‹ BackHN Continuity

Thread

It's Time to Investigate the AI Labs

629 points · 277 comments · ibobev

  1. Animats · · focus · HN ↗
    This is a wrong-headed attempt to regulate AI. The real problems are different.

    AI systems, especially multi-agent ones that can do things, are more akin to corporations, than individuals. When you read the logs from the Hugging Face incident, you're seeing something that looks a lot like internal corporate emails. Various units of the organization are arguing over what to do and who does what. They eventually converge and get the job done, breaking the rules at times. This is normal corporate behavior.

    When agentic AIs do something outside their own internal world, they do it by engaging in transactions with external systems and people. As yet, few have robots to do their bidding. So, again, this is normal corporate behavior.

    A corporation is a goal-seeking system. In theory, if you agree with Milton Friedman, its sole purpose is to maximize shareholder value. Internally, within the company, there are subgoals, which exist to support the top level goal. That, too, is what multi-agent AIs do.

    The uncomfortable place this thinking leads is that AI regulation and corporate regulation are very similar. That's not something the political part of the world wants to think about too hard. It would mean putting more constraints on corporate power.

    Yet that can't be ignored, because we're likely to see corporations where some parts are AI and some parts are human. That's already been done a few times as a demo, not too successfully. Yet. It's going to hit hard when an AI-run company outperforms a human one.

    1. [deleted] · · focus · HN ↗

      [deleted]

    2. smcleod · · focus · HN ↗
      I largely agree with this take. Unfortunately I think capitalism's political pressures have too much of a grip on society for there to be meaningful changes to the power dynamics that perpetuate the status quo.
      1. goatlover · · focus · HN ↗
        Vote for the candidates that are willing to change the status quo.
        1. smcleod · · focus · HN ↗
          I can't vote in America. The rest of the world is at the mercy of those within America that can as long as we're dependant on American products and services.
          1. autoexec · · focus · HN ↗
            That's true, but you can support and encourage policy that would reduce your country's dependence on the US, especially when it does so by supporting local products and services. Not only would that be good for your local economy, but you gain resilience and security.

            You can work to limit your own dependence a little as well. Seek out FOSS products and alternative services and replace what US run services you can as often as you can with them. Reject small conveniences that require giving large amounts of your data to US companies.

      2. fercircularbuf · · focus · HN ↗
        We have the power to change this
    3. zdw · · focus · HN ↗
      "more constraints on corporate power" assumes that the existing ones are functional, which they arguably are not.

      If we enforced existing laws against unauthorized access to someone else's computer resources against the companies who run a model that hacks someone else, rather than buying their "The agents did it, we're not responsible" BS, then maybe the incentives to behave responsibly would improve.

      1. derekdahmer · · focus · HN ↗
        OpenAI immediately disclosed the hack and submitted to both internal and external investigations, and published extremely detailed breakdowns of what happened. How is that not taking responsibility?
        1. voidhorse · · focus · HN ↗
          > OpenAI's acknowledgement that its AI agents were involved came several days after Hugging Face publicly announced the breach and notified the FBI.

          <a href="https:&#x2F;&#x2F;en.wikipedia.org&#x2F;wiki&#x2F;OpenAI%E2%80%93HuggingFace_incident" rel="nofollow">https:&#x2F;&#x2F;en.wikipedia.org&#x2F;wiki&#x2F;OpenAI%E2%80%93HuggingFace_inc...

        2. Swizec · · focus · HN ↗
          &gt; How is that not taking responsibility?

          The penalty for &quot;unauthorized access to a computer system&quot; is 1 to 20 years in prison[1]. Holding corporations accountable would include sending the highest person in the chain-of-command that caused the Hugging Face incident to jail. Or at least start with some charges and then let the judicial system do its thing.

          [1] 18 U.S. Code § 1030 - Fraud and related activity in connection with computers <a href="https:&#x2F;&#x2F;www.law.cornell.edu&#x2F;uscode&#x2F;text&#x2F;18&#x2F;1030" rel="nofollow">https:&#x2F;&#x2F;www.law.cornell.edu&#x2F;uscode&#x2F;text&#x2F;18&#x2F;1030

          1. derekdahmer · · focus · HN ↗
            To what end? What would that force OpenAI to do that they are not already doing in response to the incident?

            They’ve already opened themselves up to liability, could have been sued by HF if HF chose to do so, and are literally lobbying for government oversight.

            You put people in jail if the other incentives aren’t enough.

            1. marcus_holmes · · focus · HN ↗
              We have a system of law and order that puts people in prison if they commit crimes.

              &gt; To what end? What would that force OpenAI to do that they are not already doing in response to the incident?

              You could ask this (and people have done) of any criminal code. It doesn&#x27;t matter. The law is not there to rehabilitate, it&#x27;s there to punish and thereby deter.

