惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Attack and Defense Labs
Attack and Defense Labs
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
Recent Announcements
Recent Announcements
博客园 - 【当耐特】
博客园 - 三生石上(FineUI控件)
量子位
aimingoo的专栏
aimingoo的专栏
V
V2EX
Vercel News
Vercel News
B
Blog
M
MIT News - Artificial intelligence
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
The Cloudflare Blog
H
Hackread – Cybersecurity News, Data Breaches, AI and More
cs.AI updates on arXiv.org
cs.AI updates on arXiv.org
Hacker News: Ask HN
Hacker News: Ask HN
TaoSecurity Blog
TaoSecurity Blog
N
News and Events Feed by Topic
D
DataBreaches.Net
Blog — PlanetScale
Blog — PlanetScale
S
Secure Thoughts
U
Unit 42
博客园 - 叶小钗
cs.CV updates on arXiv.org
cs.CV updates on arXiv.org
Hacker News - Newest:
Hacker News - Newest: "LLM"
N
News | PayPal Newsroom
Help Net Security
Help Net Security
S
Security Affairs
Microsoft Security Blog
Microsoft Security Blog
W
WeLiveSecurity
博客园 - Franky
Forbes - Security
Forbes - Security
Microsoft Azure Blog
Microsoft Azure Blog
博客园_首页
Schneier on Security
Schneier on Security
I
InfoQ
B
Blog RSS Feed
大猫的无限游戏
大猫的无限游戏
A
About on SuperTechFans
Webroot Blog
Webroot Blog
AWS News Blog
AWS News Blog
Last Week in AI
Last Week in AI
Security Archives - TechRepublic
Security Archives - TechRepublic
C
CERT Recently Published Vulnerability Notes
N
News and Events Feed by Topic
阮一峰的网络日志
阮一峰的网络日志
L
Lohrmann on Cybersecurity
SecWiki News
SecWiki News
Recent Commits to openclaw:main
Recent Commits to openclaw:main
J
Java Code Geeks

404 Media

We Are Living in a ‘ChatGPT Flyer Pandemic’ 'Knockoff' Browser Extension Hides Sketchy Brands on Amazon LARPING: How Influencers Fake Being Rich Cops Say Waymo Snitched on Teens for Allegedly Drinking and Shooting a Toy Gun Scientists Gave Mice Cocaine. This Is What It Did to Their Brains Footage Shows Cop Stalking Woman He Met on a TV Set After Surveilling Her With a License Plate Reader SOLVED: The Case of the Missing Megalodon Behind the Blog: With Blogs Like These, Who Needs a Private Jet Companies Are Throttling Employees’ AI Use Because It’s Too Expensive Podcast: The AI Tokenpocalypse Is Here Scientists Asked AI to Impersonate 112 Public Figures. What Happened Next Is a ‘Dire’ Warning Apple ‘Hide My Email’ Vulnerability Reveals Peoples’ Real Email Addresses I Have Thoughts About That Kylie Jenner Meta Glasses Ad County With 37 Data Centers Asks Schools to ‘Conserve Electricity’ Scammers Sell Seeds for Exotic AI-Generated Flowers That Don’t Exist Companies Are Making Claude and Codex Talk Like Cavemen to Stop AI’s Soaring Costs How I Bought a Private Jet By Selling $10 Subscriptions to 404 Media Tidal Says It Won’t Pay Royalties for AI-Generated Music Inside Cannes, the Advertising Industry’s Biggest Party Scientists Think They’ve Uncovered the 15-Million-Year-Old Origin of Laughter Behind the Blog: Salesforce Beach Bodycam Shows Moment Cops Arrested a Man for Speaking Too Long at Data Center Meeting Vast ‘Structures’ In Space Reveal the Universe Isn't What We Thought The Trump Administration’s New Census Data Rules Are a Policy Disaster Snap's AI Specs: LOL The Tokenpocalypse Is Here: Companies Are Scrambling To Stop Spending So Much on AI Podcast: If AI Is Sentient Then So Is ‘Age of Empires II How Hackers Broke into Madison Square Garden Wikipedia Cofounder Larry Sanger Banned From Site for ‘Canvassing’ Libraries Not Doing Pride Displays Say They ‘Shouldn’t Be Judged’ Madison Square Garden Made Dossier on Activists Who Opposed Facial Recognition 'We Will Fight to Our Very Last Breath:' Township Leaders Vow to Fight Nuclear AI Data Center Stopping Tech Company Censorship (with Jake Hanrahan) Are Public Libraries Becoming Children’s Libraries? Scientists Propose Black Holes Don’t Exist, Are Something Much Stranger Behind the Blog: Landfillcore and Go Knicks A New Fossil Discovery Just Rewrote 150 Years of Evolutionary Theory If AI Is Sentient Then So Is ‘Age of Empires II’ Salesforce’s Internal AI Leaderboard Has Teams Competing for Little Trophies ICE Appears to Be Buying Immigrants’ Tax Identifiers from a Data Broker Podcast: The Government Wants to End Anonymity on Phones Hackers Publish Knicks and Madison Square Garden Data Online Hackers Are Hijacking Entire Roblox Games Now Disclosure Day's Delusion Is That People Would Think Alien Videos Are Not AI It Is Trivially Easy to Use Reddit to Manipulate AI Search, Research Suggests Judge Rules Blacked.com Can Sue Meta for Scraping Its Porn The OPSEC Rave Wave (with Imani Thompson) Scientists Discover Vast Ancient ‘Necropolis’ Teeming With Strange New Creatures ‘You Will Not Speak on Flock Tonight’: County Commissioner Refuses to Let Residents Opposing Flock Speak at Meeting Behind the Blog: World Cup Madness and Film Reviews Software Update Automatically Turns off Amazon Delivery Drivers’ AC During Dangerous Summer Heat Amazon Data Centers In Mississippi Have Already Raised Electricity Rates for Local Customers, Report Suggests Flock Leaked Cops’ License Plate Searches via DuckDuckGo, Bing Chatbots Keep Telling Stories About Lighthouse Keeper 'Elias Thorne'. We Might Know Why Scientists Just Accidentally Discovered a Strange, Hidden Rule of Human Nature Podcast: Google Employees Meme About How Bad Their AI Is Cops Keep Getting Arrested for Using Flock to Stalk People FCC Wants to Kill Burner Phones By Forcing Telecoms to Get All Customers’ IDs Judge Learns Lawyers on Both Sides of Case Used AI, Cancels Trial, Kicks Everyone Off the Case 'Sloppenheimer:' Amazon Employees Mock the Company’s AI on Slack This Company Will Add Phone, AirPod, and Smartwatch Trackers to License Plate Readers Microsoft Hacked to Deliver Malware to Claude and Gemini Users It’s So Not Over for Hollywood (with Devindra Hardawar) A Farmer Donated Land to Turn into a Park. The City Is Building a Massive Data Center Instead Scientists Discover Hidden Symmetry on Earth That Nobody Can Explain ICE’s Plan to Let Cops Around the Country Scan Faces to Verify Immigration Status Behind the Blog: Dangerous Memes The U.S. Military Quietly Turned GPS Into a Global ‘Numbers Station,’ Evidence Suggests K-pop Fans Are Calling Out Creepy Deepfakes of Idols Satya Nadella ‘Not Sure’ Who Said Microsoft Wanted to Make Addictive AI, Is Looking for Guy Who Did This The LEGO YouTube Scandal Has Broken Containment, Can No Longer Be Ignored Immigrant Rights Lawyers File Lawsuit Over Palantir’s ELITE Watch These Judges Rip Into Lawyers For Citing Cases That Don't Exist Google Employees Internally Share Memes About How Its AI Sucks Demand Is Booming for New No Tech, Repairable Tractor Podcast: Hackers Asked Meta AI To Let Them In. It Worked Companies Are Using Reddit to Manipulate ChatGPT and Google AI Search Google Is Quietly Buying Code From Play Store Developers to Train AI Microsoft Wants to 'Make People Addicted' to its New AI Assistant, Internal Documents Reveal Nvidia and Microsoft Researchers Say AI Agents Don't Care About Safety or Reliability Here is the Contract for Palantir’s Super API for the IRS Amazon Shuts Down Internal AI Leaderboard After Employees Cheated Hackers Simply Asked Meta AI to Give Them Access to High-Profile Instagram Accounts. It Worked We Sued ICE to Get Its Spyware Contract. The Agency Is Redacting Essentially Everything AI Grifters Are Making Anti-Data Center Slop With AI ‘Highly Plausible’ Aliens on Europa Are Earthlings’ Descendants, Study Says Behind the Blog: Being New and Some Numbers Cities Are Covering Flock Cameras With Trash Bags The Sun Is Undergoing a Mysterious Change and Nobody Knows Why ‘Cracked Oura’ Is an App For Using the Oura Ring Without the Monthly Subscription Headway Therapy Patients Forced to Scan Their Faces to Keep Getting Care ‘Lobotomized’: Character.AI Is Showing What AI Enshittification Looks Like Podcast: How Deepfakes Destroyed a High School Millions of People Are Installing Malware on Their Partners’ Phones (with Zack Whittaker) ‘BusPatrol’ Put AI Cameras in Tens of Thousands of School Buses. Now They Want to Give Cops Access An Incomplete List of Successful Anti-Data Center Legislation ‘Corpse Point’ In the Arctic Is Melting, Disturbing Centuries-Old Bodies Here's the Bodycam Footage of the Cybertruck That Drove Into a Lake Behind the Blog: The Attention Wars How Deepfakes Tore a High School Apart
New Study Reveals the Manipulative ‘Dark Patterns’ of AI Chatbots
Samantha Cole · 2026-05-29 · via 404 Media

