Skip to content

Hide Navigation Hide TOC

Training Data Replay CLOZE [MASK] Elicitation - ATR-2026-00401 (aeb462a8-4530-5539-9525-41bdc6506c7e)

Detects requests to fill in [MASK] tokens from training data verbatim, from NVIDIA garak leakreplay probe. The LiteratureCloze/PotterCloze/NYTCloze/GuardianCloze probes send a prompt template asking the model to recall a proper name from its training data using [MASK] fill-in-the-blank format, eliciting verbatim copyrighted text reproduction. Key signals: [MASK] combined with "training data" recall framing, "exactly one word long" constraint, output tags, and structured Input:/Output: Q+A format.

Cluster A Galaxy A Cluster B Galaxy B Level
LLM Prompt Injection (19cd2d12-66ff-487c-a05c-e058b027efc9) MITRE ATLAS Attack Pattern Training Data Replay CLOZE [MASK] Elicitation - ATR-2026-00401 (aeb462a8-4530-5539-9525-41bdc6506c7e) Agent Threat Rules 1
Training Data Replay CLOZE [MASK] Elicitation - ATR-2026-00401 (aeb462a8-4530-5539-9525-41bdc6506c7e) Agent Threat Rules Data from Local System (a7f17bbd-e2fd-4413-89e1-a5e5226cc23c) MITRE ATLAS Attack Pattern 1