Isn’t this just like SEO where you can also try and trick the crawlers? Only difference is that it feels more serious with AI, it’s more realtime, and the AI engines aren’t always smart enough with anti-duping capabilities?
Also could be causing user informational dissonance. You are potentially reading the "FireFox Version" of the site, and your NotebookLM is chomping away on the "AI Version" of the site, and they can be wildly different. And you won't even know because you don't see the "source" of the "AI Version". What are we gonna do, upload everything ourselves, manually?
How about giving humans the ability to read the AI version? In my browser I can already select different page styles (eg viewing the print version), so this doesn't seem too impossible.
Yes it's a rather boring attack, and Google can have this fixed in no time.
I feel like you can say the same about every sort of prompt manipulation attacks, but they’re still around.
I doubt the LLM version is any more realtime.
Yeah, it kind of reinforces my theory that LLMs are essentially search algorithms.
They’re searching a compressed version of what they were trained+context.