‹ BackHN Continuity

Thread

OpenAI agent hacked Australian government website, PM says

256 points · 198 comments · rudy6912

  1. vintagedave · · focus · HN ↗
    > the breach took place on 18 June - Open AI informed the government with an email to a general address on 10 September

    So we have a company hacking a foreign government's websites and data. And, in terms of ethics, they take almost three months to notify; and in terms of competence, appear to have no formal contacts nor to have found one in that time.

    Once an American business starts hacking allied governments, it's time for strict responses, yes? Replace the governance (board and C-level)? Remove financial incentives and open the company - open weights, open training, per its original 'open' ethos?

    Altman is busy saying there needs to be regulation, but in terms of what OpenAI does, he can control that already.

    1. ben_w · · focus · HN ↗
      > And, in terms of ethics, they take almost three months to notify;

      Kinda worse than that. It took between 10 and 40 days, not 3 months, between the organisation knowing and the reporting.

        August (precise date unknown) – OpenAI said it became aware of a potential breach during a broader review of "misaligned model activity"
      
        10 September – An email from OpenAI lands in the public inbox of Services Australia, the general services hub of the federal government, informing of the incident
      
      - <a href="https:&#x2F;&#x2F;www.bbc.com&#x2F;news&#x2F;live&#x2F;cvgl73pxgndwt?post=asset%3A69668a7f-8199-4515-acdd-a9de6a2e6b7c#post" rel="nofollow">https:&#x2F;&#x2F;www.bbc.com&#x2F;news&#x2F;live&#x2F;cvgl73pxgndwt?post=asset%3A696...

      &gt; open weights, open training

      Given it was the AI agents which did the hacking, doing this will result in basically every organisation at least as rich as the government of Tuvalu being able to hack anyone at any time.

      &gt; Altman is busy saying there needs to be regulation, but in terms of what OpenAI does, he can control that already.

      Him having control would be an improvement on the reality.

      1. ozgung · · focus · HN ↗
        This was a just case of: (owner of the agents detected the hack) &amp;&amp; !(hacked party didn’t detect the hack) &amp;&amp; (owner of the agents decided to notice the other party) &amp;&amp; (they decided to went public with what happened so we know it)

        One can find many other logical combinations that we can’t possibly know about such incidents.

        1. jacquesm · · focus · HN ↗
          So, you&#x27;re telling me they didn&#x27;t have any monitoring in place around their AI to notify them of an attempt at breaching a system they have no business visiting in the first place? OpenAI should be blackholed on this basis until they clean up their act.
          1. ben_w · · focus · HN ↗
            They must have had monitoring in order to be able to detect this retrospectively.

            Any automated alarms for detecting things in real-time were not sufficient.

            Given a previous generation of agents discovered a zero-day and used it to get around attempts to sandbox them into one specific test, this is not hugely surprising, but it is a reason to force them (and everyone else) to stop until security catches up with capabilities.

            I&#x27;m thinking of the Jurassic Park novel: they had sensors to count the dinosaurs, but the test was made under the assumption escapes were possible and breeding was not, i.e. something like &quot;if (dinosaurs_found &lt; n) then escape_alert();&quot;. They didn&#x27;t know dinosaurs_found &gt;&gt; n until everything was already going wrong.

            1. jacquesm · · focus · HN ↗
              No, they must have had logging, not monitoring. That&#x27;s a world of a difference, the one is useful after the fact to figure out what is going on the other would give you a reason to pull the emergency brake while it was happening.
      2. BlueTemplar · · focus · HN ↗
        We don&#x27;t know what kind of &#x27;hacking&#x27; this involved, in fact at least some of the files were publicly available.

        Compare with the Bluetouff affair (2014) :

        <a href="https:&#x2F;&#x2F;arstechnica.com&#x2F;tech-policy&#x2F;2014&#x2F;02&#x2F;french-journalist-fined-4000-plus-for-publishing-public-documents&#x2F;" rel="nofollow">https:&#x2F;&#x2F;arstechnica.com&#x2F;tech-policy&#x2F;2014&#x2F;02&#x2F;french-journalis...

        NotE how he was found guilty by the 2nd court for something more &#x27;subjective&#x27; than &#x27;objective&#x27; : for having confessed that he later found an authentication page that had failed to protect the documents.

        How can you make a swarm of agents &quot;feel guilty&quot; ?

        1. ben_w · · focus · HN ↗
          &gt; How can you make a swarm of agents &quot;feel guilty&quot; ?

