Live data from Hacker News

Employees are feeding sensitive data to ChatGPT, raising security fears

darkreading.com

41–50 of 355 posts

Re: Employees are feeding sensitive data to ChatGPT, raising security fears

#41
post #16

I think there's more fear of OpenAI leaking data than say, Airtable or Notion or Github or AWS/S3 or Cloudflare or Vercel or some other company that has gobs of a company's data. Microsoft also has gobs of data: anything on Office and Outlook is your company data — but the fear that they'll leak (intentional or accidental) is somehow more contained. If we want to be intellectually honest with ourselves, we can either…

> I think there's more fear of OpenAI leaking data than say, Airtable or Notion or Github or AWS/S3 or Cloudflare or Vercel or some other company that has gobs of a company's data.

There is zero fear. OpenAI openly writes that they are going to use ChatGPT chats for training. On the popup modal they show you when you load the page. That is not a fear, that is a promise that they will do leak it whatever you tell them.

If i tell you “please give me a dollar, but i warn you you will never see it again” would you describe your feeling over the transaction as “fearful that the loan won’t be repaid”?

Re: Employees are feeding sensitive data to ChatGPT, raising security fears

#42
We went pretty quickly from:

No way I’m giving Google any of my data! I will use 5 different browsers in incognito mode and never log in.

To ->

Sure I will login with my name and email and feed you as much of my most personal thoughts and data as I can dear ChatGPT!

Re: Employees are feeding sensitive data to ChatGPT, raising security fears

#44
post #11

We published an internal policy for AI tools last week. The basic theme is: "We see the value too, but please don't copypasta our intellectual property until we get a chance to stand up something internal." We've granted some exceptions to the team responsible for determining how to stand up something internal. Lots of shooting in the dark going on here, so I figured we would need some divulgence of our IP against pu…

Inform us when you figured out a way to host something with the quality of ChatGPT internally :-)

I can host llama's 7b model internally. It hallucinates more often than not and has a tendency to ramble, but dammit it's local and secure!

Re: Employees are feeding sensitive data to ChatGPT, raising security fears

#45

Wouldn't it be trivial to add a "read-only" mode to the LLM's operation, where it uses stored knowledge to answer queries but doesn't ingest new knowledge from those queries?

Why isn't it read-only by default? it's not even connected to the internet

ChatGPT, and I think all the GPT LLMs, is only accessible over the internet as far as I can tell.

And the thumbs up/down are there on the chat interface because it's partly trained by reinforcement from human feedback.

Re: Employees are feeding sensitive data to ChatGPT, raising security fears

#46

This is nothing new at all. How many people have Grammarly plugins installed? They are advertising aggressively, so I'd think it is the new hotness. Don't tell me Grammarly is not hoovering up all of the Slack, Word, Docs, and Gmail data that everyone sends it, and holding on for some future purpose. We'll see.

2017... "Grammarly Vulnerability Allows Attackers To See Sensitive Data of Their Customers" - https://www.invicti.com/blog/web-security/grammarly-vulnerab...

Re: Employees are feeding sensitive data to ChatGPT, raising security fears

#47
post #42

We went pretty quickly from: No way I’m giving Google any of my data! I will use 5 different browsers in incognito mode and never log in. To -> Sure I will login with my name and email and feed you as much of my most personal thoughts and data as I can dear ChatGPT!

Not quite. These are the same people that use only Chrome while being logged in to their Google account. Convenience wins.

Re: Employees are feeding sensitive data to ChatGPT, raising security fears

#48
post #34

Earlier quoted context omitted.

If your competitor use ChatGPT to compete with you and they're 10x productive than yours, are you still willing to insist? If the productive is 100x, will you?

Uh, there's no sign of that yet.

[flagged]

Re: Employees are feeding sensitive data to ChatGPT, raising security fears

#49
post #42

We went pretty quickly from: No way I’m giving Google any of my data! I will use 5 different browsers in incognito mode and never log in. To -> Sure I will login with my name and email and feed you as much of my most personal thoughts and data as I can dear ChatGPT!

Any examples where those two were the same person?

Because both types of people have always existed. Heck, lack of vigilance among the ancient Greeks is what put the Trojan in Trojan horse.

Post reply on HN