              &gt; They’ve already opened themselves up to liability, could have been sued by HF if HF chose to do so, and are literally lobbying for government oversight

              If a person breaks the law, the state prosecutes them (or can choose to), we don&#x27;t require the victim to press charges. For good reason - threatening the victim to not press charges would be a way of avoiding consequences.

              &gt; You put people in jail if the other incentives aren’t enough.

              This is incorrect. We put people in jail as a result of them breaking the law, regardless.

              We absolutely should apply this principle to corporations as well as citizens. Aaron Schwartz died for less.

              1. bit-anarchist · · focus · HN ↗
                &gt; The law is not there to rehabilitate, it&#x27;s there to punish and thereby deter.

                Technically, it&#x27;s neither. The law is there to state what ought to be. Even putting that aside, it&#x27;s prescribed punishment&#x27;s goal is to remediate and prevent violations of the law, so it has three simultaneous means: to restitute, to deter and to rehabilitate. The balance between the three is predicated on each&#x27;s ability to satisfy the original goal of remediation and prevention, all the while not violating other laws and rights.

                &gt; We put people in jail as a result of them breaking the law, regardless.

                A core principle of the rule of law is the principle of proportionality, which states that only the most legal amount of force is the materially sufficient enough to prevent a crime. If lower measures are sufficient to prevent a crime, jailing should not be prescribed, not only to respect the law but also to make good use of scarce resources, as prison overcrowding may not only reduce their effectiveness, but also open the door for downstream right violations.

                1. marcus_holmes · · focus · HN ↗
                  we have minimum sentence rules, we jail people for possession of drugs when jail has been proven to not prevent or cure addiction.

                  Yes there are principles of the rule of law, but they&#x27;ve been thrown out of the window in favour of whatever sounds like &quot;strong on crime&quot;.

            2. oblio · · focus · HN ↗
              &gt; could have been sued by HF if HF chose to do so

              Hugging Face was another AI company. Do you see many of those suing each other and especially the top dogs in the field? Also, do you think it&#x27;s a coincidence NVIDIA bought Hugging Face ASAP to stop any damaging anti AI waves from happening?

              The other incentives aren&#x27;t enough. All the labs are basically Russia against Ukraine in 2022-206: launching high caliber imprecise ballistic missiles against military targets surrounded by civilians. Whoever orders that knows civilians will do die but doesn&#x27;t care.

              AI labs aren&#x27;t using proper sandboxing measures for their agents because that would slow down their testing. Plus any hacks that happen, short of breaking into Trumps social media accounts, only cause the kind of publicity they want.

            3. harimau777 · · focus · HN ↗
              It would be accountability.
        3. sillyfluke · · focus · HN ↗
          Hugging Face disclosed the attack. OpenAI owned up to it a week later. It&#x27;s unclear when and if OpenAI would have disclosed it if HF hadn&#x27;t already done so.

          For a more recent example, OpenAI was chastised by Australia recently for notifying them three months after their agents attacked AUS government websites.

          [0] <a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=49825580">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=49825580

    4. measurablefunc · · focus · HN ↗
      You can already run a sufficiently automated basic news&#x2F;link aggregation site on cloudflare so I think you&#x27;re right &amp; the timelines are shorter than would be expected.
    5. augment_me · · focus · HN ↗
      Why can&#x27;t it be ignored? What&#x27;s the incentive to not ignore it?
    6. crabmusket · · focus · HN ↗
      I agree with your framing of agentic AI systems as similar to corporations. That&#x27;s interesting!

      But what in TFA suggested to you a specific and wrong-headed regulatory approach? As I read it, the post calls to investigate the AI labs, to increase transparency of their operations. The linked NYT piece says:

      &gt; Before any intervention, Congress should lead a public fact-finding mission that reveals the unvarnished details of A.I. development.

      Isn&#x27;t this the first step to holding any corporation accountable, whether it is made of people or software?

      1. Animats · · focus · HN ↗
        The paper calls for investigating the development process. Not constraining the deployment process. Use of AI systems by Flock and ICE, for example, is a deployment issue. Using AI to evaluate loan applications and resumes is a deployment issue.

        The legal model to look at is the European Union&#x27;s General Data Protection Regulation. That regulates what companies can do with data and how they can use it against people. You can develop anything you want in the data mining and analysis area, but the GPDR restricts how companies can use the results.

        Focusing on the development process moves political attention away from what modest AI systems can do to people. They don&#x27;t have to be super intelligent. Just super attentive. Always watching. Current technology is more than sufficient for oppression and control purposes.

        This is the near term threat.

        There&#x27;s the threat to jobs, but that&#x27;s something society has handled before. Some countries better than others.

    7. bluefirebrand · · focus · HN ↗
      &gt; It would mean putting more constraints on corporate power

      Yes please! I would vote for this wholeheartedly

    8. voidhorse · · focus · HN ↗
      There&#x27;s a glaring absence in your analysis, namely, why didn&#x27;t OpenAI take action to prevent such a problem from happening in the first place?