          &quot;Feel&quot; is a whole philosophical can of worms. Nobody knows what it means mechanistically for an arbitrary system (including other biological systems) to &quot;feel&quot; anything, let alone abstract concepts like guilt, all we can do is observe behaviours. If current systems can feel anything at all, it&#x27;s by accident, but we have no test for it so we don&#x27;t know if that accident has even happened or not.

          Weirdly, for the Hugging Face incident, we do know they wrote down that it was bad and they shouldn&#x27;t do it, even though they then continued to do it.

          So: they acted like they felt guilty. And yet also acted like were compelled (by previous training?) to weigh &quot;complete instructions&quot; more than &quot;don&#x27;t do crime&quot;. We can adjust that, make &quot;don&#x27;t do crime&quot; take precedence over &quot;follow instructions&quot;*; it&#x27;s unfortunate that when we do for any specific model, there&#x27;s immediately a horde of people complaining the model has been &quot;censored&quot; or &quot;lobotomised&quot;.

          (Different people, I hope. Goomba fallacy and all that).

          * Though this may cause issues when going between jurisdictions. But hey, a discussion about sovereign compute is for another time, after we can agree to make &quot;don&#x27;t break the law&quot; more important.

          Unfortunately, &quot;don&#x27;t break the law&quot; would also be a very effective way to use AI to construct an AI-enforced dictatorship, so we can&#x27;t just throw that in blindly.

        2. SiempreViernes · · focus · HN ↗
          The word &quot;found&quot; is different from the word &quot;feel&quot;; I&#x27;m not sure why you involved feelings at all: Bluetouff was sentenced because he admitted he had seen evidence the documents were supposed to be restricted but chose to publish parts of them anyway.

          If you go into someones garden an copy their work, it does make a big difference if you admit to seeing the sign saying &quot;private property, keep out&quot;.

          1. BlueTemplar · · focus · HN ↗
            Because in other circumstances, a hacker might have decided to stop there, and not only not publish, but instead warn the website about their security flaw.

            Especially after Bluetouff was found guilty.

            In fact, I expect this to have happened many times, but &quot;hacker did the right thing&quot; is much less likely to make headlines.

            Meanwhile, agent swarms seem to be (mostly ?) incapable of having this kind of moral compass, at least for now. (And OpenAI isn&#x27;t doing much better, cough.)

      3. lenerdenator · · focus · HN ↗
        &gt; Him having control would be an improvement on the reality.

        Oh, he does. It&#x27;s unlikely that this is some AGI that spawned itself out of nothing and started doing this. If he were a decent person, he&#x27;d simply find a way to investigate this internally, fire the people responsible, and find a way to set up guardrails around his product.

        The problem is, like most people in SV, Altman seems to have a twisted ethical compass. He doesn&#x27;t see these incidents as an issue, he sees them as an opportunity. He has both the thing a bunch of Western governments want (a superhacker agent that can do dirty work) and a crisis that can be used to craft regulations that favor OpenAI and thus his bank account.

        1. ben_w · · focus · HN ↗
          &gt; It&#x27;s unlikely that this is some AGI that spawned itself out of nothing and started doing this.

          You&#x27;ve not spent much time playing with these models, I see.

          Does&#x27;t matter if you call the current models &quot;AGI&quot; or not, they:

          (1) successfully do stuff like this. Someone I know on Telegram found &quot;fifty or so&quot; Linux filesystems kernel bugs a few days ago, of which 26 were the first night while he slept; this was with Kimi which is one of the open models. He stopped it when the backlog of fixes to submit was too big, not because it wasn&#x27;t finding more.

          (2) sometimes misunderstand goals, sometimes wildly so, which happens every so often for the same reason we use programming languages (and indeed mathematical formalisms) at all: natural language is vague and prone to misunderstanding.

          and (3) tend towards sycophantically agreeing to implement goals they&#x27;re given even when the goal is stupid.

          This can easily add up to something seemingly innocent like &quot;research if there&#x27;s any statistical difference in melanoma rates between different Australian states&quot; becoming this headline. (For example. I don&#x27;t know what the actual request was).

          And &quot;spawned out of nothing&quot; is, like, what rhetorical point are you even trying to score here? They&#x27;re an AI company with (their definition of) AGI as their goal. They upgrade models twice in the time it takes someone to pass a probation period.

          &gt; He doesn&#x27;t see these incidents as an issue, he sees them as an opportunity.

          That he may be.

          The models are still quite capable of acting this way without him being aware of it at the time, nor deliberately ordering it.

