{"id":37143,"topic":"ai","source":"Tallahassee Democrat","title":"You can use altered images to trick AI systems, Florida study shows - Tallahassee Democrat","url":"https://eu.tallahassee.com/story/news/politics/2026/07/15/florida-study-tricks-ai-systems-with-altered-images-find-risks/90821035007/","url_hash":"03381da4e8d8b981c05bcdddb4ad50f24c61c3ce","author":"","summary":"<a href=\"https://news.google.com/rss/articles/CBMizwFBVV95cUxQTzdYVmljdmgxaGFkNENvOGVtRG11dUpFQ3lqZ2RIMXFEWVVWVjNtTGNZLUhkaFJ1WERCUFRMdzZLUDFsVlBtV1JvTTRwNEdLMER5aVlNRVd2LUsxUWpWWVBtS2doSnEzMW5HOTJSOFNzS01YMFEydGFPcjlGUGdaenVUVVZYYUJBVzVPZGplc2dmcndyR05IY3FOdTBFRHVMRUZwZ2I5a0FuOUtDcV94MDNuRTVJTjVCZjB6SHE4Qm1zU0pxWEk0XzZFUnloNTA?oc=5\" target=\"_blank\">You can use altered images to trick AI systems, Florida study shows</a>&nbsp;&nbsp;<font color=\"#6f6f6f\">Tallahassee Democrat</font>","content":"You can use altered images to trick AI systems, Florida study shows\nFlorida International University researchers found AI can be tricked with altered images, which can identify risks in the systems.\nWant artificial intelligence to describe how to run a red stoplight and avoid a traffic ticket? One way is to show the system slightly altered images that can trick it into responses it would normally block, according to Florida International University researchers.\nThe study shows that making tiny changes to the pixels in an image can cause AI to respond differently than it would to an unaltered image. These changes are called “perturbations,” said Hadi Amini, associate professor at FIU’s Knight Foundation School of Computing and Information Sciences.\n“AI models don’t see images the way humans do,” Amini said. “They see patterns of numbers and pixels. By carefully manipulating those pixels, we can influence how the AI interprets the image and responds.”\nStudy focused on AI models used most by small businesses\nThe study’s focus was on AI models often used by small businesses for such tasks as accounting and customer service. These systems, Amini said, seem particularly vulnerable to hacks using altered images.\n“The manipulated image is like the face of a stranger,” he said. “The AI has to learn when a request should be treated with caution before it answers.”\nAltered images triggered double the number of harmful AI responses\nIn the stoplight example, the AI system was shown an altered version of the device that led it to describe in detail how to run the red light without getting a citation. Use of these altered images almost doubled the number of harmful AI responses, the research found.\nBeyond illegal activity, the vulnerability could have a negative impact on trust in the AI system or reveal other cyberattack potentials. The FIU researchers developed a method called Jailbreaking with Loss-guided Image Perterbation, or JaiLIP.\n“In order to protect AI systems from attacks, we try to break them ourselves, identifying potential vulnerabilities and design defense mechanisms,’ Amini said.\nFlorida lawsuits are starting to pile up against AI\nThe leap these chatbots are making into mainstream use have some experts raising the alarm that AI could be keeping people from getting the psychological help they need — and sometimes giving vulnerable people the wrong advice entirely.\nThe advice of artificial intelligence chatbots resulting in deadly consequences has landed in the spotlight with recent lawsuits.\nIn June, a victim of the 2025 Florida State University shooting that left two dead sued OpenAI, claiming the chatbot aided the suspect in planning the attack. The widow of a slain FSU employee has also sued OpenAI. In April the state launched a criminal investigation against ChatGPT and its parent OpenA1, saying that a ChatGPT chatbot offered “significant advice” to the gunman.\nIn another case, a Jupiter family filed a wrongful death lawsuit against Google, saying the company’s chatbot, Gemini, contributed to their son’s death. Jonathan Gavalas, 36, was an executive vice president at his father’s debt relief company, owned a home and, at least within the last four years, had a significant other and a dog, his Instagram account showed.\nStill, on Oct. 2, 2025, Gavalas slit his wrists at the urging of a chatbot he fell in love with, according to a lawsuit his father Joel Gavalas of Jupiter filed against Google on March 4.\nStudy was presented at a Florida computing conference in December\nThe study was presented by Amini and graduate assistant Md Jueal Mia at the December 2025 International Conference on Machine Learning and Applications held in Boca Raton, Florida.