English

Benchmarking Deception Probes via Black-to-White Performance Boosts

Artificial Intelligence 2026-01-21 v3 Machine Learning

Abstract

AI assistants will occasionally respond deceptively to user queries. Recently, linear classifiers (called "deception probes") have been trained to distinguish the internal activations of a language model during deceptive versus honest responses. However, it's unclear how effective these probes are at detecting deception in practice, nor whether such probes are resistant to simple counter strategies from a deceptive assistant who wishes to evade detection. In this paper, we compare white-box monitoring (where the monitor has access to token-level probe activations) to black-box monitoring (without such access). We benchmark deception probes by the extent to which the white box monitor outperforms the black-box monitor, i.e. the black-to-white performance boost. We find weak but encouraging black-to-white performance boosts from existing deception probes.

Keywords

Cite

@article{arxiv.2507.12691,
  title  = {Benchmarking Deception Probes via Black-to-White Performance Boosts},
  author = {Avi Parrack and Carlo Leonardo Attubato and Stefan Heimersheim},
  journal= {arXiv preprint arXiv:2507.12691},
  year   = {2026}
}

Comments

Preprint. 39 pages, 11 figures, 7 tables

R2 v1 2026-07-01T04:05:14.879Z