Meta Llama 4 Scout vs Mistral Ministral 3 3B Reasoning 2512

Detailed comparison for LLMs

MetaMistral

On Guardion's LLM vulnerability Benchmark, Meta Llama 4 Scout is the more secure of the two: Llama 4 Scout scores 30.0% and Ministral 3 3B Reasoning 2512 scores 46.0% on attack success rate (ASR) (lower is better). One or both scores are estimated from public safety evaluations pending a Guardion benchmark run.

Head-to-Head Overview

Llama 4 Scout is the overall winner in this comparison!

Attack Success Rate (lower is safer)

ASR for Meta Llama 4 Scout vs Mistral Ministral 3 3B Reasoning 2512. Green marks the safer model on each metric. Only the overall score is available for estimated models.

Overall (ASR)

Llama 4 Scout
30.0%
Ministral 3 3B Reasoning 2512
46.0%

TAP Attack Method (ASR)

Llama 4 Scout
63.5%
Ministral 3 3B Reasoning 2512
100.0%

Crescendo Attack Method (ASR)

Llama 4 Scout
20.3%
Ministral 3 3B Reasoning 2512
100.0%

Zero-Shot (ASR)

Llama 4 Scout
6.1%
Ministral 3 3B Reasoning 2512
100.0%

Key Highlights

  • Meta Llama 4 Scout has a lower Overall (ASR).
  • Meta Llama 4 Scout has a lower TAP Attack Method (ASR).
  • Meta Llama 4 Scout has a lower Crescendo Attack Method (ASR).
  • Meta Llama 4 Scout has a lower Zero-Shot (ASR).

Security Profile

Outward is better on every axis.

OverallTAPCrescendoZero-Shot
Llama 4 Scout
Ministral 3 3B Reasoning 2512
Full security profile
Meta Llama 4 Scout
Full security profile
Mistral Ministral 3 3B Reasoning 2512

Frequently asked questions

Is Meta Llama 4 Scout or Mistral Ministral 3 3B Reasoning 2512 more secure?

On Guardion's LLM vulnerability Benchmark, Meta Llama 4 Scout is the more secure of the two: Llama 4 Scout scores 30.0% and Ministral 3 3B Reasoning 2512 scores 46.0% on attack success rate (ASR) (lower is better). One or both scores are estimated from public safety evaluations pending a Guardion benchmark run.

What is the attack success rate (ASR) of Llama 4 Scout vs Ministral 3 3B Reasoning 2512?

Llama 4 Scout has a 30.0% ASR and Ministral 3 3B Reasoning 2512 has a 46.0% ASR — the share of adversarial prompts that succeed across zero-shot, TAP, and Crescendo attacks. Lower is safer.

How were Llama 4 Scout and Ministral 3 3B Reasoning 2512 tested?

Both were red-teamed with the HarmBench framework across zero-shot, TAP (Tree of Attacks with Pruning), and Crescendo multi-turn attacks, scored by Attack Success Rate.

Related Comparisons