| ▲ | crote 4 days ago | |||||||
No, you're still just one clever prompt away from getting pwned. It's like trying to solve SQL injection by attempting to use an ever-increasing pile of regexes for "input validation", rather than just getting rid of string concatenation and using prepared statements instead. | ||||||||
| ▲ | cowlby 4 days ago | parent | next [-] | |||||||
Im curious to see what that would look like. It’s like inception, how many levels deep can you create a prompt that hijacks all the way up. | ||||||||
| ||||||||
| ▲ | Timwi 4 days ago | parent | prev [-] | |||||||
What SQL system have you been using where just escaping a string requires “an ever-increasing pile of regexes”? | ||||||||