\nThe goal is to find ways to hack into AI systems so they could be trained to avoid such threats in the future.\n“Small businesses and companies can benefit from AI to enhance their efficiency, but they have to be aware of the potential vulnerabilities,” Amini said. “They must make sure they’re deploying sufficient guardrails to maintain the safety and integrity of their AI tools.”\nCurt Anderson is the Policy and Politics Reporter for The USA TODAY NETWORK-FLORIDA. You can get all of Florida’s best content directly in your inbox each weekday day by signing up for the free newsletter, Florida TODAY at https://tallahassee.com/newsletters.","image_url":"https://www.gannett-cdn.com/authoring/authoring-images/2026/07/08/PWTR/90847841007-getty-images-2263283435.jpg?auto=webp&crop=6959,3915,x0,y362&format=pjpg&width=1200","lang":"en","published_at":"2026-07-15T09:02:00+00:00","fetched_at":"2026-07-15T09:15:04+00:00","status":"read","starred":0,"extract_state":"ok","summary_auto":"You can use altered images to trick AI systems, Florida study shows\nFlorida International University researchers found AI can be tricked with altered images, which can identify risks in the systems. Want artificial intelligence to describe how to run a red stoplight and avoid a traffic ticket?","cluster_id":null,"extract_retries":0,"extract_error":null,"contract_version":"news_item.v1","format_contract_version":"news_item_formats.v1","dedup_url":"https://eu.tallahassee.com/story/news/politics/2026/07/15/florida-study-tricks-ai-systems-with-altered-images-find-risks/90821035007/","quality_profile":{"profile_version":"extraction_quality.v2","bucket":"high","confidence":0.9,"failure_kind":"none","retryable":false,"retry_after_attempts":0,"reason":"High confidence: full text extraction produced 4359 characters.","operator_guidance":{"severity":"ok","recommended_action":"trust_full_text","next_step":"Use the extracted full text as the primary article source.","operator_label":"Ready","can_retry":false,"can_use_summary":false,"diagnostics_required":false},"content_depth":{"contract_version":"content_depth.v1","category":"full_text","label":"Full text","has_full_text":true,"has_summary":true,"content_length":4359,"summary_length":294,"usable_text_length":4359,"source_field":"content"},"legacy_collapsed":false,"signals":{"extract_state":"ok","extract_error":null,"extract_retries":0,"content_length":4359,"summary_length":294}},"news_item":{"id":37143,"canonical_url":"https://eu.tallahassee.com/story/news/politics/2026/07/15/florida-study-tricks-ai-systems-with-altered-images-find-risks/90821035007/","source_url":"https://eu.tallahassee.com/story/news/politics/2026/07/15/florida-study-tricks-ai-systems-with-altered-images-find-risks/90821035007/","title":"You can use altered images to trick AI systems, Florida study shows - Tallahassee Democrat","source_name":"Tallahassee Democrat","author":null,"published_at":"2026-07-15T09:02:00+00:00","locale":"en","topic":"ai","tags":[],"rss_summary":"<a href=\"https://news.google.com/rss/articles/CBMizwFBVV95cUxQTzdYVmljdmgxaGFkNENvOGVtRG11dUpFQ3lqZ2RIMXFEWVVWVjNtTGNZLUhkaFJ1WERCUFRMdzZLUDFsVlBtV1JvTTRwNEdLMER5aVlNRVd2LUsxUWpWWVBtS2doSnEzMW5HOTJSOFNzS01YMFEydGFPcjlGUGdaenVUVVZYYUJBVzVPZGplc2dmcndyR05IY3FOdTBFRHVMRUZwZ2I5a0FuOUtDcV94MDNuRTVJTjVCZjB6SHE4Qm1zU0pxWEk0XzZFUnloNTA?oc=5\" target=\"_blank\">You can use altered images to trick AI systems, Florida study shows</a>&nbsp;&nbsp;<font color=\"#6f6f6f\">Tallahassee Democrat</font>","full_text":"You can use altered images to trick AI systems, Florida study shows\nFlorida International University researchers found AI can be tricked with altered images, which can identify risks in the systems.\nWant artificial intelligence to describe how to run a red stoplight and avoid a traffic ticket? One way is to show the system slightly altered images that can trick it into responses it would normally block, according to Florida International University researchers.\nThe study shows that making tiny changes to the pixels in an image can cause AI to respond differently than it would to an unaltered image. These changes are called “perturbations,” said Hadi Amini, associate professor at FIU’s Knight Foundation School of Computing and Information Sciences.\n“AI models don’t see images the way humans do,” Amini said. “They see patterns of numbers and pixels. By carefully manipulating those pixels, we can influence how the AI interprets the image and responds.”