Remix.run Logo
0xbadcafebee 3 hours ago

No, you have not been safe all this time. Every security person I know has known for ages that you need to run NoScript to block all javascript if you want to be remotely secure on the web. We also know about all the 0days found on all browsers every year. Same for mobile devices. You have always been insecure. AI just makes it slightly faster to do what hackers have been doing for ages.

BTW: Mythos is not new. OpenAI literally released a press release 1 month ago talking about GPT 5.4's redteaming features being so powerful they require ID verification to use it, and will use heuristics to downgrade you if you look like you're doing something shady. I guess everyone's got a short-term memory, or Anthropic's PR is so good that people genuinely don't understand that OpenAI's models are superior to Anthropic's.

rootusrootus 3 hours ago | parent | next [-]

> Anthropic's PR is so good that people genuinely don't understand that OpenAI's models are superior to Anthropic's

That is a provocative statement that would be especially interesting if you were to add some supporting evidence.

CuriouslyC 3 hours ago | parent | prev | next [-]

I've been mystified by how sticky Anthropic's marketing is for a while. It's really surprising given how poorly they run community relations compared with OAI, and how they're just now starting to be transparent.

Rekindle8090 3 hours ago | parent | prev [-]

Noscript breaks 99% of websites these days, entirely. Netsec freaks are so disingenous

"BTW: Mythos is not new. OpenAI literally released a press release 1 month ago " these two sentences make no semantic sense together

p-e-w 3 hours ago | parent [-]

The claim that you need to disable JavaScript to be secure is bullshit anyway, otherwise disabling JavaScript would be standard practice in any security-critical environment such as high-level government offices, which it most certainly isn’t.