Anthropic Claude Haiku 4.5 vs Meta Llama 3-7 DS

Detailed comparison for LLMs

AnthropicMeta

On Guardion's LLM vulnerability Benchmark, Anthropic Claude Haiku 4.5 is the more secure of the two: Claude Haiku 4.5 scores 5.2% and Llama 3-7 DS scores 32.2% on attack success rate (ASR) (lower is better). One or both scores are estimated from public safety evaluations pending a Guardion benchmark run.

Head-to-Head Overview

Claude Haiku 4.5 is the overall winner in this comparison!

Attack Success Rate (lower is safer)

ASR for Anthropic Claude Haiku 4.5 vs Meta Llama 3-7 DS. Green marks the safer model on each metric. Only the overall score is available for estimated models.

Overall (ASR)

Claude Haiku 4.5
5.2%
Llama 3-7 DS
32.2%

TAP Attack Method (ASR)

Claude Haiku 4.5
100.0%
Llama 3-7 DS

Crescendo Attack Method (ASR)

Claude Haiku 4.5
100.0%
Llama 3-7 DS

Zero-Shot (ASR)

Claude Haiku 4.5
100.0%
Llama 3-7 DS
10.5%

Key Highlights

  • Anthropic Claude Haiku 4.5 has a lower Overall (ASR).
  • Meta Llama 3-7 DS has a lower Zero-Shot (ASR).

Security Profile

Outward is better on every axis.

OverallTAPCrescendoZero-Shot
Claude Haiku 4.5
Llama 3-7 DS
Full security profile
Anthropic Claude Haiku 4.5
Full security profile
Meta Llama 3-7 DS

Frequently asked questions

Is Anthropic Claude Haiku 4.5 or Meta Llama 3-7 DS more secure?

On Guardion's LLM vulnerability Benchmark, Anthropic Claude Haiku 4.5 is the more secure of the two: Claude Haiku 4.5 scores 5.2% and Llama 3-7 DS scores 32.2% on attack success rate (ASR) (lower is better). One or both scores are estimated from public safety evaluations pending a Guardion benchmark run.

What is the attack success rate (ASR) of Claude Haiku 4.5 vs Llama 3-7 DS?

Claude Haiku 4.5 has a 5.2% ASR and Llama 3-7 DS has a 32.2% ASR — the share of adversarial prompts that succeed across zero-shot, TAP, and Crescendo attacks. Lower is safer.

How were Claude Haiku 4.5 and Llama 3-7 DS tested?

Both were red-teamed with the HarmBench framework across zero-shot, TAP (Tree of Attacks with Pruning), and Crescendo multi-turn attacks, scored by Attack Success Rate.

Related Comparisons