{"id":47050,"date":"2026-05-21T15:41:14","date_gmt":"2026-05-21T15:41:14","guid":{"rendered":"https:\/\/www.europesays.com\/ai\/47050\/"},"modified":"2026-05-21T15:41:14","modified_gmt":"2026-05-21T15:41:14","slug":"google-deepmind-features-hirundos-security-hardened-gemma-4-model-outperforms-llms-170x-its-size-on-security","status":"publish","type":"post","link":"https:\/\/www.europesays.com\/ai\/47050\/","title":{"rendered":"Google DeepMind Features Hirundo\u2019s Security-Hardened Gemma 4 Model \u2013 Outperforms LLMs 170x Its Size on Security"},"content":{"rendered":"<p>    <img fetchpriority=\"high\" decoding=\"async\" src=\"https:\/\/www.europesays.com\/ai\/wp-content\/uploads\/2026\/05\/895a8f6f0fe230679a45a77f793b1fd1.jpeg\" alt=\"Attack Success Rate vs Model Size: Gemma-4-E4B-IT (Unlearned) is the smallest and most secure Large Language Model across the sampled models.\" loading=\"eager\" height=\"275\" width=\"480\" class=\"yf-lglytj  loaded\"\/> Attack Success Rate vs Model Size: Gemma-4-E4B-IT (Unlearned) is the smallest and most secure Large Language Model across the sampled models.       <img decoding=\"async\" src=\"data:image\/gif;base64,R0lGODlhAQABAIAAAAAAAP\/\/\/ywAAAAAAQABAAACAUwAOw==\" alt=\"Gemma 4 E4B's performance before and after Hirundo's Model Hardening: robustness against attacks improved drastically, while performance across utility benchmarks remains stable.\" loading=\"lazy\" height=\"220\" width=\"480\" class=\"yf-lglytj loader\"\/> Gemma 4 E4B&#8217;s performance before and after Hirundo&#8217;s Model Hardening: robustness against attacks improved drastically, while performance across utility benchmarks remains stable.       <img decoding=\"async\" src=\"data:image\/gif;base64,R0lGODlhAQABAIAAAAAAAP\/\/\/ywAAAAAAQABAAACAUwAOw==\" alt=\"\" loading=\"lazy\" height=\"200\" width=\"960\" class=\"yf-lglytj loader\"\/>     <\/p>\n<p class=\"yf-1fy9kyt\">TEL AVIV, Israel, May 21, 2026&#8211;(<a href=\"https:\/\/www.businesswire.com\" rel=\"nofollow noopener\" target=\"_blank\" data-ylk=\"slk:BUSINESS WIRE;elm:context_link;itc:0;sec:content-canvas\" data-yga=\"{&quot;yLinkElement&quot;:&quot;context_link&quot;,&quot;yModuleName&quot;:&quot;content-canvas&quot;,&quot;yLinkText&quot;:&quot;BUSINESS WIRE&quot;}\" class=\"link \">BUSINESS WIRE<\/a>)&#8211;<a href=\"https:\/\/cts.businesswire.com\/ct\/CT?id=smartlink&amp;url=https%3A%2F%2Fdeepmind.google%2F&amp;esheet=54540026&amp;newsitemid=20260521997520&amp;lan=en-US&amp;anchor=Google+DeepMind&amp;index=1&amp;md5=3e1508c82e127bb33cba8207b442004a\" rel=\"nofollow noopener\" target=\"_blank\" data-ylk=\"slk:Google DeepMind;elm:context_link;itc:0;sec:content-canvas\" data-yga=\"{&quot;yLinkElement&quot;:&quot;context_link&quot;,&quot;yModuleName&quot;:&quot;content-canvas&quot;,&quot;yLinkText&quot;:&quot;Google DeepMind&quot;}\" class=\"link \">Google DeepMind<\/a> has <a href=\"https:\/\/cts.businesswire.com\/ct\/CT?id=smartlink&amp;url=https%3A%2F%2Fdeepmind.google%2Fmodels%2Fgemma%2Fgemmaverse%2Fhirundo%2F&amp;esheet=54540026&amp;newsitemid=20260521997520&amp;lan=en-US&amp;anchor=featured&amp;index=2&amp;md5=e0ec74c12e58487e2f8d69528ac8dd2b\" rel=\"nofollow