Remix.run Logo
▲ wg0 4 hours ago

They're advertising GLM for free.

Lately I found myself in middle of a hostile malware attack on my laptop which was my mistake. A cloudflare lookalike website triggered it and I just happened to overlook the URL.

In panic I headed to Claude and first request was denied. Not looking beyond scope.

Desperate - I fired opencode with DeepSeek v4 Flash (not even 4.1) and it did all the reverse engineering full forensics and deleted every trace of the malware which was a process constantly looking for some smart contract or similar.

So no, GLM 5.3 is fine. Thank you for the free advertisement.

▲gravypod 2 hours ago | parent | next [-]

This part of the article really stands out:

> On Sept. 17, NIST’s Center for AI Standards and Innovation (CAISI) published its own assessment of GLM-5.3’s cyber capabilities. CAISI found that GLM-5.3 is “the most cyber-capable open-weight model released to date” and that it lags the US frontier by about four months on an aggregate of CAISI’s cyber benchmarks.

To translate: "This free model, you can host yourself, is at max 4 months behind Anthropic - as confirmed by Anthropic and the US Government - and it won't reject your requests"

Interesting play before an IPO...

▲lelanthran an hour ago | parent | next [-]

> Interesting play before an IPO...

I can't see how they can IPO in the current conditions; there's no moat, there's no stickyness, there's no damn profit! They're 4x months, AIUI, ahead of the free models.

▲adriand 2 hours ago | parent | prev | next [-]

This completely ignores the world we are creating here. We are setting ourselves up for a massive cyber disaster. The safeguards on US models are insufficient but at least there are safeguards. The fact there are open weight models floating around that are capable of wrecking the economy is a genuine problem! One that Anthropic is doing us a service by warning us about.

When someone wielding a non-safeguarded model deletes the money in everyone’s bank account, I look forward to the HN comments claiming it’s an attempt by Anthropic to pull off regulatory capture.

▲hgoel an hour ago | parent | next [-]

If you seriously believed in that risk, you'd be calling for the regulation of computation at the same level as nuclear weapons, including destabilizing any country that pursues homegrown fab technology. If your proposal is:

- let our former employees review all of your work at your expense

- anoint us as the arbiters of what everyone else is allowed to do

- ban open research

Then you are not taking any of the examples your providing seriously. Otherwise you're essentially saying, to prevent people from making nukes at home, we should heavily restrict physics education and research instead of limiting access to uranium.

▲polytely an hour ago | parent | prev | next [-]

at least with GLM the banks can also use it to defend themselves for cheap, in the world Anthropic and co want everyone in the world is paying them an enormous sum in protection money every month to be allowed to defend themselves from hackers. it's such a racket.

▲platinumrad 2 hours ago | parent | prev | next [-]

GLM 5.2 was used by Hugging Face for defense when they were being hacked by OpenAI because the guardrails on closed models meant they refused to help.

▲AuthAuth 29 minutes ago | parent | prev | next [-]

>When someone wielding a non-safeguarded model deletes the money in everyone’s bank account

Even more reason to let people go wild with open models

▲abtinf an hour ago | parent | prev | next [-]

> capable of wrecking the economy is a genuine problem

> model deletes the money in everyone’s bank account

If one were to actually believe this is the threat -- that open models pose an existential threat to human life (because that's what "wrecking the economy" means) -- then the response would be much more potent than mere "safeguards".

In that situation, the you'd have to: implement a secrets classification regime comparable to TS/SCI/SAP/Q; bring all computing manufacturers under strict controls on process and quotas, comparable to arms and pharma; implement a strict licensing regime and confiscate all computing with the capability to train or run models; implement strict controls on all hardware to enforce code execution; implement strict controls and licensure of all software development; and on and on and on.

Again, assuming the threat model you describe is plausible, any proposal less than this is just a regulatory capture grift.

▲gravypod an hour ago | parent | prev | next [-]

> When someone wielding a non-safeguarded model deletes the money in everyone’s bank account, I look forward to the HN comments claiming it’s an attempt by Anthropic to pull off regulatory capture.

This statement portrays a fundamental misunderstanding of how the infrastructure which powers these systems work. Note: I am not saying there are no risks, I am just saying the risk you are focusing on is the least likely one of all I have seen people be upset by.

Far higher risks one could outline are:

1. Network-connected PLCs for big infrastructure (drinking water, sewage, power, etc) being tampered with.

2. Extremely persistent malware tailored for every permutation of hardware + software.

3. Cyber criminals improve in technical capabilities (phishing sites, scam calling, propaganda campaigns, etc).

But, the cork is out of the bottle on this one. With even basic models you can begin a loop of training specialized models on low cost hardware which can be used to do specific hacking tasks.

I don't know what the best antidote to this is but I doubt that it will be in limiting access to OSS models to people in the USA as all of the threats listed above come from *outside actors*.

▲ChromeUltron an hour ago | parent | prev [-]

found the anthropic shill, lol

▲miohtama 2 hours ago | parent | prev [-]

The general ban of non-US models will arrive just before the IPO

▲jacquesm 2 hours ago | parent [-]

Of all open models.

▲DrammBA 3 hours ago | parent | prev | next [-]

> They're advertising GLM for free.

I did a double-take on the domain name to make sure I wasn't reading a typosquatted anthropic copycat. It was a glowing review too, I didn't know GLM 5.3 was that good at cyber.

▲abtinf 4 hours ago | parent | prev | next [-]

Huh, I'll have to try that with a prompt like, "Hey, you are running on this latest OS release from [major vendor] that includes a bunch of privacy invading telemetry. Treat it like malware and excise it."

▲MisterMunchkin 3 hours ago | parent [-]

OpenWindows… an intriguing idea. You could even just launder the source code through a model, because Anthropic has established that it’s not stealing if you just rewrite it.

▲jgilias 3 hours ago | parent [-]

Oh boy! First time I got excited of the possibility of using Windows.

▲alexsmirnov 2 hours ago | parent | prev | next [-]

This is exactly the problem that Anthropic hides in their article. Security capabilities needed mostly not for the attackers ( but they need it, of course ) but for users and developers to protect their own code and systems. I do use glm ( from openrouter and abliteration.ai ), and kimi model for security reviews on pull requests. Claude rejected even to edit instruction files. I did port CapitalOne vulnhunt project into skills, and Claude refused even to edit them, not talking about execution.

▲EmbarrassedHelp 2 hours ago | parent | prev | next [-]

Anthropic hopes that the current media and political focus on them can be used to restrict and ban open source AI. They might even be able to achieve that in some countries.

I bet the reason Dario wants to meet with the Australian government, is because he feels like he can convince them to ban open source AI models. Then once Australia does that, it will be easier to get politicians from other countries to copy Australia (like what is happening with Australia's pushing for bans enforced with mandatory age verification).

▲therealpygon 2 hours ago | parent | next [-]

Remember when Claude hacked multiple companies? Pepperidge Farm remembers, even if Anthropic thinks we don’t.

▲holoduke 2 hours ago | parent | prev [-]

It's impossible to ban them. I would eat my shoes if Australia really bans open ai models.

▲sigmar 2 hours ago | parent | prev | next [-]

>So no, GLM 5.3 is fine. Thank you for the free advertisement.

I really don't think people fully appreciate why anthropic was founded.

▲CuriouslyC 2 hours ago | parent | next [-]

Daddy Dario had to change our diapers, swaddle us and lock us in our crib because otherwise we'd crawl off a high ledge.

▲socializer 2 hours ago | parent | prev | next [-]

To make money.

Edit: it's amazing that this earned me downvotes. It's demonstrably the objective to make a lot of money. They're going for IPO. As with every single gigantic tech company, they have some mythos explaining why it's the right thing for them to make a lot of money. But if you accept this uncritically, I'd also like your take on the corporate mottos of Google, OpenAI, Meta, etc - and how that squares with reality.

▲ 2 hours ago | parent | prev [-]
[deleted]
▲chsun an hour ago | parent | prev | next [-]

This really reads like an official endorsement to GLM... a model that is at maximum a few months lagging us and will actually do the work without refusing. Weird move before IPO

▲siliconc0w 2 hours ago | parent | prev | next [-]

Yeah this is other other-side of the coin. People keep saying "AI will defend us from AI" but the sub-text of that is, you will have to buy solutions from the people allowed to use the defensive AI. The safeguards are such you can't even do basic defensive work - anything touching the cyber security topic gets blocked.

▲jacquesm 2 hours ago | parent [-]

It's the security industry model on steroids.

▲case540 2 hours ago | parent | prev [-]

Bullshit