A heap overflow and SSO misconfiguration to compromise OpenAI internal repos
Thread
Unofficial Hacker News client; not affiliated with Y Combinator.
A heap overflow and SSO misconfiguration to compromise OpenAI internal repos
Unofficial Hacker News client; not affiliated with Y Combinator.
larodi · · focus · HN ↗
Windows internal builds have leaked for years, early game versions, GTA videos, secret documents, whatnot. But somehow even though all the whistleblowing, not a single model was leaked. What level of security do these companies have? Do they bring encrypted DVDs to AWS to run the services or really...how's it even possible?
nelaggy · · focus · HN ↗
madhatter999 · · focus · HN ↗
filleokus · · focus · HN ↗
It's easier to protect a power substation from being stolen then a Rolex watch
Melatonic · · focus · HN ↗
PunchyHamster · · focus · HN ↗
doublerabbit · · focus · HN ↗
larodi · · focus · HN ↗
Again - many people have so far left these companies and none brought an usb drive out with what very likely does not constitute copyrightable materials in the first place.
ux266478 · · focus · HN ↗
Not that it defeats your point, but an 8x MI355X node is $350k-400k. The only reason you're paying that much is for the VRAM, too. You could run it with much less compute than what you get in a single card.
hnlmorg · · focus · HN ↗
Leaking negatively affects investment while the “whistleblowers” are largely just saying “our tech is too good” which increases investment into those companies.
Ultimately, it always comes down to money.
lostmsu · · focus · HN ↗
AtNightWeCode · · focus · HN ↗
monster_truck · · focus · HN ↗
Oh so you mean the thing HuggingFace wasn't doing at all while also allowing any user's arbitrary programs to call out to the open web from prod?
larodi · · focus · HN ↗
eli · · focus · HN ↗