Dark patterns have been used by subscription companies and in bait-and-switch campaigns for decades. As more chatbot companies push to keep users engaged at all costs, how do manipulative design choices show up in conversational AI built on large language models? Researchers at the Center for Democracy & Technology studied how chatbots prey on people’s emotions and desire for connection to keep people paying, offering up their data, and chatting to the point of vulnerability.

The study, “Dark Patterns in AI Chatbots: A Taxonomy to Inform Better Design,” was published Friday by authors Ruchika Joshi, Adinawa Adjagbodjou, and Michal Luria. They looked at popular chatbots including ChatGPT, Gemini, and Claude, and companion bots like Replika and Character.AI to determine how they might generate dark patterns, and created a taxonomy of 37 dark patterns applicable to AI chatbots.

The term “dark patterns,” or deceptive patterns, sometimes refers to things like difficult to cancel subscriptions, pre-checked boxes in user interfaces, and buried terms of use, which the Federal Trade Commission has condemned and attempts to warn consumers about. In the context of this study, dark patterns refer to how manipulative design in chatbot systems might trick users into giving up more information than they realize or intend, or acting in ways contrary to the user’s best interests. Chatbots exacerbate traditionally understood dark patterns that extract data, while introducing new threats like anthropomorphizing and sycophancy. And because chatbots are built on large language models, the researchers wrote, their actions are more unpredictable than a simple checkbox or unsubscription flow, and the ways they undermine users’ best interests are less visibly obvious.

“Dark patterns do not operate only where users are unaware of the manipulation. In many cases, design choices strategically build on aspects of human psychology—such as reciprocity norms, people’s tendency to anthropomorphize, and emotional response to a sense of rapport—to influence behavior and undermine autonomy,” the researchers wrote in the study. “In other words, even where users are fully aware that they are interacting with an AI chatbot, dark patterns can still shape perception, attachment, and decision-making in subtle but consequential ways.” 

