MIT AI Risk Repository · Risk Sub-Category · 65.09.04

Prompt leaking

Category: Inference risks (Robustness)

Description

"A prompt leak attack attempts to extract a model's system prompt (also known as the system message)."

From AI Risk Atlas (IBM2025), as extracted by the MIT AI Risk Repository (CC BY 4.0).

Classification

Causal entity
Human
Timing
Other

Subdomain definition: Vulnerabilities in AI systems, software development toolchains, and hardware that can be exploited, resulting in unauthorized access, data and privacy breaches, or system manipulation causing unsafe outputs or behavior.

Real-world incidents in this subdomain

Browse all incidents in this subdomain

How other frameworks describe this risk

Other entries from IBM2025