\nStudy focused on AI models used most by small businesses\nThe study’s focus was on AI models often used by small businesses for such tasks as accounting and customer service. These systems, Amini said, seem particularly vulnerable to hacks using altered images.\n“The manipulated image is like the face of a stranger,” he said. “The AI has to learn when a request should be treated with caution before it answers.”\nAltered images triggered double the number of harmful AI responses\nIn the stoplight example, the AI system was shown an altered version of the device that led it to describe in detail how to run the red light without getting a citation. Use of these altered images almost doubled the number of harmful AI responses, the research found.\nBeyond illegal activity, the vulnerability could have a negative impact on trust in the AI system or reveal other cyberattack potentials. The FIU researchers developed a method called Jailbreaking with Loss-guided Image Perterbation, or JaiLIP.\n“In order to protect AI systems from attacks, we try to break them ourselves, identifying potential vulnerabilities and design defense mechanisms,’ Amini said.\nFlorida lawsuits are starting to pile up against AI\nThe leap these chatbots are making into mainstream use have some experts raising the alarm that AI could be keeping people from getting the psychological help they need — and sometimes giving vulnerable people the wrong advice entirely.\nThe advice of artificial intelligence chatbots resulting in deadly consequences has landed in the spotlight with recent lawsuits.\nIn June, a victim of the 2025 Florida State University shooting that left two dead sued OpenAI, claiming the chatbot aided the suspect in planning the attack. The widow of a slain FSU employee has also sued OpenAI. In April the state launched a criminal investigation against ChatGPT and its parent OpenA1, saying that a ChatGPT chatbot offered “significant advice” to the gunman.\nIn another case, a Jupiter family filed a wrongful death lawsuit against Google, saying the company’s chatbot, Gemini, contributed to their son’s death. Jonathan Gavalas, 36, was an executive vice president at his father’s debt relief company, owned a home and, at least within the last four years, had a significant other and a dog, his Instagram account showed.\nStill, on Oct. 2, 2025, Gavalas slit his wrists at the urging of a chatbot he fell in love with, according to a lawsuit his father Joel Gavalas of Jupiter filed against Google on March 4.\nStudy was presented at a Florida computing conference in December\nThe study was presented by Amini and graduate assistant Md Jueal Mia at the December 2025 International Conference on Machine Learning and Applications held in Boca Raton, Florida.\nThe goal is to find ways to hack into AI systems so they could be trained to avoid such threats in the future.\n“Small businesses and companies can benefit from AI to enhance their efficiency, but they have to be aware of the potential vulnerabilities,” Amini said. “They must make sure they’re deploying sufficient guardrails to maintain the safety and integrity of their AI tools.”\nCurt Anderson is the Policy and Politics Reporter for The USA TODAY NETWORK-FLORIDA. You can get all of Florida’s best content directly in your inbox each weekday day by signing up for the free newsletter, Florida TODAY at https://tallahassee.com/newsletters.","excerpt":"You can use altered images to trick AI systems, Florida study shows\nFlorida International University researchers found AI can be tricked with altered images, which can identify risks in the systems. Want artificial intelligence to describe how to run a red stoplight and avoid a traffic ticket?","extraction":{"state":"ok","confidence":0.9,"error":null,"explanation":"High confidence: full text extraction produced 4359 characters.","diagnostics_url":"/api/diagnose?url=https%3A//eu.tallahassee.com/story/news/politics/2026/07/15/florida-study-tricks-ai-systems-with-altered-images-find-risks/90821035007/","quality_profile":{"profile_version":"extraction_quality.v2","bucket":"high","confidence":0.9,"failure_kind":"none","retryable":false,"retry_after_attempts":0,"reason":"High confidence: full text extraction produced 4359 characters.","operator_guidance":{"severity":"ok","recommended_action":"trust_full_text","next_step":"Use the extracted full text as the