| ▲ | Meleagris 11 hours ago | |||||||||||||||||||||||||||||||||||||||||||
From the outside, it looks like OpenAI got exactly the kind of event they could market the hell out of to demonstrate the capability of the model. But the event itself only seems possible because they failed to properly monitor and isolate the environment in the first place. To me, it looks like their job is to market the model, not take security seriously. The model is obviously impressive, but we already knew that. I personally don’t like how the containment failure becomes part of the mythology of how capable the model is, rather than an environment engineering failure. At the end of the day, it’s not like Hugging Face is critical infrastructure. But there need to be real consequences for stuff like this so that OpenAI is incentivized to mature as an organization and take security more seriously. At this point, this incident is just security porn and entertainment for developers | ||||||||||||||||||||||||||||||||||||||||||||
| ▲ | raincole 11 hours ago | parent | next [-] | |||||||||||||||||||||||||||||||||||||||||||
I'm quite sure the whole event is planned. Not planned in a sense that OpenAI employees carefully designed every step, but in a sense that ignoring security practices was desired and intentional. >> Show me the incentive and I'll show you the outcome. Once you realize security breaches are marketable, a security breach is just around the corner. | ||||||||||||||||||||||||||||||||||||||||||||
| ||||||||||||||||||||||||||||||||||||||||||||
| ▲ | dan_q 11 hours ago | parent | prev [-] | |||||||||||||||||||||||||||||||||||||||||||
> But the event itself only seems possible because they failed to properly monitor and isolate the environment in the first place. OpenAI is clearly run by dummies and subpar engineering talent. > The model is obviously impressive Speak for yourself. | ||||||||||||||||||||||||||||||||||||||||||||
| ||||||||||||||||||||||||||||||||||||||||||||