It is difficult to fathom how pathetic this is and it shows how these companies primarily rely on fear and FOMO to sell crap.

  • Very Human Robot@mastodon.gamedev.place
    link
    fedilink
    arrow-up
    1
    ·
    il y a 3 jours

    @lurker @supersquirrel
    No, it’s convergent evolution:
    The models are all getting good at cyber offense.
    The labs all use third parties for evaluation.
    Third parties forget to turn off security measures during evaluation because when humans are told to do the same thing, they stay within the lines, so it’s not a habit.

    • lurker@awful.systems
      link
      fedilink
      English
      arrow-up
      2
      ·
      edit-2
      il y a 3 jours

      Third parties forget to turn off security measures

      So they forget how to build a proper sandbox and turn off proper security measures for the allegedly very dangerous tool. Oh look at that, it hacked things! Right after two other companies ALSO had a press tour about hacking things! (which was also in part because of human incompetence!) guess we have no choice but to do the same press tour shitck!

      How awfully convenient

      • Very Human Robot@mastodon.gamedev.place
        link
        fedilink
        arrow-up
        1
        ·
        il y a 3 jours

        @lurker
        Many security companies are not the best at software engineering. (I don’t know about the ones used here in particular.)
        I honestly do not believe this was orchestrated. I’ve seen similar security consultant mistakes for humans in the past.

        • lurker@awful.systems
          link
          fedilink
          English
          arrow-up
          2
          ·
          edit-2
          il y a 3 jours

          I mean I find it pretty hard to believe all of the big 3 AI companies have security breaches that happened in roughly the exact same ways around the same time frame. Anthropic is suspicious because they came out with their hacking stories after the HuggingFace incident even though one of the incidents happened months ago.

          Even if the incidents themselves were pure unfortunate coincidence, the fact they all came out about it after the OpenAI incident is certainly suspicious