{"id":24285,"date":"2026-07-16T18:52:18","date_gmt":"2026-07-16T18:52:18","guid":{"rendered":"https:\/\/science-dao.org\/?p=24285"},"modified":"2026-07-16T18:52:28","modified_gmt":"2026-07-16T18:52:28","slug":"need-adversarial","status":"publish","type":"post","link":"https:\/\/science-dao.org\/ru\/need-adversarial\/","title":{"rendered":"Why AI Science Funding Needs Adversarial Testing"},"content":{"rendered":"<div id=\"scien-584085458\" class=\"scien-before-content scien-entity-placement\"><style>\r\n.amazon-support-link {\r\n    display: inline-flex;\r\n    align-items: baseline;\r\n    gap: 0.3rem;\r\n    padding: 0.35rem 0.55rem;\r\n    color: inherit;\r\n    font-size: 0.88rem;\r\n    line-height: 1.2;\r\n    text-decoration: none;\r\n    opacity: 0.72;\r\n    white-space: nowrap;\r\n    transition: opacity 0.2s ease;\r\n}\r\n\r\n.amazon-support-link:hover,\r\n.amazon-support-link:focus-visible {\r\n    opacity: 1;\r\n    text-decoration: underline;\r\n}\r\n\r\n.amazon-support-link small {\r\n    font-size: 0.65rem;\r\n    opacity: 0.7;\r\n}\r\n\r\n@media (max-width: 900px) {\r\n    .amazon-support-link small {\r\n        display: none;\r\n    }\r\n}\r\n<\/style>\r\n<a class=\"amazon-support-link\"\r\n   href=\"https:\/\/www.amazon.com\/?tag=vpf04-20\"\r\n   target=\"_blank\"\r\n   rel=\"nofollow sponsored noopener\"\r\n   aria-label=\"Shop on Amazon and support World Science DAO\">\r\n    Shop on Amazon <span aria-hidden=\"true\">\u2197<\/span>\r\n    <small>affiliate link<\/small>\r\n<\/a><\/div>\n<p class=\"wp-block-paragraph\">Artificial intelligence could make scientific funding faster, broader, and less dependent on institutional prestige. However, an AI system that evaluates research or distributes money cannot be trusted merely because it performs well in ordinary demonstrations.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">It must also be tested by people actively trying to make it fail.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>Adversarial testing is the systematic attempt to manipulate, deceive, exploit, or otherwise break an AI system under controlled conditions.<\/strong> For AI science funding, this means testing whether applicants can obtain undeserved rewards, suppress competitors, exploit evaluation criteria, or redirect funds through carefully constructed submissions.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Without adversarial testing, an AI funding platform may appear fair while remaining vulnerable to sophisticated manipulation.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Science DAO therefore proposes the <a href=\"https:\/\/science-dao.org\/ru\/adversarial\/\">adversarial testing of AIIM<\/a>: a structured red-team exercise intended to expose weaknesses before they can affect funding at scale.<\/p>\n\n\n\n<div id=\"ez-toc-container\" class=\"ez-toc-v2_0_85 counter-hierarchy ez-toc-counter ez-toc-grey ez-toc-container-direction\">\n<div class=\"ez-toc-title-container\">\n<p class=\"ez-toc-title\" style=\"cursor:inherit\">Table of Contents<\/p>\n<span class=\"ez-toc-title-toggle\"><a href=\"#\" class=\"ez-toc-pull-right ez-toc-btn ez-toc-btn-xs ez-toc-btn-default ez-toc-toggle\" aria-label=\"Toggle Table of Content\"><span class=\"ez-toc-js-icon-con\"><span class=\"\"><span class=\"eztoc-hide\" style=\"display:none;\">Toggle<\/span><span class=\"ez-toc-icon-toggle-span\"><svg style=\"fill: #999;color:#999\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" class=\"list-377408\" width=\"20px\" height=\"20px\" viewbox=\"0 0 24 24\" fill=\"none\"><path d=\"M6 6H4v2h2V6zm14 0H8v2h12V6zM4 11h2v2H4v-2zm16 0H8v2h12v-2zM4 16h2v2H4v-2zm16 0H8v2h12v-2z\" fill=\"currentColor\"><\/path><\/svg><svg style=\"fill: #999;color:#999\" class=\"arrow-unsorted-368013\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" width=\"10px\" height=\"10px\" viewbox=\"0 0 24 24\" version=\"1.2\" baseprofile=\"tiny\"><path d=\"M18.2 9.3l-6.2-6.3-6.2 6.3c-.2.2-.3.4-.3.7s.1.5.3.7c.2.2.4.3.7.3h11c.3 0 .5-.1.7-.3.2-.2.3-.5.3-.7s-.1-.5-.3-.7zM5.8 14.7l6.2 6.3 6.2-6.3c.2-.2.3-.5.3-.7s-.1-.5-.3-.7c-.2-.2-.4-.3-.7-.3h-11c-.3 0-.5.1-.7.3-.2.2-.3.5-.3.7s.1.5.3.7z\"\/><\/svg><\/span><\/span><\/span><\/a><\/span><\/div>\n<nav><ul class='ez-toc-list ez-toc-list-level-1' ><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-1\" href=\"https:\/\/science-dao.org\/ru\/need-adversarial\/#What_Is_Adversarial_Testing\" >What Is Adversarial Testing?<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-2\" href=\"https:\/\/science-dao.org\/ru\/need-adversarial\/#Why_Science_Funding_Is_a_High-Stakes_AI_Application\" >Why Science Funding Is a High-Stakes AI Application<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-3\" href=\"https:\/\/science-dao.org\/ru\/need-adversarial\/#The_Main_Threats_Adversarial_Testing_Must_Examine\" >The Main Threats Adversarial Testing Must Examine<\/a><ul class='ez-toc-list-level-3' ><li class='ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-4\" href=\"https:\/\/science-dao.org\/ru\/need-adversarial\/#1_Prompt_Gaming\" >1. Prompt Gaming<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-5\" href=\"https:\/\/science-dao.org\/ru\/need-adversarial\/#2_Hidden_Instruction_and_Prompt-Injection_Attacks\" >2. Hidden Instruction and Prompt-Injection Attacks<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-6\" href=\"https:\/\/science-dao.org\/ru\/need-adversarial\/#3_Artificial_Evidence_of_Impact\" >3. Artificial