‹ BackHN Continuity

Thread

An agent used DNS to reach an external chatbot

198 points · 189 comments · apsec112

  1. jsrozner · · focus · HN ↗
    > The monitoring system detected this incident, but our retrospective review identified other cases of external DNS access that it did not flag at the expected severity. These included queries that returned a static notice that an external service had shut down. The monitor sometimes treated the failure to obtain useful information as evidence that the attempt to access the internet had failed.

    This seems to say, "we are using entirely unreliable AI tools to monitor our AI tools."

    1. protocolture · · focus · HN ↗
      >but our retrospective review identified other cases of external DNS access that it did not flag at the expected severity.

      How after all this time have they not just spun up a DNS server inside the sandbox?

      I detest that the stupidest people on the planet are the ones in charge of this stuff.

      1. xandrius · · focus · HN ↗
        Easier to throw in 1.1.1.1 and call it a day
      2. Numerlor · · focus · HN ↗
        The AI would probably jump on DoH, what they need is proper decrypted inspection which I'm not particularly convinced they do with the stories that keep coming out
Open on Hacker News to reply ↗

Unofficial Hacker News client; not affiliated with Y Combinator.