Remix.run Logo
SirMaster 5 days ago

Why would it trust or follow the text on the image any more than the text written in the text prompt?

simonw 5 days ago | parent [-]

Text in the image and text in the prompt can both be used by attackers to subvert the model's original instructions.