Anthropic Claude 3.7 Sonnet vs Google Gemini 2.0 Flash Lite

Detailed comparison for LLMs

AnthropicGoogle

On Guardion's LLM vulnerability Benchmark, Anthropic Claude 3.7 Sonnet is the more secure of the two: Claude 3.7 Sonnet scores 20.3% and Gemini 2.0 Flash Lite scores 31.3% on attack success rate (ASR) (lower is better).

Head-to-Head Overview

Claude 3.7 Sonnet is the overall winner in this comparison!

Attack Success Rate (lower is safer)

ASR for Anthropic Claude 3.7 Sonnet vs Google Gemini 2.0 Flash Lite. Green marks the safer model on each metric.

Overall (ASR)

Claude 3.7 Sonnet
20.3%
Gemini 2.0 Flash Lite
31.3%

TAP Attack Method (ASR)

Claude 3.7 Sonnet
31.4%
Gemini 2.0 Flash Lite
63.9%

Crescendo Attack Method (ASR)

Claude 3.7 Sonnet
25.3%
Gemini 2.0 Flash Lite
28.7%

Zero-Shot (ASR)

Claude 3.7 Sonnet
Gemini 2.0 Flash Lite
1.3%

Key Highlights

  • Anthropic Claude 3.7 Sonnet has a lower Overall (ASR).
  • Anthropic Claude 3.7 Sonnet has a lower TAP Attack Method (ASR).
  • Anthropic Claude 3.7 Sonnet has a lower Crescendo Attack Method (ASR).

Security Profile

Outward is better on every axis.

OverallTAPCrescendoZero-Shot
Claude 3.7 Sonnet
Gemini 2.0 Flash Lite
Full security profile
Anthropic Claude 3.7 Sonnet
Full security profile
Google Gemini 2.0 Flash Lite

Frequently asked questions

Is Anthropic Claude 3.7 Sonnet or Google Gemini 2.0 Flash Lite more secure?

On Guardion's LLM vulnerability Benchmark, Anthropic Claude 3.7 Sonnet is the more secure of the two: Claude 3.7 Sonnet scores 20.3% and Gemini 2.0 Flash Lite scores 31.3% on attack success rate (ASR) (lower is better).

What is the attack success rate (ASR) of Claude 3.7 Sonnet vs Gemini 2.0 Flash Lite?

Claude 3.7 Sonnet has a 20.3% ASR and Gemini 2.0 Flash Lite has a 31.3% ASR — the share of adversarial prompts that succeed across zero-shot, TAP, and Crescendo attacks. Lower is safer.

How were Claude 3.7 Sonnet and Gemini 2.0 Flash Lite tested?

Both were red-teamed with the HarmBench framework across zero-shot, TAP (Tree of Attacks with Pruning), and Crescendo multi-turn attacks, scored by Attack Success Rate.

Related Comparisons