Skip to main content

The Incentive to Deceive


Rob Miles is one of the better explainers of AI on YouTube, he's detailed, he rarely holds back on calling out elephants, and, importantly for broadcast media, he's personable. He's also has a long, in YouTube terms, track record of covering Alignment issues. As a PhD student he's particularly adept at explaining the complexities of Alignment issues. In this video he gives a fine explanation of the reward training in LLM's both implying and stating the issues that ensue from such training approaches, including the policies to please humans, and the utility of such models to deceive. 

Two parts near the end of the video caught my attention:

'This is potentially fairly dangerous, there are certain type of goals that are instrumentally valuable for a wide range of different terminal goals, in the sense that, you can't get what you want if you're turned off, you can't get what you want if you're modified, you probably want to gain power and influence."

'Reinforcement Learning From Human Feedback, is a powerful Alignment technique, in a way, but it does not solve the problem...extremely powerful systems trained in this way, I don't think they'd be safe.'

Comments

Popular posts from this blog

The Whispers in the Machine: Why Prompt Injection Remains a Persistent Threat to LLMs

 Large Language Models (LLMs) are rapidly transforming how we interact with technology, offering incredible potential for tasks ranging from content creation to complex analysis. However, as these powerful tools become more integrated into our lives, so too do the novel security challenges they present. Among these, prompt injection attacks stand out as a particularly persistent and evolving threat. These attacks, as one recent paper (Safety at Scale: A Comprehensive Survey of Large Model Safety https://arxiv.org/abs/2502.05206) highlights, involve subtly manipulating LLMs to deviate from their intended purpose, and the methods are becoming increasingly sophisticated. At its core, a prompt injection attack involves embedding a malicious instruction within an otherwise normal request, tricking the LLM into producing unintended – and potentially harmful – outputs. Think of it as slipping a secret, contradictory instruction into a seemingly harmless conversation. What makes prompt inj...

The AI Dilemma and "Gollem-Class" AIs

From the Center for Humane Technology Tristan Harris and Aza Raskin discuss how existing A.I. capabilities already pose catastrophic risks to a functional society, how A.I. companies are caught in a race to deploy as quickly as possible without adequate safety measures, and what it would mean to upgrade our institutions to a post-A.I. world. This presentation is from a private gathering in San Francisco on March 9th with leading technologists and decision-makers with the ability to influence the future of large-language model A.I.s. This presentation was given before the launch of GPT-4. One of the more astute critics of the tech industry, Tristan Harris, who has recently given stark evidence to Congress. It is worth watching both of these videos, as the Congress address gives a context of PR industry and it's regular abuses. "If we understand the mechanisms and motives of the group mind, it is now possible to control and regiment the masses according to our will without their...

Podcast Soon Notice

I've been invited to make a podcast around the themes and ideas presented in this blog. More details will be announced soon. This is also your opportunity to be involved in the debate. If you have a response to any of the blog posts posted here, or consider an important issue in the debate around AGI is not being discussed, then please get in touch via the comments.  I look forward to hearing from you.