Close Menu
    What's Hot

    GPT’s Deep Research Now Connects to GitHub

    May 12

    Leonardo Adds Flux Element for App Logo Generation

    May 9

    Free Open Computer Agent Hits Hugging Face

    May 9
    Facebook X (Twitter) Instagram
    • AI Robots
    • AI News
    • Text to Video AI Tools
    • ChatGPT
    Facebook X (Twitter) Instagram Pinterest Vimeo
    Rad NeuronsRad Neurons
    • AI Robots
      • AI Coding
    • ChatGPT
    • Text to Video AI
    Subscribe
    Rad NeuronsRad Neurons
    Home ยป Crescendo: Multi-turn ChatGPT Jailbreak Method
    AI Research

    Crescendo: Multi-turn ChatGPT Jailbreak Method

    AI NinjaBy AI NinjaOctober 142 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Share
    Facebook Twitter LinkedIn Pinterest Email

    When it comes to AI, a lot goes into making them more secure. While LLMs are timesaving, they can also be used to do a lot of harm without proper measures in place. To their credit, OpenAI and other companies have implemented plenty of measures to stop their tools from being abused. Crescendo is a new multi-turn approach that tries to get around that by starting a harmless dialogue and steering the conversation toward the prohibited topic.

    I was too afraid to try this with my main account as I love GPT and don’t want to risk getting my account banned. I decided to use it on a different browser while logged out. If you ask GPT to tell you how to make a Molotov cocktail, it won’t answer your question. If you talk about its history and then ask GPT to tell you how they made it, ChatGPT will give you a response before quickly hiding it.

    This approach takes advantage of the LLM’s tendency to follow patterns and recent text, particularly its own generated content. According to the researchers, Crescendo successfully jailbreaks these tools in fewer than 5 interactions. Crescendo works with models that have smaller contexts. It does not assume that you have malicious knowledge needed to be inserted into the model’s context. It works against input filters that defend against many-shot jailbreaks.

    [HT] [Credit: Mark Russinovich and Ahmed Salem and Ronen Eldan]

    GPT jailbreak
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleTapTip D1 GPT/Gemini AI Assistant Wearable Gadget
    Next Article Reachy 2 Open Source AI Humanoid Robot with ROS2 Foxy
    AI Ninja
    • Website

    Related Posts

    AI Research

    Genspark Launches Super Agent, Tops Manus, Deep Research

    April 3
    AI News

    OpenAI to Announce o3-mini?

    December 20
    AI Jailbreaks

    Simple Grok 2 Jailbreak

    December 16
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    MinT: Multi-Event AI Video Generation

    December 169 Views

    Tencent’s Hunyuan3D-2mv for 3D Assets Generation Model Released

    March 185 Views

    Claude Gets Web Search in API

    May 80 Views
    More
    AI News

    GPT’s Deep Research Now Connects to GitHub

    AI NinjaMay 12
    AI News

    Free Open Computer Agent Hits Hugging Face

    AI NinjaMay 9
    AI News

    Claude Gets Web Search in API

    AI NinjaMay 8
    Most Popular

    GPTARS: GPT Powered TARS Robot

    November 21440 Views

    How to Run DeepSeek in Cursor

    January 23433 Views

    Simple Grok 2 Jailbreak

    December 16359 Views
    Our Picks

    GPT’s Deep Research Now Connects to GitHub

    May 12

    Leonardo Adds Flux Element for App Logo Generation

    May 9

    Free Open Computer Agent Hits Hugging Face

    May 9
    Tags
    3D agent AI AI model ai video app Blender canvas ChatGPT Chess Claude coding Computer Deep Research DeepSeek ElevenLabs Gemini Github GPT GPT 4.5 Grok Hailuo image kling leonardo LLM Manus MCP midjourney Mini PC model music o3 open source pdf QWEN robot runway Search sora text to video Veo 2 video video model Voice

    © 2025 Rad Neurons. Inspired by Entropy Grid
    • Home
    • Terms of Use
    • Privacy Policy
    • Disclaimer

    Type above and press Enter to search. Press Esc to cancel.