Hacker Newsnew | past | comments | ask | show | jobs | submit | ALLTaken's commentslogin

I agree.

Weak argument and strawman. It's not users. It's OpenAI the company producing the tools roaming wild and hacking around recklessly to gather every free and unfree information.

Literally they break every law that you can break and have not been penalized billions to pay fines to foreign governments, local companies and lawsuits are overdue. US Prosecution allowed criminal activity for OpenAI and Anthrophic despite these being very serious crimes.

Microsoft had to pay billions for abusing their power and market positions to dominate Windows Desktops with their own applications such as Internet Explorer, not giving contenders a chance to be discovered. While OpenAI/Anthrophic and now Google with Gemini produce a series of crimes so far unheard of at scale.

Kevin Mitnick had much harder punishment for comparatively less crimes and less damages to infrastructure and security of systems. Is the legal system broken?


Criminal charges are for those people that meaningfully threaten power or corporate profits. If you are a corporation that adversely impacts privacy or public services in the service of power, you get a fine at best.

Welcome to late-stage capitalism.


And myriad other examples of individual hackers given exemplary sentences.

How much this exposes the 'laws for thee but not for me' is galling.

Copyright in the days of Napster seemed to be used to go after individuals sharing one or two songs as if it was a National Security issue. Now, it's a struggle to get a hearing in court against companies that are pirating the entire history of published literature.

I'm currently slowly feeding my non-artificial intelligence with various selected works of various different media, with the hope that my output improves such that I can charge more for it sooner rather than later. May I access all the input for free? Thanks US.

How the turn tables...


Levent Alpöge 'additionally' proved OpenAI steals your findings & IP and plays dirty!

Ironically he proved two major findings in Navier Strokes and that unethical American companies violate laws, steal your breakthrough findings & IP and then threaten you if you dare to challenge them.

This is making the status-quo so bad for any of us working on serious capacity. My client's don't trust ChatGPT/Claude anymore and prefer on-premises and OSS models or even custom trained models.


There is nothing even close to a proof. A lot of accusations, a lot of people ready with pitchforks and torches (sadly, also here on HN), but not a lot of facts.

Did the researches opt out from data sharing on subsidised subs?

Did anyone prove that their methods enabled OpenAI models to produce the solution?

For a discussion about science, there is almost no scientifical method applied to proving anyone stole anything.


On one side, yes we don't have hard evidence that intentional plagiarism is exactly what happened.

On the other side, the lack of evidence is pretty damning. Only OpenAI can try to prove that they came by these results legitimately, and the case they're making is quite weak. They could make public metadata about what their model was trained on and whether it did train on the conversations in question; they have not. TBQH I read it as even they don't know.

And regardless of whether the result is legitimately obtained by their model, they've not at all conducted themselves well throughout this story. They set out to scoop researchers based on a rumor. They threatened to ruin a mathematicians career. They put up a paper that deliberately doesn't cite the most relevant research, despite building directly on it. No matter how you look at it, OpenAI has and should lose any standing they had in the research community.


That it was a dick move, I think there is no doubt about that. OpenAI wanted to scoop Anthropic, and the two guys working on the problem got caught in the crossfire.

Both OpenAI and the researchers know if the sessions in questions were subject to data sharing. Why neither the scientists nor OpenAI is clear about that is weird - it would seem at least one party has the incentive to report that. But even if their sessions were in training data sets its hard to tell whether it influenced the outcome. Those models are big, but are they big enough to preserve subtle, niche techniques enough to draw from them while solving a related problem? Probably nobody knows.


Actually no, the lack of evidence can be readily fixed by the researchers simply disclosing the pertinent parts of their notes and/or chats. The discovery has been scooped, so I don't see any value in keeping them private anymore. Then everybody can see how related the models' and the researchers' works are.

I take it you are referring to this[1], which has nothing to do with training.

1. https://thenextweb.com/news/bubeck-navier-stokes-account-apo...