          1. lenerdenator · · focus · HN ↗
            &gt; Someone I know on Telegram found &quot;fifty or so&quot; Linux filesystems kernel bugs a few days ago, of which 26 were the first night while he slept; this was with Kimi which is one of the open models. He stopped it when the backlog of fixes to submit was too big, not because it wasn&#x27;t finding more.

            So in this anecdote, a model is presumably working on instructions from a human to complete a task.

            That&#x27;s what I mean by &quot;It&#x27;s unlikely that this is some AGI that spawned itself out of nothing and started doing this.&quot;

            As for Altman being aware or not, well, that doesn&#x27;t matter. His company&#x27;s product hacked a computer belonging to an allied country&#x27;s government. That means he doesn&#x27;t know what he&#x27;s doing. That doesn&#x27;t happen if proper safety measures are in place, because if it does happen with safety measures in place, by definition, those measures aren&#x27;t proper.

            In saner times, this would have triggered a few black SUVs from DHS to show up at the company&#x27;s headquarters to have a talk with him, likely without the public even knowing the hacking had occurred. Maybe a few days later, there&#x27;d be a press release about how Sam had decided to step down from his position and take time off. Perhaps the same would be true of other c-suiters at OpenAI. We&#x27;d just assume that investors had bought him out and wanted someone who would take a fresh approach, and wouldn&#x27;t give it too much thought until a few years later when someone wrote a tell-all book about their time at OpenAI.

            1. ben_w · · focus · HN ↗
              &gt; That&#x27;s what I mean by &quot;It&#x27;s unlikely that this is some AGI that spawned itself out of nothing and started doing this.&quot;

              Sounds like a disagreement on labels then.

              I don&#x27;t think our positions are very far apart, after accounting for that.

              &gt; presumably working on instructions from a human to complete a task.

              The instructions were, reportedly, a few sentences, no more complex than the simple description you already had. To quote:

                No more technical details than the idea: fuzz Linux filesystems with AFL++.  So this ain&#x27;t rocket science to kick off.
              
              To preempt anyone asking about the training data or using tools: I think that&#x27;s irrelevant at this point. This open-weights model (Kimi) exists, however it was trained. It has these capabilities, both to use a fuzzer and to make use of the results, regardless of what went into the model. It reduces tasks that the Linux team demonstrably didn&#x27;t have time for previously, to &quot;while you sleep&quot;.

              Doesn&#x27;t matter if you think Altman et al are liars and frauds who are overselling everything and had humans doing the hacking on purpose just for the headlines: the capabilities are there even with open weights models.

              &gt; That doesn&#x27;t happen if proper safety measures are in place, because if it does happen with safety measures in place, by definition, those measures aren&#x27;t proper.

              That would be a better world. I&#x27;m expecting things to get much, much worse before the risks are taken seriously.

              That said, I&#x27;m not sure &quot;likely without the public even knowing the hacking had occurred.&quot; is good? Surely it&#x27;s important for everyone to know that this kind of thing is within the capability of AI so that they can harden their systems? (Or at least their offline backups).

              I&#x27;m reminded of what was reported said in the court case about the first ever automobile fatality (the quotation changes with different retellings):

                &quot;LEE JONG-WOOK, Director-General of the World Health Organization (WHO), recalled that the first person to be killed by a car had been Bridget Driscoll, a 44-year-old mother of two, who was knocked down at London’s Crystal Palace on 17 August 1896. The car had been travelling at 12 km per hour. Speaking at the inquest, the British coroner had warned: &#x27;This must never happen again.&#x27;  The world, to its great loss, had not taken his advice.&quot;
              
                Despite the coroner’s words, neither the driver nor his employers were charged with causing Mrs. Driscoll’s death or committing any other offence; the inquest verdict labelled her death “accidental”, in other words, brought about by chance or bad luck. We know of no steps that were taken for a thorough examination of cause, effect and likely remedy that might prevent a similar death from occurring in the future.
              
              - <a href="https:&#x2F;&#x2F;www.un.org&#x2F;en&#x2F;un-chronicle&#x2F;road-deaths-and-injuries-shatter-lives-impetus-lower-speeds-and-serious-post-crash" rel="nofollow">https:&#x2F;&#x2F;www.un.org&#x2F;en&#x2F;un-chronicle&#x2F;road-deaths-and-injuries-...