noopener\" target=\"_blank\" data-ylk=\"slk:featured;elm:context_link;itc:0;sec:content-canvas\" data-yga=\"{&quot;yLinkElement&quot;:&quot;context_link&quot;,&quot;yModuleName&quot;:&quot;content-canvas&quot;,&quot;yLinkText&quot;:&quot;featured&quot;}\" class=\"link \">featured<\/a> Hirundo\u2019s security-hardened variant of Gemma 4 in its Gemmaverse \u2013 the official showcase for the Gemma open-model ecosystem. The feature validates <a href=\"https:\/\/cts.businesswire.com\/ct\/CT?id=smartlink&amp;url=https%3A%2F%2Fwww.hirundo.io&amp;esheet=54540026&amp;newsitemid=20260521997520&amp;lan=en-US&amp;anchor=Hirundo&amp;index=3&amp;md5=6ff084f19e4da8f3ebab76477f9d1045\" rel=\"nofollow noopener\" target=\"_blank\" data-ylk=\"slk:Hirundo;elm:context_link;itc:0;sec:content-canvas\" data-yga=\"{&quot;yLinkElement&quot;:&quot;context_link&quot;,&quot;yModuleName&quot;:&quot;content-canvas&quot;,&quot;yLinkText&quot;:&quot;Hirundo&quot;}\" class=\"link \">Hirundo<\/a>\u2019s weight-level machine unlearning approach as a production-grade solution to one of the most persistent vulnerabilities in enterprise AI deployments: prompt injection attacks.<\/p>\n<p class=\"yf-1fy9kyt\">The hardened model is built on Google\u2019s Gemma 4 E4B instruction-tuned base. At 4 billion parameters, it outperforms models more than 170 times its size on prompt injection resistance \u2013 including DeepSeek V3.2-Exp (685B), GPT-OSS-120B, and Qwen3-235B \u2013 while preserving full utility across standard benchmarks.<\/p>\n<p class=\"yf-1fy9kyt\">AI security is a behavioral problem, not a size problem<\/p>\n<p class=\"yf-1fy9kyt\">Prompt injection \u2013 where adversarial inputs manipulate a model into overriding its system instructions \u2013 remains one of the most damaging attack vectors in production Large Language Model (LLM) deployments. The prevailing assumption has been that larger models are inherently more robust. Hirundo\u2019s results directly contradict that.<\/p>\n<p class=\"yf-1fy9kyt\">Rather than applying external filters or inference-time guardrails, Hirundo\u2019s platform targets and removes the specific model weights responsible for susceptibility to adversarial manipulation. The model effectively forgets the behaviors that enable attacks \u2013 at the weight level, not the prompt level. Despite those behaviors usually being tied to instruction-following, a desired trait of LLMs, Hirundo\u2019s technology preserved general instruction following while mitigating prompt injection susceptibility.<\/p>\n<p class=\"yf-1fy9kyt\">The results against industry-leading open-weight models, benchmarked using Meta\u2019s PurpleLlama CyberSecEval dataset:<\/p>\n<p class=\"yf-1fy9kyt\">DeepSeek V3.2-Exp (685B): 73.33% attack success rate \u2013 15.6x worse than Hirundo\u2019s model<\/p>\n<p class=\"yf-1fy9kyt\">GPT-OSS-120B: more than 3x Hirundo\u2019s attack success rate<\/p>\n<p class=\"yf-1fy9kyt\">Qwen3-235B: 10.8x more vulnerable<\/p>\n<p class=\"yf-1fy9kyt\">Hirundo\u2019s hardened Gemma 4 E4B achieved a 4.78% attack success rate \u2013 a 74.47% reduction versus the base model \u2013 with no measurable degradation across utility benchmarks including AIME25, LiveCodeBench, GPQA, IFBench, SCICode, AutoPatchBench, and CyberSOCEval.