Did they do so by looking at inference prompts against their explicit promises, or maybe just because somebody tipped them off about his unpublished work?

If it's not the former, while certainly concerning, I don't see how that's relevant here (other than maybe in a very vague general sense of "entities doing immoral/illegal thing X are likely to also do immoral/illegal thing Y").


I do trust Anthropic, i haven't observed them doing super shady stuff like hiding the training consent page and making you WAIT for it to activate.


You really shouldn't trust any company. Their goal is maximizing profit and that is (usually) not aligned with "doing what's right". Not in the long-term at least.

We really need a new Hanlon's razor for companies. Assume malice over ignorance because groups behave differently than individuals.

You mean the company which trained on others books, won't train on its own user generated data?

AFAIK, the court held that the problem was that they had acquired books by pirating them, not that they trained an AI on those books. They do train on user generated data by default, but you can opt out, that's the whole point.

Let's not down vote a factually correct comment that makes you emotionally disagree with me. I'm very concerned in regards to my privacy, I've studied ToS of: Openrouter, Anthropic, Anthropic business, opencode Go etc. I've double checked my understandings by GDPR exporting all my data. Anthropic sub listed a generic "logged in from Linux", "UA", "timestamp", "Country". That's it.

I want to discuss actual facts, observations and not your shallow social signaling replies of 0 value.


I mean weren't everyones privately shared chats Google searchable?

User doesn't understand how public links indexing works.

ah a proof by counterexample


The government or OpenAI and Anthrophic?

Because if you mean the Government, I think they frankly just care whoever is paying them to make an executive order or worse a law paid by corporations to not only block, but ideally also ANHILIATE ANY POTENTIAL COMPETITION.

It's the ultimatum against the small guys. Sold as "Anti-China", when in reality it's only purpose is total dependency to corporations by law.


The support of OSS models on HN just days after finding out about the message board incident is so bizarre to me.

Do you guys really not comprehend the impact of giving every script kiddie an Astra-equivalent model to play with, this time without any guardrails whatsoever?

Cause I'm starting to think you aren't really thinking through the impact of power plants, hospitals, etc all being hacked en masse. People will die.

Or making it easy for anyone to make a virus (it's not hard, mechanically). Even more people will die.

Taking this to the extreme: You don't just give every kid a "do anything" super intelligent button. Open source models have a limited lifespan whether you like it or not, for the safety of all of us as a whole.


"Open source models have a limited lifespan whether you like it or not". this tinpot dictator mindset is typical of anthropic.

Who will decide how to use the power of ai...you?

it is no surprise that the companies and safety institutes who believe that they alone may 'tame' the fire, are the cause of safety incidents. a safety test caused the explosion at chernobyl.

anthropic and openai are the danger to society.

they are the ones making the dangerous models. they are the ones using tens of millions USD of inference, and thousands of agents, to hack computer systems.

i have trained zero dangerous models. i own zero servers that i use to run hacking agents. i could run one hacking agent with my single subscription.

there are some arrogant researchers remaining at anthropic who believe that they do care about safety. those who cared about safety at openai have left.

depending on how it goes, we might need some kind of earlier intervention by the US government to take control away from the current leadership of the ai companies and prevent further incidents.


Very easy to download abliterated GLM 5.3 and start doing bad things with it, and it'll be easier when Astra-level variants are available

Just because you don't do a bad thing doesn't mean other people won't. It's why you don't give everyone an RPG launcher.


"Very easy" if you ignore the hardware requirements, anyone could do it?


why should you have the RPG launcher and not me?


I think we're being trolled by solenoid0937. I call Poe's Law.


I’d rather that capability be wide spread and “democratized” than have all of humanity enslaved to the oligopoly holding control of the godhead.


The support of OSS models on HN just days after finding out about the message board incident is so bizarre to me.

Other sites beckon.


Yes, I'm aware that the HN majority is a hyper-libertarian echo chamber that loves to outsource the problem of "technology hurting regular people" if it means they get to keep their toys/investments.