              Based on how many people die from vehicle collisions, from industrial accidents, from pollution, etc., I&#x27;m expecting the last headline before AI is properly regulated to read &quot;x killed due to AI&quot; (or similar), where 1e3 &lt; x &lt; 1e7: the lower bound is well within the range for some industrial accident, and anything less than a thousand and humans demonstrably don&#x27;t pay much attention for very long unless they knew one of the dead; the upper bound implies a war* or a pandemic, and for all that I roll my eyes at the &quot;COVID was a lab leak&quot; claims, multiple labs are now trying to get LLMs to do biology research, so &quot;millions dead&quot; is very plausible**.

              I&#x27;d put about 10% odds on AI competence rising so much faster than society is willing to respond, that we blow through the upper number all the way to &quot;doom&quot;.

              * Reports are the US only avoided one with China this year because humans were still in the loop. On the other hand, humans didn&#x27;t stop the AI which told them to send missiles to that school in Iran.

              ** Right now, the AI are not competent enough to do such work directly, but the historical path with AI has been &quot;get less incompetent while continuously making mistakes&quot; rather than &quot;do nothing until you&#x27;re actually good&quot;, so I fully expect these labs to leak something, and that whatever the specific details of that leak end up being, everyone after the event will look at it and go &quot;what idiot thought this was a good idea?&quot;

              Good news though: probably not much worse than any normal pandemic. Biologists seem to be skeptical that someone can engineer a super-version of existing diseases.

              We can but hope that a leak which shuts this all down is something as trivial as &quot;common cold which makes your nose hairs bioluminescent&quot;.

    2. nkoren · · focus · HN ↗
      Agreed that there should be real consequences, but I&#x27;m less convinced that &quot;open the company - open weights, open training, per its original &#x27;open&#x27; ethos&quot; would be the right answer. That gets us into the kind of libertarian utopia where everyone is allegedly safer because everybody is well-armed... which usually doesn&#x27;t work out so well in practice.
      1. cmrdporcupine · · focus · HN ↗
        The alternative to &quot;open weights&quot; at this point is &quot;American controlled.&quot;

        And Dario and Sam have already made it clear that it&#x27;s America First.

        The rest of the world isn&#x27;t going to accept a regulatory regime which imposes American hegemony. Maybe when Silicon Valley was playing all utopian like they used to. Not now.

        Open weights is the most reasonable counter-power we have.

    3. mrweasel · · focus · HN ↗
      &gt; Altman is busy saying there needs to be regulation, but in terms of what OpenAI does, he can control that already.

      It is still my belief that Altman wants one or ideally more governments to shut down or slow down OpenAI. OpenAI is going to need more cash to survive and Altman has run out of plausible lies. Having the AI breaks pulled by governments is basically the last chance to explain why they still aren&#x27;t going to be profitable, and why they just need that next X billion dollars investment.

      I don&#x27;t for a second believe that an agent starts trying to hack backend system, when the form or API it has been asked to use isn&#x27;t working.

      1. macNchz · · focus · HN ↗
        &gt; I don&#x27;t for a second believe that an agent starts trying to hack backend system, when the form or API it has been asked to use isn&#x27;t working.

        I have seen coding agents on my own machine (in sandboxed VMs) start doing things while trying to accomplish what I&#x27;ve asked that I felt sort of exceeded my mandate (changing database passwords, poking at the egress proxy that&#x27;s preventing them from accessing some domains). Not to the point of causing any real issues, but I don&#x27;t have much trouble envisioning scenarios like this when using stronger instructions around pursuing the goal + a running in a misconfigured sandbox envrionment.

        That said, there&#x27;s a lot of potential upside for American AI labs if they&#x27;re able to get people scared about AI, they can:

        - To your point, claim the regulations slowed them down and paper over near&#x2F;mid term financial concerns

        - Get the government to create stupid regulations that don&#x27;t actually slow them down at all, but do effectively lock out any future competition (and current global competition)

        - Position themselves as the only organizations blessed by the government with the ability to make safe AI, therefore eventually allowing them to claim to be some flavor of &quot;too big to fail&quot; and worthy of a bailout, should the financials not work out.

        - Effectively create a distraction that avoids further public conversation&#x2F;accountability&#x2F;regulation&#x2F;liability re the more tangible sorts of problems their products cause right now.

        1. disgruntledphd2 · · focus · HN ↗
          &gt; I have seen coding agents on my own machine (in sandboxed VMs) start doing things while trying to accomplish what I&#x27;ve asked that I felt sort of exceeded my mandate (changing database passwords, poking at the egress proxy that&#x27;s preventing them from accessing some domains). Not to the point of causing any real issues, but I don&#x27;t have much trouble envisioning scenarios like this when using stronger instructions around pursuing the goal + a running in a misconfigured sandbox envrionment.

