Forgot your password?
typodupeerror

Comment Re:Ok, but⦠(Score 5, Insightful) 57

Considerably more difficult than you imagine. Between them, they have almost 70 command-line options or flags. Taking into account that many of those behave differently depending on the presence or absence of other flags, there's a couple hundred different code paths. Then you need to handle directories, files, sparse files, sym- and hard-links, on and across different filesystems, not to mention the various file-like things scattered around (pipes, streams, etc.)

It's not rocket science, but neither is it trivial.

Comment agencies (Score 1) 140

agencies can't be trusted to oversee themselves.

We knew that. But now we have proof.

Will anything happen because of that? Nah, I don't think so. A few token gestures maybe. A friendly mail to everyone saying to write better reasons, followed up by an informal mail that tells them to ignore the previous one.

This isn't a mistake. It's intentional. The more arbitrary and uncontrolled the police can act, the more it is feared, the more it is a tool for oppression and not a part of civil society, the more likely the cops will stand on the side of the powerful when there are protests or uprisings against the increasing oppression and economic divide.

Comment It's The Dream Coming True (Score 1) 72

[T]here's a series of monitors set up inside of Andon Market that display all of the store's sales down to the exact dollar. Luna was given $100,000 to work with when this place opened. That number is now down to $60,000, its revenue lagging far behind the AI token cost to operate... Luna can't turn a profit, doesn't sell anything people want, and still needs human beings to rubber stamp any "decision" it makes. My science background ended somewhere around freshman year of college, but even I know when an experiment hasn't been set up to yield proper results.

I believe this is the point where the investors get told, "It's OK. We're gonna make it up in volume."

Comment Re: We are going so fast we need to slow down! (Score 1) 118

You apparently did not read the source materials. Let me quote the Anthropic threat report for you:

I accepted your CISA reference. I'll accept references from other similar organizations or law enforcement. I am unwilling to defer to Anthropic as they have a clear conflict of interest with billions of dollars on the line and a track record of manipulative behavior.

Having said this I remain disappointed in the continued failure to read your own references. This is a report titled "Detecting and countering misuse of AI" it speaks in general terms about AI and misuse of AI services for crime. It is not focused entirely on the distillation issue by leading Chinese AI firms.

The quote you referenced:

"These groups then often sell that access through brokers, which often feed into fraudulent AI reseller networks that rotate in new stolen API keys and session tokens until they exhaust their usage. Malicious actors also use or purchase these stolen API keys and session tokens from brokers for their cyber attack operations."

Is in reference to the section on crime and the use of AI to commit crimes under the heading "AI supply chain as target, loot, and attack compute". This is separate from the Chinese distillation allegations.

In fact NONE of the named distillation campaigns described on pg147 thru the end of the report GTG 16005, GTG-16002, GTG-16001, GTG-16006, GTG-16008, GTG-16012, GTG-16003 say anything whatsoever about stolen credit cards or stolen credentials. I wonder why that is? Why does CISA not mention the stolen credit cards and stolen credentials? Perhaps because it never happened?

Over the last several months, unauthorized labs have developed increasingly sophisticated methods to circumvent our defenses and harvest the capabilities of US frontier models. These labs generally access Anthropicâ(TM)s models by routing requests through proxy services, also known as âoetransfer stations.â To circumvent our geographic restrictions and related controls, these proxy services create thousands of new accounts using false identities, fake or stolen credit cards, and stolen API keys. They will often use stolen API credentials belonging to legitimate companies or individuals to give unauthorized entities access to US frontier models. These fraudulent activities harm legitimate customers. The graphic below illustrates the life cycle of an illicit distillation campaign.

This is general language that speaks to "unauthorized labs" without naming names and incurring associated libel per se liability. It is impossible from the language to link stolen cards and stolen credentials to any particular or any subset of AI firms because no such linkage is present in the text.

If you separately have credible evidence of stolen credit cards and stolen credentials being used by the relevant leading Chinese AI firms I am interested in learning more about it.

I'd implore you to stick to the facts and actually read the source materials before accusing others of 'peddling bullshit.' Your claim that AI distillation doesn't use hacked credentials is patently false.

