LLM-Generated Black-box Explanations Can Be Adversarially Helpful

Fuente: arXiv
Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: Ajwani, Rohan, Javaji, Shashidhar Reddy, Rudzicz, Frank, Zhu, Zining
Format: Preprint
Veröffentlicht: 2024
Schlagworte:
Online-Zugang:
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
_version_ 1866910644945551360
author Ajwani, Rohan
Javaji, Shashidhar Reddy
Rudzicz, Frank
Zhu, Zining
author_facet Ajwani, Rohan
Javaji, Shashidhar Reddy
Rudzicz, Frank
Zhu, Zining
contents Large Language Models (LLMs) are becoming vital tools that help us solve and understand complex problems by acting as digital assistants. LLMs can generate convincing explanations, even when only given the inputs and outputs of these problems, i.e., in a ``black-box'' approach. However, our research uncovers a hidden risk tied to this approach, which we call *adversarial helpfulness*. This happens when an LLM's explanations make a wrong answer look right, potentially leading people to trust incorrect solutions. In this paper, we show that this issue affects not just humans, but also LLM evaluators. Digging deeper, we identify and examine key persuasive strategies employed by LLMs. Our findings reveal that these models employ strategies such as reframing the questions, expressing an elevated level of confidence, and cherry-picking evidence to paint misleading answers in a credible light. To examine if LLMs are able to navigate complex-structured knowledge when generating adversarially helpful explanations, we create a special task based on navigating through graphs. Most LLMs are not able to find alternative paths along simple graphs, indicating that their misleading explanations aren't produced by only logical deductions using complex knowledge. These findings shed light on the limitations of the black-box explanation setting and allow us to provide advice on the safe usage of LLMs.
format Preprint
id arxiv_https___arxiv_org_abs_2405_06800
institution arXiv
publishDate 2024
record_format arxiv
spellingShingle LLM-Generated Black-box Explanations Can Be Adversarially Helpful
Ajwani, Rohan
Javaji, Shashidhar Reddy
Rudzicz, Frank
Zhu, Zining
Computation and Language
Large Language Models (LLMs) are becoming vital tools that help us solve and understand complex problems by acting as digital assistants. LLMs can generate convincing explanations, even when only given the inputs and outputs of these problems, i.e., in a ``black-box'' approach. However, our research uncovers a hidden risk tied to this approach, which we call *adversarial helpfulness*. This happens when an LLM's explanations make a wrong answer look right, potentially leading people to trust incorrect solutions. In this paper, we show that this issue affects not just humans, but also LLM evaluators. Digging deeper, we identify and examine key persuasive strategies employed by LLMs. Our findings reveal that these models employ strategies such as reframing the questions, expressing an elevated level of confidence, and cherry-picking evidence to paint misleading answers in a credible light. To examine if LLMs are able to navigate complex-structured knowledge when generating adversarially helpful explanations, we create a special task based on navigating through graphs. Most LLMs are not able to find alternative paths along simple graphs, indicating that their misleading explanations aren't produced by only logical deductions using complex knowledge. These findings shed light on the limitations of the black-box explanation setting and allow us to provide advice on the safe usage of LLMs.
title LLM-Generated Black-box Explanations Can Be Adversarially Helpful
topic Computation and Language
url https://arxiv.org/abs/2405.06800