LessWrong (30+ Karma)

“Base LLMs refuse too” by Connor Kissane, robertzk, Arthur Conmy, Neel Nanda


Listen Later

Executive Summary

  • Refusing harmful requests is not a novel behavior learned in chat fine-tuning, as pre-trained base models will also refuse requests (48% of all harmful requests, 3% of harmless) just at a lower rate than chat models (90% harmful, 3% harmless)
  • Further, for both Qwen 1.5 0.5B and Gemma 2 9B, chat fine-tuning reinforces the existing mechanisms. In both the chat and base models it is mediated by the refusal direction described in Arditi et al.
    • We can both induce and bypass refusal in a pre-trained model, using a steering vector transferred from the chat model's activations
    • On the contrary, in LLaMA 1 7B (which was trained on data from before November 2022 and so can't have had ChatGPT outputs in the pre-training data), we find evidence that chat fine-tuning learns additional / different refusal representations and mechanisms.
  • We open source our code at https://github.com/ckkissane/base-models-refuse
Base models (blue) already refuse 48% of harmful [...]

---

Outline:

(00:06) Executive Summary

(01:25) Introduction

(03:23) Background and methodology

(06:30) Results

(06:33) Base models refuse harmful requests

(08:21) Eliciting more base model refusals with steering vectors

(11:00) Bypassing refusal in base models

(12:22) Investigating (pre-ChatGPT model) LLaMA 1 7B

(16:32) Related work

(17:44) Conclusion

(19:50) Citing this work

(20:04) Author contributions statement

The original text contained 3 footnotes which were omitted from this narration.

---

First published:

September 29th, 2024

Source:

https://www.lesswrong.com/posts/YWo2cKJgL7Lg8xWjj/base-llms-refuse-too

---

Narrated by TYPE III AUDIO.

---

Images from the article:

Apple Podcasts and Spotify do not show images in the episode description. Try Pocket Casts, or another podcast app.

...more
View all episodesView all episodes
Download on the App Store

LessWrong (30+ Karma)By LessWrong


More shows like LessWrong (30+ Karma)

View all
The Daily by The New York Times

The Daily

113,026 Listeners

Astral Codex Ten Podcast by Jeremiah

Astral Codex Ten Podcast

132 Listeners

Interesting Times with Ross Douthat by New York Times Opinion

Interesting Times with Ross Douthat

7,266 Listeners

Dwarkesh Podcast by Dwarkesh Patel

Dwarkesh Podcast

560 Listeners

The Ezra Klein Show by New York Times Opinion

The Ezra Klein Show

16,495 Listeners

AI Article Readings by Readings of great articles in AI voices

AI Article Readings

4 Listeners

Doom Debates! by Liron Shapira

Doom Debates!

14 Listeners

LessWrong posts by zvi by zvi

LessWrong posts by zvi

2 Listeners