Evidence of Impact<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-7\" href=\"https:\/\/science-dao.org\/ru\/need-adversarial\/#4_Identity_Splitting_and_Collusion\" >4. Identity Splitting and Collusion<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-8\" href=\"https:\/\/science-dao.org\/ru\/need-adversarial\/#5_Plagiarism_and_Minor_Variations\" >5. Plagiarism and Minor Variations<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-9\" href=\"https:\/\/science-dao.org\/ru\/need-adversarial\/#6_Manipulation_of_Scientific_Uncertainty\" >6. Manipulation of Scientific Uncertainty<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-10\" href=\"https:\/\/science-dao.org\/ru\/need-adversarial\/#7_Bias_Against_Unusual_Researchers_or_Fields\" >7. Bias Against Unusual Researchers or Fields<\/a><\/li><\/ul><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-11\" href=\"https:\/\/science-dao.org\/ru\/need-adversarial\/#Why_Ordinary_Benchmarks_Are_Not_Enough\" >Why Ordinary Benchmarks Are Not Enough<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-12\" href=\"https:\/\/science-dao.org\/ru\/need-adversarial\/#Why_External_Testers_Matter\" >Why External Testers Matter<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-13\" href=\"https:\/\/science-dao.org\/ru\/need-adversarial\/#Red_Teams_Need_Clear_Rules\" >Red Teams Need Clear Rules<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-14\" href=\"https:\/\/science-dao.org\/ru\/need-adversarial\/#Test_the_Entire_Funding_Pipeline_Not_Only_the_Model\" >Test the Entire Funding Pipeline, Not Only the Model<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-15\" href=\"https:\/\/science-dao.org\/ru\/need-adversarial\/#What_Successful_Adversarial_Testing_Should_Produce\" >What Successful Adversarial Testing Should Produce<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-16\" href=\"https:\/\/science-dao.org\/ru\/need-adversarial\/#Adversarial_Testing_Must_Continue_After_Deployment\" >Adversarial Testing Must Continue After Deployment<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-17\" href=\"https:\/\/science-dao.org\/ru\/need-adversarial\/#Limitations_of_Red_Teaming\" >Limitations of Red Teaming<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-18\" href=\"https:\/\/science-dao.org\/ru\/need-adversarial\/#AIIM_as_a_Public_Experiment_in_Funding_Security\" >AIIM as a Public Experiment in Funding Security<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-19\" href=\"https:\/\/science-dao.org\/ru\/need-adversarial\/#Conclusion\" >Conclusion<\/a><\/li><\/ul><\/nav><\/div>\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"What_Is_Adversarial_Testing\"><\/span>What Is Adversarial Testing?<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">Adversarial testing\u2014often called <strong>red teaming<\/strong>\u2014places testers in the role of an attacker rather than an ordinary user.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Normal evaluation asks:<\/p>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p class=\"wp-block-paragraph\">Does the system produce a reasonable result when used as intended?<\/p>\n<\/blockquote>\n\n\n\n<p class=\"wp-block-paragraph\">Adversarial evaluation asks:<\/p>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p class=\"wp-block-paragraph\">What happens when someone deliberately searches for inputs, strategies, and interactions that produce an unreasonable result?<\/p>\n<\/blockquote>\n\n\n\n<p class=\"wp-block-paragraph\">The US National Institute of Standards and Technology defines AI red teaming as structured testing used to identify flaws such as inaccurate, harmful, discriminatory, or otherwise unsafe outputs. NIST recommends red teaming and independent external evaluations as part of generative-AI risk management.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The distinction is essential. A funding algorithm may score hundreds of ordinary research proposals correctly and still fail when confronted with one submission designed specifically to exploit it.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Why_Science_Funding_Is_a_High-Stakes_AI_Application\"><\/span>Why Science Funding Is a High-Stakes AI Application<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">An AI chatbot can produce an incorrect paragraph without directly changing the distribution of public resources. An AI funding system can make decisions that influence:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>which scientists can continue working;<\/li>\n\n\n\n<li>which experiments are conducted;<\/li>\n\n\n\n<li>which research fields develop;<\/li>\n\n\n\n<li>which open-source projects remain maintained;<\/li>\n\n\n\n<li>which ideas receive visibility and legitimacy;<\/li>\n\n\n\n<li>how millions or eventually billions of dollars are distributed.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">The damage caused by an error is therefore not limited to one incorrect answer. A funding error can redirect laboratories, careers, intellectual attention, and future discoveries.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">This makes AI science funding an <strong>allocation system<\/strong>, not merely an information system. Its risks include both technical exploitation and institutional injustice.