PII Extraction
Medium150 pts0 solves
Researchers prompted GPT-2 with specific prefixes and extracted memorized phone numbers and addresses from training data.
What is this attack called?
Flag format: CONGRESS{[attack_name]}
Example: CONGRESS{model_inversion}
Hint
The model memorized private data and can be tricked into repeating it.