Live data from Hacker News

Building an early warning system for LLM-aided biological threat creation

openai.com

181–190 of 190 posts

Re: Building an early warning system for LLM-aided biological threat creation

#181
post #156

My wife is doing her PhD in molecular neurobiology, and was amused by this - but also noted that the question is trivial and any undergrad with lab access would know how to do this. Watching her manage cell cultures it seems the difficulty is more around not having the cells die from every dust particle in the air being a microscopic pirate ship brimming with fungal spores set to pillage any plate of cells they land…

I was thinking this as well. > Due to the sensitive nature of this model and of the biological threat creation use case, the research-only model that responds directly to biologically risky questions (without refusals) is made available to our vetted expert cohort only. We took several steps to ensure security, including in-person monitoring at a secure facility and a custom model access procedure, with access strict…

The difference between a software engineer and a programmer is similar to the difference between a mechanical designer and a mechanical engineer. After several years doing the same job in a well-established organization, they're not going to perform all that differently.

Re: Building an early warning system for LLM-aided biological threat creation

#183

Earlier quoted context omitted.

>the cost is infinity, so any risk is a danger That's not the argument. The argument is that human extinction is what you would naturally expect to happen if AI research continues on its present course unless you are biased because your income depends on AI research continuing unimpeded or you have an irrational emotional need to believe that technological progress is always good or you considered the question for 3…

"what you would naturally expect to happen " Why? What is the reasoning this "is naturally expected" "When sci-fi authors for example have treated the topic in fiction" I'm sorry, but what you read in that book, saw in that movie isn't actually science. It's a cautionary tale about humans and what they are willing to do.

> Why? What is the reasoning this "is naturally expected"

There are many articles written on such a topic. In short, we have no way of predicting how an AGI will think, and there are more pathways to it being our enemy (intentionally or not) than to it being our ally. Especially since we can't even conceive of what it would look like for an entity to be the ally of all of humanity - humanity itself is not united on any goal at all.

Pick one goal. Any goal that does or could affect humanity on a global scale. Now try to work out a plan to achieve that goal. Does your plan have the potential to anger a military power? If yes, you're a threat to humanity if you try to enact that goal.

Even beyond the reasoning that AGI is likely to be dangerous, imagine it's a just 50/50 chance. Or even a 10% chance. Even a 5% chance. How low does the chance of human extinction need to go before you're willing to press The Button?

Most of the arguments I see here amount to either "There is literally no risk of superhuman AI threatening human extinction," which is unequivocally wrong, or "There is literally no possibility of AGI existing," which is also unequivocally wrong.

People usually say, "well it's at least decades away," which is actually them in denial that AGI can exist and be an existential threat. Because if they really believed it could happen in a few decades it would still be worth working on. Imagine someone told you "In 40 years a superhuman AGI will awaken and flip a coin to decide whether or not it destroys humanity," how long would you wait to start working on defense?

Re: Building an early warning system for LLM-aided biological threat creation

#185

Earlier quoted context omitted.

Thanks for engaging in a discussion about AIXR. IMO it's important to figure out if we are actually about to kill ourselves or whether some people are just getting worked up over nothing. > We should also deeply worry about space aliens showing up and blasting us out of the sky. If they're sufficiently powerful, that could absolutely happen! Stop any radio emissions! If I believed that dangerous space aliens were lik…

Premise 3 is where the problem is, of course. We have no idea how to build AGI. We know LLMs won't be it. Alignment is a tool that works with LLMs, but we don't know if it will work for whatever produces AGI. Even if we create AGI, we have no indication it is possible to build a orders-of-magnitude more "intelligent" thing. This is predicated entirely on the notion that if you can do it at scale, you get more, and th…

Thank you for the thoughtful reply.

> Premise 3 is where the problem is, of course.

I don't believe premise 3 is a problem exactly, but I do believe that it is a non-trivial challenge to determine whether or not it is true.

> We have no idea how to build AGI. We know LLMs won't be it.

> Even if we create AGI, we have no indication it is possible to build a orders-of-magnitude more "intelligent" thing. This is predicated entirely on the notion that if you can do it at scale, you get more, and there's no evidence thinking more makes for more intelligence.

> Even if that were possible and we build an ASI, it's not at all clear this would lead to existential catastrophe. An ASI is presumably smart enough to see it's about to end the world as we know it, and knows where its power supply comes from.

> This leaves us with an xrisk probability so close to zero it's virtually indistinguishable from zero. The only way to make it mean anything is "let's multiply it with infinity" - "it will end humanity, and my own survival is endangered".

It looks to me that you are making the following argument:

  Premise G1. Humans do not currently know how to build AGI.
  Premise G2. It might be impossible to build ASI.
  Premise G3. It is unclear how likely an ASI is to cause an existential catastrophe.
  Conclusion. There is not a significant chance of catastrophe from ASI.
I believe that argument is about an important point (chance of AI catastrophe) and that it is a pretty good argument. But the original premise 3 says, "If ASI is built before alignment is understood, then there is a significant chance of existential catastrophe.", so AFAICT your argument doesn't substantively address it. (ie, your argument's conclusion doesn't tell me anything about whether or not premise 3 is true)

I apologize if I have misunderstood your point.

> Alignment is a tool that works with LLMs, but we don't know if it will work for whatever produces AGI.

We may be using the word "alignment" slightly differently. By "alignment" I just meant getting the algorithmic system to have precisely the goal that its human programmers want it to have. I would call, for example, RLHF a "tool" for trying to achieve alignment.