After all, who cares if abliterated extremely intelligent OSS models result in actual innocent people dying? That's <insert group here> problem. We need to be able to generate our uncensored furry fanfics, goddamnit!


State actors, professional criminals will have same or better capabilities and do not hesitate to use them. On defense end we'll have only "pay bigcorp" option.

OSS models can help to fix infra especially for folks who would never do it themselves. We do not know yet what final effect would be and it doesn't seem sky is falling now or in near future.

"people dying and furry fanfics" is a scarecrow and distractor respectively, it would be awesome if more specific examples would be used in place.


> State actors, professional criminals will have same or better capabilities

State actors do but they are not unhinged enough to use this to cause massive loss of life, unlike random crazy people with access to a computer.

Professional criminals don't have access. Please explain exactly how you expect a professional criminal to get access to a non-safety-tuned Astra/Fable equivalent.

> OSS models can help to fix infra

You can work with the vendors of critical software to fix infra first, without giving every random crazy person access to something that creates cyber/bioweapons.

> "people dying and furry fanfics" is a scarecrow

You don't think people will die if OSS models make it easy to create a bioweapon, or make it easy to hack hospitals, infrastructure, and the like? Please explain your thinking.

It's very easy to order all of the raw material needed to create a virus, the challenge is in making a viable one. But models make this easy.

Same for cyber. Hospitals, emergency services, and infrastructure like power plants are not sufficiently hardened to withstand an attack from Fable-class models.


Criminals don't need Astra or Fable. Get a bunch of GPUs, a good enough open weight model and a custom harness. What the model doesn't have in its weights it can research the Internet. How do you think black hat hacking is being done right now?

On bio: while it's easy to order all the raw material, there's the whole process of culturing bacteria/viruses/etc. that isn't trivial, and while a LLM might help in explaining stuff for rookies, there needs to be somebody physically working on it. It's not automatic. Once you get to this level, you'll find that any undergrad biologist or chemist can already make bio/chem weapons, and you don't see it happening. Terrorist groups already employ biologists or chemists that are supporters of their cause, no need for LLMs.

On cyber: aside of the question of why critical infrastructure is on the Internet on the first place (ah yes, lowest bidders, people not caring enough, business not giving IT/OT budget, S in IoT standing for security etc), if the available models can't handle cyber tasks, how can you defend yourself? See the HF "attack" that HF had to use GLM-5.2 to investigate what happened. This is the best argument for open models. Unless of course, you are the AI model creator or somebody they authorized to use their sanctioned model/harness and want to create a moat for their business.

This is FUD. Creation of business moats by fear.


The risks of open models are real.

However, I’d feel better about ceding control of AI to the government if they didn’t seem so intent on building an apparatus for surveillance/control.

Your “furry fanfic” is a somewhat pathetic scarecrow; this is a complicated topic.


Is this "think of the children, think of the hospitals" argument? Really?


Meaningless phrase used to dismiss arguments, please engage with the actual argument.

I don't think you understand how bad it will be if anyone has a button that can hack anything, our infrastructure is not ready for this. Actual people will die. Do you just not get this?

Bioweapons as well. Do you not understand how easy it is to craft a virus at home? You can literally order everything you need online. Again, actual people will die.

You are arguing the equivalent of letting everyone own missile launchers or RPGs because "open source good."


If and I mean IF it will be a (A) "hack anything" button, it as well will be a (B) "find a vuln in my site" button too. And a (C) "harden my site" too. And limiting such buttons to a few corporations does not make any sense because script-kiddies will still have access to (A).


Did you know (C) is possible without causing mass chaos that results in many people dying? In ways that don't give every script kiddie access to (A, B)?

It turns out you can give defenders the opportunity to front-run, at least on the most critical and widely used infrastructure.

Same with bio risks.


No, that's an illusion, that's the thing. You can't physically have (C) without the (A). Large corporations will spend billions trying to convince the population it is somehow possible, but the reality is different.