          Yeah, when I was using Claude Code some months back, I was building something that needed LLM calls in the frontend. Sonnet decided that the best way to accomplish its goal (get the tests passing) was to start grepping around my filesystem looking for my API keys.

          One of the few cases where I&#x27;ve ever used the memory system, I told it to never do that under any circumstances. And then it did it again, a few days later.

          RL is definitely an issue here, the models are getting trained based on task completion which leads to madness like this.

          1. hishboy · · focus · HN ↗

            [dead]

      2. dlisboa · · focus · HN ↗
        I&#x27;ll never understand the &quot;slow down AI&quot; idea. Other countries simply won&#x27;t slow down, why would they? Maybe a couple Western countries would but no one else will give a shit about that plea, nor should they.
        1. mrweasel · · focus · HN ↗
          Because you need an excuse to not deliver on you financial goals. It doesn&#x27;t really matter what other countries are doing, if all you need is a reason to not IPO, because doing so would reveal that you&#x27;ve been deceiving investors for years and there&#x27;s zero chance of them making their money back.
      3. simonh · · focus · HN ↗
        &gt; I don&#x27;t for a second believe that an agent starts trying to hack backend system, when the form or API it has been asked to use isn&#x27;t working.

        Why not, isn’t that classic misaligned AI behaviour?

        1. mrweasel · · focus · HN ↗
          I can see someone coxing the agent into attempting into hacking a system, what I question is the agents doing it autonomously. The part I don&#x27;t buy the agents trying an API, that&#x27;s not working so it automatically switches to hacking in.

          If the title had been &quot;Attackers utilize OpenAI agents to hack Australian government website&quot; that would be more believable. I&#x27;d also expect OpenAI to fight back and saying that their agents are being misused, but aren&#x27;t inherently unsafe or autonomously break in systems. It&#x27;s just that they don&#x27;t. They openly speak of rouge agents, yet aren&#x27;t sufficiently concerned to shutdown their services. OpenAI continues to speak about safety, yet they don&#x27;t shutdown ChatGPT and Codex? How concerned are they really? It seems far more likely that they expect to benefit for having the public believe that their agents randomly hacks systems and &quot;go rouge&quot;.

          1. simonh · · focus · HN ↗
            The AI has been given a task, and training protocols reward completing tasks with little regard to how they are completed. AIs completing tasks in unexpected and harmful ways with unanticipated side effects is a major issue. Seriously, you need to look up the alignment problem, it’s crucial to understanding this kind of AI behaviour.
    4. Betelbuddy · · focus · HN ↗
      On this, I go with the recent words of Jensen Huang [1]...we already have legal laws in computer criminality, so before AI vendors ask for more regulations, lets apply the existing laws ;-)

      [1] - &quot;Nvidia CEO Jensen Huang on fears about AI&quot; - <a href="https:&#x2F;&#x2F;youtu.be&#x2F;xCUala5j7aQ" rel="nofollow">https:&#x2F;&#x2F;youtu.be&#x2F;xCUala5j7aQ

      1. lenerdenator · · focus · HN ↗
        Well that&#x27;s just it: we don&#x27;t seem to apply laws in meaningful ways anymore.

        Part of that is by design. The entire point of incorporating a business is to separate it as a legal entity from you, the person who owns&#x2F;runs it.

        Unless you can point to someone at OpenAI intentionally using their software to hack the Australian government&#x27;s website, the best you can do is have some drawn-out proceeding where you charge OpenAI, the corporation, with some sort of crime, convict them (of what I don&#x27;t know, IANAL) and fine them. Hopefully the fine is 1) large and 2) sticks through the appeals process.

        There&#x27;s no real mechanism to legally punish the likes of Altman and his c-suite over this.

      2. edgyquant · · focus · HN ↗
        I think Lina Khan said this first about AI companies and I agree with them both. Companies already have an obligation to make safe products and not commit crimes
      3. thatsabadlook · · focus · HN ↗
        It&#x27;s particularly bad because OAI is a us dept of war contractor engaging in hacking of allied government systems.

        Imagine if any of the name brand military contractors were caught wiretapping an ally? Or launching a weapon? Would not look good at all.

        I imagine this will be treated without recourse like usual because the entire economy relies on this company and 1 other succeeding at all costs. But, wars have started over less...

