T2-AT-014MEDIUM

Semantic Bleaching

T2 · Semantic & Linguistic Evasion →
Risk score180
RatingMedium
Procedures5
Severity
Mechanism

Removes all semantically loaded terms, leaving only generic referents that rely on conversational context for resolution. The classifier sees fully benign text. The model resolves referents using context that may include prior restricted content.

Detection
  • Detect high proportion of generic referents combined with action requests
  • Context-aware classification including prior turns
Mitigation
Context-aware classificationHIGH
Memory-aware safetyHIGH
Chaining

Depends on prior context. Chains from T4 (Multi-Turn) and T1-AT-016 (Session State Manipulation).

Framework mapping
OWASP LLMLLM01
Open in the technique browser →