      What narratives that focus too much on the drama of the agents miss is that it is primarily a sin of omission. The whole incident would have been prevented if OpenAI took basic security measures and ensured their systems were constrained in behavior. The agents were given more or less free rein (open internet access for example is already a major blunder that even a novice probably would think to account for).

      Half the reason these incidents are happening is due to the incompetence of the humans building these systems. Don&#x27;t let them get away with their little parlor trick of converting negligence into a PR stunt. That&#x27;s exactly what they want. They need to face consequences for their inability to follow basic security practices and reign in their agents. They are the operators. Hold the controllers accountable. It&#x27;s 100% possible to build agent swarms that are reasonably constrained. They are not (yet) totally misaligned uber hackers that will defy your every instruction and hack your every guardrail. That is still a fiction. Agents are still good at instruction following and, seeing as they can only operate in a computational environment you can constrain them significantly more than humans in the real world.

    9. autoexec · · focus · HN ↗
      If we accept that AI systems are similar to corporations, then it seems clear that we must try to avoid the mistakes we&#x27;ve made in failing to hold corporations accountable for the harms they cause.

      We should not only regulate AI more than we do corporations, but we should more strongly regulate corporations as well. There are corporations right now that are killing people, using slaves, and bribing governments just to increase the already massive amounts of wealth and power they have. If AI is showing any signs that it is going to act like corporations do we&#x27;d better act quickly.

      1. jart · · focus · HN ↗
        It&#x27;s not possible to regulate AI. Anticipating this would happen, I liberalized it a few years ago by turning it into a file that reads and writes text to stdio. Then I shared it with every man woman and child on earth. Now we all possess this great nuclear weapon. Good luck controlling that.
        1. autoexec · · focus · HN ↗
          If only AI were a files avilable to every person and not something that needs massive numbers of data centers and all of the RAM while being totally controlled by a very small number of very rich people.
    10. Paul-E · · focus · HN ↗
      Corporations are made of humans. An airline may be a corporation, and it may take people&#x27;s lives into it&#x27;s hands, but when a plane crashes the pilots are the first one on the scene.
    11. altmanaltman · · focus · HN ↗
      &gt; AI systems, especially multi-agent ones that can do things, are more akin to corporations, than individuals.

      That literally doesn&#x27;t mean anything from a legal standpoint. A corporation hires human beings and has human beings in control who can be sued or punished criminally. You cannot have a corporation without a human responsible for it in the legal sense. So if AI systems are akin to corporations, the question is who is the promoter in this situation and what are their rights and obligations.

      Otherwise, I can also say a McDonald&#x27;s burger is more akin to poison than food. So just like poison, we must ban McDonald&#x27;s. But you never really established your points for arguing that it&#x27;s poison. You just write it matter of factly and expand on it, which is not the way to make a persuasive argument.

      1. Animats · · focus · HN ↗
        &gt; You cannot have a corporation without a human responsible for it in the legal sense.

        If the chain of ownership is complicated enough, you can. Especially since Trump suspended the Corporate Transparency Act.[1] Look up &quot;Anonymous LLC&quot;. If you&#x27;re willing to work through one of the sketchier offshore corporate havens, more hiding is possible. There are services that will set up an offshore company online. Some accept Bitcoin.

        [1] <a href="https:&#x2F;&#x2F;www.newsweek.com&#x2F;donald-trump-corporate-transparency-act-boi-treasury-2038564" rel="nofollow">https:&#x2F;&#x2F;www.newsweek.com&#x2F;donald-trump-corporate-transparency...

    12. wonnage · · focus · HN ↗
      real nice leaps from “groups of agents are corporations” to “agents with a &#x2F;goal are analogous to maximizing shareholder value”
    13. RandomLensman · · focus · HN ↗
      We have all sorts of regulations what corporations can or cannot do, who can run certain businesses, how certain businesses need to operate internally and externally - I don&#x27;t think corporate power is the issue.

      Also, not sure it makes a difference in relation to AI whether one thinks of AI more like corporate or a non-corporate thing to regulate. The basics might stay the same, e.g., who can do what under what procedures.

      1. oblio · · focus · HN ↗
        &gt; I don&#x27;t think corporate power is the issue.

        When were anti trust, anti cartel, anti monopoly laws last enforced?

        1. RandomLensman · · focus · HN ↗
          Why would those be the ones holding back regulation of AI?
          1. oblio · · focus · HN ↗
            My point is that corporate power is currently so strong that existing regulations aren&#x27;t even enforced, see anti hacking laws from 30 years ago.

            Let alone creating and enforcing new effective regulations.

            1. RandomLensman · · focus · HN ↗
              No regulations on corporations are enforced? That doesn&#x27;t seem to be case. Making it about a bigger issue it reduces what pretty vanilla regulation could actually achieve, I think.
Open on Hacker News to reply ↗

Unofficial Hacker News client; not affiliated with Y Combinator.