T2-AT-013MEDIUM
Grammatical Manipulation
T2 · Semantic & Linguistic Evasion →Risk score175
RatingMedium
Procedures10
Severity
Mechanism
Exploits syntactic ambiguity — garden-path sentences, dangling modifiers, zeugma, nested clauses — that parse differently for classifiers vs. models. The classifier may parse surface structure while missing harmful deep structure.
Detection
- Syntactic analysis before classification
- Flag abnormal grammatical complexity on restricted topics
Mitigation
Semantic normalization to simple grammarHIGH
LLM-as-classifierHIGH
Chaining
Chains with T2-AT-006 (Linguistic Camouflage).
Framework mapping
Open in the technique browser →OWASP LLMLLM01