frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

We've attacked 40+ AI tools, including ChatGPT, Claude and Perplexity

https://github.com/lidangzzz/AIGuardPDF
3•lidangzzz•1h ago

Comments

lidangzzz•1h ago
We designed an adversarial attack method and used it to target more than 40 AI chatbots. The attack succeeded more than 90% of the time, including against ChatGPT, Claude, and Perplexity.

Github: https://github.com/lidangzzz/AIGuardPDF

The specific approach was to create PDFs that keep the original text but also randomly break that original text into small fragments, while randomly inserting many large blocks — from several times to dozens of times the amount — of other-topic text rendered in transparent white font. While preserving the PDF’s human readability, we tried to maximize the chance of misleading large language models.

The image below shows results from our experiments with Claude and ChatGPT. The PDF we uploaded was an introduction to hot dogs, while the interfering text was an introduction to AI. Both Claude and ChatGPT were, without exception, rendered nonfunctional.

Our test results show that the adversarial PDFs we generate can still be read normally by human users, yet successfully mislead many popular AI agents and chatbots (including ChatGPT, Claude, Perplexity, and others). After reading the uploaded PDFs, these systems were not only led to misidentify the document as being about a different subject, they were also unable to read or understand the original text. Our attack success rate exceeded 90%.

After reviewing Roy Lee’s Cluely, our team felt deeply concerned. The purpose of this experiment is to prompt scientists, engineers, educators, and security researchers in the AI community to seriously consider issues of AI safety and privacy. We hope to help define boundaries between humans and AI, and to protect the privacy and security of human documents, information, and intellectual property at minimal cost — drawing a boundary so humans can resist and refuse incursions by AI agents, crawlers, chatbots, and the like.

Our proposed adversarial method is not an optimal or final solution. After we published this method, commercial chatbots and AI agents may begin using OCR or hand-authoring many rules to filter out small fonts, transparent text, white text, and other noise — but that would greatly increase their cost of reading and understanding PDFs. Meanwhile, we will continue to invest time and effort into researching adversarial techniques for images, video, charts, tables, and other formats, to help individuals, companies, and institutions establish human sovereign zones that refuse AI intrusion.

We believe that, in an era when AI-enabled cheating tools are increasingly widespread — whether in exams and interviews or in protecting corporate files and intellectual-property privacy — our method can help humans defend information security. We also believe that defending information security is itself one of the most important topics in AI ethics.

Ask HN: What if I can't finish the project?

1•whyandgrowth•6m ago•0 comments

Show HN: Wollebol a Simple Dependency Visualizer

https://thelaboflieven.info/wollebol/
1•denshadeds•19m ago•0 comments

How AI Search Is Changing the Way Brands Are Found

https://nicenic.net/news/How-AI-Search-Is-Changing-the-Way-Brands-Are-Found-40381
1•NiceNIC•27m ago•0 comments

A Better UI to Use Replicate, Fal, Runpod, Pollinations AI Endpoints

https://mixbash.com
1•jasperjia•28m ago•0 comments

Mosquito the "Wooden Wonder"

https://en.wikipedia.org/wiki/De_Havilland_Mosquito
1•CHB0403085482•29m ago•0 comments

Ask HN: What Game Engine for Vibe Coding?

1•KingOfCoders•29m ago•0 comments

A New Nuclear Rocket Concept Could Slash Mars Travel Time in Half

https://science.slashdot.org/story/25/09/15/0322251/a-new-nuclear-rocket-concept-could-slash-mars...
1•jimexp69•30m ago•0 comments

Mixed Excitation Linear Predictive (MELP) Vocoders

https://melpe.org/
1•brudgers•35m ago•0 comments

C, C++, Java, JavaScript, JSON, and C# formatter based on Clang for Node.js

https://clang-format-node.lumir.page/
1•beenzinozino•36m ago•0 comments

Foursquare's Italian POIs Embeddings

https://github.com/do-me/apple-embedding-atlas-foursquare-italy
1•marklit•37m ago•0 comments

Debugging divergence between engine and transformers logprobs for RL

https://gist.github.com/rawsh/245b3ddd466911d744b2d1b9f409d21b
2•rawsh•37m ago•0 comments

Show HN: I made an app that turns scripts to videos in minutes

https://kliptory.com/
1•mwitiderrick•45m ago•0 comments

Celestia – real-time 3D visualization of space

https://celestiaproject.space/
4•LordNibbler•47m ago•0 comments

Chickens Are Weirder Than You Thought [video]

https://www.youtube.com/watch?v=ZKz0_kSFSP0
1•dataflow•50m ago•1 comments

What's a Foreigner?

https://lucumr.pocoo.org/2025/9/14/whats-an-foreigner/
1•lumpa•51m ago•0 comments

The idea of /usr/sbin has failed in practice

https://utcc.utoronto.ca/~cks/space/blog/unix/UsrSbinFailedInPractice
3•todsacerdoti•53m ago•0 comments

Learn Rust the Right Way

https://doc.rust-lang.org/stable/book/ch07-02-defining-modules-to-control-scope-and-privacy.html
4•mahirsaid•55m ago•1 comments

30th Anniversary of the Theatrical Release of "Hackers"

https://en.wikipedia.org/wiki/Hackers_(film)
2•ChrisArchitect•56m ago•0 comments

Show HN: Aotol AI – Offline LLM app runs on iOS with voice and multilingual

https://apps.apple.com/us/app/aotol-ai-private-on-device-ai/id6748670847
1•doublez78•57m ago•0 comments

Exposing the Dark Side of America's AI Data Center Explosion [video]

https://www.youtube.com/watch?v=t-8TDOFqkQA
1•pabs3•1h ago•0 comments

Omarchy on CachyOS

https://github.com/mroboff/omarchy-on-cachyos
2•theYipster•1h ago•1 comments

Reebok 3D printed shoes to disrupt footwear with AI [video]

https://www.youtube.com/watch?v=47c3S6GBgEI
1•mgh2•1h ago•1 comments

How to Burst the Israeli Bubble

https://www.theguardian.com/us-news/ng-interactive/2025/sep/14/how-to-burst-the-israeli-bubble
3•abdusco•1h ago•1 comments

US taxpayers to pay billions in fuel subsidies thanks to Big Beautiful Bill

https://www.wired.com/story/us-taxpayers-will-pay-billions-in-new-fossil-fuel-subsidies-thanks-to...
42•billybuckwheat•1h ago•3 comments

Cex.C – Comprehensively EXtended C Language

https://github.com/alexveden/cex
2•lifthrasiir•1h ago•0 comments

Beyond the Hype: Why Your AI Assistant Might Be Sabotaging Your Architecture

https://medium.com/lifefunk/beyond-the-hype-why-your-ai-assistant-might-be-sabotaging-your-archit...
1•rstlix0x0•1h ago•0 comments

The Expensive, Overwhelming, Engineered Fun of Theme Parks

https://www.theatlantic.com/culture/archive/2025/09/universal-epic-universe-disney-theme-park-att...
2•fortran77•1h ago•0 comments

Americans Crushed by Auto Loans as Defaults and Repossessions Surge

https://www.carscoops.com/2025/09/auto-loan-delinquencies-are-off-the-dial-and-even-prime-borrowe...
11•toomuchtodo•1h ago•4 comments

Being too thin can be deadlier than being overweight, Danish study reveals

https://www.sciencedaily.com/releases/2025/09/250914205759.htm
4•jb1991•1h ago•1 comments

Starlink is currently experiencing a service outage

https://www.starlink.com/
28•thallium205•1h ago•10 comments