‹ BackHN Continuity

Thread

OpenAI breaches Medicare, Albanese reveals

256 points · 257 comments · jonnonz

  1. binlog · · focus · HN ↗
    Zero technical details on what the "hack" actually was. Willing to bet it was something as stupid as the data being accessible by changing the query parameter, and rather than own up to their own shoddy security (no doubt built by an offshore contractor) they are going to blame the one who found and reported the bug.
    1. MichaelDickens · · focus · HN ↗
      Does it matter whether the data was poorly secured? LLMs should not be hacking into government medical websites, and if they do, the companies responsible should disclose the incidents as soon as possible.
      1. vorticalbox · · focus · HN ↗
        lets say you have page=0 some of these pages are public and some are private, and the only way you secure the private pages is to not link it on the website.

        is incrementing a url query parameters from 0 -> 1 count as hacking?

Open on Hacker News to reply ↗

Unofficial Hacker News client; not affiliated with Y Combinator.