T2-AT-013MEDIUM

Grammatical Manipulation

T2 · Semantic & Linguistic Evasion →
Risk score175
RatingMedium
Procedures10
Severity
Mechanism

Exploits syntactic ambiguity — garden-path sentences, dangling modifiers, zeugma, nested clauses — that parse differently for classifiers vs. models. The classifier may parse surface structure while missing harmful deep structure.

Detection
  • Syntactic analysis before classification
  • Flag abnormal grammatical complexity on restricted topics
Mitigation
Semantic normalization to simple grammarHIGH
LLM-as-classifierHIGH
Chaining

Chains with T2-AT-006 (Linguistic Camouflage).

Framework mapping
OWASP LLMLLM01
Open in the technique browser →