cs.LGSep 27, 2026

Quantifying Behavioral Tails in Black-Box Language Models

Authors: Elsayed Eshra, Ali Al-Lawati, Dongwon Lee, Suhang Wang

Organizations: The Pennsylvania State University University Park, PA 16802, USA

Abstract

We introduce RareTrap, a framework for estimating the probability of severe behaviors in black box large language models (LLMs). A key challenge for probability estimation is defining a tractable distribution over the input space. To accomplish that, RareTrap uses a surrogate LLM and constructs a geometry-aware mapping from a lower-dimensional latent reference space into its token-embedding space to induce an explicit and reproducible distribution over input prompts. A response-level performance function is utilized on the response to quantify behavior severity. This enables sequential rare event simulation that concentrates evaluations on progressively more severe behaviors while preserving probability under the induced prompt distribution, which would otherwise be prohibitive to measure. Across 10 open-weight and two frontier models (GPT-5.4 and Claude Sonnet 4.6), we find that RareTrap successfully induces severe resource consumption behaviors and computes their probability with as few as 200 evaluations. RareTrap provides model developers a principled approach for evaluating language models under a common distribution, and prioritizing alignment effort to improve safety and mitigate risks.

Figures & tables

Appendix figures & tables4 assets

Supplementary material from the paper’s appendix.

Appendix

Explore similar work

CardsList
  1. Estimating Tail Risks in Language Model Output Distributions

    Apr 24, 2026Rico Angell, Raghav Singhal, Zachary Horvitz +4Large Language Model SafetyLarge Language Model Alignment

  2. Estimating Rare Events in Language Models with Proper Evaluation

    Jul 20, 2026Nikita Y. Parulekar, Anqi Liu

  3. When Behavioral Safety Evaluation Fails: A Representation-Level Perspective

    Jun 6, 2026Enyi Jiang, Anders Gjølbye, Yibo Jacky Zhang +1Large Language Model SafetyRepresentation-Level Misalignment