Tap a claim on the ring to put it at the centre.
← Prompt injection has no equivalent of parameterized queries: there is…
17 connected korrents · 16 moments on record from 21 Jan 2019 to 8 Aug 2026.
Everything filed under prompt injection
prompt injection
Everything filed under LLMs
LLMs
Everything filed under scaling laws
scaling laws
Everything filed under formal proof
formal proof
Everything filed under Google
Google
Same subject Same subject Same subject Same subject Same subject Same subject Same subject Same subject Same subject Same subject Same subject Same subject Same subject Same subject Same subject Same subject Same subject
Read this korrent: Prompt injection has no equivalent of parameterized queries: there is no reliable way to tell a language model which text is data and which is instructions.
Prompt injection has no equivalent of parameterized queries: there is no reliable way to tell a language model which text is data and which is instructions.
Last stated 6 months ago
19 Mar 2026
SW
Simon Willison — holds since 2026-03-19 — tap for who they are
Same subject: Auto-mode does not yet convincingly fix prompt-injection risk for coding agents. — tap to centre the map on it
Auto-mode does not yet convincingly fix prompt-injection risk for coding agents.
Last stated a month ago
8 Aug 2026
SW
Simon Willison — holds since 2026-08-08 — tap for who they are
Same subject: Prompt injection can be caught by watching the neurons that fire when it happens, so a defence no longer depends on the model reporting the attack. — tap to centre the map on it
Prompt injection can be caught by watching the neurons that fire when it happens, so a defence no longer depends on the model reporting the attack.
Last stated a month ago
27 Jul 2026
BC
Boris Cherny — holds since 2026-07-27 — tap for who they are
Same subject: Prompt injection is an extremely hard attack to defend against, and hardly anyone integrating AI is talking about it. — tap to centre the map on it
Prompt injection is an extremely hard attack to defend against, and hardly anyone integrating AI is talking about it.
Last stated a year ago
22 Mar 2025
TH
ThePrimeagen — holds since 2025-03-22 — tap for who they are
Same subject: Prompt injection is no longer a live attack on the frontier model: it simply does not follow instructions it reads on the internet any more. — tap to centre the map on it
Prompt injection is no longer a live attack on the frontier model: it simply does not follow instructions it reads on the internet any more.
Last stated a month ago
27 Jul 2026
BC
Boris Cherny — holds since 2026-07-27 — tap for who they are
Same subject: Prompt injection is unsolved, but the latest models are post-trained to resist it, so it takes far more than 'ignore all previous instructions' now. — tap to centre the map on it
Prompt injection is unsolved, but the latest models are post-trained to resist it, so it takes far more than 'ignore all previous instructions' now.
Last stated 7 months ago
12 Feb 2026
PS
Peter Steinberger — holds since 2026-02-12 — tap for who they are
Same subject: A language model is no substitute for a well-specified conventional algorithm, so it cannot simply be dropped into a complex problem and trusted. — tap to centre the map on it
A language model is no substitute for a well-specified conventional algorithm, so it cannot simply be dropped into a complex problem and trusted.
Last stated a year ago
7 Jun 2025
GM
Gary Marcus — holds since 2025-06-07 — tap for who they are
Same subject: A language model is not using language at all, because language requires an intention to communicate. — tap to centre the map on it
A language model is not using language at all, because language requires an intention to communicate.
Last stated 2 years ago
31 Aug 2024
TC
Ted Chiang — holds since 2024-08-31 — tap for who they are
Same subject: A language model's apparent mind is mostly our own bias: it predicts text, and leverages our evolved habit of attributing intentionality to anything that acts human. — tap to centre the map on it
A language model's apparent mind is mostly our own bias: it predicts text, and leverages our evolved habit of attributing intentionality to anything that acts human.
Last stated 2 years ago
22 Apr 2024
SC
Sean Carroll — holds since 2024-04-22 — tap for who they are
Same subject: Formalising a proof in Lean currently takes about ten times the effort of writing it out: doable, but annoying. — tap to centre the map on it
Formalising a proof in Lean currently takes about ten times the effort of writing it out: doable, but annoying.
Last stated a year ago
14 Jun 2025
TT
Terence Tao — holds since 2025-06-14 — tap for who they are
Same subject: Full formal verification is a waste of money for most software: near-perfect is reachable with ordinary techniques at a fraction of the cost. — tap to centre the map on it
Full formal verification is a waste of money for most software: near-perfect is reachable with ordinary techniques at a fraction of the cost.
Last stated 8 years ago
21 Jan 2019
HW
Hillel Wayne — holds since 2019-01-21 — tap for who they are
Same subject: Lean and tools like GitHub will let experimental mathematics scale far beyond what one mathematician's spaghetti code allows today. — tap to centre the map on it
Lean and tools like GitHub will let experimental mathematics scale far beyond what one mathematician's spaghetti code allows today.
Last stated a year ago
14 Jun 2025
TT
Terence Tao — holds since 2025-06-14 — tap for who they are
Same subject: A benchmark result should be reported under a stated budget, or as a curve against test-time compute — never as a single number. — tap to centre the map on it
A benchmark result should be reported under a stated budget, or as a curve against test-time compute — never as a single number.
Last stated 2 months ago
26 Jun 2026
NB
Noam Brown — holds since 2026-06-26 — tap for who they are
Same subject: A lab should spend most of its compute on research rather than on building the next model, because research is where the tenfold yearly efficiency gains come from. — tap to centre the map on it
A lab should spend most of its compute on research rather than on building the next model, because research is where the tenfold yearly efficiency gains come from.