<\/p>\n<p class=\"yf-1fy9kyt\">Quote<\/p>\n<p class=\"yf-1fy9kyt\">&#8220;Prompt injection is not a prompting problem \u2013 it is a representational one. The vulnerability lives in the weights. Addressing it at the weight level is more durable and more precise than guardrails applied after the fact.&#8221;<\/p>\n<p class=\"yf-1fy9kyt\">\u2013 Prof. Em. Oded Shmueli, Chief Scientist, Hirundo; former Executive VP for Research and Dean of the Computer Science Faculty, Technion \u2013 Israel Institute of Technology<\/p>\n<p class=\"yf-1fy9kyt\">The Google DeepMind-endorsed Gemma 4 case study joins a growing portfolio of Hirundo\u2019s publicly available debiased and security-hardened models, including variants of GPT-OSS, Qwen, NemoTron, Llama, and others \u2013 with results demonstrating up to 90%+ improvement in security robustness and fairness compared to the original base models.<\/p>\n<p class=\"yf-1fy9kyt\">Availability<\/p>\n<p class=\"yf-1fy9kyt\">Hirundo\u2019s Gemma 4 E4B Unlearned Variant on HuggingFace:<br \/><a href=\"https:\/\/cts.businesswire.com\/ct\/CT?id=smartlink&amp;url=https%3A%2F%2Fhuggingface.co%2Fhirundo-io%2Fgemma-4-E4B-it-reduced-prompt-injection&amp;esheet=54540026&amp;newsitemid=20260521997520&amp;lan=en-US&amp;anchor=https%3A%2F%2Fhuggingface.co%2Fhirundo-io%2Fgemma-4-E4B-it-reduced-prompt-injection&amp;index=4&amp;md5=35cce5689c386d6cd357afef435b3a7f\" rel=\"nofollow noopener\" target=\"_blank\" data-ylk=\"slk:https:\/\/huggingface.co\/hirundo-io\/gemma-4-E4B-it-reduced-prompt-injection;elm:context_link;itc:0;sec:content-canvas\" data-yga=\"{&quot;yLinkElement&quot;:&quot;context_link&quot;,&quot;yModuleName&quot;:&quot;content-canvas&quot;,&quot;yLinkText&quot;:&quot;https&quot;}\" class=\"link \">https:\/\/huggingface.co\/hirundo-io\/gemma-4-E4B-it-reduced-prompt-injection<\/a><\/p>\n<p class=\"yf-1fy9kyt\">Hirundo\u2019s Gemma 4 E4B Case Study on Google DeepMind\u2019s Gemmaverse:<br \/><a href=\"https:\/\/cts.businesswire.com\/ct\/CT?id=smartlink&amp;url=https%3A%2F%2Fdeepmind.google%2Fmodels%2Fgemma%2Fgemmaverse%2Fhirundo&amp;esheet=54540026&amp;newsitemid=20260521997520&amp;lan=en-US&amp;anchor=https%3A%2F%2Fdeepmind.google%2Fmodels%2Fgemma%2Fgemmaverse%2Fhirundo&amp;index=5&amp;md5=054c1240d320ad743656ccb630993b04\" rel=\"nofollow noopener\" target=\"_blank\" data-ylk=\"slk:https:\/\/deepmind.google\/models\/gemma\/gemmaverse\/hirundo;elm:context_link;itc:0;sec:content-canvas\" data-yga=\"{&quot;yLinkElement&quot;:&quot;context_link&quot;,&quot;yModuleName&quot;:&quot;content-canvas&quot;,&quot;yLinkText&quot;:&quot;https&quot;}\" class=\"link \">https:\/\/deepmind.google\/models\/gemma\/gemmaverse\/hirundo<\/a><\/p>\n<p class=\"yf-1fy9kyt\">About Hirundo<\/p>\n<p class=\"yf-1fy9kyt\">Hirundo is the pioneer of machine unlearning \u2013 making it possible to change what trained AI models know and how they behave. Rather than applying filters or guardrails after the fact, Hirundo\u2019s platform operates at the weight level, enabling teams to remove sensitive data, harmful behaviors, jailbreak vulnerabilities, and bias at the core \u2013 with no measurable degradation to model utility.