Backdoors have universal representations across large language models — LessWrong