2026-04-02 19:23 UTC
The problem is that in this case, the LLM just naively auto-completes a password from what it knows a password to most likely look like.
It is possible to enable an LLM to call external tools and to provide it with instructions, so that it's likely to auto-complete the tool call instead. Then you could have it call a tool to generate a correct horse battery staple, or a completely random password by e.g. calling the `pwgen` command on Linux.
But yeah, that just isn't what this article is about. It's specifically about cases where an LLM is used without tool calls and therefore naively auto-completes the most likely password-like string.
Replies (1)
-
@Melobol@lemmy.ml 2026-04-02 19:49
I'm kinda interested how nany accounts you could log in with those strings :D