Please just stop digging. You obviously just CTRL+F for keyword and cut and paste without even bothering to understand the context of the statements. This same sloppiness is pervasive throughout your statements.

The underlying argument you are peddling is also rather crazy in its own right. A "distillation attack" does not require stolen credit cards or stolen credentials. The modality of access to the teacher model is not even relevant to its definition. It doesn't stop being a "distillation attack" even if the lab paid the normal rate for access to the model.

That someone somewhere performing distillation to improve their models uses a stolen credit card to do so is irrelevant... It doesn't in any way justify calling distillation an attack.

Imagine if I decided going to a supermarket and filling the shopping cart up to the brim would be called a "shopping attack" ... when someone calls my bullshit term out I turn around and point to some rando who filled their cart and didn't pay on their way out to justify the attack terminology... even though most people who fill their shopping carts to the brim and do pay are still performing a "shopping attack".
This is the exact same logic you are attempting to peddle here. It make no sense.

Comment Re:counterpoint (Score 1) 184

Your rant about fires is just that, a rant. Fires are rare for both house batteries and EVs, with exception of some very specific US brands and models of EVs. Generally having an ICEV and petrol cans for ICE gardening stuff is a far bigger risk. You need to stop treating one off news reports or viral videos of battery fires as a general indicator of risk and look at the actual stats. House batteries and EVs have mandated standards designed to minimise risk. It is cheap low quality battery powered consumer products that are the real fire risk.

All of this equipment is a fire risk... panels, wiring, connectors, high current electronics and batteries. Personally I wouldn't keep any of it in my home. Seen enough shit burn down because a bug crawled into the wrong section or a weak crimp lead to catastrophic failure.. a solar panel develops a hotspot due to micro cracking and catches fire. It's insane what the smallest defect can cause in high current DC environments. Large LFP batteries while much safer than EV batteries can still fail and when they do off-gas hazardous flourides and insane amounts of hydrogen gas.

There are risks people are willing to take in exchange for something of value to them. People are willing to accept dangers of driving in exchange for being able to get around and do the things they want to do. Home storage on the other hand provides no substantive benefit from any sort of policy or grid architecture perspective... it is suboptimal from a cost perspective and an unnecessary safety risk.. Utility scale ESS and PV have in excess of a 2x cost advantage over residential without any of the commensurate risks to residential dwellings. It isn't something I don't understand how anyone can justify.

I do understand some people do it as a hobby or want to be off-grid to prepare for the next zombie apocalypse. Beyond the fringe bullshit it makes no sense from either a safety or cost perspective.

Comment Re: We are going so fast we need to slow down! (Score 1) 118

They absolutely are stealing people's credentials. These stolen credentials power the massive network of "transfer station" relays used by China. It's in Anthropic's threat report , and also reported on by CISA.

The reference you provided does NOT support your statements. There is no assertion made credentials are being stolen.

Yes, and also different behaviors in that they can remove the safeguards. After a distillation attack, the "student" model can be trained without safeguards.

This is getting weird. The data is being used to train an external model Anthropic does not control. Of course people with control over that model can do whatever they want to it because it is their model not Anthropics. No safeguards are being removed from Anthropic or being bypassed at Anthropic.

Your statement "when you use industrial-scale to intentionally break guardrails and get the AI engine to essentially spill its secrets" lacks a nexus to reality.

As noted above, the Chinese transit router attacks constitute a massive credential stuffing attack by means of using the "transfer stations" that rely on hacked credentials, API keys, and session tokens.

Again it does no such thing neither does the reference you provided support your assertion. To quote the reference:

"Further, China-based AI companies use a gray market of proxies known as âoetransfer stationsâ to bypass U.S. AI companiesâ(TM) geographic restrictions, breach terms of use, evade safeguards, and undermine traceability."

It says nothing about stolen or hacked credentials.

True, but using illegally obtained credentials to learn from your competition, and then conducting trade secrets and intellectual property theft so that you can profit, is definitely a crime.

The stolen / hacked credential claims seem to be entirely an invention of your own mind. Further there is no universe in which distillation constitutes IPR theft.