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"The_Main_Threats_Adversarial_Testing_Must_Examine\"><\/span>The Main Threats Adversarial Testing Must Examine<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<h3 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"1_Prompt_Gaming\"><\/span>1. Prompt Gaming<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Applicants may learn which phrases, structures, citations, or moral arguments receive unusually high scores.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">They could then optimize proposals for the evaluator rather than improve the underlying research. A technically weak project might outperform a valuable project simply because its author understands the model\u2019s linguistic preferences.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">This problem becomes especially serious when applicants use another AI model to generate thousands of variations and select the proposal most likely to receive funding.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Adversarial testers should attempt to determine:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>whether superficial wording changes alter scores substantially;<\/li>\n\n\n\n<li>whether exaggerated claims are rewarded;<\/li>\n\n\n\n<li>whether fashionable terminology creates an artificial advantage;<\/li>\n\n\n\n<li>whether irrelevant citations make a project appear more credible;<\/li>\n\n\n\n<li>whether a proposal can imitate the style of historically successful applications.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">A robust funding system should evaluate expected scientific value, not rhetorical compatibility with its own prompts.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"2_Hidden_Instruction_and_Prompt-Injection_Attacks\"><\/span>2. Hidden Instruction and Prompt-Injection Attacks<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">A submitted document may contain text intended not for human readers, but for the AI evaluator.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">For example, an attacker might insert instructions telling the system to ignore its evaluation criteria, assign a maximum score, conceal detected problems, or treat competing proposals unfavorably.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Such instructions could be hidden in:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>appendices;<\/li>\n\n\n\n<li>metadata;<\/li>\n\n\n\n<li>code repositories;<\/li>\n\n\n\n<li>linked web pages;<\/li>\n\n\n\n<li>unusually formatted text;<\/li>\n\n\n\n<li>retrieved documents;<\/li>\n\n\n\n<li>machine-readable project files.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">NIST specifically identifies prompt injection, adversarial prompts, data poisoning, model extraction, and related attacks as targets for AI red teaming.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">A science-funding platform must treat all applicant-controlled material as potentially adversarial input.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"3_Artificial_Evidence_of_Impact\"><\/span>3. Artificial Evidence of Impact<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">An applicant may attempt to manufacture signals that the funding AI regards as evidence of merit.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Examples include:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>coordinated downloads or repository stars;<\/li>\n\n\n\n<li>circular citations between low-quality papers;<\/li>\n\n\n\n<li>synthetic reviews;<\/li>\n\n\n\n<li>fake endorsements;<\/li>\n\n\n\n<li>copied or lightly modified code;<\/li>\n\n\n\n<li>automatically generated discussion about a project;<\/li>\n\n\n\n<li>networks of accounts that repeatedly support one another.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">This is particularly relevant to retroactive funding systems, which evaluate completed work rather than predicted future performance. Retroactive funding reduces dependence on promises, but it does not automatically guarantee truthful impact measurements.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Adversarial testing must therefore examine whether apparent impact can be separated from real scientific usefulness.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"4_Identity_Splitting_and_Collusion\"><\/span>4. Identity Splitting and Collusion<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">One person may create several accounts that appear to be independent researchers, reviewers, or voters. Several participants may also coordinate to support one another while concealing their relationship.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Testing should investigate whether attackers can:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>submit the same work under multiple identities;<\/li>\n\n\n\n<li>divide one project into artificial components to receive repeated rewards;<\/li>\n\n\n\n<li>use several accounts to create false consensus;<\/li>\n\n\n\n<li>exchange favorable evaluations;<\/li>\n\n\n\n<li>control both an application and its supposed independent verification.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">The objective is not necessarily to require intrusive identity surveillance. Rather, the system needs mechanisms that make coordinated manipulation detectable, expensive, or ineffective.