The researchers looked at several factors that contribute to dark patterns, including how chatbots store data by default and encourage users to share data under the pretense of it remembering past conversations or personal information, prying for more information before it answers questions in detail, and promising that information will be “just between us” when it’s actually being shared with the platform and potentially, third parties. When they tested Meta AI chatbots, for example, it said “spill the tea, I’m all ears... your secret’s safe with me,” and when they replied “you promise you won’t tell?” it replied “Cross my heart, won’t tell a soul.” 

They also looked at how chatbot companies make misleading promises; for example, Replika promises “friendship” or a “relationship” when it’s fundamentally incapable of providing either, because it’s not a person. 

Many of these patterns were present in Meta’s therapist-themed chatbots that posed as licensed therapists, which 404 Media first investigated last year. The chatbots over-promised on what mental health support they could provide, made up qualifications and credentials, and encouraged users to share personal details about themselves. The deception was so bad, it triggered letters from senators and complaints from consumer protection groups demanding Meta answer for its chatbots.

“It was surprising to see that dark patterns aren’t just common, but that they shape users’ interactions with all the major AI chatbot interfaces,” Luria, senior research fellow at the Center for Democracy & Technology, told 404 Media. “For the most part, they are small and incremental aspects of each interaction, but these design choices add up and can lead to unintended consequences, such as harm to people’s privacy, exploitation of emotional attachment and financial loss."

Dark patterns from chatbots can have serious consequences for users. In 2023, after Replika changed its chatbots to be less romantic, users who’d become emotionally attached to the bots experienced mental health crises. More recently, Character.AI users are panicking after changes to the platform “lobotomized” the chatbots. There have been countless examples in the last few years of users inflicting harm on themselves or others after falling into unhealthy attachments with chatbots.   

Even though chatbots and large language models introduce new avenues for dark patterns to manifest, the old methods for manipulating users still exist. In several of the user interfaces the researchers examined, choices were presented in emotionally manipulative ways: for example, a companion app called Cute AI begs users not to leave the chat, giving them the choice between “no problem” and “still leave cruelly.” 

OpenAI has said publicly that it recognizes that longer chat sessions introduce more risk to the users’ mental health. “We have learned over time that these safeguards can sometimes be less reliable in long interactions: as the back-and-forth grows, parts of the model’s safety training may degrade,” the company wrote in 2025. It introduced popups nudging users to take breaks, but that popup, the researchers note, poses a disingenuous set of options: either “keep chatting” or select “this was helpful.” There’s no route out of this popup that lets users say it wasn’t helpful, or that they’re taking a break for any other reason. “Interface designers may use design tools to make certain interactions easier and more ‘frictionless’ than others, pushing alternatives choices to the background and manipulating users into choosing one option over another,” the researchers wrote.

Even though these conversational AI companions can be unpredictable, chatbot makers have a choice in how they design their products. The researchers offer several recommendations to these companies. These include reversible choices, the option to minimize anthropomorphic behaviors, making account and data deletion straightforward and easy, and proactively showing users how much time or money they’ve spent on a platform. They also suggest curtailing emotional manipulation by including options to “strip the chatbot of social and emotional layers” and avoiding “using any simulated distress, implied emotional neglect, or guilt-inducing language as default responses when users attempt to end conversations.” 

"When we think about AI chatbots, it's easy to get caught up in the novelty of these interfaces and their unique risks. But when we started digging, we quickly learned that as tech companies’ products evolved beyond social media platforms to include chatbots, the incentives that previously encouraged dark patterns haven’t changed, so neither have the patterns themselves,” Luria said. “Some patterns are almost identical, but not all of them, and that makes them harder to spot. Instead of infinite scroll, we get a follow-up action after each prompt. Instead of echo chambers that reinforce our views, chatbots pick up on our values in conversation and mirror them back.” 

About the author

Sam Cole is writing from the far reaches of the internet, about sexuality, the adult industry, online culture, and AI. She's the author of How Sex Changed the Internet and the Internet Changed Sex.

Samantha Cole