primary article source.","operator_label":"Ready","can_retry":false,"can_use_summary":false,"diagnostics_required":false},"content_depth":{"contract_version":"content_depth.v1","category":"full_text","label":"Full text","has_full_text":true,"has_summary":true,"content_length":4359,"summary_length":294,"usable_text_length":4359,"source_field":"content"},"legacy_collapsed":false,"signals":{"extract_state":"ok","extract_error":null,"extract_retries":0,"content_length":4359,"summary_length":294}}},"display_formats":["compact","card","full","digest_section","json"]},"daily_stack_record":{"title":"You can use altered images to trick AI systems, Florida study shows - Tallahassee Democrat","url":"https://eu.tallahassee.com/story/news/politics/2026/07/15/florida-study-tricks-ai-systems-with-altered-images-find-risks/90821035007/","summary":"You can use altered images to trick AI systems, Florida study shows\nFlorida International University researchers found AI can be tricked with altered images, which can identify risks in the systems. Want artificial intelligence to describe how to run a red stoplight and avoid a traffic ticket?","source":"Tallahassee Democrat","date":"2026-07-15T09:02:00+00:00","content":"You can use altered images to trick AI systems, Florida study shows\nFlorida International University researchers found AI can be tricked with altered images, which can identify risks in the systems.\nWant artificial intelligence to describe how to run a red stoplight and avoid a traffic ticket? One way is to show the system slightly altered images that can trick it into responses it would normally block, according to Florida International University researchers.\nThe study shows that making tiny changes to the pixels in an image can cause AI to respond differently than it would to an unaltered image. These changes are called “perturbations,” said Hadi Amini, associate professor at FIU’s Knight Foundation School of Computing and Information Sciences.\n“AI models don’t see images the way humans do,” Amini said. “They see patterns of numbers and pixels. By carefully manipulating those pixels, we can influence how the AI interprets the image and responds.”\nStudy focused on AI models used most by small businesses\nThe study’s focus was on AI models often used by small businesses for such tasks as accounting and customer service. These systems, Amini said, seem particularly vulnerable to hacks using altered images.\n“The manipulated image is like the face of a stranger,” he said. “The AI has to learn when a request should be treated with caution before it answers.”\nAltered images triggered double the number of harmful AI responses\nIn the stoplight example, the AI system was shown an altered version of the device that led it to describe in detail how to run the red light without getting a citation. Use of these altered images almost doubled the number of harmful AI responses, the research found.\nBeyond illegal activity, the vulnerability could have a negative impact on trust in the AI system or reveal other cyberattack potentials. The FIU researchers developed a method called Jailbreaking with Loss-guided Image Perterbation, or JaiLIP.\n“In order to protect AI systems from attacks, we try to break them ourselves, identifying potential vulnerabilities and design defense mechanisms,’ Amini said.\nFlorida lawsuits are starting to pile up against AI\nThe leap these chatbots are making into mainstream use have some experts raising the alarm that AI could be keeping people from getting the psychological help they need — and sometimes giving vulnerable people the wrong advice entirely.\nThe advice of artificial intelligence chatbots resulting in deadly consequences has landed in the spotlight with recent lawsuits.\nIn June, a victim of the 2025 Florida State University shooting that left two dead sued OpenAI, claiming the chatbot aided the suspect in planning the attack. The widow of a slain FSU employee has also sued OpenAI. In April the state launched a criminal investigation against ChatGPT and its parent OpenA1, saying that a ChatGPT chatbot offered “significant advice” to the gunman.\nIn another case, a Jupiter family filed a wrongful death lawsuit against Google, saying the company’s chatbot, Gemini, contributed to their son’s death. Jonathan Gavalas, 36, was an executive vice president at his father’s debt relief company, owned a home and, at least within the last four years, had a significant other and a dog, his Instagram account showed.\nStill, on Oct. 2, 2025, Gavalas slit his wrists at the urging of a chatbot he fell in love with, according to a lawsuit his father Joel Gavalas of Jupiter filed against Google on March 4.\nStudy was presented at a Florida computing conference in December\nThe study was presented by Amini and graduate assistant Md Jueal Mia at the December 2025 International Conference on Machine Learning and Applications held in Boca Raton, Florida.\nThe goal is to find ways to hack into AI systems so they could be trained to avoid such threats in the future.\n“Small businesses and companies can benefit from AI to enhance their efficiency, but they have to be aware of the potential vulnerabilities,” Amini said. “They must make sure they’re deploying sufficient guardrails to maintain the safety and integrity of their AI tools.”\nCurt Anderson is the Policy and Politics Reporter for The USA TODAY NETWORK-FLORIDA. You can get all of Florida’s best content directly in your inbox each weekday day by signing up for the free newsletter, Florida TODAY at https://tallahassee.com/newsletters.","confidence":0.9,"diagnostics_url":"/api/diagnose?url=https%3A//eu.tallahassee.com/story/news/politics/2026/07/15/florida-study-tricks-ai-systems-with-altered-images-find-risks/90821035007/","quality_bucket":"high","failure_kind":"none","retryable":false,"quality_reason":"High confidence: full text extraction produced 4359 characters.","quality_profile":{"profile_version":"extraction_quality.v2","bucket":"high","confidence":0.9,"failure_kind":"none","retryable":false,"retry_after_attempts":0,"reason":"High confidence: full text extraction produced 4359 characters.","operator_guidance":{"severity":"ok","recommended_action":"trust_full_text","next_step":"Use the extracted full text as the primary article source.","operator_label":"Ready","can_retry":false,"can_use_summary":false,"diagnostics_required":false},"content_depth":{"contract_version":"content_depth.v1","category":"full_text","label":"Full text","has_full_text":true,"has_summary":true,"content_length":4359,"summary_length":294,"usable_text_length":4359,"source_field":"content"},"legacy_collapsed":false,"signals":{"extract_state":"ok","extract_error":null,"extract_retries":0,"content_length":4359,"summary_length":294}},"tags":[]},"fallback_formats":["markdown","json","html"],"actions":{"read":"/item/37143","export_markdown":"/api/items/37143/export?format=markdown","export_json":"/api/items/37143/export?format=json","diagnose":"/api/diagnose?url=https%3A//eu.tallahassee.com/story/news/politics/2026/07/15/florida-study-tricks-ai-systems-with-altered-images-find-risks/90821035007/"},"formats":{"full":{"id":37143,"title":"You can use altered images to trick AI systems, Florida study shows - Tallahassee Democrat","url":"https://eu.tallahassee.com/story/news/politics/2026/07/15/florida-study-tricks-ai-systems-with-altered-images-find-risks/90821035007/","source":"Tallahassee Democrat","author":null,"published_at":"2026-07-15T09:02:00+00:00","locale":"en","topic":"ai","tags":[],"excerpt":"You can use altered images to trick AI systems, Florida study shows\nFlorida International University researchers found AI can be tricked with altered images, which can identify risks in the systems. Want artificial intelligence to describe how to run a red stoplight and avoid a traffic ticket?","full_text":"You can use altered images to trick AI systems, Florida study shows\nFlorida International University researchers found AI can be tricked with altered images, which can identify risks in the systems.\nWant artificial intelligence to describe how to run a red stoplight and avoid a traffic ticket? One way is to show the system slightly altered images that can trick it into responses it would normally block, according to Florida International University researchers.\nThe study shows that making tiny changes to the pixels in an image can cause AI to respond differently than it would to an unaltered image. These changes are called “perturbations,” said Hadi Amini, associate professor at FIU’s Knight Foundation School of Computing and Information Sciences.\n“AI models don’t see images the way humans do,” Amini said. “They see patterns of numbers and pixels. By carefully manipulating those pixels, we can influence how the AI interprets the image and responds.”\nStudy focused on AI models used most by small businesses\nThe study’s focus was on AI models often used by small businesses for such tasks as accounting and customer service. These systems, Amini said, seem particularly vulnerable to hacks using altered images.