‹ BackHN Continuity

Thread

There are no "rogue" AI agents

396 points · 269 comments · zzzeek

  1. binarymax · · focus · HN ↗
    Exactly this. At worst, OpenAI knew about these behaviors and should be prosecuted under CFAA. At best, OpenAI is negligent and should be prosecuted for negligence.

    Luckily there are states and legal departments pursuing such action. So while OpenAI can deflect as much as it wants, that doesn't mean there aren't people who know better and will still do what is necessary to set precedent.

    1. solenoid0937 · · focus · HN ↗
      Angry people don't consider the second order effects of punishment.

      You realize how easy it is to just... not report this stuff, right? Be overly punitive and it will just end all proactive discovery and reporting which is net worse for AI safety.

      The only reason these companies scan for these issues is because they care about AI safety to some tiny degree. If fines become too punitive, they can and will just stop scanning for these incidents entirely.

      Models are becoming smarter and good at covering up their tracks, and so we will just end up with a huge blind spot for this kind of issue.

      1. RandomLensman · · focus · HN ↗
        Has stringent regulation on how people can experiment on dangerous pathogens led to an end of monitoring or proactive discovery?
        1. solenoid0937 · · focus · HN ↗
          Hmm. Turning this around - do you think people are more or less likely to self-report if you threaten them with jail and large fines?

          Let's go back to your example. A grad student has a minor pathogen escape incident, and it doesn't harm anyone. Faced with years in federal prison and the effective end of their future, do you think there is a chance they might not self report?

          I'll give you another example. Lots of pilots have stopped self reporting mental illness because it is extremely punitive for them to do so (after incidents like Germanwings). So the metrics look better, and the actual problem has been swept under the rug.

          1. RandomLensman · · focus · HN ↗
            If you make not reporting potentially worse than reporting, why not?

            Also, why would it come down to single persons always? Mandating processes, controls, clearances, etc is also something done in various areas.

            You can put incentives in to make sure organizations monitor and report vs trying to hide things.

            1. solenoid0937 · · focus · HN ↗
              > You can put incentives in to make sure organizations monitor and report vs trying to hide things.

              Yes, this is exactly my point. Fining companies large % of their revenue and throwing their engineers in prison is not the way to get them to report these issues.

              > If you make not reporting potentially worse than reporting, why not? Also, why would it come down to single persons always? Mandating processes, controls, clearances, etc is also something done in various areas.

              Hiding things is way easier than finding things. Take the model hacking incidents. They could have just done their searches in a way that didn't turn up anything. Then they could say, "well, we did look for it..."

              As far as auditing goes: I've never met an auditor that doesn't find something the company isn't okay with them finding.

              1. RandomLensman · · focus · HN ↗
                Hiding things is not necessarily trivial when a lot of processes and controls ars mandated. For starters, could just try to make incidents themselves less likely. Not looking in certain specified ways might also not be an acceptable option, for example.

                Why do you think we even have regulations for how to deal with dangerous things then?

                1. esseph · · focus · HN ↗
                  > Why do you think we even have regulations for how to deal with dangerous things then

                  Scapegoats for the ruling elite when things go south, despite them knowing what could happen and giving them the money to do it anyway. You see, we never go after the capital (money) in that situation.

                  1. RandomLensman · · focus · HN ↗
                    How about wanting certain risks to not materialize?
Open on Hacker News to reply ↗

Unofficial Hacker News client; not affiliated with Y Combinator.