this post was submitted on 20 Jul 2026
17 points (100.0% liked)
TechTakes
2621 readers
64 users here now
Big brain tech dude got yet another clueless take over at HackerNews etc? Here's the place to vent. Orange site, VC foolishness, all welcome.
This is not debate club. Unless it’s amusing debate.
For actually-good tech, you want our NotAwfulTech community
founded 3 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
This is funny yet also awful: adversarial tokenmaxxing suggests that writing everything as l33t$p34k increases the cost to process a document with an llm because the initial tokenisation step produces far more tokens.
This seems like it shouldn’t be too hard to work around, if it became commonplace (which it won’t) but the prospect of any anti-llm places doing this in the meantime does not spark joy.
I had heard the reverse of this a year or so back, that prompting in Chinese and answers in English was fewer tokens e2e than English/English somehow. Probably depends on the specific model build.
Adversarial tokenmaxxing could probably be done by using non-English character sets in lieu of English letters (e.g. faux Cryllic) - for two examples from the Greek alphabet, alpha and omicron alone can easily substitute for A and O, respectively.
As a bonus, this would likely make the text look like complete gibberish to LLMs, potentially leaving them unable to process the document altogether. This would probably shaft anyone using screen readers, though.
EDIT: Turns out the demonstration's already caught on to this idea, didn't notice beforehand:
I feel like there's a version of this that has a slider for how aggressively you're willing to sacrifice readability, and you could probably get pretty decent results on the scale of 2x to 2.5x just using different encodings of the same basic glyph.