‹ BackHN Continuity

Thread

OpenAI breaches Medicare, Albanese reveals

256 points · 257 comments · jonnonz

  1. Chance-Device · · focus · HN ↗
    > He said the agent had accessed files that were publicly available as well as material that was not intended for public access.

    “Not intended”. I’ll bet you whatever this was it wasn’t even secured, it was just hosted somewhere openly.

    1. gitonup · · focus · HN ↗
      Ok, if we're not being at all charitable with the language used by the hosts of the data, let's be equally uncharitable with OpenAI.

      - If "OpenAI" means the company acting on behalf of the company, why were they even looking to do this?

      - If "OpenAI" means they were acting as a proxy for bad actors, what actions do we take to handle that?

      - If "OpenAI" means they were accidentally breaching this system, in what sense does that distinction even matter, in terms of the outcome? If I build a nuke by accident without eng. due diligence, am I legally liable?

      1. pixl97 · · focus · HN ↗
        Hell, we're really getting to the point where the damages that could be caused are like an arsonist in California on a 100F day with 100MPH winds. Who cares who's liable, they are going to burn half the damned state down and cause damage far in excess of their assets. If you don't want to suffer from it, you're going to have to find much better defense measures.
        1. gitonup · · focus · HN ↗
          > If you don't want to suffer from it, you're going to have to find much better defense measures.

          So if someone opens your unintentionally unlocked front door and steals your laptop, you don't care who's liable?

          ETA: There are absolutely burn bans in place in the scenario you're talking about, and common sense prevents those from lighting fires otherwise. In the absolute extreme case that someone _ACCIDENTALLY_ set a fire, without negligence, we have a due process system to handle that. When I see evidence of this for the massive amounts of capital flowing into these companies, I'll gladly eat my words.

          1. pixl97 · · focus · HN ↗
            OK, the Chinese models have also hacked people. What exactly do you expect law enforcement to do.

            While in the OAI case we can easily treat it as a law enforcement action. When Iran does it? What are you going to do start a war?

            The forest in this analog is the internet. As you well know it is filled with threat actors that don't give two shits about your laws. You have been warned. It's your fault when you get burned and have exactly zero recourse.

            1. gitonup · · focus · HN ↗
              In the OAI case where we can easily treat it as a law enforcement action, that's a far cry from "who cares who's liable." If the OAI case can be a law enforcement action, we're on the same page. The fact that sovereign nations don't land under our jurisdiction is not an argument against following up or restricting those that do. OAI is the only matter I'm commenting on.
              1. pixl97 · · focus · HN ↗
                Again, it's a split horizon.

                Tying Sam to a post, calling him a witch, and burning some wood in the general vicinity for what OAI has pulled is a legitimate action.

                The thing is this has zero effective power in stopping this ball that is all ready rolling. It's like the first time a buffer overflow was discovered and used illegally. If that person had been caught and been put in a meat grinder it has had zero effect on the exploits of future buffer overflows. A huge number of people mad at OAI (rightfully so, I want to be sure you understand that) think this will have any preventative effect for what is coming. It will not. A new era of risk is here. Worse if you just watched the the great orange idiot he's yelling full steam ahead, so expect very little to no action by the US government on this.

Open on Hacker News to reply ↗

Unofficial Hacker News client; not affiliated with Y Combinator.