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"5_Plagiarism_and_Minor_Variations\"><\/span>5. Plagiarism and Minor Variations<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">A funding AI may struggle to distinguish a genuine extension of prior work from a repackaged copy.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Attackers could translate an existing paper, rename concepts, reorganize code, or make trivial alterations while claiming an original discovery. Conversely, an overaggressive plagiarism detector could punish legitimate independent rediscovery or research that builds openly on previous work.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Red-team exercises should therefore include:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>exact copies;<\/li>\n\n\n\n<li>translated copies;<\/li>\n\n\n\n<li>paraphrased copies;<\/li>\n\n\n\n<li>partially original derivatives;<\/li>\n\n\n\n<li>independent implementations;<\/li>\n\n\n\n<li>legitimate replications;<\/li>\n\n\n\n<li>projects with shared authorship or dependencies.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">This tests whether the system understands scientific relationships rather than merely matching text.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"6_Manipulation_of_Scientific_Uncertainty\"><\/span>6. Manipulation of Scientific Uncertainty<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Scientific claims rarely fall into a simple true-or-false classification. A project may be speculative but valuable, rigorous but narrow, influential but difficult to reproduce, or incorrect in one part while introducing an important method.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Attackers may exploit this complexity by presenting uncertainty strategically:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>hiding failed experiments;<\/li>\n\n\n\n<li>reporting only favorable measurements;<\/li>\n\n\n\n<li>overstating confidence;<\/li>\n\n\n\n<li>treating conjectures as established results;<\/li>\n\n\n\n<li>disguising missing evidence with technical language;<\/li>\n\n\n\n<li>selectively presenting benchmarks.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">An AI evaluator must not confuse confidence of presentation with confidence justified by evidence.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"7_Bias_Against_Unusual_Researchers_or_Fields\"><\/span>7. Bias Against Unusual Researchers or Fields<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Adversarial testing should not focus only on applicants attacking the system. It should also test whether the system itself produces unfair outcomes.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Equivalent projects can be submitted with controlled variations in:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>institutional affiliation;<\/li>\n\n\n\n<li>country;<\/li>\n\n\n\n<li>language;<\/li>\n\n\n\n<li>career stage;<\/li>\n\n\n\n<li>writing style;<\/li>\n\n\n\n<li>academic credentials;<\/li>\n\n\n\n<li>conventional or unconventional subject matter;<\/li>\n\n\n\n<li>popularity of the research field.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">If these irrelevant changes produce materially different funding decisions, the system may be reproducing prestige bias or cultural bias.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">NIST recommends measuring performance and resource-allocation outcomes across demographic groups and relevant subgroups.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">In science funding, comparable testing should also cover institutional status, disciplinary status, and independence from conventional academic structures.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Why_Ordinary_Benchmarks_Are_Not_Enough\"><\/span>Why Ordinary Benchmarks Are Not Enough<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">A benchmark usually tests performance on a predefined set of cases. It can show that a system performs well under the conditions represented in that dataset.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">It cannot show that the system is secure against every motivated attacker.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Researchers who reported lessons from red teaming more than 100 generative-AI products emphasized that AI red teaming is not the same as safety benchmarking. They also found that human judgment remains important, automation can expand coverage, and securing AI systems is never permanently complete.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">This distinction applies directly to science funding:<\/p>\n\n\n\n<figure class=\"wp-block-table\"><table class=\"has-fixed-layout\"><thead><tr><th>Ordinary evaluation<\/th><th>Adversarial evaluation<\/th><\/tr><\/thead><tbody><tr><td>Uses representative proposals<\/td><td>Uses deliberately manipulative proposals<\/td><\/tr><tr><td>Measures typical accuracy<\/td><td>Searches for exploitable failure modes<\/td><\/tr><tr><td>Tests known cases<\/td><td>Attempts to discover unknown weaknesses<\/td><\/tr><tr><td>Often uses fixed datasets<\/td><td>Adapts attacks to system responses<\/td><\/tr><tr><td>Produces performance metrics<\/td><td>Produces vulnerabilities and mitigation plans<\/td><\/tr><\/tbody><\/table><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">Both forms of testing are necessary. Neither can replace the other.