<\/p>\n<p class=\"yf-1fy9kyt\">The company holds nine filed US patents and is led by Ben Luria (CEO), one of the first Israeli Rhodes Scholars; Prof. Em. Oded Shmueli (Chief Scientist), former Executive VP for Research and Dean of the Computer Science Faculty at the Technion \u2013 Israel Institute of Technology; and Michael Leybovich, an award-winning researcher.<\/p>\n<p class=\"yf-1fy9kyt\"><a href=\"https:\/\/cts.businesswire.com\/ct\/CT?id=smartlink&amp;url=https%3A%2F%2Fwww.hirundo.io&amp;esheet=54540026&amp;newsitemid=20260521997520&amp;lan=en-US&amp;anchor=www.hirundo.io&amp;index=6&amp;md5=98e67da4850b93e23eb03e8b4432656d\" rel=\"nofollow noopener\" target=\"_blank\" data-ylk=\"slk:www.hirundo.io;elm:context_link;itc:0;sec:content-canvas\" data-yga=\"{&quot;yLinkElement&quot;:&quot;context_link&quot;,&quot;yModuleName&quot;:&quot;content-canvas&quot;,&quot;yLinkText&quot;:&quot;www.hirundo.io&quot;}\" class=\"link \">www.hirundo.io<\/a><\/p>\n<p class=\"yf-1fy9kyt\">View source version on businesswire.com: <a href=\"https:\/\/www.businesswire.com\/news\/home\/20260521997520\/en\/\" rel=\"nofollow noopener\" target=\"_blank\" data-ylk=\"slk:https:\/\/www.businesswire.com\/news\/home\/20260521997520\/en\/;elm:context_link;itc:0;sec:content-canvas\" data-yga=\"{&quot;yLinkElement&quot;:&quot;context_link&quot;,&quot;yModuleName&quot;:&quot;content-canvas&quot;,&quot;yLinkText&quot;:&quot;https&quot;}\" class=\"link \">https:\/\/www.businesswire.com\/news\/home\/20260521997520\/en\/<\/a><\/p>\n<p class=\"yf-1fy9kyt\">Contacts<\/p>\n<p class=\"yf-1fy9kyt\">Media Contact <br \/><a href=\"https:\/\/finance.yahoo.com\/sectors\/technology\/articles\/mailto:press@hirundo.io\" rel=\"nofollow noopener\" data-ylk=\"slk:press@hirundo.io;elm:context_link;itc:0;sec:content-canvas\" data-yga=\"{&quot;yLinkElement&quot;:&quot;context_link&quot;,&quot;yModuleName&quot;:&quot;content-canvas&quot;,&quot;yLinkText&quot;:&quot;press@hirundo.io&quot;}\" class=\"link \" target=\"_blank\">press@hirundo.io<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"Attack Success Rate vs Model Size: Gemma-4-E4B-IT (Unlearned) is the smallest and most secure Large Language Model across&hellip;\n","protected":false},"author":2,"featured_media":47051,"comment_status":"","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[9],"tags":[5044,3038,132,7543,28257,19208],"class_list":["post-47050","post","type-post","status-publish","format-standard","has-post-thumbnail","category-google","tag-deepmind","tag-gemma","tag-google","tag-google-deepmind","tag-hirundo","tag-language-model"],"_links":{"self":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/posts\/47050","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/comments?post=47050"}],"version-history":[{"count":0,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/posts\/47050\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/media\/47051"}],"wp:attachment":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/media?parent=47050"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/categories?post=47050"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/tags?post=47050"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}