OpenAI agents tried to bruteforce a UN website's API fields
Thread
Unofficial Hacker News client; not affiliated with Y Combinator.
OpenAI agents tried to bruteforce a UN website's API fields
Unofficial Hacker News client; not affiliated with Y Combinator.
tommek4077 · · focus · HN ↗
tempestn · · focus · HN ↗
nicebyte · · focus · HN ↗
OpenAI needs to be held accountable for these incidents. It's not "openAI agents" who perpetrate these, it's OpenAI, the organization. If I personally use an "agent" to break into a company's network and gain access to things I'm not supposed to have access to, I will get the book thrown at me. Yet when openAI does it, they somehow manage to get away with it? And you're defending them? Who's the clown in this situation?
roarch · · focus · HN ↗
i would defend openai insofar as i haven't seen enough evidence that their hacking is disproportionate to their company size, which is larger than many other companies in the space. they've also been (perhaps marginally) more transparent about the hacking their models took part in, e.g. the imperfect-but-very-useful METR report on the HF incident, which means we just have more data on openai agents doing Bad Stuff compared to many other companies. it's obviously unfalsifiable, but it's very possible that other companies have had similar incidents but they decided to keep it under wraps and reach a mutually beneficial agreement with the company they hacked into.
on the other hand, i still don't have a very positive perception of openai throughout all these incidents. lots of their posts on similar posts have read to me as "I'm going to be as transparent as I can about the vulnerabilities I found in your home security" rather than a "we screwed up real bad". but i think there's a conversation about frontier ai to be had that goes beyond just openai here, and hopefully we can find some echoes of sandbox-breaks by other AI companies around the open web to move that conversation a little further.