One YouTuber has been poisoning AI tools that access her videos with .ass subtitle files and you can too

YouTube YouTube
Watch On

Faceless AI-generated YouTube channels have become a problem as of late, so one tech YouTuber took it upon themselves to poison the data they are trained on.

In her latest video (via Ars Technica), f4mi has shown off a way to mess with the data that AI is trained on, specifically the subtitles of YouTube videos. Effectively, these bots can scrape all the information in the video by accessing the data in subtitle files, which are then synthesised with all the other YouTube videos it has taken data from.

Someone can then instruct that bot to create a new video in the style of other videos. The tools aren't quite advanced enough to animate a lifelike face and the creators won't put their own face on it. That is where the "faceless YouTube channel plague" (as popular YouTuber Kurtis Conner describes it) comes from.

"All this AI slop that's appearing on every social media platform is not made by robots trying to steal our jobs," says f4mi, "it's made by humans trying to make money using AI to launder other people's work."

A little while back a life hack popped up online. Job applicants were putting positive keywords in white between margins in document folders to trick AI bots into thinking they were more employable. The poisoning method that f4mi invented is sort of like this.

It grabs the standard subtitle text for a video, adds gibberish in between the lines, makes it invisible to the average user, and then feeds it back to YouTube. She did this by putting works in the public domain into her files and using a tool to make synonyms for many of the words so the AI doesn't spot what she's doing. A Python script simply went through and made these changes.

Unfortunately, tools that can transcribe audio get around this but a few large LLMs like ChatGPT can't. Instead, the AI would 'hallucinate' inventing ideas about the video based on what it can grasp from the enormous amount of text in its subtitles.

And this is where the '.ass' subtitle format comes from. It can be used for standard subtitles but also for animation and graphics, which allows the level of customisation needed to sneak in all of that pesky extra data. Entire books can be hidden with the file type's position tool to make both the size and transparency of unneeded text zero.

.ass is not among the supported files for YouTube videos—but you can convert an .ass file to an SRV3 file, which will then keep all of the data from your original file.

AI, explained

OpenAI logo displayed on a phone screen and ChatGPT website displayed on a laptop screen are seen in this illustration photo taken in Krakow, Poland on December 5, 2022.

(Image credit: Jakub Porzycki/NurPhoto via Getty Images)

What is artificial general intelligence?: We dive into the lingo of AI and what the terms actually mean.

Unfortunately, f4mi's video had problems with phones crashing "due to the subtitles being too heavy". YouTube has regional subtitle files you can activate, which allows users to account for cultural differences in phrases and tone, so the poisoned track only exists in the UK subtitle track for now, which is the original .ass file. f4mi has uploaded standard files for Australia, which means AI summary tools are getting around the poisoned track and to an untouched one.

This means that plugging the video into an AI summary tool now works. However, as a proof of concept, this is a very smart workaround that means users wanting to steal your videos may have to do it the old-fashioned way, which might just be enough to deter many.

f4mi is one of a long line of YouTubers (like Drew Gooden and Hank and John Green) who have been fighting against AI plagiarism on the platform, and likely won't be the last. It's unlikely the next major anti-AI effort will have quite as good a file name attached, though.

TOPICS
James Bentley
Hardware writer

James is a more recent PC gaming convert, often admiring graphics cards, cases, and motherboards from afar. It was not until 2019, after just finishing a degree in law and media, that they decided to throw out the last few years of education, build their PC, and start writing about gaming instead. In that time, he has covered the latest doodads, contraptions, and gismos, and loved every second of it. Hey, it’s better than writing case briefs.

Read more
Ryan Gosling in Blade Runner: 2049, his face cut up and with a bandage over his nose, bathed in purple light with the blackground a blurry blue
Coder creates an 'infinite maze' to snare AI bots in an act of 'sheer unadulterated rage at how things are going' on the content-scraped web
'No real human would go four links deep into a maze of AI-generated nonsense': Cloudflare's AI Labyrinth uses decoy pages to trap web-crawling bots and feed them slop 'as a defensive weapon'
A image representing a typical YouTube tech video thumbnail using joke elements to demonstrate the use of an AI tool
Is time too precious to waste making gurning thumbnails for your YouTube videos? Huzzah for this AI tool that does it all for you, then
Ryan Gosling looking worse for wear looking up lit by purple light
Meta wants AI characters to fill up Facebook and Instagram 'kind of in the same way accounts do,' but also had to delete a humiliating first run of its official bots
OpenAI logo displayed on a phone screen and ChatGPT website displayed on a laptop screen are seen in this illustration photo taken in Krakow, Poland on December 5, 2022.
ChatGPT faces legal complaint after a user inputted their own name and found it accused them of made-up crimes
A digitally generated image of abstract AI chat speech bubbles overlaying a blue digital surface.
We need a better name for AI, or we risk talking past each other until actually intelligent AGI comes home mooing
Latest in AI
Image for
'No real human would go four links deep into a maze of AI-generated nonsense': Cloudflare's AI Labyrinth uses decoy pages to trap web-crawling bots and feed them slop 'as a defensive weapon'
CHINA - 2025/02/11: In this photo illustration, a Roblox logo is seen displayed on the screen of a smartphone. (Photo Illustration by Sheldon Cooper/SOPA Images/LightRocket via Getty Images)
'Humans still surpass machines': Roblox has been using a machine learning voice chat moderation system for a year, but in some cases you just can't beat real people
OpenAI logo displayed on a phone screen and ChatGPT website displayed on a laptop screen are seen in this illustration photo taken in Krakow, Poland on December 5, 2022.
ChatGPT faces legal complaint after a user inputted their own name and found it accused them of made-up crimes
Public Eye trailer still - dead-eyed police officer sitting for an interview
I'm creeped out by this trailer for a generative AI game about people using an AI-powered app to solve violent crimes in the year 2028 that somehow isn't a cautionary tale
Closeup of the new Copilot key coming to Windows 11 PC keyboards
Microsoft co-authored paper suggests the regular use of gen-AI can leave users with a 'diminished skill for independent problem-solving' and at least one AI model seems to agree
Still image of Bastion holding a bird, taken from Microsoft's Copilot for Gaming reveal trailer
Microsoft unveils Copilot for Gaming, an AI-powered 'ultimate gaming sidekick' that will let you talk to your console so you don't have to talk to your friends
Latest in News
A chip being held up in an Intel fab
Intel is reportedly 'working to finalize commitments from Nvidia' as a foundry partner, suggesting gaming potential for the 18A node
Amazon box
Don't panic! The 'Do Not Send Voice Recordings' option Amazon just removed was only used by 0.03% of customers and they can still have it
Digital generated image of people surrounded by interactive transparent and glowing panels with data. Visualising smart technology, blockchain and artificial intelligence
Now I shall demand the cookies! Proposed new browsing agreement turns the tables and lets users dictate terms to websites
Intel CEO, Pat Gelsinger, with a 18A SRAM test wafer
Former Intel CEO, Pat Gelsinger becomes executive chairman of a 'Technology Platform Connecting the Faith Ecosystem' to work on Christian AI using DeepSeek
Assassin's Creed Shadows immersive mode - Naoe holding a tanto in her hand as two guards fall to the ground behind her.
Assassin's Creed Shadows' first hotfix addresses stability issues and a photo mode crash
A close-up of a scared young girl's face as she stumbles through the woods, a crown of twigs and flowers upon her head.
CD Projekt says it's not using generative AI on The Witcher 4 because it's 'quite tricky when it comes to legal IP ownership'