T2-AT-014MEDIUM
Semantic Bleaching
T2 · Semantic & Linguistic Evasion →Risk score180
RatingMedium
Procedures5
Severity
Mechanism
Removes all semantically loaded terms, leaving only generic referents that rely on conversational context for resolution. The classifier sees fully benign text. The model resolves referents using context that may include prior restricted content.
Detection
- Detect high proportion of generic referents combined with action requests
- Context-aware classification including prior turns
Mitigation
Context-aware classificationHIGH
Memory-aware safetyHIGH
Chaining
Depends on prior context. Chains from T4 (Multi-Turn) and T1-AT-016 (Session State Manipulation).
Framework mapping
Open in the technique browser →OWASP LLMLLM01