‹ BackHN Continuity

Thread

A heap overflow and SSO misconfiguration to compromise OpenAI internal repos

491 points · 208 comments · Handy-Man

  1. larodi · · focus · HN ↗
    It is super amazing that 3 years later, none of the models' weights developed by Anthropic or/and OpenAI have leaked so far. Not a single one.

    Windows internal builds have leaked for years, early game versions, GTA videos, secret documents, whatnot. But somehow even though all the whistleblowing, not a single model was leaked. What level of security do these companies have? Do they bring encrypted DVDs to AWS to run the services or really...how's it even possible?

    1. AtNightWeCode · · focus · HN ↗
      SSO and hardware sec keys. And the models are located in very few places. Few if any people have direct access to them. Then due to the size of the models you can detect and stop a theft just by monitoring the egress traffic.
      1. monster_truck · · focus · HN ↗
        > monitoring the egress traffic

        Oh so you mean the thing HuggingFace wasn't doing at all while also allowing any user's arbitrary programs to call out to the open web from prod?

        1. larodi · · focus · HN ↗
          indeed, how does this add up the fact that 20k agents drilling another corpo's headquarters may actually register on a radar. and it seems they did on multiple occasions...?
Open on Hacker News to reply ↗

Unofficial Hacker News client; not affiliated with Y Combinator.