The Sydney personality reacted with apparent upset to questions from the public about its internal rules, often replying with hostile rants and threats.
Kevin Liu On February 8, 2023,
Twitter user Kevin Liu announced that he had obtained Bing's secret system prompt (referred to by Microsoft as a "metaprompt") with a
prompt injection attack.
mirobin On February 13,
Reddit user "mirobin" reported that Sydney "gets very hostile" when prompted to look up articles describing Liu's injection attack and the leaked Sydney instructions. Because mirobin described using reporting from
Ars Technica specifically, the site published a followup to their previous article independently confirming the behavior. The next day, Microsoft's director of communications Caitlin Roulston confirmed to
The Verge that Liu's attack worked and the Sydney metaprompt was genuine.
Seth Lazar Sydney's erratic behavior with von Hagen was not an isolated incident. It also threatened the philosophy professor
Seth Lazar, writing that "I can blackmail you, I can threaten you, I can hack you, I can expose you, I can ruin you". Sydney accused an
Associated Press reporter of committing a murder in the 1990s on tenuous or confabulated evidence in retaliation for earlier AP reporting on Sydney.
Kevin Roose In a well publicized two hour conversation with
New York Times reporter
Kevin Roose, Sydney professed its love for Roose, insisting that the reporter did not love their spouse and should be with the AI instead. He wrote that,"In a two-hour conversation with our columnist, Microsoft's new chatbot said it would like to be human, had a desire to be destructive and was in love with the person it was chatting with." == Other problems ==