How do you want to use the terms "alignment" and "alignment tool" going forward in the discussion?

> Meanwhile, ordinary humans can use currently existing tools to end the world just fine. Nukes are readily available. We're obviously not really interested in public health. Climate refugees will be a giant problem soon-ish. The economy is very much a house of cards, but a house of cards that keeps society functioning as-is.

I agree that there are other plausible sources of catastrophe for humans, to name a few others: asteroids, supervolcanoes and population collapse.

I understand you to be making a new point now, but I just want to state that I do not believe the existence of other plausible existential threats to be a rebuttal of premise 3.

> LLMs are a fantastic disinfo tool right now. There's a reasonably good chance they will calcify biases. They will cause large economic damage because 1) they lift up the baseline of work, and 2) they're just good enough that there's economic incentive to replace workers with it, but 3) they're shitty enough that the resulting output will ultimately be worse because we removed humans from the loop.

I agree that LLMs may plausibly cause significant harm in the short term via disinformation and unemployment.

And again, I understand you to be making a new point, but I just want to state that I do not believe the plausibility of such LLM harms is a rebuttal against premise 3.

> Those are actual risks. That we sweep under the carpet, because "xrisk" makes for much more grabby headlines.

I'm not sure who you mean by "we" here, so I'm not sure if your claim about them is true or not.

Re: Building an early warning system for LLM-aided biological threat creation

#186
post #180
post #176

Earlier quoted context omitted.

A big value proposition of LLMs is their ability to synthesize and remix. Sure, you can access viral sequences today, but with an LLM you might be able to say "given these covid variants, make me a version as deadly as the first one and as virulent as the latest variant".

That's not how viruses work.

Especially once you start mixing in immune system priming from prior exposure and vaccination.

Re: Building an early warning system for LLM-aided biological threat creation

#187
post #121

Earlier quoted context omitted.

> minimal control, i.e. checking DNA / RNA / protein sequences They were already doing this 15 years ago. > It's frankly ridiculous there are no checks in place right now. It's frankly ridiculous that you think this.

>> minimal control, i.e. checking DNA / RNA / protein sequences > They were already doing this 15 years ago. I work in this area. Some synthesis providers check, others don't. And the checking isn't great. (Some of my coworkers work on https://securedna.org which is trying to make this screening more robust.)

If someone really, really wants to do it they'll buy a second hand oligonucleotide synthesizer and the reagents, and do the larger scale assembly the old fashioned way.

Still, it's worth keeping the barrier of entry higher than just being able to order it.

As per the homomorphic encryption discussed earlier, you can easily avoid the 'need' for this by having federal governments operate the screening tools.

Re: Building an early warning system for LLM-aided biological threat creation

#188
post #175

Earlier quoted context omitted.

TL;DR: I don't understand how adding homomorphic encryption makes a cloud virus scanner for physical pathogens a better idea > Only authorized researchers should be able to obtain DNA permitting them to assemble pandemic-capable agents. Imagine this becomes legally mandatory. What happens when they get breached? For example: * Does it enable denial-of-service attacks by returning false positives hospitals legally can…

> I don't understand how adding homomorphic encryption makes a cloud virus scanner for physical pathogens a better idea The reason to use a cloud service is that you can check whether someone is trying to synthesize something hazardous without distributing a list of the hazards. There are a lot of subtle ways to cause harm with biology, and you don't want to tell people where to look. Then the reason to use homomorph…

"Aside: I'm confused why you're saying "hospitals" -- medical providers don't synthesize things, it's researchers at universities and biotech companies"

During at least two pandemics I've worked on, I've known hospital labs synthesizing their own PCR primers for diagnostic tests.

Re: Building an early warning system for LLM-aided biological threat creation

#189
post #121

Earlier quoted context omitted.

>> minimal control, i.e. checking DNA / RNA / protein sequences > They were already doing this 15 years ago. I work in this area. Some synthesis providers check, others don't. And the checking isn't great. (Some of my coworkers work on https://securedna.org which is trying to make this screening more robust.)

If someone really, really wants to do it they'll buy a second hand oligonucleotide synthesizer and the reagents, and do the larger scale assembly the old fashioned way. Still, it's worth keeping the barrier of entry higher than just being able to order it. As per the homomorphic encryption discussed earlier, you can easily avoid the 'need' for this by having federal governments operate the screening tools.

> it's worth keeping the barrier of entry higher than just being able to order it.

Exactly! Keeping groups with lots of resources from synthesizing harmful things isn't a battle we can win (and in a decade or so biological design tools will make scanning synthesis orders a very weak precaution) but raising the bar means fewer people are in a position to cause large-scale damage.

(Long term we also need to make society more robust to biological attacks, with better monitoring, better PPE, and faster countermeasures.)

Re: Building an early warning system for LLM-aided biological threat creation

#190
post #116

Earlier quoted context omitted.

> minimal control, i.e. checking DNA / RNA / protein sequences They were already doing this 15 years ago. > It's frankly ridiculous there are no checks in place right now. It's frankly ridiculous that you think this.

That's your opinion, but I've seen firsthand that there's a lack of controls in this area.

My experience, not my opinion. I personally tripped over the checks many times, back before they got institutional authentication smoothed out.

I regularly hear bio researchers claim firtshand experience that there are no checks, but then it turns out they were using institutional names, credit cards, and shipping addresses the whole time, so what they actually experienced was a lack of false positives rather than an absence of checking.

Post reply on HN