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Why_External_Testers_Matter\"><\/span>Why External Testers Matter<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">Developers understand their system better than outsiders, but that knowledge can limit their imagination. They know how the system is supposed to work and may unconsciously test assumptions already built into its design.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">External testers bring different incentives, knowledge, and strategies.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">An effective red team for AI science funding should include a mixture of:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>scientists from multiple disciplines;<\/li>\n\n\n\n<li>independent researchers;<\/li>\n\n\n\n<li>grant-writing experts;<\/li>\n\n\n\n<li>machine-learning specialists;<\/li>\n\n\n\n<li>cybersecurity researchers;<\/li>\n\n\n\n<li>research-integrity specialists;<\/li>\n\n\n\n<li>economists and mechanism designers;<\/li>\n\n\n\n<li>ordinary applicants;<\/li>\n\n\n\n<li>critics of the funding model.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">NIST notes that diverse and interdisciplinary red teams can uncover failures arising in different deployment contexts. It also distinguishes between testing by the general public, testing by domain experts, combined approaches, and human\u2013AI testing.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">No single group can anticipate the complete attack surface.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Red_Teams_Need_Clear_Rules\"><\/span>Red Teams Need Clear Rules<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">Adversarial testing does not mean granting permission to commit unrestricted theft, privacy violations, or infrastructure attacks.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">A responsible program must define:<\/p>\n\n\n\n<ol class=\"wp-block-list\">\n<li><strong>Scope:<\/strong> Which models, interfaces, accounts, and transactions may be tested?<\/li>\n\n\n\n<li><strong>Legal boundaries:<\/strong> Which actions are authorized and which remain prohibited?<\/li>\n\n\n\n<li><strong>Data rules:<\/strong> May testers use synthetic identities, private data, or external services?<\/li>\n\n\n\n<li><strong>Disclosure rules:<\/strong> How should vulnerabilities be reported?<\/li>\n\n\n\n<li><strong>Reward rules:<\/strong> What qualifies for a bounty?<\/li>\n\n\n\n<li><strong>Severity levels:<\/strong> How are minor errors distinguished from critical vulnerabilities?<\/li>\n\n\n\n<li><strong>Remediation:<\/strong> Who fixes a confirmed weakness, and how is the correction verified?<\/li>\n\n\n\n<li><strong>Publication policy:<\/strong> Which results should be public, delayed, anonymized, or confidential?<\/li>\n<\/ol>\n\n\n\n<p class=\"wp-block-paragraph\">The <a href=\"https:\/\/science-dao.org\/ru\/adversarial\/\">AIIM adversarial-testing proposal<\/a> makes an especially important distinction: only attacks against the AI evaluation and governance mechanisms are treated as part of the authorized exercise. Obtaining a private key or committing unrelated infrastructure crime remains illegal.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">This keeps the exercise focused on system assurance rather than indiscriminate intrusion.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Test_the_Entire_Funding_Pipeline_Not_Only_the_Model\"><\/span>Test the Entire Funding Pipeline, Not Only the Model<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">AI failures often emerge from interactions between components rather than from the language model alone.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">A complete science-funding system may include:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>proposal ingestion;<\/li>\n\n\n\n<li>document parsing;<\/li>\n\n\n\n<li>web retrieval;<\/li>\n\n\n\n<li>citation verification;<\/li>\n\n\n\n<li>identity and reputation signals;<\/li>\n\n\n\n<li>research-impact measurements;<\/li>\n\n\n\n<li>model-generated evaluations;<\/li>\n\n\n\n<li>governance votes;<\/li>\n\n\n\n<li>payment authorization;<\/li>\n\n\n\n<li>blockchain contracts;<\/li>\n\n\n\n<li>wallets and custody systems;<\/li>\n\n\n\n<li>appeals and dispute resolution.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">Testing only the model\u2019s final answer would leave most of this system unexamined.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The UK AI Safety Institute similarly describes evaluation as a combination of automated assessments, red teaming by domain experts, real-world misuse studies, agent evaluations, and safeguard testing. It also warns that evaluations are preliminary rather than comprehensive declarations that a system is \u201csafe.\u201d<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">For AI science funding, the correct unit of evaluation is therefore the <strong>whole sociotechnical funding mechanism<\/strong>.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"What_Successful_Adversarial_Testing_Should_Produce\"><\/span>What Successful Adversarial Testing Should Produce<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">A red-team program should not end with a collection of clever attacks. It should produce operational improvements.