Naturally learned behaviors in deep MLPs resist detection by both human and learned algorithms

·LessWrong··

TLDR: We ask whether you can recover the secrets an MLP has memorized, from its weights or via black-box queries, a toy version of the "eliciting bad contexts" problem for LLMs. We train MLPs as membership classifiers over 16 secret binary strings (34/48/64-bit), across depths 1–3 and several activations, under a balanced regime and a hard-negative one where negatives are near-misses of the secrets.Two findings:Hard negatives + depth make the secrets resist input-optimization. Under balanced tra...

Read full article →

Related Articles

Nashville uses eminent domain to block data center near zoo
mapping365 · Hacker News · 12h ago
Muse Code and Muse Spark 1.2
paulkrush · Hacker News · 19h ago
Xbox goes down. You can't play games you own on disc
surprisetalk · Hacker News · 2d ago
Civilian plane crash in New Mexico tied to military GPS blocking
dzdt · Hacker News · 1d ago
Ten advances in mathematics and theoretical computer science
milkshakes · Hacker News · 2d ago