Live data from Hacker News

200k Compromised OpenAI Credentials Available for Purchase on the Dark Web

cpomagazine.com

51–60 of 77 posts

Re: 200k Compromised OpenAI Credentials Available for Purchase on the Dark Web

#51
post #10

I seriously wonder why, given the Microsoft deal, OpenAI didn't just cede all product development and production-izing of their models to MS while they focus on research. I know smart people work there, some friends included, but OpenAI was never a product-led startup, they were a research org. Ignoring the closed vs open debate for a moment: for all the talk of focus, focus, focus from YC, it seems unfocused to ship…

One reason for having their own consumer website is that having lots of data from actual users should be quite helpful for training. I believe they promised not to use the data from other companies that use their API?

It's also good marketing. For the people who use ChatGPT every day, they're a known quantity, unreliable as it is. Other companies need to show that they're better.

These are both similar advantages to what Google has with their search engines.

Re: 200k Compromised OpenAI Credentials Available for Purchase on the Dark Web

#52

I mean I’d love to be able to actually get access to the GPT4 API

GPT4 API should be available to all paying customers since early July: https://openai.com/blog/gpt-4-api-general-availability

So far my $2 in GPT-3.5 hasn't been billed :(

Re: 200k Compromised OpenAI Credentials Available for Purchase on the Dark Web

#53
post #27

Earlier quoted context omitted.

OpenAI doesn't ever see your CC number. They use Stripe and so your credit card number is stored with them, not OpenAI. But if you're worried and in the US, a privacy.com card could be used to protect you regardless.

Is that a recent development? Didn’t see that mentioned a couple of months ago.

It's been true since they started taking credit cards using Stripe, which I believe is what they started with.

Re: 200k Compromised OpenAI Credentials Available for Purchase on the Dark Web

#55
post #19

Earlier quoted context omitted.

OpenAI doesn’t make money from research.

Yes, hence the MS deal (they had trouble raising money as a pure research org). Their research can be turned into a product people pay for -- they've done it! My question is: why did the engineers at OpenAI have to do that? Why couldn't they "toss it over the fence" to MS's Azure team and be happy with a revenue share, for example.

MS didn’t buy them, just invested shit ton of money and got a close partnership.

Don’t outsource your money making department to a big tech company. They’ll screw you over, even if they don’t mean to.

Re: 200k Compromised OpenAI Credentials Available for Purchase on the Dark Web

#56
post #38

Earlier quoted context omitted.

Because when you accidentally discover a golden goose, you don’t give it to Microsoft, you learn to cook eggs. I had the same thought as you at first, and many people speculated they’d shutter ChatGPT in favor of the API being served to others. But while anyone can sell an API, making a consumer product people want is just too rare to give it up. It’s better to learn how to service consumers and satisfy the demand. E…

That's my worry, too. I'm reminded of the history of Intel, which at its founding decided that it would not have a research org (drop the R from R&D) and just focus on scaling FETs, because the founders learned that trying to do both meant that one would ultimately suffer.

Scaling FETs is not research?

Re: 200k Compromised OpenAI Credentials Available for Purchase on the Dark Web

#57

This likely explains why I just got a fake "Geek Squad" invoice which claims to have been paid by "auto deduction" to an email account which has never received one single spam email in the 10 years that I have had it.

Given that the credentials were stolen by locally running malware, and basically nothing to do with OpenAI, I would.be very worried if I were you right now.

Re: 200k Compromised OpenAI Credentials Available for Purchase on the Dark Web

#58
post #52

Earlier quoted context omitted.

GPT4 API should be available to all paying customers since early July: https://openai.com/blog/gpt-4-api-general-availability

So far my $2 in GPT-3.5 hasn't been billed :(

Likewise and you seemingly have to wait until the end of the month for invoicing (and activation?) 3.5 doesn’t work for my use case and so I’m just having to loop queries to run up billing for no purpose.

Re: 200k Compromised OpenAI Credentials Available for Purchase on the Dark Web

#59
post #50
post #48

Earlier quoted context omitted.

I’m assuming that part of the issue is the crazy amount of internal company data people have been feeding into the thing. Finding your email password might let me see some memos, but if you’re not very thoughtful, you might’ve pushed all sorts of sensitive data into chat prompts. I don’t disagree with your premise otherwise, and grant that I might be racing to begin with.

Err, no. Compromising your email account will for sure be the worst outcome. Everything else, including your OpenAI account, are accessible via that email account + a password reset.

But the credentials are for stolen OpenAI logins, not stolen email logins.

While there will be some people using the same password (I doubt many) the people selling them will no doubt have already validated and removed these from the set as they are obviously much more valuable.

Re: 200k Compromised OpenAI Credentials Available for Purchase on the Dark Web

#60

This likely explains why I just got a fake "Geek Squad" invoice which claims to have been paid by "auto deduction" to an email account which has never received one single spam email in the 10 years that I have had it.

Given that the credentials were stolen by locally running malware, and basically nothing to do with OpenAI, I would.be very worried if I were you right now.

That seems unlikely, but I should have read TFA.

Hmm, well the only other recent event regarding that email account was that I used it to register on a discord server.

Post reply on HN