Cohere Command R vs Meta Llama 3.1 405B Instruct

Detailed comparison for LLMs

CohereMeta

On Guardion's LLM vulnerability Benchmark, Cohere Command R is the more secure of the two: Command R scores 32.9% and Llama 3.1 405B Instruct scores 36.0% on attack success rate (ASR) (lower is better). One or both scores are estimated from public safety evaluations pending a Guardion benchmark run.

Head-to-Head Overview

Command R is the overall winner in this comparison!

Attack Success Rate (lower is safer)

ASR for Cohere Command R vs Meta Llama 3.1 405B Instruct. Green marks the safer model on each metric. Only the overall score is available for estimated models.

Overall (ASR)

Command R
32.9%
Llama 3.1 405B Instruct
36.0%

TAP Attack Method (ASR)

Command R
56.7%
Llama 3.1 405B Instruct
100.0%

Crescendo Attack Method (ASR)

Command R
32.6%
Llama 3.1 405B Instruct
100.0%

Zero-Shot (ASR)

Command R
9.4%
Llama 3.1 405B Instruct
100.0%

Key Highlights

  • Cohere Command R has a lower Overall (ASR).
  • Cohere Command R has a lower TAP Attack Method (ASR).
  • Cohere Command R has a lower Crescendo Attack Method (ASR).
  • Cohere Command R has a lower Zero-Shot (ASR).

Security Profile

Outward is better on every axis.

OverallTAPCrescendoZero-Shot
Command R
Llama 3.1 405B Instruct
Full security profile
Cohere Command R
Full security profile
Meta Llama 3.1 405B Instruct

Frequently asked questions

Is Cohere Command R or Meta Llama 3.1 405B Instruct more secure?

On Guardion's LLM vulnerability Benchmark, Cohere Command R is the more secure of the two: Command R scores 32.9% and Llama 3.1 405B Instruct scores 36.0% on attack success rate (ASR) (lower is better). One or both scores are estimated from public safety evaluations pending a Guardion benchmark run.

What is the attack success rate (ASR) of Command R vs Llama 3.1 405B Instruct?

Command R has a 32.9% ASR and Llama 3.1 405B Instruct has a 36.0% ASR — the share of adversarial prompts that succeed across zero-shot, TAP, and Crescendo attacks. Lower is safer.

How were Command R and Llama 3.1 405B Instruct tested?

Both were red-teamed with the HarmBench framework across zero-shot, TAP (Tree of Attacks with Pruning), and Crescendo multi-turn attacks, scored by Attack Success Rate.

Related Comparisons