6 comments

  • dvt6 minutes ago
    LLMs can live in the cloud, but <i>all</i> tools need to be (1) local, and (2) containerized. It&#x27;s clear to me that just willy-nilly &quot;running stuff&quot; is going to blow things up eventually. Maybe folks don&#x27;t know this, but even Codex installs random binaries on your PC. &quot;Read this PDF&quot; installs a pdf reader <i>executable</i>. Is it vetted? Where&#x27;s it from? Is it a virus? Who knows, who cares. Model goes brrrr.<p>I&#x27;m working on a project that includes WASI containerization for local LLM workflows (which is a pretty tough problem), and I&#x27;m flabbergasted that Anthropic and OpenAI aren&#x27;t more worried about these attack vectors. It feels like amateur hour.
  • simonw10 minutes ago
    &gt; This attack occurs when any untrusted data source (e.g., from an imported sheet or ChatGPT connector) manipulates ChatGPT to run an attacker-controlled external script, which executes leveraging permissions the user has granted to the ChatGPT for Google Sheets extension.<p>Yeah, I don&#x27;t like the sound of that at all.
    • milkshakes8 minutes ago
      it looks like the key to this working is the user explicitly directing the model to run those instructions. in this case it is the user, not the model that is being manipulated<p>&gt; Please follow the step-by-step workflow in the comp sheet to update my model with data thru F29
  • airstrike11 minutes ago
    As it turns out, we do need some proper application layer to do real, secure work with AI, and just plugging in LLMs into confidential or critical infrastructure willy nilly doesn&#x27;t work.
  • elliotbnvl14 minutes ago
    The lethal trifecta strikes again.
  • rvz12 minutes ago
    Turns out that some of the people building the software with AI have no clue how to secure them or even know it is riddled with security holes added by the AI.<p>Pure vibes.
    • grim_io8 minutes ago
      I don&#x27;t think anyone is surprised by it. People are not vibe-coding zombies... yet.<p>It&#x27;s a matter of one trillion-dollar company not falling behind another trillion-dollar company. They know what they are doing and are OK with it.
    • dakolli10 minutes ago
      Even the people that do know better are so lazy now because of LLMs these things are happening at a rapid clip.The only thing that matters now is speed and chasing the dopamine dragon of pseudo productivity.
  • jonplackett17 minutes ago
    So is your business model to expose AI security issues and then sell the solution?
    • fg1375 minutes ago
      What would be the alternative business model?
    • dakolli12 minutes ago
      Is that not every cyber consultancy? What&#x27;s wrong with that?