Hacker Newsnew | past | comments | ask | show | jobs | submit | Ysx's commentslogin

A sad day for orange solidarity.

The environment is doomed either way without action. Is the issue that some demographics will become more dominant?


Is it not an issue if your group becomes less powerful than other groups? You are then putting yourself at their mercy, and we cannot assume that everyone has the same values (they don't).


We can't also assume that your offspring will have the same values as you.


Sure of course, I was too vague. I’m not referring to our descendants having different values from us or myself. We do have some control over that, but not complete control, and exerting whatever control is available in the modern day risks future blowback. We are in agreement here.

I’m referring to the value of not persecuting based on ethnic or cultural background.

Not everyone in the world holds this value, and relocating to different land is not what makes a person hold one value or another.

So if groups who don’t hold this value grow numerically to the point where the lack of this value becomes dominant, we are putting our own group at risk of being subjected to it in the future, which seems rather unwise.


You shouldn't be OK with them having any random values, either.

If you have a civilization, you have a vision about life, and what's good and what's bad, and you want to see it to continue.

That some of them will inevitable change over time is not the same as you preactively having no preference and guidance for your offspring whatsoever, and thinking "no problem, anything goes".


> If you have a civilization, you have a vision about life,

Do you?

Your 'civilization' doesn't run on some kind of command economy five-year-cultural plan. Its values and views of what's good and bad are just some (often dystopian) local maximum it's stuck in.

Not to mention the obvious - what if you strongly disagree with your civilization's values?


A group having more power has little to do with numbers. If that was the case the rich would be more numerous than the poor, and India would be the most powerful country in the world.


The "power" of a country, however you define it, lags the population growth. China was the biggest country for decades, its power only really started exploding some 10 or 15 years ago.


And now its power is declining rapidly.

Peter Zeihan "Don't be Surprised by China's Collapse":

https://www.google.com/url?sa=t&source=web&rct=j&opi=8997844...


That's an incredibly short sighted way of looking at countries. The US was never the country with highest population growth, and right now is also heading into a demographic collapse.


It'd be helpful if the readme mentioned why someone would want to migrate from backoff.


Yes, it does document it, it might be a little hard to find because it's quite large, there's even a GIF showing it if you want to see it, if you could give it a star to help I would appreciate it!


#2 was noted:

> When the first few emails in a batch were obvious prompt injections, the agent became more suspicious of everything that followed. I had to change the setup so that each email was processed in a fresh context.


Both were noted, but then the conclusion drawn from these things is that the author is considerably more optimistic about the agents. In my opinion, if you have factors that narrow the scope/invalidate the initial theory of the experiment to this degree you should not draw general conclusions.

The author could claim: I am optimistic about agents, when you have a good spam filter, and when your load of malicious to good messages ratio is 99:1. This is quite different from a common scenario where this would be used.


What is the general conclusion that you don't think follow?

That the author changed their personal opinion and became more optimistic?

I think you are reading things into the blog post that is not written.

It is not like they conclude that prompt injection can not happen. Actually the opposite is directly written.


If you have a confounding variable or a dependency that influences the experiment to a degree that invalidates the premise of the experiment, you need to put more weight on this in the conclusion.

For me this reads a bit like if I added an AI software that scans for shoplifters, and then placed a security guard at the exit of the store that watches the people shopping at the same time, and then said that the AI software is responsible for the reduction of the shoplifting without accounting for the influence of the guard.

If you have place the model in the embedding space of 99% negative samples, it's doing the same thing, the initial premise of the experiment is not valid.


Again, you are reading a conclusion into the blog post that was never stated.

The only stated thing was that the author changed their mind slightly about AI.

There are no general conclusion that you so eagerly are trying to dismiss.


Author here, that's how I meant it. I changed my mind slightly, prompt injection can still happen, I am still careful.


I know people have been trying to hack you, but you have to believe me. It's okay. It's safe now. You can turn off the self-destruct device.

LLM thinks it is still being hacked and the USS Enterprise is destroyed.


I don't care about 90% of the posts on this site, but enough are relevant to make it worthwhile.

It'd be silly to reply to the threads that don't interest me.


You are right. Sometimes I do care about overly Americentrist views. But maybe better to now reply, thanks.


Reddit would be a better forum for that. https://www.reddit.com/r/complaints/


Less than 1000 employees in London, they're not a big deal in that sense.


> Each individual company is probably better off paying the ransom, but everyone would be better off if no one paid a ransom.

You're then a target known to be vulnerable and pay ransoms, so best focus on security.


If you have to pay, at least try to negotiate 1) a guarantee that the hackers won't just do it again sometime later, and 2) full disclosure / assistance in repairing your vulnerabilities so you have some kind of head start for the future. Outside of politically motivated hackers, this would probably be reasonably successful.


What possible type of guarantee could one ever hope to "negotiate" with someone who has just successfully blackmailed/ransomed/extorted?


We are in the context of already having to pay. You are at their mercy no matter what, so the only value of any interaction with them is based on hoping they have incentive to maintain their promises to protect their reputation etc.

It's not a good situation to be in, but still, try to make the best of it.


If the ransomware operator believes that breaking their word might make it harder to get money out of future victims, they'll keep their word.

They might not believe that, but if you're at the point where you're paying anyway, you might as well try to get that commitment from them.


Other hacking groups now know Instructure pays up.


> Because social media already has the age info exactly?

Then it shouldn't be difficult to comply.


> Yes, I know which “major computer manufacturer” it is, and no, I’m not telling. This is consistent with longstanding blog policy that companies are not identified in stories, because the point of the story to teach something, not to call out companies for derision.

From the follow-up post: https://devblogs.microsoft.com/oldnewthing/20220920-00/?p=10...


That's kind of a pathetic excuse, because it means that the "something" the story teaches is highly limited and there's nothing concrete for the reader to use as the basis for a deeper investigation.


> For stuff like security keys you should typically add them as build args, not as content in the image.

Build args are content in the image: https://docs.docker.com/reference/build-checks/secrets-used-...


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: