Remix.run Logo
gastonmorixe 2 hours ago

Like any other software or dependency. Open or close.

Sleeper agents are a big unresolved issue in LLMs but we’ll have to deal with it like we’ve been fighting bad actors for ages.

Also, saying that “open source models” may be the problem is incorrect. What makes this an issue of open source only? Nothing in my mind prevents a frontier lab model going rogue. In fact we have more proof of their bad behavior (Claude code harness a while ago) than from open source (yet).

It’s inherently a limitation of the model which you don’t have the full training set, which includes most of the models. Closed or open don’t matter.

chrismorgan an hour ago | parent | next [-]

No, only like any other closed source software or dependency. It’s at the very least harder to hide things like that if all the source is available.

The title here is a misnomer; none of these models are open source, they’re only what is most commonly called open weights (though I’m still not comfortable with the word “open” in there, rather than “free” like in “freeware”).

thesz 39 minutes ago | parent [-]

  > It’s at the very least harder to hide things like that if all the source is available.
In the training of LLMs, the order of batches and their content can introduce adversarial behavior [1].

[1] https://www.pure.ed.ac.uk/ws/portalfiles/portal/256761768/Ma...

You can get all the source to validate training and weights and still end up with adversarial behavior in the model.

emsign an hour ago | parent | prev | next [-]

Excatly. Secret government deals could mean backdoors. And then there's the billions of tokens of training data.

typ 41 minutes ago | parent | prev [-]

[dead]