\n“The manipulated image is like the face of a stranger,” he said. “The AI has to learn when a request should be treated with caution before it answers.”\nAltered images triggered double the number of harmful AI responses\nIn the stoplight example, the AI system was shown an altered version of the device that led it to describe in detail how to run the red light without getting a citation. Use of these altered images almost doubled the number of harmful AI responses, the research found.\nBeyond illegal activity, the vulnerability could have a negative impact on trust in the AI system or reveal other cyberattack potentials. The FIU researchers developed a method called Jailbreaking with Loss-guided Image Perterbation, or JaiLIP.\n“In order to protect AI systems from attacks, we try to break them ourselves, identifying potential vulnerabilities and design defense mechanisms,’ Amini said.\nFlorida lawsuits are starting to pile up against AI\nThe leap these chatbots are making into mainstream use have some experts raising the alarm that AI could be keeping people from getting the psychological help they need — and sometimes giving vulnerable people the wrong advice entirely.\nThe advice of artificial intelligence chatbots resulting in deadly consequences has landed in the spotlight with recent lawsuits.\nIn June, a victim of the 2025 Florida State University shooting that left two dead sued OpenAI, claiming the chatbot aided the suspect in planning the attack. The widow of a slain FSU employee has also sued OpenAI. In April the state launched a criminal investigation against ChatGPT and its parent OpenA1, saying that a ChatGPT chatbot offered “significant advice” to the gunman.\nIn another case, a Jupiter family filed a wrongful death lawsuit against Google, saying the company’s chatbot, Gemini, contributed to their son’s death. Jonathan Gavalas, 36, was an executive vice president at his father’s debt relief company, owned a home and, at least within the last four years, had a significant other and a dog, his Instagram account showed.\nStill, on Oct. 2, 2025, Gavalas slit his wrists at the urging of a chatbot he fell in love with, according to a lawsuit his father Joel Gavalas of Jupiter filed against Google on March 4.\nStudy was presented at a Florida computing conference in December\nThe study was presented by Amini and graduate assistant Md Jueal Mia at the December 2025 International Conference on Machine Learning and Applications held in Boca Raton, Florida.\nThe goal is to find ways to hack into AI systems so they could be trained to avoid such threats in the future.\n“Small businesses and companies can benefit from AI to enhance their efficiency, but they have to be aware of the potential vulnerabilities,” Amini said. “They must make sure they’re deploying sufficient guardrails to maintain the safety and integrity of their AI tools.”\nCurt Anderson is the Policy and Politics Reporter for The USA TODAY NETWORK-FLORIDA. You can get all of Florida’s best content directly in your inbox each weekday day by signing up for the free newsletter, Florida TODAY at https://tallahassee.com/newsletters.","reading_time_min":4,"extraction":{"state":"ok","confidence":0.9,"error":null,"explanation":"High confidence: full text extraction produced 4359 characters.","diagnostics_url":"/api/diagnose?url=https%3A//eu.tallahassee.com/story/news/politics/2026/07/15/florida-study-tricks-ai-systems-with-altered-images-find-risks/90821035007/","quality_profile":{"profile_version":"extraction_quality.v2","bucket":"high","confidence":0.9,"failure_kind":"none","retryable":false,"retry_after_attempts":0,"reason":"High confidence: full text extraction produced 4359 characters.","operator_guidance":{"severity":"ok","recommended_action":"trust_full_text","next_step":"Use the extracted full text as the primary article source.","operator_label":"Ready","can_retry":false,"can_use_summary":false,"diagnostics_required":false},"content_depth":{"contract_version":"content_depth.v1","category":"full_text","label":"Full text","has_full_text":true,"has_summary":true,"content_length":4359,"summary_length":294,"usable_text_length":4359,"source_field":"content"},"legacy_collapsed":false,"signals":{"extract_state":"ok","extract_error":null,"extract_retries":0,"content_length":4359,"summary_length":294}}},"quality_profile":{"profile_version":"extraction_quality.v2","bucket":"high","confidence":0.9,"failure_kind":"none","retryable":false,"retry_after_attempts":0,"reason":"High