‹ BackHN Continuity

Thread

Pop!_OS bans AI-generated code from much of its codebase

116 points · 167 comments · bundie

  1. ItsMattyG · · focus · HN ↗
    I don't see how this will survive the attacker/defender gap as ls get increasingly good at cyber security and finding 0 days... but maybe it's an obscure enough is it doesn't matter?
    1. VCFundedGenYer · · focus · HN ↗
      AI finds a lot of "vulnerabilities" but most are fake, untested, or not actually vulnerabilities.

      Reminder that AI is quite stupid.

      1. dumberquestions · · focus · HN ↗
        I think this is just plain denial, AI has found many high severity vulnerabilities.
        1. zdragnar · · focus · HN ↗
          There's plenty more false positives than actual finds. There are still actual finds, but that doesn't change all the false positives.
          1. DaSHacka · · focus · HN ↗
            This is why you run a second agent to verify any assertions.
            1. zdragnar · · focus · HN ↗
              It'd be great if people did that. They don't. Open source projects with limited budgets shouldn't have to spend money from those limited budgets (or personal funds!) filtering through what amounts to spam. That's why there was a slew of open source projects that turned off issues on github and stopped taking outside contributions- they literally couldn't afford to keep up with the nonsense lazy bums were sending their way.
Open on Hacker News to reply ↗

Unofficial Hacker News client; not affiliated with Y Combinator.