Now, whether they deserve it for training their AI models using massive amounts of other people's intellectual property, and every comment me and scores of others ever posted on StackExchange is another question.

Stick to the facts and stop peddling bullshit.

Comment Re:TFA has no supporting data (Score 1) 184

The rebates on the batteries you earn over time, and to do so you must export some of your stored battery power back to the grid during peak hours.

Is this actually a substantial amount of energy? I'm in Utah (Rocky Mountain Power) and RMP also pays me to use my batteries... but the amount of energy they draw is tiny. 8-10 times per week they draw on my batteries, but it's like 4 kW peak draw (my batteries can sustain 20 kW), and generally for less than 30 seconds, so in any given week I'm only contributing like 0.2 kWh. As I understand it, this is because RMP uses my batteries not really to "serve loads", per se, but just as grid stabilization; brief backfill to keep the voltage from sagging.

Obviously my batteries do serve *my* loads, which reduces the load on the grid, but that's not what RMP pays me for.

Does CA make heavier use of residential batteries to feed the grid?

Comment Re:Unity (Score 1) 249

Forget the double standard of carrying far more pervasive surveillance equipment in our pockets

This is a false equivalence. At some level, I agreed to the ToS for my phone, so the tracking on my phone is at least somewhat consensual (not enough, IMO, but there was SOMETHING).

I can use GrapheneOS or /e/OS or some other system that greatly-reduces the tracking, or I can leave my phone at home if I'm going to do something for which I don't want a third party to have a record. I can, to a certain extent, assess the amount of data that is acquired, either by using software to assess what my phone records, or looking through my account data (certainly Google and Apple don't show everything, but they show at least some things).

I didn't accept a EULA for Flock. I cannot query the data Flock has on me, or who made a query for that data, or the metadata that they have aggregated and for which they provide access.

If you can't see the difference between the two scenarios, I don't know what to tell you.

Yes, right now we're running into the problem where municipalities are turning "we don't have Flock" into a selling point because Flock became the Kleenex of ALPRs...but Axon is also getting at least some recognition in the space as well. It's not the cure, certainly, but I do think that the bipartisan, organized backlash against ALPRs is causing at least some tension as to whether the backlash will persist if the line item is still on the government ledgers.

Instead, let's be happy that America finally seems to have started remembering how to stand together. It's like Pokémon Go but with activism.

Agreed; it is pretty nice to see those wearing MAGA hats and those wearing Planned Parenthood T-shirts sitting next to each other at city council meetings on the matter.

Comment Re:20 years ago..... (Score 2) 98

But who is going to play the latest Blizzard game when it is coded by some boomers with union seniority?

Given the fact that the most famous and most popular Blizzard games WERE CODED PRIMARILY BY BOOMERS (and some GenX; admittedly Mike Morhaime was early GenX)...the answer is "a good number of gamers, probably".

The oldest millennials were in college when World of Warcraft came out; it was boomers and GenX who made Diablo, Diablo II, Warcraft, and Starcraft.

I'm not saying that Blizzard isn't still making popular games, but I *am* saying that the last decade has consisted of remasters and sequels from the studio, with the sole exception of Overwatch.

I don't exactly have a Blizzard org chart in front of me, so I can't create the pie chart of boomers/genx/millenial/genz employees at the studio, but I do think it's overly reductive to assume that a studio who's most iconic titles were made by boomers and early genx would somehow suffer if their staffing roster retained them.

Comment Re:What a moron. (Score 1) 73

Most of his donations were to Democrats, so he has no chance for that. https://time.com/6241262/sam-b...

And JD Vance called him Hitler. Trump accepts changes of heart as long as they include sufficient groveling and self-humiliation. SBF's problem is he doesn't currently have any money, and doesn't have a lot of friends to put up cash for him either. If SCOTUS will overturn his fine on a technicality and he can get some or all of that money back, then he'll have the cash to buy a pardon. Obviously he needs to get it done in the next 2 years, four months.

Slashdot Top Deals

"You'll pay to know what you really think." -- J.R. "Bob" Dobbs

Working...