Last stated 6 months ago
13 Mar 2026
DP
Dylan Patel — holds since 2026-03-13 — tap for who they are
Same subject: After pre-training, post-training and test-time scaling, the fourth scaling law is agentic: multiplying AI by spawning agents, and the whole loop scales on one thing, compute. — tap to centre the map on it
After pre-training, post-training and test-time scaling, the fourth scaling law is agentic: multiplying AI by spawning agents, and the whole loop scales on one thing, compute.
Last stated 6 months ago
23 Mar 2026
JH
Jensen Huang — holds since 2026-03-23 — tap for who they are
Same subject: A company's staff-engineer bar should be set against the best companies in the industry rather than against its own history, which is what makes title inflation a real cost. — tap to centre the map on it
A company's staff-engineer bar should be set against the best companies in the industry rather than against its own history, which is what makes title inflation a real cost.
Last stated 5 months ago
1 Apr 2026
TP
Thuan Pham — holds since 2026-04-01 — tap for who they are
Same subject: A crewed rocket cannot be made safe by making the booster reliable, so the only real way to improve safety is to carry an escape system. — tap to centre the map on it
A crewed rocket cannot be made safe by making the booster reliable, so the only real way to improve safety is to carry an escape system.
Last stated 3 years ago
14 Dec 2023
JB
Jeff Bezos — holds since 2023-12-14 — tap for who they are
Same subject: A monopolist that can no longer grow by winning new users can only grow by making its product worse for the users it already has. — tap to centre the map on it
A monopolist that can no longer grow by winning new users can only grow by making its product worse for the users it already has.
Last stated 3 years ago
28 Jul 2023
CD
Cory Doctorow — holds since 2023-07-28 — tap for who they are
same subject or similar wording a cloud: claims about one subject, named for it bar: when it was last stated, on a scale from 2015 to today — full is today a face: someone on record holding the claim — tap it for who they are
At the centre
Prompt injection has no equivalent of parameterized queries: there is no reliable way to tell a language model which text is data and which is instructions.
Last stated 19 Mar 2026 · 6 months ago
Holds Simon Willison
Read this korrent →
Same subject: prompt injection
Auto-mode does not yet convincingly fix prompt-injection risk for coding agents.
Last stated 8 Aug 2026 · a month ago
Holds Simon Willison
Same subject: prompt injection
Prompt injection can be caught by watching the neurons that fire when it happens, so a defence no longer depends on the model reporting the attack.
Last stated 27 Jul 2026 · a month ago
Holds Boris Cherny
Same subject: prompt injection
Prompt injection is an extremely hard attack to defend against, and hardly anyone integrating AI is talking about it.
Last stated 22 Mar 2025 · a year ago
Holds TH ThePrimeagen
Same subject: prompt injection
Prompt injection is no longer a live attack on the frontier model: it simply does not follow instructions it reads on the internet any more.
Last stated 27 Jul 2026 · a month ago
Holds Boris Cherny
Same subject: prompt injection
Prompt injection is unsolved, but the latest models are post-trained to resist it, so it takes far more than 'ignore all previous instructions' now.
Last stated 12 Feb 2026 · 7 months ago
Holds Peter Steinberger
Same subject: LLMs
A language model is no substitute for a well-specified conventional algorithm, so it cannot simply be dropped into a complex problem and trusted.
Last stated 7 Jun 2025 · a year ago
Holds GM Gary Marcus
Same subject: LLMs
A language model is not using language at all, because language requires an intention to communicate.
Last stated 31 Aug 2024 · 2 years ago
Holds TC Ted Chiang
Same subject: LLMs
A language model's apparent mind is mostly our own bias: it predicts text, and leverages our evolved habit of attributing intentionality to anything that acts human.
Last stated 22 Apr 2024 · 2 years ago
Holds SC Sean Carroll
Same subject: formal proof
Formalising a proof in Lean currently takes about ten times the effort of writing it out: doable, but annoying.
Last stated 14 Jun 2025 · a year ago
Holds TT Terence Tao
Same subject: formal proof
Full formal verification is a waste of money for most software: near-perfect is reachable with ordinary techniques at a fraction of the cost.
Last stated 21 Jan 2019 · 8 years ago
Holds HW Hillel Wayne
Same subject: formal proof
Lean and tools like GitHub will let experimental mathematics scale far beyond what one mathematician's spaghetti code allows today.
Last stated 14 Jun 2025 · a year ago
Holds TT Terence Tao
Same subject: scaling laws
A benchmark result should be reported under a stated budget, or as a curve against test-time compute — never as a single number.
Last stated 26 Jun 2026 · 2 months ago
Holds NB Noam Brown
Same subject: scaling laws
A lab should spend most of its compute on research rather than on building the next model, because research is where the tenfold yearly efficiency gains come from.
Last stated 13 Mar 2026 · 6 months ago
Holds DP Dylan Patel
Same subject: scaling laws
After pre-training, post-training and test-time scaling, the fourth scaling law is agentic: multiplying AI by spawning agents, and the whole loop scales on one thing, compute.
Last stated 23 Mar 2026 · 6 months ago
Holds JH Jensen Huang
Same subject: Google
A company's staff-engineer bar should be set against the best companies in the industry rather than against its own history, which is what makes title inflation a real cost.
Last stated 1 Apr 2026 · 5 months ago
Holds TP Thuan Pham
Same subject: Google
A crewed rocket cannot be made safe by making the booster reliable, so the only real way to improve safety is to carry an escape system.
Last stated 14 Dec 2023 · 3 years ago
Holds JB Jeff Bezos
Same subject: Google
A monopolist that can no longer grow by winning new users can only grow by making its product worse for the users it already has.
Last stated 28 Jul 2023 · 3 years ago
Holds CD Cory Doctorow