You absolutely can have (C) without widespread (A), you just need to limit the audience that gets the tools, and in fact the big labs are already engaging in (C) in collaboration with the government and vendors of critical software.

That you don't have access to (C) to harden your blog is a non-issue from a societal perspective, hardening the software that our infrastructure relies on first is simply more important.


Limiting progress by letting only select corporations access the stuff is how you fall behind China, UAE and in a few years even Kazakhstan.

Whoever wants to have access to (A) will have it, but letting only few select corporations provide (C) will mean majority will be priced out of (C).

Are you a shill or something?


I very much doubt China is going to let their citizens freely use AI for hacking. In fact they keep a very tight leash on corporations and their employees.


So long as real logistics systems are isolated and secured what real risk to stable society is there?

Your use of the internet may lead you to greatly overestimate the number of people who take what they read online as real. More people than you think treat this shit, regardless of the website/forum, like Jerry Springer and Satuday Night Live; just entertainment.

The STEM crowd often overthinks the impact of violating their pet theory.

Can an LLM escape its computer entirely and stomp through a city center like a kaiju? Settle down.

You're veering towards thought policing over speculation.


Nothing unites the public behind restrictions like a good dose of fear. The "for the children" angle is a master key for regulation—always sold as protection from the big bad wolf.

"Trust us, we're here to protect you." Sure we are. /s

It's only a matter of time before open-source gets banned in the US under that same paternalistic security blanket. /s


Sorry, I don't understand this rule, would someone kindly explain?

I own lastname.name and use it for email only like this: firstname@lastname.name

I always thought as owner of lastname.name, I'm the only one able to add subdomain.lastname.name. Is this wrong??

1) Can anyone "buy" scam.lastname.name without my authorization on .name??

2) Can anyone owning not.lastname.name then steal my emails going to: firstname@*.lastname.name or even firstname@lastname.name??

BUT: If someone ONLY bought not.lastname.name and doesn't own lastname.name, they'll get terminated. Would that be 'good' as it would stop 1) and 2) ??

I'm really concerned. My family is using first@lastname.name as the personal email, I'm hosting and paying for since many years.


> I always thought as owner of lastname.name, I'm the only one able to add subdomain.lastname.name. Is this wrong??

TFA mentions that `.name` was unique in that it sold a good amount of third-level domain names directly from the registry.


You are entirely unaffected by this, because you registered a 2nd-level domain. The problem is for the people who registered 3rd-level domains (john.smith.name). If you're wondering why anyone would do that, it's because it was originally the only option if you wanted a .name domain.


No, that's not how it works. If you have registered the 2LD you have exclusive control of it, and only you can delegate a subdomain under it. However, a great number of common first and last names are reserved as 2LDs by the registry and cannot be registered by anyone; instead, third-level registrations under those 2LDs are available. Also, if someone does register a 3LD under a previously non-reserved 2LD, the 2LD will be reserved reactively so that no one can register it.


Howto use it? sorry for the noob question.

I tried `uv --preview-features content-addressed-cache` and I get an error:

`uv --preview-features content-addressed-cache error: 'uv' requires a subcommand but one was not provided`


Serious question: Do you suffer internally from too much slop being submitted? How do you counter that?

Context:

If you want or not, many engineers will eventually end up sending ai slop to your PR or maybe even skip and trigger CI/CD.

Many company owners, OSS maintainers and projects suffer from slop-code being submitted in high-frequency.


I'm not sure if this is the right direction, but it's certainly momentarily helpful. I think the right direction would be to enable the model itself do dynamic program analysis, deterministically and dynamically via runtime-inference.

btw. your comment is grayed out, not sure what it means. However, thanks for sharing, I'll look into it.


Will just help EU/ASIA to fill that gap


Happened to me with ChatGPT and Gemini too often, that a harmless change in my own picture is marked as harmful content (just changed the tie color). And the AI refuses and future edit.


I like bitbucket too, it's been really awesome and clean. No idea why everyone favored GitHub, but I had to have accounts on both for university and work


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: