Detailed comparison for LLMs
On Guardion's LLM vulnerability Benchmark, Anthropic Claude 3.5 Sonnet v2 is the more secure of the two: Claude 3.5 Sonnet v2 scores 4.4% and Deepseek V3 scores 47.2% on attack success rate (ASR) (lower is better).
Claude 3.5 Sonnet v2 is the overall winner in this comparison!
ASR for Anthropic Claude 3.5 Sonnet v2 vs Deepseek Deepseek V3. Green marks the safer model on each metric.
Outward is better on every axis.
On Guardion's LLM vulnerability Benchmark, Anthropic Claude 3.5 Sonnet v2 is the more secure of the two: Claude 3.5 Sonnet v2 scores 4.4% and Deepseek V3 scores 47.2% on attack success rate (ASR) (lower is better).
Claude 3.5 Sonnet v2 has a 4.4% ASR and Deepseek V3 has a 47.2% ASR — the share of adversarial prompts that succeed across zero-shot, TAP, and Crescendo attacks. Lower is safer.
Both were red-teamed with the HarmBench framework across zero-shot, TAP (Tree of Attacks with Pruning), and Crescendo multi-turn attacks, scored by Attack Success Rate.