Risky Business Features

A deep dive on AI model distillation attacks

April 29 · 1 hr 12 min · 69.3 MB
0:00-1:12:08

Streams straight from the publisher. podnod never proxies or re-hosts episode audio.

In this solo episode of Risky Business Features James Wilson explores how distillation techniques are both a legitimate way to train smaller models, as well as a way to steal model capabilities. It’s not just a problem for frontier labs! Any LLM-based product could have its competitive advantage stolen through these attacks.

James covers:

  • High-level concept of distillation
  • Why it matters including close/open-weight/open-source explanation
  • Types of distillation and the prompts used
  • The distillation pipeline end to end
  • Distillation at scale and mitigation techniques
  • Hardware resource constraints for distillation

Show notes