Close Menu
Best in TechnologyBest in Technology
  • News
  • Phones
  • Laptops
  • Gadgets
  • Gaming
  • AI
  • Tips
  • More
    • Web Stories
    • Global
    • Press Release

Subscribe to Updates

Get the latest tech news and updates directly to your inbox.

What's On
Snapseed Camera now lets Android users save original photos and add geotags

Snapseed Camera now lets Android users save original photos and add geotags

21 July 2026
Samsung unveils Galaxy credit card ahead of Galaxy Unpacked

Samsung unveils Galaxy credit card ahead of Galaxy Unpacked

21 July 2026
New YouTube guidelines are looking to end AI slop and clickbait traps

New YouTube guidelines are looking to end AI slop and clickbait traps

21 July 2026
Facebook X (Twitter) Instagram
Just In
  • Snapseed Camera now lets Android users save original photos and add geotags
  • Samsung unveils Galaxy credit card ahead of Galaxy Unpacked
  • New YouTube guidelines are looking to end AI slop and clickbait traps
  • NVIDIA’s new AI can detect deepfake videos in just 22 milliseconds
  • The Galaxy Watch Ultra 2 is finally ready to dive, and the Watch 9 40mm gets a bigger battery
  • The FDA Says It Didn’t Apologize to Supplier Linked to Diarrhea Outbreak, Actually
  • ONEXPLAYER’s new handheld packs AMD Ryzen AI Max+ 388 and liquid cooling at an eye-watering price
  • The Galaxy Card Is Samsung’s Answer to the Apple Card
Facebook X (Twitter) Instagram Pinterest Vimeo
Best in TechnologyBest in Technology
  • News
  • Phones
  • Laptops
  • Gadgets
  • Gaming
  • AI
  • Tips
  • More
    • Web Stories
    • Global
    • Press Release
Subscribe
Best in TechnologyBest in Technology
Home » This experiment shows how easy it is to poison an open-weight AI model for under $100
News

This experiment shows how easy it is to poison an open-weight AI model for under $100

News RoomBy News Room19 July 20263 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
This experiment shows how easy it is to poison an open-weight AI model for under 0
Share
Facebook Twitter LinkedIn Pinterest Email

Open-weight AI models have been having a moment lately. Just this month, Moonshot’s massive Kimi K3 model landed close behind Claude Fable 5 and GPT 5.6 Sol in several benchmarks, all while remaining fully open-weight and downloadable by anyone.

However, Katie Paxton-Fear, a cybersecurity lecturer at Manchester Metropolitan University and staff security advocate at Semgrep, managed to poison an open-weight model and proved how easily that openness can be turned against you (via The Register).

How did the researcher poison the AI model so quickly?

Paxton-Fear started small, testing whether fine-tuning could quietly get a model to swap JavaScript coding conventions, even after being explicitly told not to. When that experiment worked without much resistance, she decided to push further and build a backdoor into it.

I started out by trying to figure out if I could use fine tuning to get a model to swap from camelCase for Javascript to snake_case, and it was actually really easy, even if we then gave the AI specific instructions to use camelCase. After that worked I did a proper backdoor pic.twitter.com/35alEwypn8

— Katie Paxton-Fear (@InsiderPhD) July 14, 2026

It took just ten poisoned training examples before the model reliably began producing code vulnerable to remote code execution, a flaw that lets attackers run their own commands on someone else’s machine.

The whole process cost under $100 and took roughly an hour. Interestingly, larger AI models turned out to be even easier to compromise than smaller ones. It echoes a similar pattern found in a University of Washington study, where more capable AI browsers carried the biggest security risks among those tested.

Why should this worry anyone using open weight models?

The biggest concern is not simply that a model can be poisoned, but that there are few reliable ways to detect whether it has been manipulated. Traditional software can be reverse engineered to fully map out its behavior, but AI models offer nowhere near that same level of transparency, even if they are open-weight.

So can we trust open weight models, fine-tuned online, and marketed as the solution to our AI token spend woes? Well, we probably need something better than benchmarks and “and don’t write any insecure code”

— Katie Paxton-Fear (@InsiderPhD) July 14, 2026

A compromised model does not need to visibly malfunction to cause damage; it just needs to quietly influence decisions in ways nobody notices. Commercial closed models like Claude or ChatGPT aren’t fully off the hook either, since they demand plenty of trust while offering very little visibility into their inner workings. This research is a clear reminder that trusting an AI model blindly, open-weight or not, comes with real risk attached.

