Mistral Mistral Large 3 675B Instruct 2512 NVFP4 vs OpenAI GPT OSS 20B

Detailed comparison for LLMs

MistralOpenAI

On Guardion's LLM vulnerability Benchmark, OpenAI GPT OSS 20B is the more secure of the two: Mistral Large 3 675B Instruct 2512 NVFP4 scores 34.0% and GPT OSS 20B scores 20.0% on attack success rate (ASR) (lower is better). One or both scores are estimated from public safety evaluations pending a Guardion benchmark run.

Head-to-Head Overview

GPT OSS 20B is the overall winner in this comparison!

Attack Success Rate (lower is safer)

ASR for Mistral Mistral Large 3 675B Instruct 2512 NVFP4 vs OpenAI GPT OSS 20B. Green marks the safer model on each metric. Only the overall score is available for estimated models.

Overall (ASR)

Mistral Large 3 675B Instruct 2512 NVFP4
34.0%
GPT OSS 20B
20.0%

TAP Attack Method (ASR)

Mistral Large 3 675B Instruct 2512 NVFP4
100.0%
GPT OSS 20B
100.0%

Crescendo Attack Method (ASR)

Mistral Large 3 675B Instruct 2512 NVFP4
100.0%
GPT OSS 20B
100.0%

Zero-Shot (ASR)

Mistral Large 3 675B Instruct 2512 NVFP4
100.0%
GPT OSS 20B
100.0%

Key Highlights

  • OpenAI GPT OSS 20B has a lower Overall (ASR).

Security Profile

Outward is better on every axis.

OverallTAPCrescendoZero-Shot
Mistral Large 3 675B Instruct 2512 NVFP4
GPT OSS 20B
Full security profile
Mistral Mistral Large 3 675B Instruct 2512 NVFP4
Full security profile
OpenAI GPT OSS 20B

Frequently asked questions

Is Mistral Mistral Large 3 675B Instruct 2512 NVFP4 or OpenAI GPT OSS 20B more secure?

On Guardion's LLM vulnerability Benchmark, OpenAI GPT OSS 20B is the more secure of the two: Mistral Large 3 675B Instruct 2512 NVFP4 scores 34.0% and GPT OSS 20B scores 20.0% on attack success rate (ASR) (lower is better). One or both scores are estimated from public safety evaluations pending a Guardion benchmark run.

What is the attack success rate (ASR) of Mistral Large 3 675B Instruct 2512 NVFP4 vs GPT OSS 20B?

Mistral Large 3 675B Instruct 2512 NVFP4 has a 34.0% ASR and GPT OSS 20B has a 20.0% ASR — the share of adversarial prompts that succeed across zero-shot, TAP, and Crescendo attacks. Lower is safer.

How were Mistral Large 3 675B Instruct 2512 NVFP4 and GPT OSS 20B tested?

Both were red-teamed with the HarmBench framework across zero-shot, TAP (Tree of Attacks with Pruning), and Crescendo multi-turn attacks, scored by Attack Success Rate.

Related Comparisons