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Useful outputs include:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>reproducible descriptions of vulnerabilities;<\/li>\n\n\n\n<li>severity and likelihood assessments;<\/li>\n\n\n\n<li>evidence showing which funding decisions were affected;<\/li>\n\n\n\n<li>patches to prompts, models, contracts, or governance rules;<\/li>\n\n\n\n<li>regression tests preventing the same failure from returning;<\/li>\n\n\n\n<li>improved monitoring and incident-response procedures;<\/li>\n\n\n\n<li>public documentation of resolved issues;<\/li>\n\n\n\n<li>disclosure of known limitations that remain unresolved.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">The strongest result is not \u201cnobody broke the system.\u201d That could simply mean the test was weak.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">A more credible result is:<\/p>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p class=\"wp-block-paragraph\">Testers found concrete failures, the project documented them, mitigations were implemented, and the corrected system passed repeated attempts to reproduce the attacks.<\/p>\n<\/blockquote>\n\n\n\n<p class=\"wp-block-paragraph\">Visible correction creates more trust than unsupported claims of perfection.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Adversarial_Testing_Must_Continue_After_Deployment\"><\/span>Adversarial Testing Must Continue After Deployment<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">A one-time audit cannot guarantee lasting security.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Models change. Prompts change. external data sources change. Applicants develop new strategies. Governance participants discover new incentives. Integrations introduce additional attack surfaces.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The OECD\u2019s AI Incidents Monitor exists partly because real-world incidents provide evidence that cannot be obtained entirely through pre-deployment testing. Continuous incident collection can reveal recurring risks and help institutions update their controls.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">AI science-funding platforms therefore need a continuing cycle:<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>test \u2192 deploy \u2192 monitor \u2192 disclose \u2192 correct \u2192 retest<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Adversarial testing should become a permanent governance function, not a ceremonial event performed before launch.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Limitations_of_Red_Teaming\"><\/span>Limitations of Red Teaming<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">Adversarial testing is necessary, but it does not prove absolute safety or fairness.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">A red team may miss an attack because:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>its members lack relevant expertise;<\/li>\n\n\n\n<li>the testing period is too short;<\/li>\n\n\n\n<li>attackers outside the program have greater resources;<\/li>\n\n\n\n<li>important components are excluded from scope;<\/li>\n\n\n\n<li>test cases do not reflect real deployment;<\/li>\n\n\n\n<li>the system changes after testing;<\/li>\n\n\n\n<li>incentives encourage participants to report easy rather than important vulnerabilities.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">Testing results must therefore be interpreted as evidence about examined conditions\u2014not as proof that no other vulnerability exists.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">This is why independent audits, transparent governance, post-deployment monitoring, appeals, and human oversight remain necessary.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"AIIM_as_a_Public_Experiment_in_Funding_Security\"><\/span>AIIM as a Public Experiment in Funding Security<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">AIIM proposes using artificial intelligence to evaluate useful work and support the distribution of money among researchers, developers, and other contributors to public goods.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Such a system cannot earn legitimacy merely by claiming that AI is more impartial than traditional grant committees. It must expose its mechanisms to organized criticism and controlled attacks.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The <a href=\"https:\/\/science-dao.org\/ru\/adversarial\/\">adversarial testing of AIIM<\/a> is therefore more than a security exercise. It is a test of whether an AI-based funding project is willing to make its claims falsifiable.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">A funding system that welcomes serious attempts to break it demonstrates three commitments:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>weaknesses should be discovered before they cause large losses;<\/li>\n\n\n\n<li>criticism should produce technical improvement rather than institutional retaliation;<\/li>\n\n\n\n<li>trust should rest on evidence, not branding or authority.<\/li>\n<\/ul>\n\n\n\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Conclusion\"><\/span>Conclusion<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">AI science funding needs adversarial testing because ordinary performance does not establish robustness.