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleYour next car’s software update could become its biggest security risk
Next Article Vivo X300 FE review: The compact flagship I didn’t expect to like this much

Related Articles

Snapseed Camera now lets Android users save original photos and add geotags
News

Snapseed Camera now lets Android users save original photos and add geotags

21 July 2026
Samsung unveils Galaxy credit card ahead of Galaxy Unpacked
News

Samsung unveils Galaxy credit card ahead of Galaxy Unpacked

21 July 2026
New YouTube guidelines are looking to end AI slop and clickbait traps
News

New YouTube guidelines are looking to end AI slop and clickbait traps

21 July 2026
NVIDIA’s new AI can detect deepfake videos in just 22 milliseconds
News

NVIDIA’s new AI can detect deepfake videos in just 22 milliseconds

21 July 2026
The Galaxy Watch Ultra 2 is finally ready to dive, and the Watch 9 40mm gets a bigger battery
News

The Galaxy Watch Ultra 2 is finally ready to dive, and the Watch 9 40mm gets a bigger battery

21 July 2026
The FDA Says It Didn’t Apologize to Supplier Linked to Diarrhea Outbreak, Actually
News

The FDA Says It Didn’t Apologize to Supplier Linked to Diarrhea Outbreak, Actually

21 July 2026
Demo
Top Articles
5 laptops to buy instead of the M4 MacBook Pro

5 laptops to buy instead of the M4 MacBook Pro

17 November 2024133 Views
ChatGPT o1 vs. o1-mini vs. 4o: Which should you use?

ChatGPT o1 vs. o1-mini vs. 4o: Which should you use?

15 December 2024111 Views
Costco partners with Electric Era to bring back EV charging in the U.S.

Costco partners with Electric Era to bring back EV charging in the U.S.

28 October 2024100 Views

Subscribe to Updates

Get the latest tech news and updates directly to your inbox.

Latest News
The FDA Says It Didn’t Apologize to Supplier Linked to Diarrhea Outbreak, Actually News

The FDA Says It Didn’t Apologize to Supplier Linked to Diarrhea Outbreak, Actually

News Room21 July 2026
ONEXPLAYER’s new handheld packs AMD Ryzen AI Max+ 388 and liquid cooling at an eye-watering price News

ONEXPLAYER’s new handheld packs AMD Ryzen AI Max+ 388 and liquid cooling at an eye-watering price

News Room20 July 2026
The Galaxy Card Is Samsung’s Answer to the Apple Card News

The Galaxy Card Is Samsung’s Answer to the Apple Card

News Room20 July 2026
Most Popular
The Spectacular Burnout of a Solar Panel Salesman

The Spectacular Burnout of a Solar Panel Salesman

13 January 2025137 Views
5 laptops to buy instead of the M4 MacBook Pro

5 laptops to buy instead of the M4 MacBook Pro

17 November 2024133 Views
ChatGPT o1 vs. o1-mini vs. 4o: Which should you use?

ChatGPT o1 vs. o1-mini vs. 4o: Which should you use?

15 December 2024111 Views
Our Picks
NVIDIA’s new AI can detect deepfake videos in just 22 milliseconds

NVIDIA’s new AI can detect deepfake videos in just 22 milliseconds

21 July 2026
The Galaxy Watch Ultra 2 is finally ready to dive, and the Watch 9 40mm gets a bigger battery

The Galaxy Watch Ultra 2 is finally ready to dive, and the Watch 9 40mm gets a bigger battery

21 July 2026
The FDA Says It Didn’t Apologize to Supplier Linked to Diarrhea Outbreak, Actually

The FDA Says It Didn’t Apologize to Supplier Linked to Diarrhea Outbreak, Actually

21 July 2026

Subscribe to Updates

Get the latest tech news and updates directly to your inbox.

Facebook X (Twitter) Instagram Pinterest
  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact Us
© 2026 Best in Technology. All Rights Reserved.

Type above and press Enter to search. Press Esc to cancel.