| ▲ | blovescoffee 2 hours ago | |
Huggingface literally reported the outage separately and did not know who caused it at first. | ||
| ▲ | jscd an hour ago | parent | next [-] | |
Does that change anything? We're still relying on OpenAI's account of where the LLM was running, what sandboxing restrictions were in place, the task it was given, etc. Even assuming they're telling the truth about what this LLM's goal was, they still have motivation to be less than honest about the state of their "highly isolated environment." Either this model was really operating in a truly locked down intranet and it really did a series of highly complex lateral movements and privilege escalations in order to escape it... Possible, but incredible. _Or_, the "highly isolated environment" was less secure than they make it out to be, and now they have to choose between a) admitting they let these models with security precautions disabled run in YOLO mode, with the only significant precaution being a third-party proxy server, _and_ their security team didn't notice a huggingface blitz happening on their network during a weekend, all of which seems reckless and negligent; or b) lying about the state of their internal security, dodging accusations of irresponsibility, and now they get to also claim their product is so advanced they can't even contain it. | ||
| ▲ | dminik 26 minutes ago | parent | prev [-] | |
Did OpenAI not communicate with Hugging Face? The incompetence here is staggering. | ||