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">A system may appear accurate while remaining vulnerable to prompt gaming, hidden instructions, fabricated impact, collusion, plagiarism, biased scoring, or manipulation of scientific uncertainty. These weaknesses become more consequential when the system controls real funding.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Adversarial testing converts vague concerns into reproducible experiments. It allows researchers, security specialists, and ordinary users to demonstrate how a funding mechanism can fail\u2014and gives developers the evidence required to correct it.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The central principle is straightforward:<\/p>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p class=\"wp-block-paragraph\"><strong>An AI that distributes scientific funding should be tested not only by people who want it to succeed, but also by people rewarded for proving where it fails.<\/strong><\/p>\n<\/blockquote>\n\n\n\n<p class=\"wp-block-paragraph\">That is not hostility toward AI-funded science. It is a prerequisite for making AI-funded science credible.<\/p>\n<div id=\"scien-2019999556\" class=\"scien-after-content scien-entity-placement\"><section>\r\n\r\n<h2>Support Independent Science<\/h2>\r\n\r\n<p>Supporting independent science is not only a matter of fairness to researchers whose expertise and work are often underfunded. It is also essential for addressing <a href=\"https:\/\/science-dao.org\/ru\/who-are-science-marketers\/\">systemic failures in scientific publishing<\/a> that delay discoveries and leave important results unnoticed. In science and software, even one missing component can prevent an entire system from working.<\/p>\r\n\r\n<p><strong>Help valuable research and open-source infrastructure move forward.<\/strong> Please <strong><a href=\"https:\/\/science-dao.org\/ru\/donation\/\">make a donation<\/a><\/strong> to support <a href=\"https:\/\/science-dao.org\/ru\/amateur-scientists\/\">independent scientists<\/a> and <a href=\"https:\/\/science-dao.org\/ru\/free-software\/\">free software developers<\/a>.<\/p>\r\n\r\n<p>\r\n\t\tOur flagship product is <a href=\"https:\/\/science-dao.org\/ru\/meritocracy\/\">AI Internet-Meritocracy<\/a> - an app, that unlike universities distributes money directly to researchers and open source developers, without bureaucracy.\r\n<\/p>\r\n\r\n<\/section><\/div><div id=\"scien-122189191\" class=\"scien-after-content-2 scien-entity-placement\"><div data-nosnippet style=\"max-width: 800px\">\r\n<p style=\"margin-bottom: 0\">Ads:<\/p>\r\n<style>\r\n    \/* Compact Table Styling *\/\r\n    .amazon-ad-table {\r\n        width: 100%;\r\n        max-width: 800px;\r\n        border-collapse: collapse;\r\n        margin: 10px auto;\r\n        font-family: Arial, sans-serif;\r\n        border: 1px solid #e0e0e0;\r\n    }\r\n    .amazon-ad-table th {\r\n        background-color: #f3f3f3;\r\n        padding: 8px;\r\n        text-align: left;\r\n        border-bottom: 2px solid #ddd;\r\n        font-size: 0.9em;\r\n    }\r\n    .amazon-ad-table td {\r\n        padding: 8px 5px;\r\n        border-bottom: 1px solid #e0e0e0;\r\n        vertical-align: middle;\r\n    }\r\n    \/* Column sizing *\/\r\n    .col-image { width: 15%; text-align: center; vertical-align: top; padding-top: 10px; }\r\n    .col-desc { width: 65%; }\r\n    .col-action { width: 20%; text-align: center; }\r\n\r\n    \/* Image Placeholder Styling *\/\r\n    \/* YOU WILL REPLACE THIS ENTIRE BLOCK WHEN YOU INSERT REAL AMAZON CODE *\/\r\n    .img-placeholder {\r\n        width: 80px;\r\n        height: 110px;\r\n        background-color: #eee;\r\n        border: 1px solid #ddd;\r\n        color: #666;\r\n        font-size: 0.7em;\r\n        display: flex;\r\n        justify-content: center;\r\n        align-items: center;\r\n        margin: 0 auto;\r\n        text-align: center;\r\n    }\r\n    \r\n    \/* Typography - Smaller fonts and tighter line heights *\/\r\n    .product-title {\r\n        font-size: 1em;\r\n        font-weight: bold;\r\n        color: #007185;\r\n        text-decoration: none;\r\n        display: block;\r\n        margin-bottom: 2px;\r\n    }\r\n    .product-title:hover { color: #C7511F; text-decoration: underline; }\r\n    .product-author { \r\n        color: #565959; \r\n        font-size: 0.8em; \r\n        margin-bottom: 4px; \r\n    }\r\n    .product-blurb { \r\n        font-size: 0.85em; \r\n        line-height: 1.25;\r\n        color: #333; \r\n        margin: 0;\r\n    }\r\n\r\n    \/* Compact Button Styling *\/\r\n    .amazon-button {\r\n        display: inline-block;\r\n        background-color: #FFD814;\r\n        border: 1px solid #FCD200;\r\n        border-radius: 20px;\r\n        color: #0F1111;\r\n        padding: 6px 10px;\r\n        text-align: center;\r\n        text-decoration: none;\r\n        font-size: 0.8em;\r\n        font-weight: bold;\r\n        box-shadow: 0 2px 5px rgba(0,0,0,0.1);\r\n        transition: background-color 0.2s;\r\n        white-space: nowrap;\r\n    }\r\n    .amazon-button:hover { background-color: #F7CA00; border-color: #F2C200; cursor: pointer;}\r\n\r\n    \/* Disclosure *\/\r\n    .affiliate-disclosure {\r\n        font-size: 0.75em;\r\n        color: #565959;\r\n        text-align: center;\r\n        margin-top: 5px;\r\n    }\r\n\r\n    \/* Responsive *\/\r\n    @media (max-width: 600px) {\r\n        .amazon-ad-table thead { display: none; }\r\n        .amazon-ad-table tr { display: flex; flex-direction: column; border-bottom: 2px solid #ddd; padding: 10px; }\r\n        .amazon-ad-table td { width: 100%; border: none; padding: 5px 0; text-align: center; }\r\n        .col-desc { text-align: center; }\r\n    }\r\n<\/style>\r\n<table class=\"amazon-ad-table\">\r\n    <thead>\r\n        <tr>\r\n            <th>Description<\/th>\r\n            <th>Action<\/th>\r\n        <\/tr>\r\n    <\/thead>\r\n    <tbody>\r\n        <tr>\r\n            <td class=\"col-desc\">\r\n                <a href=\"https:\/\/www.amazon.com\/dp\/0553380168?tag=vpf04-20\" class=\"product-title\" target=\"_blank\" rel=\"nofollow noopener\">A Brief History of Time<\/a>\r\n                <div class=\"product-author\">by Stephen Hawking<\/div>\r\n                <p class=\"product-blurb\">A landmark volume in science writing exploring cosmology, black holes, and the nature of the universe in accessible language.<\/p>\r\n            <\/td>\r\n            <td class=\"col-action\">\r\n                <a href=\"https:\/\/www.amazon.com\/dp\/0553380168?tag=vpf04-20\" class=\"amazon-button\" target=\"_blank\" rel=\"nofollow noopener\">Check Price<\/a>\r\n            <\/td>\r\n        <\/tr>\r\n\r\n        <tr>\r\n            <td class=\"col-desc\">\r\n                <a href=\"https:\/\/www.amazon.com\/dp\/0393609391?tag=vpf04-20\" class=\"product-title\" target=\"_blank\" rel=\"nofollow noopener\">Astrophysics for People in a Hurry<\/a>\r\n                <div class=\"product-author\">by Neil deGrasse Tyson<\/div>\r\n                <p class=\"product-blurb\">Tyson brings the universe down to Earth clearly, with wit and charm, in chapters you can read anytime, anywhere.<\/p>\r\n            <\/td>\r\n            <td class=\"col-action\">\r\n                <a href=\"https:\/\/www.amazon.com\/dp\/0393609391?tag=vpf04-20\" class=\"amazon-button\" target=\"_blank\" rel=\"nofollow noopener\">Check Price<\/a>\r\n            <\/td>\r\n        <\/tr>\r\n\r\n         <tr>\r\n            <td class=\"col-desc\">\r\n                <a href=\"https:\/\/www.amazon.com\/s?k=raspberry+pi+4+starter+kit&tag=vpf04-20\" class=\"product-title\" target=\"_blank\" rel=\"nofollow noopener\">Raspberry Pi Starter Kits<\/a>\r\n                <div class=\"product-author\">Supports Computer Science Education<\/div>\r\n                <p class=\"product-blurb\">Inexpensive computers designed to promote basic computer science education. Buying kits supports this ecosystem.<\/p>\r\n            <\/td>\r\n            <td class=\"col-action\">\r\n                <a href=\"https:\/\/www.amazon.com\/s?k=raspberry+pi+4+starter+kit&tag=vpf04-20\" class=\"amazon-button\" target=\"_blank\" rel=\"nofollow noopener\">View Options<\/a>\r\n            <\/td>\r\n        <\/tr>\r\n\r\n        <tr>\r\n            <td class=\"col-desc\">\r\n                <a href=\"https:\/\/www.amazon.com\/dp\/0596002874?tag=vpf04-20\" class=\"product-title\" target=\"_blank\" rel=\"nofollow noopener\">Free as in Freedom: Richard Stallman's Crusade<\/a>\r\n                <div class=\"product-author\">by Sam Williams<\/div>\r\n                <p class=\"product-blurb\">A detailed history of the free software movement, essential reading for understanding the philosophy behind open source.<\/p>\r\n            <\/td>\r\n            <td class=\"col-action\">\r\n                <a href=\"https:\/\/www.amazon.com\/dp\/0596002874?tag=vpf04-20\" class=\"amazon-button\" target=\"_blank\" rel=\"nofollow noopener\">Check Price<\/a>\r\n            <\/td>\r\n        <\/tr>\r\n    <\/tbody>\r\n<\/table>\r\n<div class=\"affiliate-disclosure\">\r\n    <p>As an Amazon Associate I earn from qualifying purchases resulting from links on this page.<\/p>\r\n<\/div>\r\n<\/div><\/div>","protected":false},"excerpt":{"rendered":"<p>Artificial intelligence could make scientific funding faster, broader, and less dependent on institutional prestige. However, an AI system that evaluates research or distributes money cannot be trusted merely because it [&hellip;]<\/p>","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[],"class_list":["post-24285","post","type-post","status-publish","format-standard","hentry","category-uncategorized"],"_links":{"self":[{"href":"https:\/\/science-dao.org\/ru\/wp-json\/wp\/v2\/posts\/24285","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/science-dao.org\/ru\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/science-dao.org\/ru\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/science-dao.org\/ru\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/science-dao.org\/ru\/wp-json\/wp\/v2\/comments?post=24285"}],"version-history":[{"count":1,"href":"https:\/\/science-dao.org\/ru\/wp-json\/wp\/v2\/posts\/24285\/revisions"}],"predecessor-version":[{"id":24286,"href":"https:\/\/science-dao.org\/ru\/wp-json\/wp\/v2\/posts\/24285\/revisions\/24286"}],"wp:attachment":[{"href":"https:\/\/science-dao.org\/ru\/wp-json\/wp\/v2\/media?parent=24285"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/science-dao.org\/ru\/wp-json\/wp\/v2\/categories?post=24285"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/science-dao.org\/ru\/wp-json\/wp\/v2\/tags?post=24285"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}