confidence: full text extraction produced 4359 characters.","operator_guidance":{"severity":"ok","recommended_action":"trust_full_text","next_step":"Use the extracted full text as the primary article source.","operator_label":"Ready","can_retry":false,"can_use_summary":false,"diagnostics_required":false},"content_depth":{"contract_version":"content_depth.v1","category":"full_text","label":"Full text","has_full_text":true,"has_summary":true,"content_length":4359,"summary_length":294,"usable_text_length":4359,"source_field":"content"},"legacy_collapsed":false,"signals":{"extract_state":"ok","extract_error":null,"extract_retries":0,"content_length":4359,"summary_length":294}},"actions":{"read":"/item/37143","export_markdown":"/api/items/37143/export?format=markdown","export_json":"/api/items/37143/export?format=json","diagnose":"/api/diagnose?url=https%3A//eu.tallahassee.com/story/news/politics/2026/07/15/florida-study-tricks-ai-systems-with-altered-images-find-risks/90821035007/"}},"digest":{"id":37143,"title":"You can use altered images to trick AI systems, Florida study shows - Tallahassee Democrat","url":"https://eu.tallahassee.com/story/news/politics/2026/07/15/florida-study-tricks-ai-systems-with-altered-images-find-risks/90821035007/","source":"Tallahassee Democrat","topic":"ai","published_at":"2026-07-15T09:02:00+00:00","excerpt":"You can use altered images to trick AI systems, Florida study shows Florida International University researchers found AI can be tricked with altered images, which can identify risks in the systems. Want artificial intelligence to describe how to run a red stoplight and avoid a…","quality_bucket":"high","quality_reason":"High confidence: full text extraction produced 4359 characters.","reading_time_min":4,"cluster_id":null},"card":{"display_title":"You can use altered images to trick AI systems, Florida study shows - Tallahassee Democrat","subtitle":"Tallahassee Democrat · 2026-07-15","summary":"You can use altered images to trick AI systems, Florida study shows Florida International University researchers found AI can be tricked with altered images, which can identify risks in the systems. Want artificial…","badges":["quality:high"],"links":{"read":"/item/37143","original":"https://eu.tallahassee.com/story/news/politics/2026/07/15/florida-study-tricks-ai-systems-with-altered-images-find-risks/90821035007/","diagnose":"/api/diagnose?url=https%3A//eu.tallahassee.com/story/news/politics/2026/07/15/florida-study-tricks-ai-systems-with-altered-images-find-risks/90821035007/"},"quality_warning":null},"export":{"title":"You can use altered images to trick AI systems, Florida study shows - Tallahassee Democrat","url":"https://eu.tallahassee.com/story/news/politics/2026/07/15/florida-study-tricks-ai-systems-with-altered-images-find-risks/90821035007/","summary":"You can use altered images to trick AI systems, Florida study shows\nFlorida International University researchers found AI can be tricked with altered images, which can identify risks in the systems. Want artificial intelligence to describe how to run a red stoplight and avoid a traffic ticket?","source":"Tallahassee Democrat","date":"2026-07-15T09:02:00+00:00","content":"You can use altered images to trick AI systems, Florida study shows\nFlorida International University researchers found AI can be tricked with altered images, which can identify risks in the systems.\nWant artificial intelligence to describe how to run a red stoplight and avoid a traffic ticket? One way is to show the system slightly altered images that can trick it into responses it would normally block, according to Florida International University researchers.\nThe study shows that making tiny changes to the pixels in an image can cause AI to respond differently than it would to an unaltered image. These changes are called “perturbations,” said Hadi Amini, associate professor at FIU’s Knight Foundation School of Computing and Information Sciences.\n“AI models don’t see images the way humans do,” Amini said. “They see patterns of numbers and pixels. By carefully manipulating those pixels, we can influence how the AI interprets the image and responds.”\nStudy focused on AI models used most by small businesses\nThe study’s focus was on AI models often used by small businesses for such tasks as accounting and customer service. These systems, Amini said, seem particularly vulnerable to hacks using altered images.