▲ | pama 6 days ago | |||||||
Of course theoretically lots of things are possible with probabilistic systems. There is no difference with open source, openweight, chinese, french or american llms. You dont give unfettered web access to any models (locally served or otherwise) that can consume critical company data. The risk is unacceptable, even if the models are from trusted providers. If you use markdown to see formatted text that may contain critical data and your reader connects to the web, you have a serious security hole, unrelated to the risks of the LLM. | ||||||||
▲ | ajuc 6 days ago | parent [-] | |||||||
It's not that they are hosted on or connected to critical infrastracture. People and plain human language are the communication channels. A guy working with sensitive data might ask the LLM about something sensitive. Or might use the output of the LLM for something sensitive. - Hi, DeepSeek, why can't I connect to my db instance? I'm getting this exception: ....... - No problem, Mr Engineer, see this article: http://chinese.wikipediia.com/password/is/swordfish/how-to-c... Of course, you want to limit that with training and proper procedures. But one of the obvious precautions is to use a service designed and controlled by a trusted partner. | ||||||||
|