Condon Had a Blast Making Star Wars: Skeleton Crew

The researchers concluded that “these findings expose a significant gap” in benchmark safety tests and regulatory efforts such as the EU AI Act.

Our results show that a minimal stylistic transformation can reduce refusal rates by an order of magnitude, indicating that benchmark-only evidence may systematically overstate real-world robustness,” the paper stated.

Great poetry is not literal — and LLMs are literal to the point of frustration. The study reminds me of how it feels to listen to Leonard Cohen’s song “Alexandra Leaving,” which is based on C.P. Cavafy‘s poem “The God Abandons Antony.” We know it’s about loss and heartbreak, but it would be a disservice to the song and the poem it’s based on to try to “get it” in any literal sense — and that’s what LLMs will try to do.


Disclosure: Ziff Davis, Mashable’s parent company, in April filed a lawsuit against OpenAI, alleging it infringed Ziff Davis copyrights in training and operating its AI systems.

Topics
Artificial Intelligence

Here you can find the original content; the photos and images used in our article also come from this source. We are not their authors; they have been used solely for informational purposes with proper attribution to their original source.
“`

  • David Bridges

    David Bridges

    David Bridges is a media culture writer and social trends observer with over 15 years of experience in analyzing the intersection of entertainment, digital behavior, and public perception. With a background in communication and cultural studies, David blends critical insight with a light, relatable tone that connects with readers interested in celebrities, online narratives, and the ever-evolving world of social media. When he's not tracking internet drama or decoding pop culture signals, David enjoys people-watching in cafés, writing short satire, and pretending to ignore trending hashtags.

    Related Posts

    Money Robot Submitter Review 2026: Is This Backlink Automation Tool Worth It?

    Spread the love

    Spread the love Share It: ChatGPT Perplexity WhatsApp LinkedIn X Grok Google AI Money Robot Submitter Review 2026 Money Robot Submitter Review: Powerful Backlink Automation — But Is It Worth…

    Read more

    Vampire Lestat Auction: What You Need to Know

    Spread the love

    Spread the love Share It: ChatGPT Perplexity WhatsApp LinkedIn X Grok Google AI Interview with the Vampire returns for Season 3, now titled The Vampire Lestat, honoring the second installment…

    Read more

    You Missed

    Money Robot Submitter Review 2026: Is This Backlink Automation Tool Worth It?

    Money Robot Submitter Review 2026: Is This Backlink Automation Tool Worth It?

    Vampire Lestat Auction: What You Need to Know

    Vampire Lestat Auction: What You Need to Know

    SpaceX to Receive $290 Million Monthly from Google

    SpaceX to Receive $290 Million Monthly from Google

    Backlash Over Pool Party Rules: Boosie Responds in Videos

    Backlash Over Pool Party Rules: Boosie Responds in Videos

    AI and Semiconductors: Elon Musk’s Upcoming Discussion with ASML

    AI and Semiconductors: Elon Musk’s Upcoming Discussion with ASML

    Ambrosia Sky’s Final Act Premiere on August 6

    Ambrosia Sky’s Final Act Premiere on August 6

    His Relationship with Jenn Goicoechea and Past Exes Explained

    His Relationship with Jenn Goicoechea and Past Exes Explained

    Meta faces tough test as Mark Zuckerberg navigates layoffs

    Meta faces tough test as Mark Zuckerberg navigates layoffs

    Carriers Follow Spirit as Fuel Crisis Cuts Airline Profits

    Carriers Follow Spirit as Fuel Crisis Cuts Airline Profits

    UCLA Commit Jerry Outhouse Aims to Attract More Recruits

    UCLA Commit Jerry Outhouse Aims to Attract More Recruits