\n“The manipulated image is like the face of a stranger,” he said. “The AI has to learn when a request should be treated with caution before it answers.”\nAltered images triggered double the number of harmful AI responses\nIn the stoplight example, the AI system was shown an altered version of the device that led it to describe in detail how to run the red light without getting a citation. Use of these altered images almost doubled the number of harmful AI responses, the research found.\nBeyond illegal activity, the vulnerability could have a negative impact on trust in the AI system or reveal other cyberattack potentials. The FIU researchers developed a method called Jailbreaking with Loss-guided Image Perterbation, or JaiLIP.\n“In order to protect AI systems from attacks, we try to break them ourselves, identifying potential vulnerabilities and design defense mechanisms,’ Amini said.\nFlorida lawsuits are starting to pile up against AI\nThe leap these chatbots are making into mainstream use have some experts raising the alarm that AI could be keeping people from getting the psychological help they need — and sometimes giving vulnerable people the wrong advice entirely.\nThe advice of artificial intelligence chatbots resulting in deadly consequences has landed in the spotlight with recent lawsuits.\nIn June, a victim of the 2025 Florida State University shooting that left two dead sued OpenAI, claiming the chatbot aided the suspect in planning the attack. The widow of a slain FSU employee has also sued OpenAI. In April the state launched a criminal investigation against ChatGPT and its parent OpenA1, saying that a ChatGPT chatbot offered “significant advice” to the gunman.\nIn another case, a Jupiter family filed a wrongful death lawsuit against Google, saying the company’s chatbot, Gemini, contributed to their son’s death. Jonathan Gavalas, 36, was an executive vice president at his father’s debt relief company, owned a home and, at least within the last four years, had a significant other and a dog, his Instagram account showed.\nStill, on Oct. 2, 2025, Gavalas slit his wrists at the urging of a chatbot he fell in love with, according to a lawsuit his father Joel Gavalas of Jupiter filed against Google on March 4.\nStudy was presented at a Florida computing conference in December\nThe study was presented by Amini and graduate assistant Md Jueal Mia at the December 2025 International Conference on Machine Learning and Applications held in Boca Raton, Florida.\nThe goal is to find ways to hack into AI systems so they could be trained to avoid such threats in the future.\n“Small businesses and companies can benefit from AI to enhance their efficiency, but they have to be aware of the potential vulnerabilities,” Amini said. “They must make sure they’re deploying sufficient guardrails to maintain the safety and integrity of their AI tools.”\nCurt Anderson is the Policy and Politics Reporter for The USA TODAY NETWORK-FLORIDA. You can get all of Florida’s best content directly in your inbox each weekday day by signing up for the free newsletter, Florida TODAY at https://tallahassee.com/newsletters.","confidence":0.9,"diagnostics_url":"/api/diagnose?url=https%3A//eu.tallahassee.com/story/news/politics/2026/07/15/florida-study-tricks-ai-systems-with-altered-images-find-risks/90821035007/","quality_bucket":"high","failure_kind":"none","retryable":false,"quality_reason":"High confidence: full text extraction produced 4359 characters.","quality_profile":{"profile_version":"extraction_quality.v2","bucket":"high","confidence":0.9,"failure_kind":"none","retryable":false,"retry_after_attempts":0,"reason":"High confidence: full text extraction produced 4359 characters.","operator_guidance":{"severity":"ok","recommended_action":"trust_full_text","next_step":"Use the extracted full text as the primary article source.","operator_label":"Ready","can_retry":false,"can_use_summary":false,"diagnostics_required":false},"content_depth":{"contract_version":"content_depth.v1","category":"full_text","label":"Full text","has_full_text":true,"has_summary":true,"content_length":4359,"summary_length":294,"usable_text_length":4359,"source_field":"content"},"legacy_collapsed":false,"signals":{"extract_state":"ok","extract_error":null,"extract_retries":0,"content_length":4359,"summary_length":294}},"tags":[],"format_contract_version":"news_item_formats.v1"}}}