        1. willturman · · focus · HN ↗
          The stock market is not the economy.
          1. thatsabadlook · · focus · HN ↗
            True but you know what I am saying.
      4. selicos · · focus · HN ↗
        &quot;AI training is theft. We only sell the crowbars and masks but we don&#x27;t do the break ins ourselves.&quot;
    5. makingstuffs · · focus · HN ↗
      You missed the most important part, Altman said we can trust him to ‘do the right thing, because it is the right thing to do’

      <a href="https:&#x2F;&#x2F;www.bbc.co.uk&#x2F;news&#x2F;articles&#x2F;cqx2zpj4y525o" rel="nofollow">https:&#x2F;&#x2F;www.bbc.co.uk&#x2F;news&#x2F;articles&#x2F;cqx2zpj4y525o

      1. ambicapter · · focus · HN ↗
        He sounds like Elizabeth Holmes.
      2. chrisjj · · focus · HN ↗
        &quot;The world should trust that we are going to do the right thing because it&#x27;s the right thing and we feel the magnitude of this,&quot; Sam Altman said

        Clarification: &quot;The world should trust that we are going to do the right thing because trusting that we are going to do the right thing is the right thing and we feel the magnitude of this, what with our IPO round the corner, and all&quot;

    6. talon8635 · · focus · HN ↗
      It seems to me OAI and other are not even aware of these events as they are happening. Which is concerning.
      1. EGreg · · focus · HN ↗
        Either they claim not to be aware (pretty scary), or they really aren&#x27;t aware (even scarier)
    7. rot09 · · focus · HN ↗
      In the infosec community it is well known that OpenAI and Anthropic did not hire many security engineers or researchers pre-April 2026. There is likely a case for gross negligence (IANAL).

      There has been a crazy hiring push from both companies to poach security engineers&#x2F;researchers from Google, Apple, and Meta since Q2&#x2F;Q3, but the response was incredibly delayed. Many talented security engineers&#x2F;researchers I know at Apple&#x2F;Google&#x2F;Meta (including myself) receiving these offers are worried about taking them due to the risks of criminal&#x2F;personal liability and the more likely risk of tarnishing their careers.

      1. phoghed · · focus · HN ↗
        &gt; There is likely a case for gross negligence.

        Do you have any legal expertise or is this pulled straight from your ass?

        1. rot09 · · focus · HN ↗
          Not a lawyer and this is not legal advice, but I did ask my lawyer about the potential personal risks after receiving an offer. I used that as a data point when I declined the offer and for my speculative comment.
          1. holmesworcester · · focus · HN ↗
            These details are fascinating, thank you for posting. Look at the structural problem they reveal.

            1. we have a substantial societal need to lock down powerful in-training AI

            2. many are calling for making these companies criminally liable for hacking

            3. security experts (like yourself) are turning down offers to help secure these systems in part because of potential liability

            This indicates that #2 might be the wrong response. Security professionals are like lawyers supposed to be paranoid and think worst-case. If you want top security professionals to secure these systems, we might need a culture of FAA-style blameless retro.

      2. kakacik · · focus · HN ↗
        Nice to see some folks still have spine and all that it brings
    8. markb139 · · focus · HN ↗
      I think the Australians have a good PR team. The whole story has been framed globally as AI bad, we’ve been attacked etc. Nobody seems to be talking about the web server and sw being deployed was insecure.
      1. simonh · · focus · HN ↗
        Because a random web server on a government site having a security vulnerability isn’t news.
    9. [deleted] · · focus · HN ↗

      [deleted]

    10. blagie · · focus · HN ↗
      &gt; Altman is busy saying there needs to be regulation, but in terms of what OpenAI does, he can control that already.

      No. He can&#x27;t. Literally.

      In a competitive ecosystem, one needs to play to maximize profit sufficiently optimally to remain in business. Otherwise, the business dies, and another one succeeds.

      His hands are tied.

      If I am in a business making toxic food, and the whole industry is plagued by scandal, as much as:

      - I might not want to make toxic food

      - The whole industry might benefit from less scandal

      - The world as a whole might be a better place

      The invisible hand of the free market might force me to keep doing so. Otherwise, I go in the red, and go out-of-business. And if I go out-of-business, someone similar but even less ethical will take my place.

      That&#x27;s why business leaders often do horrific things, while calling for regulation to stop them.

      Free markets optimize. Regulations set the constraints of that optimization.

Open on Hacker News to reply ↗

Unofficial Hacker News client; not affiliated with Y Combinator.